Security Analyst
4 months ago
- Perform PCI, SOC2, ISO, and applicable State of Florida cybersecurity controls-related reviews to ensure that current, new, and technology infrastructure complies with these standards and Department's security policies.
- Plan and perform IT security controls effectiveness. Manage remediation efforts for the identified gaps including assessment of new or enhanced implemented controls.
- Maintain IT security risk and compliance matrix and performs management reporting. This will include IT systems controls, and business process risks to meet compliance requirements. Provide risk mitigation strategies
- Maintain Third Party Risk Management Program (TPRM) and analyze SOC-2 and other reporting including mapping to key IT security and compliance controls such as NIST, PCI, and COBIT.
- Manage IT security vulnerabilities management program aligned with PCI and NIST standards.
- Identifying and ranking the value, sensitivity, and criticality of the operations and assets that could be affected should a threat materialize in order to determine which operations and assets are the most important.
- For the most critical and sensitive assets and operations, estimating the potential losses or damage that could occur if a threat materializes, including recovery costs.
- Identifying cost-effective actions to mitigate and reduce risk. These actions can include implementing new organizational policies and procedures as well as the design of technical or physical controls.
- Coordinating, tracking, and verifying remediation of audit findings.
- Documenting the results and developing a plan of action and milestones for mitigating any identified risk.
- Produce formal audit reports based on ISACA Audit Standards.
- Promotes compliance with regulatory requirements (e.g. PCI DSS) and IT best practices.
- 7-10 years of IT Audit experience (CISA certified preferred)
- 3 years of IT Risk Management lifecycle experience
- 3 years of hands-on technical experience (e.g. developer, system administrator)
- Experience working with NIST 800-30 Risk Assessment Standard
- Extensive experience with IT General Controls evaluation and design
- Advanced skill level in business process mapping and documentation as well as policy and procedure development
- Recent experience in Information Security with up-to-date knowledge of the current threat landscape.
- Solid understanding of PCI DSS standards
- Bachelor's Degree in Computer Science, Information Systems, Business Administration, or other related field and/or equivalent work experience.
- CISA and CISSP certifications (preferred).
-
Security Operations Center Analyst
4 weeks ago
Reston, United States Eviden Full timeSecurity Analyst - MDR (SOC)Experience Range: 2-3 years of relevant experience in cyber security.Required Qualifications:Strong analytical and technical skills in computer network defense operationsIncident response Handling (Detection, Analysis, Triage, Recommendations)Performing advance investigation of security incidents (reported by L1 & L2 Analyst)...
-
Security Operations Center Analyst
23 hours ago
Reston, United States Eviden Full timeSecurity Analyst - MDR (SOC)Experience Range: 2-3 years of relevant experience in cyber security.Required Qualifications:Strong analytical and technical skills in computer network defense operationsIncident response Handling (Detection, Analysis, Triage, Recommendations)Performing advance investigation of security incidents (reported by L1 & L2 Analyst)...
-
Senior Information Security Analyst
1 week ago
Reston, United States SeKON Full timeSeKON is seeking an experienced and highly skilled Senior Information Security Analyst to join our Information Security team. In this role, you will lead the planning, implementation, and monitoring of security measures to protect the organization's computer networks and sensitive information. You will ensure appropriate security controls are in place to...
-
Senior Information Security Analyst
4 weeks ago
Reston, United States Decision Point Full timeSenior Information Security AnalystID 2024-2517Job LocationsUSCategory Information TechnologyType Regular Full-TimeOverviewDecisionPoint Corp is seeking a Senior Information Security Analyst to become a key team member in the IPv4 Transition to IPv6 project for U.S. Citizenship and Immigration Services (USCIS). This initiative will design and implement a...
-
Junior Information Security Analyst
1 week ago
Reston, United States SeKON Full timeSeKON is seeking a detail-oriented and motivated Junior Information Security Analyst to join our team. In this role, you will assist in planning, implementing, upgrading, and monitoring security measures to protect computer networks and sensitive information. You will play a critical role in ensuring appropriate security controls are in place to safeguard...
-
SOC - Security Operations Analyst
1 day ago
Reston, United States Evolver Full timeEvolver Federal is looking for a SOC - Security Operations Analyst, to join our team on a large Security Operations program with our Federal client located in Washington, DC. Responsibilities Serving as the Initial Escalation Point for all Investigations/Incidents Requiring Remediation and/or Coordination Continuous Monitoring of the Alert Queue Responding...
-
Security Operations Center Analyst
3 weeks ago
Reston, VA, United States Eviden Full timeSecurity Analyst - MDR (SOC)Experience Range: 2-3 years of relevant experience in cyber security.Required Qualifications:Strong analytical and technical skills in computer network defense operationsIncident response Handling (Detection, Analysis, Triage, Recommendations)Performing advance investigation of security incidents (reported by L1 & L2 Analyst)...
-
Reston, United States Sparks Group Full timeJob Description We are seeking a highly skilled and experienced Threat Analyst to join our team. The ideal candidate will possess a strong background in counterintelligence, counterterrorism, and insider threat analysis. This role requires a keen ability to analyze complex data sets, identify patterns, and assess potential threats to the organization. There...
-
Incident Response Security Specialist
1 month ago
Reston, Virginia, United States Oracle Full timeJob SummaryOracle is seeking a seasoned security analyst to join our SaaS Cloud Security team. As an Incident Response Security Specialist, you will play a key role in securing our large-scale distributed SaaS environment.Key ResponsibilitiesPerform hands-on activities including network and log analysis, malware analysis, and threat hunting.Assist with the...
-
Splunk SOAR Engineer, TS/SCI CI Poly
2 weeks ago
Reston, United States GuidePoint Security Full timeGuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation's top organizations, such as Fortune 500 companies and U.S. government agencies,...
-
Cyber Analyst
3 weeks ago
Reston, United States Celestar Full timeJoin Our Team as a Cyber Analyst at Celestar! Location: Reston, VA Job Type: Full-Time Clearance: TS/SCI with CI Poly Are you ready to dive into the exciting world of intelligence and national security? Celestar is on the lookout for a passionate Cyber Analyst to help us tackle the complexities of a Weapons of Mass Destruction (WMD) program. If you're eager...
-
Network Development All Source Analyst, Senior
2 months ago
Reston, United States Booz Allen Hamilton Full timeNetwork Development All Source Analyst, SeniorThe Opportunity: Do you find yourself constantly looking for more and better information? Do you want a job where you can use your knowledge and research skills to improve national security? Never has the role of an all-source analyst been so meaningful. More connected devices, larger storage capacity, and faster...
-
Watchlisting Analyst, MID
2 months ago
Reston, United States Amentum Full timeWe provide warning and all-source analytical support to DIA’s Defense Combating Terrorism Office to drive DoD policy, planning, and operational decisions to counter regional and transnational terrorism threats. We conduct mission-critical counterterrorism analysis focused on operational and strategic effects against emerging terrorist threat networks and...
-
Intelligence Analyst
6 months ago
Reston, United States Commonwealth of Virginia Full timeDepartment: Criminology, Law and Society - Center for Evidence-Based Crime Policy (CEBCP) Classification: Research Staff 12-month Job Category: Research Staff Job Type: Full-Time Work Schedule: Full-time (1.0 FTE, 40 hrs/wk) Location: Reston, VA - W/B HIDTA Offices Workplace Type: Hybrid Eligible Salary: Salary commensurate with...
-
Senior Network Analyst
2 months ago
Reston, United States AT&T Full timeJob Description:AT&T Global Public Sector is a trusted provider of secure, IP enabled, cloud-based, network solutions and professional services to theFederal Government. We are dedicated to recruiting, developing and empowering a diverse, high-performing workforce that is passionate about what they do, committed to our shared values and dedicated to our...
-
Crime Analyst Professional
3 weeks ago
Reston, Virginia, United States Commonwealth of Virginia Full timeJob Title: Intelligence AnalystJob Summary:The Commonwealth of Virginia is seeking an experienced Intelligence Analyst to join our team. As an Intelligence Analyst, you will be responsible for analyzing and disseminating intelligence related to crime and terrorism.Responsibilities:Analyzing and interpreting complex data to identify patterns and...
-
Cryptologic Analyst
5 days ago
Reston, United States Cymertek Full timeCryptologic AnalystKEY SUMMARYWe are seeking a highly analytical and detail-oriented Cryptologic Analyst to join our team and contribute to critical intelligence missions. In this role, you will analyze encrypted communications, identify patterns, and uncover actionable insights to support operational objectives. Collaborating with a team of experts, you...
-
System Security Engineer
2 days ago
Reston, United States Cymertek Full timeSystem Security EngineerKEY SUMMARYWe are seeking a highly motivated and detail-oriented System Security Engineer to design, implement, and maintain security measures that protect our critical systems and data. In this role, you will work closely with cross-functional teams to identify vulnerabilities, develop robust security solutions, and ensure compliance...
-
Incident Response Analyst
6 months ago
Reston, United States Oracle Full time*US Citizenship with preference for TS/SCI and FSP Are you interested in securing a large-scale distributed SaaS environment? Oracle's SaaS Cloud Security team is building new technologies that operate at high scale in our broadly distributed multi-tenant cloud environment. The Detections and Response Team plays a key role in enabling Oracle's Security...
-
Information Systems Security Officer
5 days ago
Reston, United States Cymertek Full timeInformation Systems Security Officer (ISSO)KEY SUMMARYWe are seeking a detail-oriented and proactive Information Systems Security Officer (ISSO) to support and maintain the security of our information systems. In this role, you will be responsible for ensuring systems operate in compliance with established security policies, procedures, and regulations. You...