Cyber Security Analyst

Metropolitan Washington Airports Authority

Arlington (VA)

On-site

USD 90,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical, dental, vision benefits
Retirement plans
Training & development

Job summary

Metropolitan Washington Airports Authority in Arlington, Virginia is seeking a Cybersecurity Analyst to implement and maintain information security systems within the Information Security Program. You will protect MWAA data, networks, and systems by deploying security measures, managing SIEM, and coordinating incident response.

You will conduct audits, support compliance, train staff, document procedures, and work with IT teams to reduce threats and improve security posture through proactive

Qualifications

  • Four years of progressively responsible experience in cybersecurity or Information Security.
  • Knowledge of cyber threat landscape and proficiency in managing vulnerabilities to protect organizational systems and data.
  • Experience with SIEM, EDR/XDR, vulnerability management, endpoint protection, IAM, and network security technologies.
  • Knowledge of NIST CSF, NIST 800-53, CIS Controls, MITRE ATT&CK, and incident response processes.

Responsibilities

  • Monitor confidentiality, integrity, and availability of information assets; ensure compliance with MWAA policies and standards.
  • Lead or participate in security audits and assessments; collaborate with IT teams to remediate findings.
  • Manage and monitor SIEM, EDR/XDR, and other security monitoring platforms; coordinate remediation.
  • Conduct vulnerability assessments, analyze findings, and coordinate with system owners for remediation.
  • Perform security reviews and risk assessments for systems and applications; report to management.

Skills

SIEM
EDR/XDR
Vulnerability management
Identity and access management
Network security
Incident response
Penetration testing

Education

Bachelor's Degree in Cybersecurity / IT / Information Security

Tools

SIEM platform
EDR/XDR tools
Vulnerability scanners
IAM tools

Job description

As a Cybersecurity Analyst, you will implement and maintain information technology security systems in support of the Airports Authority’s Information Security Program. You will be responsible for protecting the Authority's data, networks, and systems by implementing security measures, managing the Security Information and Event Management (SIEM) system responding to security alerts, conducting audits, ensuring compliance, addressing security issues, maintaining cybersecurity processes, providing training, documenting procedures, advising management, and leading incident response efforts. You will assist in reducing the attack surface by using appropriate technologies and processes to prevent, detect, and manage cyber threats; identify, monitor, assess, and counter cyber threats to our information systems and assist in implementing, and maintaining information technology security systems and procedures.

Serves in the Information Security Department of the Office of Technology located at the Headquarters Office Building.

GENERAL RESPONSIBILITIES

Monitors, tests, and reports on the confidentiality, integrity, and availability of information assets in compliance with MWAA’s information security policies and industry standards.

Ensures adherence to security and compliance standards, and participates in regular security audits and assessments.

Works closely with the Network Operations and Service Desk teams to address and resolve information security issues.

Provides expertise and support to various IT teams on deploying and configuring security appliances and systems.

Manages and monitors SIEM, Endpoint Detection and Response (EDR/XDR), and other enterprise security monitoring platforms to detect, analyze, and respond to cybersecurity events. Conducts vulnerability assessments and security scans; analyzes findings; and coordinates remediation activities with system owners and technical teams.

Analyzes and responds to security alerts, escalating high-risk events to the appropriate technology team for resolution.

Performs technical security reviews and cybersecurity risk assessments for systems, applications, and technology implementations.

Identifies, logs, blocks, and reports malicious activities within the Airports Authority networks and systems.

Implements and maintains cybersecurity processes and procedures to ensure threats are effectively managed and mitigated.

Monitors external third-party threat intelligence feeds and updates cybersecurity tools accordingly.

Informs and advises appropriate operations teams of threats to software, hardware, and operating systems.

Documents cybersecurity processes and procedures, ensuring clarity and consistency.

Conducts training sessions and creates user documentation to enhance awareness and adoption of cybersecurity best practices.

Works collaboratively with cyber and technical teams and business functions to promote a culture of security awareness.

Appropriately informs and advises management on security incidents and prevention strategies.

Monitors, tests, and reports user computing activities, such as failed logins and account lockouts, and reviews internal network and remote user access to ensure access management processes are working as designed.

Participates in penetration testing and Red Team, Blue Team, and Purple Team exercises and assists with validating remediation of identified findings.Participates as a core member of the incident response team, leading efforts to mitigate and resolve security incidents. Keeps abreast of security industry developments and best practices to identify and address emerging threats to protect organizational assets proactively.

Leads initiatives to improve the Airports Authority's cybersecurity posture, proposing innovative solutions to enhance overall security capabilities.

Supports business continuity and disaster recovery planning, testing, and recovery activities related to cybersecurity.

Performs other duties as assigned.

QUALIFICATIONS

Four years of progressively responsible experience in cybersecurity or Information Security. An equivalent combination of education and experience may be considered.

Knowledge of the cyber threat landscape and proficiency in managing vulnerabilities to protect organizational systems and data.

Experience with Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR/XDR), vulnerability management, endpoint protection, identity and access management, and network security technologies.

Knowledge of NIST CSF, NIST 800-53, CIS Controls, MITRE ATT&CK, and incident response processes.

Exceptional problem-solving abilities with strong research and analytical skills to identify, assess, and address complex security challenges.

Ability to use IT system detection tools and/or penetration testing tools to safeguard IT data and systems.

Ability to implement, configure, and monitor information security devices to protect organizational systems and networks from security incidents.

Strong sense of ownership and motivation, with a drive to manage tasks from initiation to completion, ensuring high-quality outcomes.

Ability to perform general analyses of data and information and make recommendations.

Strong written and verbal communication skills with the ability to effectively communicate security information to both technical and non-technical stakeholders.

Proven ability to work collaboratively with cross-functional teams, including IT, network operations, and business units, to enhance overall security posture.

PREFERRED QUALIFICATIONS

Certifications such as Security+, CySA+, GSEC, GCIH, CISSP, or CISM.

EDUCATION

Bachelor’s Degree in Cybersecurity, Information Technology, or Information Security, or a related field.

CERTIFICATIONS AND LICENSES REQUIRED

CompTIA Cybersecurity Analyst (CySA+) certification within one year of hire, placement, or promotion in the job.

NECESSARY SPECIAL FACTORS

Work is typically reviewed in progress and upon completion for quantity, quality, timeliness, teamwork, customer service, and other factors.

WHAT WE OFFER

A career with the Airports Authority comes with more than just a paycheck; it offers a comprehensive benefits package designed to support you and your family’s health, financial security, and professional growth. Benefits include medical, dental, and vision coverage; well-being resources; health savings and flexible spending accounts; pension and retirement plans; and ongoing training and development opportunities. Discover more about our benefits package here.

A background security investigation will be required for all new hires.

Metropolitan Washington Airports Authority is an Equal Opportunity Employer.| Follow us on Twitter @MWAAcareers.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Compliance Analyst (2 Positions Available)
Cybersecurity Compliance Analyst (2 Positions Available)

Metropolitan Washington Airports Authority • Arlington (VA)

On-site
USD 95,000 - 137,000
Cybersecurity Compliance Analyst (2 Positions Available)
Cybersecurity Compliance Analyst (2 Positions Available)

mwaa • United States

On-site
USD 95,000 - 137,000
Cybersecurity Compliance Analyst (2 Positions Available)
Cybersecurity Compliance Analyst (2 Positions Available)

Metropolitan Washington Airports Authority • Virginia

On-site
USD 95,000 - 137,000
Health benefits
Dental and vision coverage
Pension plan
Cybersecurity Compliance Manager
Cybersecurity Compliance Manager

Metropolitan Washington Airports Authority • Arlington (VA)

On-site
USD 119,000 - 173,000
Cybersecurity Compliance Manager
Cybersecurity Compliance Manager

Metropolitan Washington Airports Authority • Virginia

On-site
USD 119,000 - 173,000
Medical, dental, and vision coverage
Health savings account (HSA)
Flexible spending accounts (FSA)
+2
Cybersecurity Compliance Manager
Cybersecurity Compliance Manager

mwaa • United States

On-site
USD 119,000 - 173,000
Comprehensive benefits package
Ongoing training and development
Cybersecurity Compliance & Risk Analyst
Cybersecurity Compliance & Risk Analyst

Metropolitan Washington Airports Authority • Arlington (VA)

On-site
USD 95,000 - 137,000
Cybersecurity Analyst: SIEM & Incident Response
Cybersecurity Analyst: SIEM & Incident Response

Metropolitan Washington Airports Authority • Arlington (VA)

On-site
USD 90,000 - 130,000
Medical, dental, vision benefits
Retirement plans
Training & development
Cybersecurity Compliance & Risk Analyst
Cybersecurity Compliance & Risk Analyst

Metropolitan Washington Airports Authority • Virginia

On-site
USD 95,000 - 137,000
Health benefits
Dental and vision coverage
Pension plan
Senior Cyber Security Analyst
Senior Cyber Security Analyst

Ampcus Inc • Washington

On-site
USD 90,000 - 120,000