Senior Application Vulnerability Analyst

Athena Technology Group

Oklahoma

On-site

USD 90,000 - 130,000

Full time

4 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Performance bonuses
Health, dental, and vision insurance
Disability insurance
Life Insurance
401(k) plan with company match
Professional growth opportunities
Collaborative work environment

Job summary

Athena Technology Group is seeking a Senior Application Vulnerability Analyst to support DISA Cybersecurity operations. The role involves compliance monitoring, risk assessment, automation, and vulnerability management across DoD directives and DISA orders.

The successful candidate will coordinate with dispersed teams, analyze vulnerabilities, craft reports, and provide guidance for mitigating risks in application and web environments. US citizenship is required.

Qualifications

  • Bachelor's degree or higher.
  • 5+ years of professional experience with endpoint tools and cybersecurity.
  • 3+ years experience with Microsoft Products.
  • Current 8570/8140 Certificate with Network Environment focus and ESS certifications.
  • Strong communication, leadership, and organizational skills.
  • Must be a US citizen.
  • Experience working with teams in multiple locations across the United States.
  • Experience working with IT teams in various capacities.

Responsibilities

  • Serve as an application technical specialist for assets connected to isolated environments, NIPRNet and SIPRNet to support cybersecurity and IT services.
  • Review, identify, and report problems with the installation and operations of application instances to include system options, software used and not used, default security controls that are enabled, disabled, or bypassed, and system wide options or parameters that may create security vulnerabilities.
  • Determine the impact and risk of submitted change requests prior to implementation and participate in change advisory board (CAB) meetings to provide cyber oversight for database changes that affect the level of risk.
  • Recommend security countermeasures to mitigate identified application risks.
  • Identify, monitor, analyze, report, and brief status of vulnerabilities.
  • Ensure high risk and high severity vulnerabilities are managed with increased visibility and escalated.
  • Analyze, validate, monitor, and report compliance status of DoD and DISA directives and orders.
  • Create, maintain, and provide automated and customized vulnerability reports.
  • Analyze mission requirements and organizational feedback to improve vulnerability reports and processes.

Skills

Strong communication
Leadership
Team collaboration
Organizational skills
US citizenship

Education

Bachelor's degree or higher

Tools

Microsoft Products

Job description

Senior Application Vulnerability Analyst

Job Title: Senior Application Vulnerability Analyst

Employment Type: Full-Time

Shift: N/A

About the Company

Athena Technology Group, Inc. (ATG) is a Service-Disabled Veteran Owned Small Business (SDVOSB) focused on Information Technology and Communications consulting, system engineering, integration, deployment and operation of state of the art command and control and information systems that deliver critical network centric solution to the warfighter. With a proven track record of technical support to our customers, we are looking for innovative industry professionals to join our team.

ATG is an Equal Opportunity/Affirmative Action Employer Minorities/Females/Vets/Disability

Job Summary

We are seeking a Senior Application Vulnerability Analyst to join our team. In this role, you will provide Cybersecurity management support for the DISA Cybersecurity Division by supporting compliance monitoring/reporting, response and mitigation, automation and management services, compliance validation, configuration, change management and account management. This person will work as part of a disperse team requiring coordination, teamwork and must provide a proven ability to strategize and implement high-level program initiatives.

Key Responsibilities
  • Serve as an application technical specialist for assets connected to isolated environments, NIPRNet and SIPRNet to support cybersecurity and IT services.
  • Review, identify, and report problems with the installation and operations of application instances to include system options, software used and not used, default security controls that are enabled, disabled, or bypassed, and system wide options or parameters that may create security vulnerabilities.
  • Determine the impact and risk of submitted change requests prior to implementation and participate in change advisory board (CAB) meetings (up to daily) to provide cyber oversight for database changes that affect the level of risk.
  • Recommend security countermeasures to mitigate identified application risks.
  • Identify, monitor, analyze, report, and brief status of vulnerabilities.
  • Ensure high risk and high severity vulnerabilities are managed with increased visibility and escalated.
  • Analyze, validate, monitor, and report compliance status of DoD and DISA directives and orders.
  • Create, maintain, and provide automated and customized vulnerability reports.
  • Analyze mission requirements and organizational feedback to improve vulnerability reports and processes.
  • Provide recommendations for application vulnerability analysis, guidance, deficiency resolution, and implementation suggestions to DISA customers and Mission Partners.
  • Assess, audit, review, analyze, validate, and report database Security Requirements Guide (SRG) and STIG vulnerabilities, and ensure security controls are implemented within databases IAW DoD, DISA and cybersecurity policies and procedures.
  • Evaluate discrepancies as they relate to policy, orders, and database SRG and/or STIGs, and document recommended additions, deletions, or changes.
  • Identify and report the need to add technical guidance for modification of policies and orders.
  • Review and validate the installation and configuration of cyber tools on assets, and report deficiencies.
  • Review database SRG and/or STIGs as updates are released, and report changes with the potential to have significant impact.
  • Determine the impact and risk of submitted change requests prior to implementation and participate in meetings to provide cyber oversight for web changes that affect the level of risk.
  • Recommend security countermeasures to mitigate identified web risks.
  • Participate in audits and provide documentation (up to daily).
Qualifications
Required:
  • Bachelor's degree or higher
  • 5+ years of professional experience with endpoint tools and cybersecurity
  • 3+ Years experience with Microsoft Products
  • Current 8570/8140 Certificate with Network Environment focus and ESS certifications
  • Strong communication, leadership, and organizational skills
  • Must be a US citizen
  • Experience working with teams in multiple locations across the United States.
  • Experience working with IT teams in various capacities.
Physical and Environmental Conditions

Normal Office Environment. Requires Sitting, Standing, Near Acuity, Speaking with colleagues and customers, Listening, Sight, Use of hands/fingers.

Additional Benefits
  • Performance Bonuses and annual salary reviews
  • Health, dental, and vision insurance
  • Short Term Disability, Long Term Disability, and Life Insurance
  • 401(k) plan with company match
  • Opportunities for professional growth and development
  • A collaborative and inclusive work environment

ATG is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, religion, creed, color, national origin, ancestry, sex (including pregnancy, childbirth, breastfeeding, or medical conditions related to pregnancy, childbirth, or breastfeeding), age, medical condition, marital or domestic partner status, sexual orientation, gender, gender identity, gender expression and transgender status, mental disability or physical disability, genetic information, military or veteran status, citizenship, low-income status or any other status or characteristic protected by applicable law. Learn more about your rights under Federal EEO laws and supplemental language.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Windows Vulnerability Analyst
Senior Windows Vulnerability Analyst

Athena Technology Group • Mechanicsburg

On-site
USD 100,000 - 150,000
Performance bonuses and annual salary
Health, dental, and vision insurance
Short/Long-term disability and life保险
+3
Senior Endpoint Scanning Administrator
Senior Endpoint Scanning Administrator

Athena Technology Group • San Antonio (TX)

On-site
USD 110,000 - 150,000
Bonuses & reviews
Health, dental, and vision insurance
Disability & Life Insurance
+3
SME Endpoint Protection Administrator
SME Endpoint Protection Administrator

Athena Technology Group • Montgomery (AL)

On-site
USD 110,000 - 140,000
Health, dental, and vision insurance
401(k) plan with company match
Performance bonuses
+2
Cybersecurity Systems Analyst, Intermediate
Cybersecurity Systems Analyst, Intermediate

TJ Consulting Group • Fort Bragg (NC)

On-site
USD 70,000 - 85,000
PTO
401K with a 4% Match
Medical Insurance
+4
Cybersecurity Systems Analyst, Intermediate
Cybersecurity Systems Analyst, Intermediate

TJ Consulting Group • Fort Walton Beach (FL)

On-site
USD 90,000 - 120,000
PTO
Holiday Pay
401K with Match
+6
Senior Application Security & Vulnerability Lead
Senior Application Security & Vulnerability Lead

Athena Technology Group • Oklahoma

On-site
USD 90,000 - 130,000
Performance bonuses
Health, dental, and vision insurance
Disability insurance
+4
Cybersecurity Systems Analyst, Expert
Cybersecurity Systems Analyst, Expert

TJ Consulting Group • Smith (PA)

On-site
USD 145,000 - 150,000
PTO
Holiday Pay
401K
+6
Cybersecurity Systems Analyst (TS/SCI) - RMF/A&A Expert
Cybersecurity Systems Analyst (TS/SCI) - RMF/A&A Expert

TJ Consulting Group • Fort Bragg (NC)

On-site
USD 70,000 - 85,000
PTO
401K with a 4% Match
Medical Insurance
+4
Cybersecurity Systems Analyst, Intermediate
Cybersecurity Systems Analyst, Intermediate

TJ Consulting Group • Tampa (FL)

On-site
USD 90,000 - 130,000
PTO
Holiday Pay
401K Match
+11
Senior Database Vulnerability Analyst
Senior Database Vulnerability Analyst

PD Inc • Maryland

On-site
USD 100,000 - 130,000
401K
Health care
Paid time off
+2