
Senior Cybersecurity Operations Analyst
Posted Sep 2

Posted Sep 2
This is a fully remote position, open to applicants in United States.
• Provide expertise in cybersecurity and Information Assurance to support the Agency’s Security Program.
• Assist in handling cybersecurity incidents effectively.
• Aid in detecting vulnerabilities and formulate strategies for their remediation.
• Offer knowledge on secure application development practices.
• Support the validation of secure baseline configurations, monitor security audit logs, and manage integration of static-code vulnerability scanners.
• Contribute to the security aspects of DevSecOps implementation.
• Create and maintain diagrams of cybersecurity architecture.
• Develop and document processes, procedures, and Standard Operating Procedures for both DevSecOps and cybersecurity activities.
• Manage inventories of network ranges, assets, groups, and custom groups within the DOT CDM BigFix tool.
• Assist in resolving cybersecurity issues highlighted in security reports.
• Maintain comprehensive core system documentation, technical manuals, baseline-management documents, and checklists.
• Regularly update cybersecurity handbooks, secure configuration procedures, incident response protocols, threat/vulnerability/risk monitoring SOPs, and continuous-monitoring risk management plans.
• Collaborate with functional teams to gather audit and evaluation documentation and artifacts.
• Prepare responses for FISMA, CFO, OIG, GAO, and other audits or evaluations; monitor and report on findings and recommendations.
• Assist with Government suspense dates, cybersecurity data requests, and other Government inquiries.
• Provide programmatic cybersecurity support and guidance to system owners.
• Conduct information-system contingency plan testing in accordance with NIST guidance; offer training, document lessons learned, and track corrective measures.
• Update information-system contingency plans based on results from testing.
• Analyze suspicious log activities to identify, investigate, and assist in responding to cybersecurity incidents.
• Educate personnel on ISCP roles and responsibilities related to system recovery.
• Facilitate risk analysis and mitigation efforts.
• Offer recommendations to address cybersecurity threats, vulnerabilities, and risks.
• Assist in communications and outreach for cybersecurity awareness.
• Perform additional job-related tasks within the program scope.
• Bachelor’s degree in Cybersecurity or a related technical discipline.
• Over 6 years of experience in security operations, vulnerability management, or offensive security fields, including roles in senior or leadership positions.
• Must meet all applicable Cherokee Federal, Government, and DOT personnel security and background screening requirements.
• Must possess or be eligible to obtain a DOT Public Trust clearance.
• Current, verifiable Certified Information Systems Security Professional (CISSP) certification is required.
• Current, verifiable Certificate of Cloud Security Knowledge, Microsoft Azure certification, or an equivalent cloud security certification is needed.
• Minimum of three years of experience in contingency planning, backup and recovery best practices, and NIST contingency-planning guidance.
• Extensive knowledge and experience with Federal cybersecurity and privacy laws, regulations, policies, procedures, implementation standards, and referenced NIST/FIPS standards.
• Familiarity with incident handling, vulnerability detection, vulnerability management, remediation, secure application development, cloud environments, and cloud services.
• Understanding of FISMA assessment and authorization, GSA FedRAMP processes, and current cloud service technologies.
• Experience with Federal Information Security Continuous Monitoring and Continuous Diagnostics and Mitigation technologies.
• Knowledge of static-code vulnerability scanning, vulnerability management tools, and security audit log monitoring.
• Expert experience with enterprise security architecture methodologies, concepts, procedures, principles, and tools.
• Understanding of secure configuration, baseline validation, application security testing, assessment results, and remediation practices.
• Experience conducting assessments in vulnerability, application security, database security, and network security.
• Knowledge of Identity, Credential, and Access Management implementation.
• Familiarity with domain structures, network protocols, authentication methods, digital signatures, firewalls, data loss prevention, IDS/IPS, and security best practices.
• Proficient in Windows Server, Linux/Unix, Active Directory, and related operating systems services.
• Knowledge of Federal cybersecurity audits and evaluations, including FISMA, OIG, and GAO activities.
• Experience using risk management tools, including JCAM (formerly CSAM).
• Proficient in Microsoft Word, Excel, PowerPoint, Visio, Teams, Tableau, and SharePoint.
• Ability to handle multiple concurrent priorities effectively.
• Desired certifications include ITIL v3 or later and relevant certifications from ISC2, SANS, EC-Council, Microsoft, Cisco, or similar organizations.
• Comprehensive health insurance options.
• Retirement plans with employer contributions.
• Generous paid time off and holidays.
• Professional development opportunities and training programs.
• Flexible work arrangements.
JUFA
CareMetx, LLC
Zocdoc
Get handpicked remote jobs straight to your inbox weekly.