Security Analyst

4 months ago


Reston, United States RIT Solutions, Inc. Full time
Responsibilities:
  • Perform PCI, SOC2, ISO, and applicable State of Florida cybersecurity controls-related reviews to ensure that current, new, and technology infrastructure complies with these standards and Department's security policies.
  • Plan and perform IT security controls effectiveness. Manage remediation efforts for the identified gaps including assessment of new or enhanced implemented controls.
  • Maintain IT security risk and compliance matrix and performs management reporting. This will include IT systems controls, and business process risks to meet compliance requirements. Provide risk mitigation strategies
  • Maintain Third Party Risk Management Program (TPRM) and analyze SOC-2 and other reporting including mapping to key IT security and compliance controls such as NIST, PCI, and COBIT.
  • Manage IT security vulnerabilities management program aligned with PCI and NIST standards.
  • Identifying and ranking the value, sensitivity, and criticality of the operations and assets that could be affected should a threat materialize in order to determine which operations and assets are the most important.
  • For the most critical and sensitive assets and operations, estimating the potential losses or damage that could occur if a threat materializes, including recovery costs.
  • Identifying cost-effective actions to mitigate and reduce risk. These actions can include implementing new organizational policies and procedures as well as the design of technical or physical controls.
  • Coordinating, tracking, and verifying remediation of audit findings.
  • Documenting the results and developing a plan of action and milestones for mitigating any identified risk.
  • Produce formal audit reports based on ISACA Audit Standards.
  • Promotes compliance with regulatory requirements (e.g. PCI DSS) and IT best practices.
Qualifications:
  • 7-10 years of IT Audit experience (CISA certified preferred)
  • 3 years of IT Risk Management lifecycle experience
  • 3 years of hands-on technical experience (e.g. developer, system administrator)
  • Experience working with NIST 800-30 Risk Assessment Standard
  • Extensive experience with IT General Controls evaluation and design
  • Advanced skill level in business process mapping and documentation as well as policy and procedure development
  • Recent experience in Information Security with up-to-date knowledge of the current threat landscape.
  • Solid understanding of PCI DSS standards
Education and Certifications:
  • Bachelor's Degree in Computer Science, Information Systems, Business Administration, or other related field and/or equivalent work experience.
  • CISA and CISSP certifications (preferred).


  • Reston, United States Eviden Full time

    Security Analyst - MDR (SOC)Experience Range: 2-3 years of relevant experience in cyber security.Required Qualifications:Strong analytical and technical skills in computer network defense operationsIncident response Handling (Detection, Analysis, Triage, Recommendations)Performing advance investigation of security incidents (reported by L1 & L2 Analyst)...


  • Reston, United States Eviden Full time

    Security Analyst - MDR (SOC)Experience Range: 2-3 years of relevant experience in cyber security.Required Qualifications:Strong analytical and technical skills in computer network defense operationsIncident response Handling (Detection, Analysis, Triage, Recommendations)Performing advance investigation of security incidents (reported by L1 & L2 Analyst)...


  • Reston, United States SeKON Full time

    SeKON is seeking an experienced and highly skilled Senior Information Security Analyst to join our Information Security team. In this role, you will lead the planning, implementation, and monitoring of security measures to protect the organization's computer networks and sensitive information. You will ensure appropriate security controls are in place to...


  • Reston, United States Decision Point Full time

    Senior Information Security AnalystID 2024-2517Job LocationsUSCategory Information TechnologyType Regular Full-TimeOverviewDecisionPoint Corp is seeking a Senior Information Security Analyst to become a key team member in the IPv4 Transition to IPv6 project for U.S. Citizenship and Immigration Services (USCIS). This initiative will design and implement a...


  • Reston, United States SeKON Full time

    SeKON is seeking a detail-oriented and motivated Junior Information Security Analyst to join our team. In this role, you will assist in planning, implementing, upgrading, and monitoring security measures to protect computer networks and sensitive information. You will play a critical role in ensuring appropriate security controls are in place to safeguard...


  • Reston, United States Evolver Full time

    Evolver Federal is looking for a SOC - Security Operations Analyst, to join our team on a large Security Operations program with our Federal client located in Washington, DC. Responsibilities Serving as the Initial Escalation Point for all Investigations/Incidents Requiring Remediation and/or Coordination Continuous Monitoring of the Alert Queue Responding...


  • Reston, VA, United States Eviden Full time

    Security Analyst - MDR (SOC)Experience Range: 2-3 years of relevant experience in cyber security.Required Qualifications:Strong analytical and technical skills in computer network defense operationsIncident response Handling (Detection, Analysis, Triage, Recommendations)Performing advance investigation of security incidents (reported by L1 & L2 Analyst)...


  • Reston, United States Sparks Group Full time

    Job Description We are seeking a highly skilled and experienced Threat Analyst to join our team. The ideal candidate will possess a strong background in counterintelligence, counterterrorism, and insider threat analysis. This role requires a keen ability to analyze complex data sets, identify patterns, and assess potential threats to the organization. There...


  • Reston, Virginia, United States Oracle Full time

    Job SummaryOracle is seeking a seasoned security analyst to join our SaaS Cloud Security team. As an Incident Response Security Specialist, you will play a key role in securing our large-scale distributed SaaS environment.Key ResponsibilitiesPerform hands-on activities including network and log analysis, malware analysis, and threat hunting.Assist with the...


  • Reston, United States GuidePoint Security Full time

    GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation's top organizations, such as Fortune 500 companies and U.S. government agencies,...

  • Cyber Analyst

    3 weeks ago


    Reston, United States Celestar Full time

    Join Our Team as a Cyber Analyst at Celestar! Location: Reston, VA Job Type: Full-Time Clearance: TS/SCI with CI Poly Are you ready to dive into the exciting world of intelligence and national security? Celestar is on the lookout for a passionate Cyber Analyst to help us tackle the complexities of a Weapons of Mass Destruction (WMD) program. If you're eager...


  • Reston, United States Booz Allen Hamilton Full time

    Network Development All Source Analyst, SeniorThe Opportunity: Do you find yourself constantly looking for more and better information? Do you want a job where you can use your knowledge and research skills to improve national security? Never has the role of an all-source analyst been so meaningful. More connected devices, larger storage capacity, and faster...


  • Reston, United States Amentum Full time

    We provide warning and all-source analytical support to DIA’s Defense Combating Terrorism Office to drive DoD policy, planning, and operational decisions to counter regional and transnational terrorism threats. We conduct mission-critical counterterrorism analysis focused on operational and strategic effects against emerging terrorist threat networks and...

  • Intelligence Analyst

    6 months ago


    Reston, United States Commonwealth of Virginia Full time

    Department: Criminology, Law and Society - Center for Evidence-Based Crime Policy (CEBCP) Classification: Research Staff 12-month Job Category:  Research Staff Job Type:  Full-Time Work Schedule:  Full-time (1.0 FTE, 40 hrs/wk) Location: Reston, VA - W/B HIDTA Offices Workplace Type:  Hybrid Eligible Salary:  Salary commensurate with...

  • Senior Network Analyst

    2 months ago


    Reston, United States AT&T Full time

    Job Description:AT&T Global Public Sector is a trusted provider of secure, IP enabled, cloud-based, network solutions and professional services to theFederal Government. We are dedicated to recruiting, developing and empowering a diverse, high-performing workforce that is passionate about what they do, committed to our shared values and dedicated to our...


  • Reston, Virginia, United States Commonwealth of Virginia Full time

    Job Title: Intelligence AnalystJob Summary:The Commonwealth of Virginia is seeking an experienced Intelligence Analyst to join our team. As an Intelligence Analyst, you will be responsible for analyzing and disseminating intelligence related to crime and terrorism.Responsibilities:Analyzing and interpreting complex data to identify patterns and...

  • Cryptologic Analyst

    5 days ago


    Reston, United States Cymertek Full time

    Cryptologic AnalystKEY SUMMARYWe are seeking a highly analytical and detail-oriented Cryptologic Analyst to join our team and contribute to critical intelligence missions. In this role, you will analyze encrypted communications, identify patterns, and uncover actionable insights to support operational objectives. Collaborating with a team of experts, you...


  • Reston, United States Cymertek Full time

    System Security EngineerKEY SUMMARYWe are seeking a highly motivated and detail-oriented System Security Engineer to design, implement, and maintain security measures that protect our critical systems and data. In this role, you will work closely with cross-functional teams to identify vulnerabilities, develop robust security solutions, and ensure compliance...


  • Reston, United States Oracle Full time

    *US Citizenship with preference for TS/SCI and FSP Are you interested in securing a large-scale distributed SaaS environment? Oracle's SaaS Cloud Security team is building new technologies that operate at high scale in our broadly distributed multi-tenant cloud environment. The Detections and Response Team plays a key role in enabling Oracle's Security...


  • Reston, United States Cymertek Full time

    Information Systems Security Officer (ISSO)KEY SUMMARYWe are seeking a detail-oriented and proactive Information Systems Security Officer (ISSO) to support and maintain the security of our information systems. In this role, you will be responsible for ensuring systems operate in compliance with established security policies, procedures, and regulations. You...