Cyber Risk Analyst (TS/SCI)

Beyond SOF

Reston (VA)

On-site

USD 95,000 - 140,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Health insurance

Job summary

Beyond SOF in Reston, VA is seeking a Cyber Risk Analyst (TS/SCI) to assess cyber risks for DoD/IC programs and translate findings into actionable mitigation plans for mission-critical networks.

You will collaborate with engineers and SMEs to develop SSPs, A&A artifacts, and POA&Ms, and present results via briefings and white papers, expanding expertise in RMF, NIST standards, and related security tools.

Qualifications

  • 5+ years of experience in a professional IT environment.
  • 3+ years of cybersecurity experience.
  • 3+ years of A&A experience supporting DoD/IC programs.
  • Experience with security hardening of Windows and Linux systems and related tools.
  • Familiarity with RMF, NIST, CNSSI, and A&A artifacts.

Responsibilities

  • Work with DoD programs to identify cyber risks and mitigation plans.
  • Gather technical details from engineers and SMEs to assess threats.
  • Develop and present plans of action through briefings and white papers.
  • Translate security concepts for clients to aid decision-making.
  • Contribute to security engineering, data science, and program documentation.

Skills

IT experience
Cybersecurity
A&A experience
Risk assessment
Communicating risk

Education

IAT Level II Certification
Security+ Certification

Tools

ACAS
SCAP
STIG/SRGs
SCC
eMASS/Xacta
ESS
Prisma Cloud
Kubernetes
Rancher
Docker

Job description

Cyber Risk Analyst (TS/SCI)

Reston, VA, USA / Full-time / Clearance: Top Secret/SCI

Job Description Summary: Warnings about cyber threats are everywhere and the constantly evolving nature of these threats can make understanding them seem overwhelming to the DoD and the IC. In all of this “cyber noise,” how can these organizations understand their risks and how to mitigate them? The answer is you. Build your knowledge as an information security risk specialist who knows how to break down complex threats into manageable plans of action.

As a Cyber-Risk Analyst on our team, you’ll use your experience to work with DoD programs to discover their cyber risks, understand policies, and develop a mitigation plan. You’ll get technical, environmental, and personnel details from engineers and SMEs to assess the entire threat landscape. Then, you’ll help your team guide your client through a plan of action with presentations, white papers, and milestones. You’ll work on translating security concepts for your client so they can make the best decisions to secure their mission critical networks and systems. This is your opportunity to act as an information security subject matter expert while broadening your skills in cybersecurity, security and network tools, systems engineering, and data science.

Qualifications
  • 5+ years of experience working in a professional IT environment
  • 3+ years of experience with cybersecurity
  • 3+ years of experience with Assessment and Authorization (A&A) in support of DoD and IC programs, including package development, artifact generation, and authority to operate (ATO)
  • Experience with security hardening of Windows and Linux operating systems and security tools, such as ACAS, SCAP, STIG/SRGs, SCC, eMASS/Xacta, ESS, Prisma Cloud, Kubernetes, Rancher, and Docker
  • Experience generating and maintaining System Security Plans (SSP), Implementation Plans, Privacy Impact Assessments, Security Assessment Plans (SAP), Risk Assessments, Plan of Action and Milestones (POA&M), and other A&A documentation
  • Knowledge of Risk Management Framework (RMF) and the A&A activities needed to obtain and maintain an ATO, including National Institute of Standards and Technology (NIST) and Committee on National Security Systems Instruction (CNSSI), including NIST SP 800-60, NIST SP 800-53, and CNSSI 1253
  • IAT Level II Certification, including a Security+ Certification

Desired Qualifications:

  • Experience with DoD or IC cybersecurity projects or programs
  • Experience with DevSecOps, Path-to-Production, and CI/CD
  • Experience with Cloud Authorization and Cloud Migration
  • Experience with administering Red Hat Enterprise Linux or Windows Server 2012 or higher
  • Ability to provide subject matter expertise to system engineering documents, including technical requirements documents, interface control documents, and system specifications
  • Ability to analyze and communicate complex technical challenges to both technical and non-technical clients and stakeholders
  • Ability to communicate and integrate between multiple customer stakeholders
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity Risk & Exposure Analyst III
Cybersecurity Risk & Exposure Analyst III

Invictus International Consulting, LLC. • Alexandria (VA)

On-site
USD 150,000 - 190,000
Cybersecurity Risk & Exposure Analyst III
Cybersecurity Risk & Exposure Analyst III

invictusic • Alexandria (VA)

On-site
USD 120,000 - 170,000
Senior Cyber Analyst Reston, VA
Senior Cyber Analyst Reston, VA

Kaizen Lab Inc. • Reston (VA)

On-site
USD 100,000 - 130,000
Cybersecurity Risk & Exposure Analyst III
Cybersecurity Risk & Exposure Analyst III

Invictus International • Colorado Springs (CO)

On-site
USD 95,000 - 125,000
Cybersecurity Risk & Exposure Subject Matter Expert IV
Cybersecurity Risk & Exposure Subject Matter Expert IV

invictusic • Alexandria (VA)

On-site
USD 130,000 - 190,000
Top Secret/SCI Cyber Risk Analyst - DoD & IC Impact
Top Secret/SCI Cyber Risk Analyst - DoD & IC Impact

Beyond SOF • Reston (VA)

On-site
USD 95,000 - 140,000
Health insurance
Cyber Risk Analyst SME
Cyber Risk Analyst SME

Technomics, Inc. • Arlington (VA)

On-site
USD 100,000 - 130,000
Cybersecurity Risk & Exposure Analyst III
Cybersecurity Risk & Exposure Analyst III

Invictus International • Alexandria (VA)

On-site
USD 120,000 - 180,000
Information Security Analyst
Information Security Analyst

Caliber Systems Inc. • Washington, Northern (KY)

On-site
USD 89,000 - 110,000
Cybersecurity Risk & Exposure Analyst III
Cybersecurity Risk & Exposure Analyst III

Invictus International Consulting, LLC • Alexandria (VA)

On-site
USD 140,000 - 190,000