Cyber Security Analyst

4 weeks ago


Annapolis, United States Tech Army, LLC Full time

Job Description:

Provide consulting services to perform a cybersecurity risk assessment of the current information security controls and practices at the client location, including a review of the vulnerability management program.

Minimum Qualifications:

The Offeror, either through its own performance, or the performance of the Key Personnel identified in this Small Procurement, must have five (5) years of experience performing cybersecurity risk assessments of similar size and scope

1.Offeror shall conduct a cybersecurity risk assessment as follows:

a. Measure the client’s implemented controls and practices against the National Institute of Standards and Technology (NIST) Cybersecurity Framework (CSF) control categories including:


(1) NIST CSF categorical controls and standards to assess organizational maturity.

i Govern, ii Identify, iii Detect, iv Protect, v Respond, and vi Recover.

(2) Use of Capability Maturity Model Integration (CMMI) rating definitions when scoring controls as follows: i 0 – Non-Existent, ii 1 – Performed, iii 2 – Managed, iv 3 – Defined, v 4 – Measured, and vi 5 – Optimized.

(3) Controls in NIST 800-53 and NIST 800-171.

(4) Review of NIST CSF assessment data from previous years to measure year-over-year performance.


b. Offeror shall use a combination of the following techniques/methodology to complete the assessment:

(1) Staff/personnel interviews,

(2) Questionnaires,

(3) Requests for documentation,

(4) Specific supporting evidence,

(5) Workbooks,

(6) Reports, and

(7) Other pertinent information relevant to the assessment.


c. If NIST assessment requirements or control frameworks are modified during the course of this cybersecurity assessment, the Offeror shall update the assessment to include any new/modified requirements or control frameworks. If the modifications require a modification to the level-of-effort by the Offeror, the AOC will work with the Successful Offeror on a mutually agreeable change order

2. Offeror shall conduct a review of the Vulnerability Management Program processes, procedures, and scanning platform including the following:

a. Vulnerability scans,

b. Frequency of the scans,

c. Procedures to identify and report on vulnerabilities, systems, and networks to be scanned,

d. The types of vulnerabilities to be assessed,

e. How the vulnerabilities are ranked,

f. Vulnerability exclusions, and

g. Access restrictions.


3. Offeror shall provide the requested services by utilizing one (1) or more than one (1) key personnel with demonstrated knowledge of and experience with conducting cybersecurity assessments against NIST Cybersecurity Frameworks of organizations of similar size and scope. The AOC prefers key personnel with the following skills, experience, and capabilities:

a. Demonstrated background and expert knowledge and experience in information security, risk management, security compliance and project management in a large-scale enterprise environment.

b. Ability to:

(1) Understand the Judiciary’s technical and business environment and have working knowledge of security standards, an in-depth knowledge of applicable laws and regulations as they relate to security, experience with business continuity, disaster recovery, auditing, risk management, and vulnerability assessments.

(2) Communicate effectively with all levels of Judiciary staff, management, and executive management both orally and in writing and effectively tailoring the communication to the needs and experience of the intended audience.

(3) Interface effectively with internal and external auditors. Excellent interpersonal skills. High degree of professionalism and personal integrity.

(4) Maintain high level of confidentiality.

(5) Work well under pressure and with a high degree of independence.

(6) Assess potential problems and make sound judgments around issues that may have an adverse effect on the Judiciary.

(7) Effectively set and manage priorities.

c. Critical thinking skills with strong attention to detail and follow up.

d. Leadership and management skills to include team building, collaboration, problem- solving, deductive reasoning and negotiation.

e. Self-motivated and directed.

f. Skilled in handling sensitive documentation, situations, and people.

g. Analytical, organized, and attention to detail.



  • Annapolis, United States NetSage Corporation Full time

    NetSage's mission is to help our customers achieve their missions by providing superior cyber services. We seek talented professionals who are interested in doing meaningful, mission-focused work for the US Federal Government. We are a growing Company that puts our employees first and offers excellent pay and world-class benefits. We do not hire contract by...


  • Annapolis, United States Fidelis Technologies Full time

    Come embark on an exciting adventure with a company that believes in the success of our people and invests in their growth. We are fast growing and lots of opportunity across a growing base of mission sets and contracts. Come be part of a family and team that makes a difference for tomorrow today! Desired Skills: The Level 3 Cyber Security Engineer (SE)...

  • Cyber Analyst III

    1 week ago


    Annapolis Junction, United States VMR Strategic Solutions, LLC Full time

    VMR Strategic Solutions is looking for a Cyber Analyst III to add to our team. The ideal person will be responsible developing POAM and monitors status for realization of the command’s strategic “Road Map.”. They will provide drafts guidance for implementation of OSD, USCYBERCOM and other high-level directives for cyberspace national strategy, policy...

  • Cyber Analyst III

    1 week ago


    Annapolis Junction, United States VMR Strategic Solutions, LLC Full time

    VMR Strategic Solutions is looking for a Cyber Analyst III to add to our team. The ideal person will be responsible developing POAM and monitors status for realization of the command’s strategic “Road Map.”. They will provide drafts guidance for implementation of OSD, USCYBERCOM and other high-level directives for cyberspace national strategy, policy...

  • Cyber Analyst III

    1 week ago


    Annapolis Junction, United States VMR Strategic Solutions, LLC Full time

    VMR Strategic Solutions is looking for a Cyber Analyst III to add to our team. The ideal person will be responsible developing POAM and monitors status for realization of the command’s strategic “Road Map.”. They will provide drafts guidance for implementation of OSD, USCYBERCOM and other high-level directives for cyberspace national strategy, policy...

  • Exploitation Analyst

    4 weeks ago


    Annapolis, United States (EDO) Entertainment Data Oracle, Inc. Full time

    Freedom Technology Solutions Group is seeking a skilled and detail-oriented Exploitation Analyst to join our team. As an Exploitation Analyst, you will be responsible for analyzing and interpreting data obtained from various sources to extract actionable intelligence. Your expertise in data analysis, pattern recognition, and critical thinking will play a...


  • Annapolis, United States ClearEdge IT Solutions Full time

    Join ClearEdge and be a part of the team of men and women that solve some of the DoD's most complex technical challenges. Every day, ClearEdge empowers customers in Government and industry with innovative data driven solutions. Check out our extremely competitive benefits package at clearedgeit.com/benefits which includes a 10k annual training/education...


  • Annapolis, United States ClearEdge IT Solutions Full time

    Join ClearEdge and be a part of the team of men and women that solve some of the DoD's most complex technical challenges. Every day, ClearEdge empowers customers in Government and industry with innovative data driven solutions. Check out our extremely competitive benefits package at clearedgeit.com/benefits which includes a 10k annual training/education...


  • Annapolis, United States NetSage Corporation Full time

    NetSage's mission is to help our customers achieve their missions by providing superior cyber services. We seek talented professionals who are interested in doing meaningful, mission-focused work for the US Federal Government. We are a growing Company that puts our employees first and offers excellent pay and world-class benefits. We do not hire contract by...


  • Annapolis, United States Fuse Engineering Full time

    Support the identification of vulnerabilities of and attacks against specific systems. Analyze attack techniques and develop countermeasures. Produce formal and informal reports, and briefings relating to system vulnerability analysis. The Vulnerability Analyst shall possess the following capabilities: Analyze existing architecture and recommend policies...


  • Annapolis, United States Fuse Engineering Full time

    Support the identification of vulnerabilities of and attacks against specific systems. Analyze attack techniques and develop countermeasures. Produce formal and informal reports, and briefings relating to system vulnerability analysis. The Vulnerability Analyst shall possess the following capabilities: Analyze existing architecture and recommend policies...


  • Annapolis, United States Computer Technologies Consultants Full time

    Computer Technologies Consultants (CTC) is seeking a Cyber Software Engineer to provide engineering and integration for data center services on a US Navy contract in Annapolis Junction, MD. With offices in Washington DC and San Diego, CA, CTC is a leading technology company providing lifecycle IT, data analytics, cloud managed hosting services, agile...


  • Annapolis, United States Computer Technologies Consultants Full time

    Computer Technologies Consultants (CTC) is seeking a Cyber Software Engineer to provide engineering and integration for data center services on a US Navy contract in Annapolis Junction, MD. With offices in Washington DC and San Diego, CA, CTC is a leading technology company providing lifecycle IT, data analytics, cloud managed hosting services, agile...


  • Annapolis, United States Computer Technologies Consultants Full time

    Computer Technologies Consultants (CTC) is seeking a Cyber Software Engineer to provide engineering and integration for data center services on a US Navy contract in Annapolis Junction, MD. With offices in Washington DC and San Diego, CA, CTC is a leading technology company providing lifecycle IT, data analytics, cloud managed hosting services, agile...


  • Annapolis, United States Huntington Ingalls Industries Full time

    Requisition Number: 18433 Required Travel: 0 - 10% Employment Type: Full Time/Salaried/Exempt Hours Per Week: 40.00 Security Clearance: TS/SCI with Poly Level of Experience: Mid Job Description Mission Technologies a division of HII - Cyber Electronic Warfare and Space (CEWS) provides full-spectrum cyber, EW and space capabilities that address today's...


  • Annapolis, United States NetSage Corporation Full time

    NetSage's mission is to help our customers achieve their missions by providing superior cyber services. We seek talented professionals who are interested in doing meaningful, mission-focused work for the US Federal Government. We are a growing Company that puts our employees first and offers excellent pay and world-class benefits. We do not hire contract by...


  • Annapolis, United States NetSage Corporation Full time

    NetSage's mission is to help our customers achieve their missions by providing superior cyber services. We seek talented professionals who are interested in doing meaningful, mission-focused work for the US Federal Government. We are a growing Company that puts our employees first and offers excellent pay and world-class benefits. We do not hire contract by...


  • Annapolis, United States NetSage Corporation Full time

    NetSage's mission is to help our customers achieve their missions by providing superior cyber services. We seek talented professionals who are interested in doing meaningful, mission-focused work for the US Federal Government. We are a growing Company that puts our employees first and offers excellent pay and world-class benefits. We do not hire contract by...


  • Annapolis, United States NetSage Corporation Full time

    NetSage's mission is to help our customers achieve their missions by providing superior cyber services. We seek talented professionals who are interested in doing meaningful, mission-focused work for the US Federal Government. We are a growing Company that puts our employees first and offers excellent pay and world-class benefits. We do not hire contract by...


  • Annapolis, United States CTC Full time

    Job DescriptionJob DescriptionComputer Technologies Consultants (CTC) is seeking a Cyber Software Engineer to provide engineering and integration for data center services on a US Navy contract in Annapolis Junction, MD.With offices in Washington DC and San Diego, CA, CTC is a leading technology company providing lifecycle IT, data analytics, cloud managed...