Cybersecurity Analyst - Contingent

Contracting Resources Group

Fort Lee (VA)

On-site

USD 90,000 - 130,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

401(k) plan
Medical Insurance
Dental Insurance
Vision Insurance
Paid Time Off (PTO)
Federal Holidays

Job summary

CRG is seeking two Cybersecurity Analysts to serve as technical SMEs supporting the cybersecurity evaluation of product submissions to the DCMA Blue List Program. This role focuses on policy and technical assessment rather than platform security, requiring interpretation of testing, vulnerability data, and firmware analyses to produce clear risk recommendations for Government decision-makers.

Responsibilities include advising on requirements and standards, reviewing assessment evidence,

Qualifications

  • Bachelor's degree in Cybersecurity, CS, or related technical discipline.
  • Active DoD 8570 IAM or IAT Level II/III certification.
  • U.S. citizen with a Tier 3 (ADP/IT-II) background investigation on file in DISS.

Responsibilities

  • Serve as SME supporting cybersecurity evaluation of product submissions.
  • Review cybersecurity assessment reports and evidence for completeness and sufficiency.
  • Provide technical recommendations on findings, risk mitigation, and technical acceptance.
  • Identify cybersecurity vulnerabilities, threats, and residual risks affecting DoW missions.

Skills

Cybersecurity concepts
Risk assessment
Vulnerability analysis
Embedded systems expertise
Penetration testing interpretation

Education

Bachelor's degree in Cybersecurity, CS, or related field
DoD 8570/8140 IAM or IAT Level II/III certification

Job description

CRG is seeking two Cybersecurity Analysts to serve as technical subject matter experts (SMEs) supporting the cybersecurity evaluation of product submissions to the DCMA Blue List Program. This is a distinct role from the IT Cybersecurity Specialist position — the Cybersecurity Analyst is a policy and technical assessment function, not a ServiceNow platform security role.

Analysts provide advisory support on cybersecurity requirements, technical standards, and assessment methodologies applicable to Blue List technologies, evaluating submitted assessments for embedded systems, firmware, wireless communications, supply chain security, and related component-level risks.

The ideal candidate will have experience interpreting penetration testing results, vulnerability assessments, and firmware analyses, and translating them into clear technical risk recommendations for Government decision-makers.

Responsibilities:
Technical Assessment & SME Support
  • Serve as technical subject matter experts (SMEs) supporting the cybersecurity evaluation of product submissions
  • Provide technical expertise and advisory support to the Government Blue List Program regarding cybersecurity requirements, technical standards, risk management, and assessment methodologies applicable to Blue List technologies
  • Possess demonstrated knowledge of cybersecurity principles applicable to embedded systems, software, firmware, wireless communications, networking, encryption, authentication, supply chain security, and other technologies relevant to the Blue List Program
  • Possess experience interpreting cybersecurity assessment methodologies, penetration testing results, vulnerability assessments, software assurance evaluations, and firmware analyses sufficient to evaluate cybersecurity risks associated with Blue List candidate technologies
Assessment Review & Validation
  • Review cybersecurity assessment reports, supporting technical documentation, and assessment evidence to evaluate the completeness, technical sufficiency, and adequacy of assessments in support of Government technical acceptance decisions
  • Provide technical recommendations regarding cybersecurity findings, risk mitigation strategies, assessment requirements, technical acceptance, and the applicability of cybersecurity requirements to Blue List candidate technologies
  • Verify and validate whether a company's submitted remediation plan would sufficiently mitigate any cyber vulnerabilities identified in provided assessments
Risk Identification & Advisory
  • Identify cybersecurity vulnerabilities, threats, attack vectors, and residual risks that may adversely affect DoW missions, warfighter safety, national security, operational resilience, or the confidentiality, integrity, and availability of Government information and systems
  • Maintain awareness of applicable Federal statutes, DoW policies, NDAA requirements, cybersecurity frameworks, industry best practices, and Government processes relevant to the Blue List Program
  • Provide technical consultation and advisory support to Government personnel and stakeholders regarding cybersecurity matters affecting Blue List technologies, assessments, policy implementation, and program execution
  • Monitor emerging cybersecurity threats, vulnerabilities, technologies, and policy developments affecting small unmanned systems and provide recommendations to support the continued evolution of the Blue List Program
Required Qualifications:
  • Bachelor's degree required in Cybersecurity, Computer Science, Computer Engineering, or a related technical discipline
  • Active certification required: DoW 8570/8140 IAM or IAT Level II or III (e.g., CISSP, CISM, or CompTIA Security+)
  • Must be a U.S. citizen with a favorably adjudicated Tier 3 (ADP/IT-II) investigation on file in DISS at the time of offer
Desired Qualifications:

Minimum of five (5) years of practical experience

Benefits

Full-time employees are eligible for 401(k) and Roth retirement plans, Medical, Dental, and Vision Insurance (for employees and families), Supplemental Insurance, 11 Federal Holidays, and at least three weeks of Paid Time Off (PTO), including sick and personal leave.

CRG is an equal opportunity employer. We make employment decisions based on merit, qualifications, and business need. All qualified applicants receive consideration for employment without regard to race, color, religion, sex, national origin, age, disability, status as a protected veteran, or any other state or federally protected category.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Analyst - Contingent
Cybersecurity Analyst - Contingent

Contracting Resources Group • San Diego (CA)

On-site
USD 110,000 - 150,000
401(k) and Roth retirement plans
Medical, Dental, and Vision Insurance
Supplemental Insurance
+2
IT Cybersecurity Specialist - Contingent
IT Cybersecurity Specialist - Contingent

Contracting Resources Group, Inc. • San Diego (CA)

Hybrid
USD 120,000 - 180,000
401(k) plan
Medical Insurance
Dental Insurance
+1
IT Cybersecurity Specialist - Contingent
IT Cybersecurity Specialist - Contingent

Contracting Resources Group • Fort Lee (VA)

On-site
USD 110,000 - 150,000
401(k) and Roth retirement plans
Medical, Dental, and Vision Insurance
Supplemental Insurance
+2
IT Cybersecurity Specialist - Contingent
IT Cybersecurity Specialist - Contingent

Contracting Resources Group, Inc. • Fort Lee (NJ)

Hybrid
USD 120,000 - 170,000
401(k)
Roth retirement plan
Medical, Dental, Vision Insurance
+1
IT Cybersecurity Specialist - Contingent
IT Cybersecurity Specialist - Contingent

Contracting Resources Group • San Diego (CA)

On-site
USD 150,000 - 190,000
401(k) plan
Roth retirement
Medical, Dental & Vision insurance
+3
Cybersecurity Analyst: Embedded Systems & Risk (Blue List)
Cybersecurity Analyst: Embedded Systems & Risk (Blue List)

Contracting Resources Group • San Diego (CA)

On-site
USD 110,000 - 150,000
401(k) and Roth retirement plans
Medical, Dental, and Vision Insurance
Supplemental Insurance
+2
Cybersecurity Analyst- Fort Lee, VA
Cybersecurity Analyst- Fort Lee, VA

Sawdey Solution Services • Fort Lee (VA)

Hybrid
USD 90,000 - 130,000
Cybersecurity Analyst- Fort Lee, VA (Hybrid)
Cybersecurity Analyst- Fort Lee, VA (Hybrid)

Sawdey Solution Services • Fort Lee (NJ)

Hybrid
USD 90,000 - 120,000
Hybrid work model
Cybersecurity Analyst- San Diego, CA with Security Clearance
Cybersecurity Analyst- San Diego, CA with Security Clearance

Sawdey Solution Services • San Diego (CA)

On-site
USD 110,000 - 145,000
IT Cybersecurity Specialist
IT Cybersecurity Specialist

Socket.dev • San Diego (CA)

On-site
USD 110,000 - 180,000
PTO
Health plans
401(k) plan