Senior Cybersecurity Operations Analyst
$145k - $155kCherokee Federal
Job Description The Senior Cybersecurity Operations Analyst The Senior Cybersecurity Operations Analyst provides program management and technical cybersecurity support for the Department of Transportation (DOT) Federal Highway Administration (FHWA) Cyber Security Management Support program. Under the oversight of the FHWA Information System Security Manager (ISSM), this position plans, implements, operates, monitors, and reports on cybersecurity activities that strengthen the security posture of FHWA information systems. Pay commensurate with experience-$145000- $155000 Key Responsibilities
- Provide cybersecurity and Information Assurance expertise in support of the Agency's Security Program.
- Support cybersecurity incident-handling activities.
- Assist with vulnerability detection and development of vulnerability-remediation strategies.
- Provide expertise regarding secure application-development techniques.
- Support secure baseline configuration validation, security audit-log monitoring activities and integration and management of static-code vulnerability scanners.
- Support the security portion of DevSecOps implementation.
- Develop and maintain cybersecurity architecture diagrams.
- Develop processes, procedures, and Standard Operating Procedures supporting DevSecOps and cybersecurity activities.
- Maintain a current inventory of network ranges, assets, groups, and custom groups within the DOT CDM BigFix tool.
- Assist with remediation of cybersecurity issues identified through applicable security reports.
- Provide cybersecurity subject-matter expertise in incident handling, vulnerability detection, remediation planning, secure application development, cloud environments, and cloud services
- Maintain core system documentation using standardized templates, technical guides, baseline-management documentation, and supporting checklists.
- Maintain and update the organization's Cybersecurity Handbook, Verify Secure Configuration Procedures, Incident Handling Procedures, Threat, Vulnerability, and Risk Monitoring Standard Operating Procedures and Continuous Monitoring Risk Management Plan.
- Coordinate with functional teams to collect supporting documentation and artifacts for audits and evaluations.
- Draft responses supporting FISMA, CFO, Office of Inspector General (OIG), Government Accountability Office (GAO), and other applicable audits or evaluations. Track and report OIG and GAO Notices of Findings and Recommendations.
- Support Government suspense dates associated with audits, evaluations, findings, and data calls.
- Support responses to cybersecurity data calls and other Government inquiries.
- Provide programmatic cybersecurity assistance and guidance to system owners as requested.
- Execute information-system contingency-plan testing in accordance with applicable NIST guidance. Provide information-system contingency training to personnel with contingency-plan responsibilities. Capture lessons learned and corrective actions resulting from contingency exercises.
- Support updates to information-system contingency plans based on testing results.
- Review logs using suspicious log-activity queries to identify, investigate, and support response to cybersecurity incidents.
- Help personnel understand ISCP roles and the skills necessary to perform system-recovery responsibilities.
- Support risk analysis and mitigation activities as directed and approved by authorized Government officials.
- Provide recommendations addressing cybersecurity threats, vulnerabilities, and risks.
- Perform other job-related duties as assigned within the scope of the program.
- Assists with the development and delivery of cybersecurity awareness communications and outreach efforts in coordination with internal stakeholders
- Ability to communicate technical cybersecurity findings and recommendations, cybersecurity guidance and programmatic assistance to system owners, business sponsors, developers, infrastructure teams, and IT operations personnel.
- Ability to communicate effectively with technical and nontechnical stakeholders.
- Possess strong technical writing, research, analytical, organizational, and communication skills. Expert knowledge of Federal cybersecurity and privacy laws, regulations, policies, procedures, and implementation standards.
- Expert experience supporting compliance with NIST SP 800-18, NIST SP 800-30, NIST SP 800-34, NIST SP 800-37, NIST SP 800-53 Rev. 4, NIST SP 800-53A Rev. 4, NIST SP 800-60, NIST SP 800-66 Rev. 1, NIST SP 800-137, FIPS 199, and FIPS 200.
- Knowledge of incident handling, vulnerability detection, vulnerability management, and remediation.
- Understanding of the FISMA assessment and authorization process, GSA FedRAMP processes, and current cloud-service technologies.
- Experience applying Federal Information Security Continuous Monitoring and Continuous Diagnostics and Mitigation program technologies.
- Understanding of static-code vulnerability scanning and vulnerability-management tools.
- Experience or knowledge related to security audit-log monitoring.
- Support DevSecOps implementation, including architecture diagrams, process documentation, standard operating procedures, and the integration and management of static code vulnerability scanners.
- Expert experience with enterprise security architecture methodologies, concepts, procedures, principles, and tools.
- Knowledge of secure configuration and baseline-validation practices.
- Knowledge of secure application-development concepts, dynamic and static application-security testing tools, scan results, and remediation practices.
- Experience conducting vulnerability, application-security, database-security, and network-security assessments and interpreting assessment results.
- Understanding of Identity, Credential, and Access Management implementation.
- Knowledge of domain structures, network protocols, user authentication, digital signatures, firewalls, data-loss-prevention technologies, intrusion-detection and intrusion-prevention systems, and security best practices.
- Knowledge of Windows Server, Linux/Unix, Active Directory, and related operating-system services.
- Knowledge of Federal cybersecurity audits and evaluations, including FISMA, OIG, and GAO activities.
- Ability to plan, execute, document, and report on internal and external application and network vulnerability analyses and provide technical recommendations that improve mission functionality and security.
- At least three years of experience in contingency planning, backup and recovery best practices, and NIST contingency-planning guidance.
- Experience with risk-management tools, including JCAM (formerly CSAM).
- Proficiency with Microsoft Word, Excel, PowerPoint, Visio, Teams, Tableau, and SharePoint.
- Ability to manage multiple concurrent priorities, including developing documentation for new systems while supporting updates to systems in production.
- Bachelor's degree in Cybersecurity or a related technical field.
- 6+ years in security operations, vulnerability management, or offensive security domains, including experience in a senior or lead capacity.
- Must satisfy all applicable Cherokee Federal, Government and DOT personnel-security and background-screening requirements.
- Must possess or be able to obtain a DOT Public Trust clearance.
- Current, verifiable Certified Information Systems Security Professional (CISSP) certification.
- Current, verifiable Certificate of Cloud Security Knowledge, Microsoft Azure certification, or another recognized cloud-security certification.
- Desired certifications include ITIL v3 or later, and relevant certifications from ISC2, SANS, EC-Council, Microsoft, Cisco, or similar organizations.
- Senior Cybersecurity Analyst
- Senior Information Security Analyst
- Cybersecurity Operations Specialist
- Information Assurance Analyst
- Senior Security Compliance Analyst
- CISSP
- NIST Risk Management Framework (RMF)
- FISMA
- Vulnerability Management
- DevSecOps
Vacancy posted 1 hour ago
Similar jobs that could be interesting for youBased on the Senior Cybersecurity Operations Analyst in Washington DC vacancy
$135k - $143k
...work in Washington, DC, at least once per month. The Senior Cybersecurity Analyst leads in the proactive defense of the organization's... ...This role provides expert-level guidance on cybersecurity operations, risk mitigation, incident response, and security architecture...SeniorFull timeContract workCasual workRemote workFlexible hours$105k - $150k
...JCS Solutions LLC (JCS) has an immediate opening for a Cybersecurity Operations Analyst supporting the Security Operations Center (SOC) . The successful... ...for incident investigations. Pass triaged alerts to senior-level SOC personnel and assist in identifying malicious...SuggestedFull timeContract workTemporary workWork experience placementLocal areaImmediate startShift workDay shift$130k
...Overview Senior Cybersecurity Analyst LOCATION: Washington DC - Navy Yard JOB STATUS: Full-time CLEARANCE: Secret CERTIFICATION... ...lifecycle of the RMF process to achieve/renew an Authorization to Operate (ATO). Knowledge of DoD and DON cyber policies and...SeniorFull timeFlexible hours- Overview Apogee has an exciting new opportunity fora Cybersecurity Operations Analyst to provide support for the Executive Airlift Communications Network... ...contract award.*** Responsibilities Provide support to Senior Leader Command, Control, Communications Systems-Airborne...SuggestedFull timeContract work
- 4186 CyberSecurity Operations Analyst 4186 | CI Polygraph Job Description: REQUIRED QUALIFICATIONS: Education & Years of Experience: 6-10 years of Cyber Security/Operations support OR Bachelor's degree in Network Engineering, Computer Science or related technical field...Suggested
- J5cyberconsulting in Washington, D.C. is seeking a skilled candidate to support technical analysis and cyber operations. Responsibilities include analyzing data, preparing reports, and providing briefings, requiring a firm understanding of social media platforms and advanced...
- ...Senior Cybersecurity Analyst Trident Technologies and Consulting - Global, LLC (d.b.a. T2C-Global) is currently seeking motivated and talented... ...cybersecurity posture across programs, balancing operational effectiveness with security imperatives. Represent the...SeniorContract workFor contractorsWork at officeFlexible hours
$105k - $200k
...Senior Cybersecurity Analyst Technomics is a growing employee-owned, decision analytics company that specializes in cost and economic analysis... ...program managers, to choose smartly, buy effectively and operate efficiently. We deliver practical, credible and defensible...SeniorWork at office$120k - $160k
...Job Description Description SAIC is looking for a Senior Cybersecurity Analyst supports Security Operations functions while helping establish and mature the organization's offensive security capability in support of a critical U.S. Government agency....SeniorRemote work- ...future of Navy support. ICI Services is a 100% employee-owned company proudly celebrating 26 years of excellence—is seeking a Senior Operations Analyst to Join our Team in Washington, DC. At ICI Services, our employee-owners drive innovation and deliver mission-focused...SeniorFor contractors
- ...Job Summary We are recruiting Senior Operations Research Analysts as Key Personnel to lead advanced analytics in support of R&D transition, portfolio risk assessment, and process improvement within a high‑impact defense research environment. Key Responsibilities...Senior
- CACI International Inc. is seeking a Cyber Security Analyst/ISSM veteran to support JIATF-401, leading RMF activities and ATO packages for DoD information systems. You will coordinate with multiple stakeholders to collect artifacts, maintain documentation, and ensure continuous...Senior
- Title: Senior Cyber Defense Analyst III Location: Alexandria, VA Clearance: TS/SCI with the ability to obtain and maintain a CI polygraph Job... ...education level Significant hands-on experience conducting cybersecurity investigations and incident response in enterprise...SeniorShift work
- Synertex LLC is seeking a seasoned Business Process Analyst to support mission operations in Bethesda, MD. You will analyze workflows, develop SOPs, RACI matrices, and process maps, and drive governance and documentation standards in a high-tempo environment. Responsibilities...Senior
- Description Title: Cybersecurity Analyst V (Senior) Clearance Type: Secret with the ability to obtain a Top Secret Responsibilities Include (but Are Not Limited To) Lead RMF lifecycle execution: Develop, manage, and maintain RMF artifacts (system categorization, control...Senior
- ...the Federal government, from senior level policy makers to program... ...smartly, buy effectively and operate efficiently . We deliver... ...mix of junior and mid-level analysts who will look to you for technical... ...& Responsibilities Provide cybersecurity expertise to surface combat system...SeniorWork at office
- People, Technology & Processes, LLC is seeking a Senior Cybersecurity Analyst to drive RMF lifecycle execution for DoD/DON programs in Washington, DC. You will lead Security Authorization Package coordination and ensure timely ATO decisions. In this role you will manage...Senior
- Lafayette Group Inc. in Arlington, VA, is seeking a Senior Associate Policy Analyst to support the Cybersecurity Division within CISA. You will research, draft, and coordinate cybersecurity policy papers, provide policy guidance, and lead cross-functional initiatives to...Senior
- ...Description Job Description Description: RMC is seeking a Senior OT Cybersecurity Analyst for a full-time hybrid position in San Diego CA,... ...Summary: The Senior OT Cybersecurity Analyst provides operational technology (OT) cybersecurity subject matter support for...SeniorFull timeContract workTemporary workWork at officeLocal areaFlexible hours
- Booz Allen Hamilton in Arlington, VA seeks an experienced operations analyst for the Nuclear Command, Control & Communications (NC3) domain.... ...enterprise experience, a TS/SCI clearance, and the ability to support senior leaders in national defense strategy. #J-18808-Ljbffr Booz...Senior
- Ally Financial is seeking an Operations Senior Analyst - Loan Closer to work from its Bethesda, MD office. You will handle detailed deal set-ups, initial funding activities, and complex loan modifications in Loan IQ or similar systems. The role requires strong knowledge...SeniorWork at office
- ...customer’s bottom-line by reducing overall cost to deliver after-hours care. POSITION OVERVIEW: The mission of the Senior Clinical Operations Analyst is to serve as a strategic analytics partner by turning clinical and operational data into clear conclusions and actionable...SeniorFull timePart time
- Senior Operations Analyst - Position Description Join a team that is shaping the future of Navy support. ICI Services is a 100% employee‑owned company proudly celebrating 26 years of excellence—and is seeking a Senior Operations Analyst to Join our Team in Washington, DC...SeniorTemporary workFor contractorsImmediate startFlexible hours
$110k - $120k
...models the business runs on, and setting the standards other analysts follow. You'll operate with significant autonomy, work directly with VP- and C-... ...sharp business judgment and the gravitas to influence senior decision-makers. How You'll Contribute: Act as...SeniorShift work- ...Cybersecurity Operations Analyst Tier 3 Serve as a senior incident responder supporting the containment, eradication, and recovery of complex cybersecurity incidents. You will perform forensic analysis, malware investigation, threat attribution, and advanced response...
- AES Clean Energy, a leading independent power producer, seeks a NERC Operations Senior Analyst to support O&P compliance programs and ensure adherence to NERC standards. Reporting to the NERC Operations Team Leader, you will monitor, gather evidence, and facilitate audits...Senior
$92.5k - $125k
...waiting list and cure end-stage organ diseases for which transplant is not currently an option. Who You Are The Senior Treasury Operations Analyst supports the daily operations of the Treasury department, with a primary focus on cash positioning, payment...SeniorFull timeBank staffWork at officeFlexible hours3 days per week$86.8k - $198k
Enterprise Cybersecurity Vulnerability Analyst, SeniorThe Opportunity:Support Booz Allen Hamilton's internal Enterprise Cybersecurity team... ...Team lead with providing metrics and KPIs to other operational teams and senior leadership.Join us. The world can't wait.You Have:4...SeniorFull timeContract workPart timeWork at officeLocal areaRemote work$77.6k - $176k
Phase2 Technology is seeking a Cybersecurity Compliance Analyst to design and manage policies ensuring software and database security. The role requires extensive experience in compliance analysis and the ability to communicate cybersecurity posture effectively. Responsibilities...Senior- ...Is seeking an MCCS Program Analyst to support the Marine Corps Installations Command... ...clearance. This position provides direct operations support to MCCS Planning, Programming,... ...capable of operating independently, engaging senior stakeholders across MCICOM and...SeniorFull timeWork at officeRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Cybersecurity Operations Analyst. Be the first to apply!
Related searches
- cyber security specialist Washington DC
- cyber security consultant Washington DC
- customer success operations analyst Washington DC
- operations analyst Washington DC
- network operations center analyst Washington DC
- security operations center analyst Washington DC
- ad operations analyst Washington DC
- client operations analyst Washington DC
- security operations analyst Washington DC
- legal operations analyst Washington DC



