Cybersecurity Vulnerability Analyst

4 weeks ago


Arlington, United States Node.Digital Full time

Cybersecurity Vulnerability Analyst / Incident Manager

Node.Digital

Market leader in Digital Transformation & Automation using Artificial Intelligence and Machine Learning

View company page

Cybersecurity Vulnerability Analyst / Incident Manager Location: Arlington, VA Must have Top Secret Security Clearance Node is supporting a U.S. Government customer to provide cybersecurity vulnerability analysis support to reduce the prevalence and impact of vulnerabilities and exploitable conditions across Federal Civilian Executive Branch (FCEB) entities and Critical Infrastructure Key Resources (CIKR). The Cybersecurity Vulnerability Analyst utilizes cybersecurity best practices, risk management techniques, critical thinking, and strong analytical skills to analyze information from multiple sources, synthesize that information, and provide expert analysis to senior customer stakeholders. Node is seeking a

Cybersecurity Vulnerability Analyst

to support this critical customer mission. Responsibilities: • Utilize creativity and divergent thinking to assess and explain the impact of cybersecurity vulnerabilities on FCEB and CIKR security postures • Conduct prevalence and sector analysis of vulnerabilities with Attack Surface Management tools • Review vulnerability reporting to identify potential risks and impacts CIKR and FCEB entities • Evaluate technical requirements of VM operational components and recommend paths forward • Understand and articulate the impact of vulnerabilities on organizations • Coordinate with VM analysts and leadership to synchronize VM operational activities • Coordinate with broader Cybersecurity Division (CSD) analysts and leadership to understand CSD operational priorities and activities • Willingness, ability, and flexibility to assist the government to stand this new mission operations area within VM • Demonstrated ability to contribute to developing Standard Operating Procedures and Work Instructions as required • Demonstrated ability to contribute to weekly operation summaries, intelligence analysis summaries, and other cyber intelligence reports Requirements Required Skills: • Must have an active TS/SCI clearance • Must be able to obtain DHS Suitability • 5+ years of directly relevant experience • Experience as a hands-on cybersecurity analyst (i.e. SOC Analyst or Penetration Tester) is required • Experience with the analysis and characterization of cyber attacks • Skilled in identifying different classes of attacks and attack stages • Knowledge of system and application security threats and vulnerabilities • Knowledge of basic networking protocols, including TCP/IP, UDP, HTTP/HTTPS, SSH, and DNS, and open security standards and projects, including OWASP • Knowledge of CVSS and KEV scoring methodology • Knowledge of general attack stages (e.g., footprinting and scanning, enumeration, gaining access, escalation of privileges, maintaining access, network exploitation, covering tracks, etc.) • Knowledge of VM scanning, Web Application scanning, and red team processes • Experience recognizing and categorizing types of vulnerabilities and associated attacks • Knowledge of Computer Network Defense policies, procedures, and regulations • Knowledge of different operational threat environments (e.g., first-generation [script kiddies], second-generation [non- nation-state sponsored], and third-generation [nation-state sponsored]) • Knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, PL/SQL and injections, race conditions, covert channel, replay, return-oriented attacks, and malicious code) • Experience in developing and delivering technical briefings • Must be able to work collaboratively across physical and virtual locations Desired Skills: • Understanding of OT/ICS/SCADA technologies and associated vulnerabilities • Experience with conducting all-source research • Understanding of MITRE Adversary Tactics, Techniques, and Common Knowledge (ATT&CK) • Experience with: o SharePoint o ServiceNow Required Experience Education: BS in Computer Science, Computer Engineering, Computer Information Systems, Cybersecurity, or related degree, or 7+ years experience in cyber incident management experience or cybersecurity experience with a High school diploma. Desired Certifications: Company Overview: Node.Digital is an independent Digital Automation & Cognitive Engineering company that integrates best-of-breed technologies to accelerate business impact.

Our Core Values help us in our mission. They include: OUR CORE VALUES Identifying the~RIGHT PEOPLE~and developing them to their full capabilities Our customer’s “Mission” is our “Mission”. Our~MISSION FIRST~approach is designed to keep our customers fully engaged while becoming their trusted partner We believe in~SIMPLIFYING~complex problems with a relentless focus on agile delivery excellence Our mantra is “~Simple*Secure*Speed~” in the delivery of innovative services and solutions We are proud to offer competitive compensation and benefits packages to include:

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.

#J-18808-Ljbffr



  • Arlington, United States 3M Consultancy Full time

    Job DescriptionJob DescriptionJob Title: Cybersecurity Policy and Compliance Analyst Location: Arlington, VA.Duration: Full-Time.Active IRS MBI is required.The Position:Our client has an exciting opportunity to be a Cybersecurity Policy and Compliance Analyst as part of our growing team. The ideal candidate will work closely with our client to develop...


  • Arlington, United States LinQuest Corporation Full time

    Position Summary: The PNT Cybersecurity Analyst III will support DoD CIO GPS/PNT Core Support Services enterprise goals, increase mission effectiveness, and deliver efficiencies. Additionally, the Cybersecurity Analyst III will design, develops, implements, or recommends cybersecurity control solutions that ensure protection of information and systems within...


  • Arlington, United States Zachary Piper Solutions, LLC Full time

    Zachary Piper Solutions is seeking a Cybersecurity Engineer to join a Contract-to-Hire job opportunity in Arlington, VA. This is an onsite position that offers conversion to a hybrid schedule (3 days onsite) once comfortable in the role. The Cybersecurity Engineer will be responsible for securing our customers cloud computing, data center, and on-premise...


  • Arlington, United States Nine Mind Solutions Full time

    We are seeking Cybersecurity Forensics Analysts to support this critical customer mission. Eligibility: Must be a US Citizen Must have an active Secret clearance with the ability to obtain a TS/SCI clearance Must be able to obtain Client Entry on Duty (EOD) Suitability prior to starting Must have 8+ years of directly relevant experience in cyber...

  • Cybersecurity Engineer

    16 hours ago


    North Arlington, United States Gray Tier Technologies LLC Full time

    Cybersecurity Analyst Gray Tier Technologies is seeking an experienced Cybersecurity Analyst on The Enterprise and Cyber Solutions (E&CS) Operation. The team is seeking a Cybersecurity Analyst to support the implementation and administration of information security policies, procedures, and technologies to ensure the protection of systems, applications, and...


  • Arlington, United States iTech Solutions Full time

    Senior Cybersecurity Watch AnalystContract RoleRequiredTop Secret SCI Clearance RequiredLocation: On-Site in Arlington, VABS in computer science or related field or four-year equivalent training and with at least 3 years experience in the field of cybersecurity or 5-8 years of experience in the fieldIAT Level III (CASP + CE, CCNP, CISA, CISSP GCED, GCIH,...


  • Arlington, United States Solutions3 Full time

    Title: Cybersecurity Host-Based Forensics Analyst (L4) Description: Solutions³ LLC is supporting our prime contractor and their U.S. Government customer's Hunt and Incident Response Team (HIRT) to assist in securing the Nation's cyber and communications infrastructure. The HIRT provides front-line response for cyber incidents and proactively hunting for...


  • Arlington, United States Solutions³ LLC Full time

    Job DescriptionJob DescriptionTitle: Cybersecurity Host-Based Forensics Analyst (L4)Description:Solutions³ LLC is supporting our prime contractor and their U.S. Government customer’s Hunt and Incident Response Team (HIRT) to assist in securing the Nation’s cyber and communications infrastructure. The HIRT provides front-line response for cyber...


  • Arlington, United States TM3 Solutions Inc Full time

    Job Openings >> Risk Analysis and Risk Prioritization – Senior Risk and Vulnerability Analyst Risk Analysis and Risk Prioritization – Senior Risk and Vulnerability Analyst Summary Title: Title: Risk Analysis and Risk Prioritization – Senior Risk and Vulnerability Analyst ID: ID: 1216 Location: Department: Department: Information Technology Level of...


  • Arlington, United States Arsiem Corporation Full time

    Incident Manager - III Seeking a Cybersecurity Vulnerability Analyst to support this critical customer mission support a U.S. Government customer to provide cybersecurity vulnerability analysis support to reduce the prevalence and impact of vulnerabilities and exploitable conditions across Federal Civilian Executive Branch (FCEB) entities and Critical...


  • Arlington, United States US Cybersecurity and Infrastructure Security Agency Full time

    **Duties**: **In this position you will serve as an IT Cybersecurity Specialist (INFOSEC). At full performance level, typical work assignments include**: - Performing risk assessments of systems and networks within the critical infrastructure and NCF environment or enclave and identifying risks to those systems/networks based on understanding of threats and...


  • Arlington, United States ICF Full time

    ICF International seeks an experienced Senior Cyber Security Analyst to support the research and development of new cyber analytic capabilities that will help the US protect and defend its networks and critical information systems. The successful cleared candidate will act as a Senior Cyber Security Analyst to support a large federal cyber security analytic...

  • Incident Manager

    4 weeks ago


    Arlington, United States Base One Technologies Full time

    Responsibilities:• Utilize creativity and divergent thinking to assess and explain the impact of cybersecurity vulnerabilities on FCEB and CIKR security postures• Conduct prevalence and sector analysis of vulnerabilities with Attack Surface Management tools• Review vulnerability reporting to identify potential risks and impacts CIKR and FCEB...


  • Arlington, United States Motion Recruitment Full time

    Security Analyst II The Senior Security Analyst II is responsible for the design, configuration, testing, and deployment of on-prem and cloud services. They will provide Incident Response, threat hunting and proactive support of all development activities in both the cloud and on-prem environments. This position will be 2 days on site their Alexandria, VA...


  • Arlington, United States Motion Recruitment Full time

    Information Security Analyst The Information Security Analyst, a member of the Cybersecurity Operations Group, will report to the Director of Information Security & Assurance. This role involves overseeing ongoing monitoring of the network environment to identify and respond to malicious activities and potential threats. The candidate must be local to the...


  • Arlington, United States Echelon Services, LLC Full time

    Contingent Upon AwardActive Top Secret clearance with eligibility for SCI required.Senior Risk and Vulnerability Analyst who will work with USG, industry, and state and local partners to support the development of planning agenda, scope government customer plans and identify problem statements for these plans, develop core planning teams, support the...


  • Arlington, United States Echelon Services, LLC Full time

    Contingent Upon AwardActive Top Secret clearance with eligibility for SCI required.Senior Risk and Vulnerability Analyst who will work with USG, industry, and state and local partners to support the development of planning agenda, scope government customer plans and identify problem statements for these plans, develop core planning teams, support the...


  • Arlington, United States Echelon Services, LLC Full time

    Contingent Upon AwardActive Top Secret clearance with eligibility for SCI required.Senior Risk and Vulnerability Analyst who will work with USG, industry, and state and local partners to support the development of planning agenda, scope government customer plans and identify problem statements for these plans, develop core planning teams, support the...


  • Arlington, United States Two Six Technologies Full time

    Two Six Technologies is seeking a Senior Vulnerability Researcher with active Top Secret Clearance to join our team in Arlington, Virginia. The team is composed of intellectual individuals, passionate about cybersecurity research. The team is growing and looking for someone with a reverse engineering and vulnerability research background who understands how...

  • Reverse Engineers

    4 weeks ago


    Arlington, United States Anonymous Employer Full time

    Are you experienced in reverse engineering, vulnerability research or exploit development??? We are currently seeking to fill all positions listed below as long-term and permanent opportunities located in Arlington, Virginia. These positions are approved for flex scheduling and remote one day a week. (IF NOT LOCAL, RELOCATION ASSISTANCE AVAILABLE!) ALL...