Cyber Business Analyst

Everforth ECS

Arlington (VA)

Hybrid

USD 85,000 - 120,000

Full time

22 hours ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Everforth ECS seeks a Cyber Business Analyst in Arlington, VA (Hybrid) to bridge cybersecurity teams with business stakeholders. You will gather requirements, analyze security processes, and align business objectives with risk management goals.

Ideal candidates bring business analysis expertise, cybersecurity knowledge, and strong stakeholder management. You will collaborate with Security Operations, Risk, Compliance, IT, and Leadership to drive cybersecurity programs and projects.

Qualifications

  • Bachelor's degree in a related field.
  • Experience gathering and documenting business and technical requirements.
  • Knowledge of MITRE ATT&CK Framework is a plus.

Responsibilities

  • Bridge cybersecurity teams and business stakeholders to gather and translate requirements.
  • Support cybersecurity programs, governance, risk management, and compliance initiatives.
  • Create BRDs, MITRE ATT&CK traceability artifacts, functional requirements, user stories, and use cases.
  • Monitor milestones, risks, issues, dependencies, and deliverables.

Skills

Stakeholder management
Business analysis
Requirements gathering
Cybersecurity concepts
Communication
translating technical concepts

Education

Bachelor's degree in Business Administration, Information Systems, Cybersecurity, Computer Science, or related field

Tools

Jira
Azure DevOps
ServiceNow

Job description

Everforth ECS is seeking a Cyber Business Analystto join our team in Arlington, VA (Hybrid). This position is contingent upon award.

We are seeking a detail-oriented and strategic Cyber Business Analyst to serve as the bridge between cybersecurity teams and business stakeholders. This role is responsible for gathering requirements, analyzing cybersecurity processes, supporting security initiatives, and ensuring business objectives align with organizational security and risk management goals.

The ideal candidate will possess a blend of business analysis expertise, cybersecurity knowledge, stakeholder management skills, and experience translating technical requirements into business-focused solutions. This individual will work closely with Security Operations, Risk Management, Compliance, IT, and Business Leadership teams to drive cybersecurity programs and projects.

Key Responsibilities
Business Analysis & Requirements Gathering
  • Partner with cybersecurity, IT, and business stakeholders to identify, document, and prioritize business and security requirements.
  • Facilitate workshops, interviews, and stakeholder meetings to understand business needs and cybersecurity objectives.
  • Develop business requirements documents (BRDs), MITRE ATT&CK Framework traceability artifacts, functional requirements, user stories, process flows, and use cases.
  • Translate complex technical concepts into clear business language for non-technical audiences.
Cybersecurity Program Support
  • Support cybersecurity initiatives including security operations, governance, risk management, compliance, identity management, vulnerability management, and incident response.
  • Assist in the planning, execution, and tracking of cybersecurity projects and strategic initiatives.
  • Monitor program milestones, risks, issues, dependencies, and deliverables.
  • Ensure cybersecurity solutions align with business goals and regulatory requirements.
  • Support development of procedure-level TTP documentation – to include hunt and detection guidance.
Risk & Compliance Analysis
  • Assist in identifying, assessing, and documenting cybersecurity risks.
  • Support regulatory and compliance initiatives related to frameworks and standards such as:
  • NIST Cybersecurity Framework (CSF)
  • NIST 800-53
  • ISO 27001
  • SOC 2
  • PCI-DSS
  • HIPAA
  • GDPR
  • MITRE ATT&CK
  • Analyze business impacts associated with cybersecurity risks and control gaps.
  • Support audit preparation and remediation efforts.
Process Improvement
  • Evaluate existing cybersecurity processes and identify opportunities for optimization and automation.
  • Analyze security workflows and recommend improvements to increase operational efficiency.
  • Assist in developing governance processes, metrics, and reporting capabilities.
  • Create and maintain process documentation and standard operating procedures (SOPs).
Data Analysis & Reporting
  • Gather and analyze security-related metrics and key performance indicators (KPIs).
  • Develop dashboards, reports, and executive summaries for leadership review.
  • Track cybersecurity program performance and communicate progress to stakeholders.
  • Support risk reporting, compliance reporting, and operational metrics analysis.
Stakeholder Engagement
  • Act as a liaison between technical cybersecurity teams and business stakeholders.
  • Facilitate communication across project teams to ensure successful delivery of cybersecurity initiatives.
  • Support change management and user adoption efforts for new security processes and technologies.
  • Present findings, recommendations, and project updates to management and leadership.
  • Bachelor's degree in Business Administration, Information Systems, Cybersecurity, Computer Science, or a related field.
  • 3+ years of experience as a Business Analyst, Cybersecurity Analyst, IT Analyst, or related role.
  • Familiarity with MITRE ATT&CK Framework and experience developing ATT&CK traceability and/or mapping artifacts.
  • Understanding of cybersecurity concepts, risk management, and information security controls.
  • Experience gathering and documenting business and technical requirements.
  • Strong analytical, organizational, and problem-solving skills.
  • Experience creating process maps, workflows, business cases, and requirements documentation.
  • Excellent written, verbal, and presentation communication skills.
  • Ability to work effectively with both technical and non-technical stakeholders.
Desired Skills
  • Experience supporting cybersecurity, risk, compliance, governance, or IT security programs.
  • Familiarity with security technologies such as:
  • Experience working in regulated industries such as financial services, healthcare, government, or defense.
  • Knowledge of Agile, Scrum, Waterfall, or hybrid project methodologies.
  • Experience using Jira, Azure DevOps, ServiceNow, or similar platforms.

#EverforthECS1

ECSFederal LLCis an equal opportunity employer and does not discriminate or allow discrimination on thebasisany characteristic protected by law. All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, or localjurisdictionlaw.

EverforthECS is the federal segment of Everforth, a $4B global organization with over10,000 employees. Ournearly 3,500professionals deliver advanced technology solutions in data and AI, cybersecurity, and enterprise transformation, serving defense, intelligence, and federal civilian agencies.

Our work powers mission-critical outcomes, strengthens technology partnerships, and creates meaningful opportunities for our people. We are defined by a commitment to excellence in delivery, a culture of innovation, and an environment where talent can thrive and grow.

We value:

  • Attracting and developing top talent and high-performing teams
  • Fostering a culture that is engaging, accountable, and mission-driven

Meet the challenge. Make a difference withEverforthECS!

undefined

Our Company

Our Culture

Employer Privacy Policy

ECS Federal LLC is an equal opportunity employer and does not discriminate or allow discrimination on the basis any characteristic protected by law. All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, or local jurisdiction law.

Everforth ECS is the federal segment of Everforth , a $4B global organization with over 10,000 employees. Our nearly 3,500 professionals deliver advanced technology solutions in data and AI, cybersecurity, and enterprise transformation, serving defense, intelligence, and federal civilian agencies.

Our work powers mission-critical outcomes, strengthens technology partnerships, and creates meaningful opportunities for our people. We are defined by a commitment to excellence in delivery, a culture of innovation, and an environment where talent can thrive and grow.

Meet the challenge. Make a difference with Everforth ECS!

EEO is the Law

ADP Privacy Statement

Artificial Intelligence

Google Privacy Policy

Google Terms of Service

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Data Analyst
Data Analyst

Everforth ECS • Merrifield (VA)

On-site
USD 85,000 - 115,000
Senior Business Analyst
Senior Business Analyst

Everforth ECS • Washington

Hybrid
USD 110,000 - 170,000
Business Analyst / Project Manager
Business Analyst / Project Manager

Everforth ECS • Arlington (VA)

On-site
USD 90,000 - 120,000
Business Analyst
Business Analyst

ECS • Arlington (VA)

On-site
USD 120,000 - 140,000
Cyber Systems Analyst/Security Specialist
Cyber Systems Analyst/Security Specialist

Everforth ECS • Washington

On-site
USD 120,000 - 180,000
Technical Business Analyst
Technical Business Analyst

Socket.dev • Arlington (VA)

Hybrid
USD 120,000 - 140,000
Senior Solutions Architect
Senior Solutions Architect

Everforth ECS • Merrifield (VA)

On-site
USD 150,000 - 210,000
Technical Support Lead
Technical Support Lead

Everforth ECS • Washington

On-site
USD 140,000 - 190,000
Software Development Test Engineer
Software Development Test Engineer

Everforth ECS • Arlington (VA)

Hybrid
USD 110,000 - 150,000
Business Analyst / Project Manager
Business Analyst / Project Manager

ECS • Arlington (VA)

On-site
USD 135,000 - 140,000