
AI-Assisted Cyber Analysis Specialist
Posted Sep 4

Posted Sep 4
This is a fully remote position, open to applicants in United States.
• Develop workflows that incorporate human input with AI assistance to classify, enrich, correlate, summarize, and prioritize extensive amounts of cyber artifacts.
• Create Python-based services, tools, APIs, prompts, schemas, retrieval pipelines, and evaluation harnesses utilizing approved model endpoints and data repositories.
• Merge deterministic security tools and protocols with AI-assisted triage processes.
• Assess precision, recall, false-positive and false-negative rates, latency, costs, drift, and time saved for analysts.
• Document acceptance criteria and rollback procedures.
• Implement access controls, established model boundaries, provenance, audit logs, redaction, defenses against prompt injection, and safe management of untrusted code and artifacts.
• Present organized findings and uncertainties to security analysts.
• Assist in manual validation and gather analyst feedback for ongoing improvement.
• Maintain technical documentation, test datasets, versions of models/workflows, and reproducible release processes.
• Offer ongoing technical assessment support for proactive testing of federal cyber assets, both externally and internally visible.
• Carry out continuous evaluations of .gov domains, subdomains, and internet-facing assets.
• Identify unknown exposures, validate vulnerabilities, and provide actionable remediation recommendations.
• Contribute to the CDM Program mission to protect federal IT networks and enhance the security posture of government networks.
• U.S. citizenship is mandatory.
• Must be eligible for access to sensitive information and capable of obtaining a Public Trust fitness determination (High Risk).
• Ability to operate in customer-supplied remote environments while adhering to rules of engagement, data-handling protocols, evidence controls, deconfliction procedures, and stop-work criteria.
• A minimum of five years of combined experience in cybersecurity analysis, security engineering, software/data engineering, or applied AI/ML, including production automation utilized by analysts or operators.
• Proficient in Python, API development, data processing, testing, and source control.
• Experience managing both structured and unstructured technical artifacts at scale.
• Practical understanding of vulnerability assessments, attack paths, source code or configuration analysis, malware/artifact triage, or outputs from security tools.
• Background in building and evaluating AI/ML or LLM-assisted workflows that include human review, grounding/provenance, structured outputs, and measurable quality controls.
• Awareness of AI security risks such as data leakage, prompt injection, untrusted content, model hallucination, authorization, auditability, and secure deployment practices.
• Ability to communicate limitations and uncertainties effectively while producing maintainable technical documentation.
• Desired: Experience with agentic workflow frameworks, retrieval-augmented generation, vector search, model evaluation/observability, or secure model gateways.
• Desired: Familiarity with Semgrep, CodeQL, YARA, Sigma, SAST/DAST, SBOM, malware analysis, vulnerability management, or exposure management data.
• Desired: Knowledge of MITRE ATLAS, NIST AI RMF, secure AI development, adversarial testing, and AI red-team practices.
• Desired: Experience with AWS/Azure AI and data services, container/Kubernetes, CI/CD, data lakes, Splunk/Elastic, or graph analytics.
• Desired: Relevant certifications in cloud, data, AI/ML, or cybersecurity.
• Flexible time off benefit.
• Comprehensive learning resources.
• Healthcare benefits.
• Wellness benefits.
• Financial benefits.
• Retirement benefits.
• Family support benefits.
• Continuing education benefits.
• Time off benefits.
• Competitive compensation.
• Opportunities for learning and development.
Mercor
Mercor
Mercor
Rove Concepts
Get handpicked remote jobs straight to your inbox weekly.