SIGN IN
Cyber Security Analyst jobs in United States
cer-icon
Apply on Employer Site
company-logo

General Dynamics Information Technology · 9 hours ago

Cyber Security Analyst

General Dynamics Information Technology is a global technology and professional services company focused on delivering consulting, technology, and mission services to government agencies. As a Cyber Security Analyst, you will support mission-critical systems by ensuring compliance with cybersecurity standards and conducting vulnerability assessments.
Artificial Intelligence (AI)Cloud ComputingCyber SecurityConsultingInformation Technology
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote

Responsibilities

Review Security Technical Implementation Guide (STIG) compliance for testing and reporting for systems post-installation
Report on IAVM (Information Assurance Vulnerability Management) compliance to ensure appropriate mitigation strategies are in place
Review, test, and implement the appropriate IAVA/B patches for the system as required to maintain compliance and address vulnerabilities
Conduct software and system attack surface analysis to identify security risks and areas for improvement across the system
Perform software vulnerability assessments to identify and mitigate security gaps throughout the system lifecycle
Engineer and coordinate solutions to ensure Authorization to Operate (ATO) compliance with updates and required changes for existing systems
Execute and analyze system baseline vulnerability scans using NESSUS or similar tools
Record, report, and remediate identified vulnerabilities, ensuring benefit to operations, logistics and engineering as well as compliance with organizational and federal standards
Work with cross-functional teams to validate and verify effective mitigation actions for system vulnerabilities
Apply Risk Management Framework (RMF) 2.0 security controls to systems to achieve and sustain system accreditation and support continuous monitoring
Develop and document system Test Plans and Test Reports in support of cybersecurity operations and assessments
Provide support to government-sponsored Security Control Assessors-Vulnerability (SCA-V) and Security Control Assessors-Onsite (SCA-O) teams during cybersecurity testing, verification, and system compliance assessments
Developing and maintaining cybersecurity Test Plans and Test Reports with knowledge of and preferably experience in developing system-level engineering solutions to support ATO compliance
Interprets, analyzes, and reports all events and anomalies in accordance with computer network directives with supervision including responding and reporting as well as suggesting new processes or procedures that benefit the full system
Reviews cybersecurity plans, controls, processes, standards, policies, and procedures that apply to pertinent systems are aligned with cybersecurity standards

Qualification

DISA STIGIAVMInformation Assurance ManagementRisk Management Framework (RMF)Vulnerability scanning toolsSecurity Control AssessorsCoordination skillsOrganizational skillsCommunication skills

Required

Clearance Level Must Currently Possess: Secret
Clearance Level Must Be Able To Obtain: Secret
5 + years of related experience
US Citizenship Required: Yes
BS/BA with 5-8 years of experience. Additional years of experience may be considered in lieu of the degree. (9 years without BS/BA; 10 years without HS)
Security clearance level: Secret Clearance
Exceptional organizational skills for records and documentation management
Proficiency in applying and managing STIG/IAVM compliance activities in complex network and system environments
Hands-on experience with vulnerability scanning tools, such as NESSUS or equivalent, and interpreting results to develop actionable remediation plans
Strong understanding of Risk Management Framework (RMF) 2.0 processes, security controls, and implementation practices
Experience with IAVA/B review
Ability to perform attack surface analysis for software and systems, analyzing potential weaknesses and offering mitigation strategies
Strong coordination and communication skills for working in and with cross-functional teams

Preferred

Certification: DoD 8140 or DoD 8570 IAT-II baseline (e.g., Security+ CE) Certification or willing to obtain within three months of your start date
Certification Requirement subject to change determined by contractual requirements

Benefits

Comprehensive benefits and wellness packages
401K with company match
Variety of medical plan options, some with Health Savings Accounts
Dental plan options
A vision plan
Paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave
Short and long-term disability benefits
Life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance

Company

General Dynamics Information Technology

company-logo
General Dynamics Information Technology is an IT consulting company that specializes in cyber security, AI, and quantum computing. It is a sub-organization of General Dynamics.

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
Paul Nedzbala
Senior Vice President
linkedin
leader-logo
Ben Buckley
Vice President and General Manager
linkedin
Company data provided by crunchbase