Cybersecurity Analyst
SHR Consulting Group
SHR Consulting Group, LLC is a small business delivering enterprise IT, cybersecurity, and program management services to the Department of Defense and federal civilian agencies. We support mission-critical infrastructure at the Pentagon and across the National Capital Region, and we invest in our people through competitive compensation, professional certification support, and long-term career growth on stable, multi-year programs. Position Summary We are a rapidly growing organization seeking experienced Cybersecurity Analysts to support cyber compliance, technical security assessments, vulnerability management, cyber hardening, and Risk Management Framework (RMF) activities for a large enterprise Department of Defense environment. Multiple openings are available at Senior and Intermediate levels. The successful candidate will analyze enterprise security-tool results, validate technical findings, drive remediation, maintain RMF evidence in eMASS, support cyber-readiness activities, and brief technical and Government leadership on risk and compliance status. eMASS is a government-owned application that supports integrated cybersecurity management, dashboard reporting, control-scorecard measurement, and authorization-package development. Key Responsibilities Perform technical cybersecurity assessments of enterprise Windows, Red Hat Linux, workstation, server, application, network, and supporting infrastructure environments. Analyze and validate findings from ACAS, HBSS/ESS, Trellix, Axonius, Evaluate-STIG, Splunk, Tanium, SCAP, STIG Viewer, and other approved Enterprise Security Services (ESS) tools. Assess systems against DISA STIGs, IAVM notices, DoD cyber tasking, and approved security baselines; identify vulnerabilities, configuration deviations, missing patches, security-tool coverage gaps, and asset discrepancies. Coordinate with system administrators, engineers, system owners, and platform teams to implement and validate patches, Group Policy changes, certificate updates, endpoint-security changes, and secure-configuration remediations. Drive assigned systems toward compliance with DISA STIGs, IAVMs, applicable DoD orders, and organizational remediation timelines. Develop, maintain, and track Plans of Action and Milestones (POA&Ms) for unresolved vulnerabilities and compliance deviations, including technical details, risk impact, mitigation actions, responsible parties, milestones, and planned completion dates. Support RMF activities in accordance with DoDI 8510.01 and NIST guidance, including eMASS updates, control implementation statements, evidence collection, security-control validation, assessment artifacts, risk records, and authorization-package support. Validate security controls against NIST SP 800-53 requirements and document results in eMASS, SharePoint, or other approved repositories. Support CCORI, CORA, CSSP, and Cyber Hardening Mission activities through pre-assessment validation, checklist management, evidence preparation, corrective-action tracking, remediation coordination, and closure verification. Monitor approved DoD, DISA, JSP, and organizational channels for IAVMs, cyber orders, security directives, and other tasking; disseminate actions to responsible teams and track execution through closure. Provide DTO support by reviewing, analyzing, coordinating, tracking, and validating closure of DISA Task Orders, including required security configuration changes, firewall-rule updates, ports/protocols/services changes, vulnerability mitigations, technical documentation, validation testing, and completion evidence in accordance with established DoD, DISA, JSP, and program procedures. Maintain and validate required security-tool coverage across managed assets, ensuring ESS/HBSS, ACAS, Splunk, Tanium, and other required tools are installed, properly configured, communicating with management consoles, and tracked to resolution when reporting issues occur. Support patch and hot-fix deployment across multiple operating-system platforms using MECM, Group Policy, PowerShell, Tanium, Red Hat Satellite Server, YUM, or equivalent enterprise-management tools. Develop cyber-compliance metrics, remediation trackers, dashboards, and executive-ready reports for monthly program reviews and leadership briefings. Apply advanced Microsoft Excel skills—including formulas, pivot tables, XLOOKUP/VLOOKUP, conditional logic, data reconciliation, charts, and trend analysis to evaluate vulnerability trends, compliance posture, risk scores, overdue actions, and remediation performance. Brief technical teams, program management, and Government leadership on technical findings, enterprise risk, compliance trends, remediation status, and decisions required. Support Systems Security Reviews, independent control testing, audit preparation, inspection response, and continuous-monitoring activities. Minimum Qualifications Demonstrated ability and experience in daily operations and maintenance of large, complex IT projects and IT staff similar in size and scope to this order Three (3) or more years of experience securing operating systems against DISA STIGs and configuring/maintaining host firewalls; experience hardening Windows Server and Red Hat Linux platforms required. Working knowledge of the DoD IAVM program, the DISA Vulnerability Management System (VMS), and the Continuous Monitoring Risk Scoring (CMRS) system. Knowledge of DoD vulnerability scanning standards and tools, defense-in-depth concepts, and incident response, auditing, and CNDSP practices. Hands-on experience with cyber tools, including HBSS/ESS, ACAS (Tenable), Splunk, and Tanium. Experience supporting RMF (NIST SP 800-37), NIST SP 800-53R control documentation and validation, and accreditation programs such as FISMA, OMB, DoD IG inspections, and ACA. Experience deploying patches and hot fixes against required deadlines using MECM, Group Policy, PowerShell, Red Hat Satellite/YUM, or Tanium. For the Senior variant: 5+ years of experience and ACAS administrator certification/experience are strongly preferred. Strong analytical, written, and verbal communication skills with the ability to brief technical risk to Government leadership. Education Bachelor’s degree in Computer Engineering, Computer Information Systems, Telecommunications, Management Information Systems, Cybersecurity, or a related field; or equivalent combination of education and three (3)+ recent years of documented relevant experience. Certification Requirements Must meet DoD 8570.01-M / DoD 8140 IAT Level II baseline certification requirements prior to start (e.g., Security+ CE, CCNA-Security, CySA+, GICSP, GSEC, or equivalent). Computing Environment certification appropriate to the role is also required. Security Clearance Active Secret clearance required at minimum. U.S. citizenship required. 100% onsite at a government facility within the National Capital Region (NCR), primarily at the Pentagon, Crystal Gateway, Taylor Building, Mark Center, or other JSP-designated alternate site. Must be local to the DC Metro Area with reliable transportation. Competitive salary commensurate with experience and clearance level Comprehensive medical, dental, and vision coverage 401(k) with company contribution Paid time off and eleven federal holidays Certification reimbursement and training support (DoD 8140 baseline and computing environment certifications) Life and disability insurance SHR Consulting Group, LLC is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or protected veteran status. #J-18808-Ljbffr SHR Consulting Group
$31 - $48 per hour
Worker TypeRegularJob DescriptionSummaryAV is seeking a motivated, detail-oriented Information Security Analyst. In this role, you will work with the Cybersecurity team on a variety of Information Security tasks, to include software vetting, compliance documentation, exception...SuggestedPermanent employmentFull timeContract workWork experience placementFlexible hours$86.8k - $198k
Enterprise Cybersecurity Vulnerability Analyst, SeniorThe Opportunity:Support Booz Allen Hamilton's internal Enterprise Cybersecurity team by utilizing enterprise-level vulnerability scanning and assessment tools to identify internally and externally facing vulnerabilities...SuggestedFull timeContract workPart timeWork at officeLocal areaRemote work$114.6k - $190.2k
...Cybersecurity Analyst - Evenings Unlock the secrets of intelligence with MANTECH! Join a dynamic team at the forefront of national security, providing advanced solutions to government intelligence agencies. Since 1968, we've been solving the toughest challenges with...SuggestedHourly payContract workTemporary workWork experience placementWork at officeLocal areaRemote workShift workAfternoon shift- ...CyOps Analyst As a CyOps Analyst, you will be investigating security alerts from the Cynet platform in order to detect threats and... ...their goals. Our vision is to give every organization true cybersecurity peace of mind, providing fast, accurate protection without the...Suggested
$91.6k - $153.8k
...Cyber Incident Response Analyst Unlock the secrets of intelligence with MANTECH! Join a dynamic team at the forefront of national... ...groundbreaking tech. Explore thrilling projects in Digital Transformation, Cybersecurity, IT, Data Analytics and Software Development. Elevate your...SuggestedHourly payContract workTemporary workWork experience placementLocal areaRemote workShift workNight shiftDay shiftAfternoon shift$120k - $179k
...Overview Cybersecurity Analyst McLean, VA TS/SCI with Poly Bridge Core provides high energy, unified teams; technology integration experience; and innovative approaches, to enable our clients' mission. We enable our clients' mission by integrating innovative...Shift workNight shiftWeekend workAfternoon shift$100k - $150k
...Cybersecurity Analyst Location: Arlington, VA - Pentagon Work Type: Hybrid Remote Work: 50% Job Description Contribute to cryptographic modernization by identifying risks, assessing vulnerabilities, and supporting policy, standards, and security controls...Full timePart timeWork experience placementRemote work- ...learn and grow professionally? At Talent Acquisition Concepts, we are changing the way small businesses hire. We are seeking a Cybersecurity Analyst to report to the Cybersecurity Program Manager. This individual will serve as part of an integrated team of engineering and...Local areaRemote work
- ...Senior Vulnerability Analyst This position supports the Information Risk Strategy Management (IRSM) Vulnerability Management (VM... ...vulnerability assessments, as needed. Foundational knowledge in cybersecurity and apply that knowledge toward remediation initiatives....
- ...Cybersecurity Analyst The contractor shall support the Pharmacy Operations Division (POD) Informatics System Security Manager (ISSM) in cybersecurity matters by providing analytic and technical advice to support DoD Cybersecurity policies and activities. Essential Job...Contract workFor contractors
$110k - $160k
...information, please visit Role Overview: We are seeking a SOC Analyst II to join our growing Security Operations team and help... ...environments. The ideal candidate is a mid-career cybersecurity professional with a strong technical foundation, curiosity for...Contract workWork experience placementCasual workRelocation package- ...Cybersecurity Analyst We are seeking a dedicated and detail-oriented Cybersecurity Analyst to join our team and help safeguard our systems and data from potential threats. In this role, you will monitor and analyze security events, identify vulnerabilities, and implement...Temporary workFor contractorsImmediate startFlexible hours
- ...Consulting Group, LLC is a small business delivering enterprise IT, cybersecurity, and program management services to the Department of Defense... ...growing organization seeking experienced Cybersecurity Analysts to support cyber compliance, technical security assessments,...Local area
$130k - $155k
...operational reliability at significantly lower capital cost. We are seeking qualified applicants for the position: Cybersecurity Analyst Located: Arlington Summary The Cybersecurity Engineer is responsible for designing, implementing, and...$150k - $160k
As Sr. Cybersecurity Analyst II, you’ll be responsible for spearheading the Assessment and Authorization (A&A) lifecycle, leading Risk Management Framework (RMF) processes, strictly utilizing eMASS to develop comprehensive system security plans, assessing complex security...Full timeLocal area$86k - $138k
Responsibilities Peraton is currently seeking to hire a Cybersecurity Analyst - Security Standards & Baselines to become part of our Federal Strategic Cyber group. Location: Hybrid position, based in Arlington, VA.In this role, you will:Support the Security Standards...Contract workCurrently hiringWork at officeShift work- ...ActioNet has an immediate opportunity for a Cyber Security Analyst requiring a Public Trust clearance located in Silver Spring,... ...concepts and requirements: Firewall Policy, Ports & Protocols, Cybersecurity, Cybersafe Familiarity with Tenable and BigFix, preferred....Immediate start
$86.8k - $198k
Enterprise Cybersecurity Product AnalystThe Opportunity:As an Enterprise Cybersecurity Product Analyst, you will support Booz Allen's Enterprise Cybersecurity (ECS) Product Security function by helping scale a structured, repeatable, and trackable security review model...Full timeContract workPart timeWork at officeLocal areaRemote work- ...Job Description Job Description cFocus Software seeks a Cybersecurity Triage Analyst (Tier 1) to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This...Work at office
- Medical Insurance, Dental Insurance, Vision Insurance Full-Time | On-site Required Skills powershell Cybersecurity SIEM Cybersecurity Incident Response Analyst Job Description: The Cybersecurity Incident Response Analyst is responsible for real-time threat detection...Full time
- A progressive organization is seeking a Cybersecurity Analyst to join their integrated team of experts in Arlington, Virginia. This role involves supporting cybersecurity engineers and conducting risk assessments in the field. Ideal candidates will possess a Bachelor's...
- Amentum is seeking a Cybersecurity Analyst to support a McLean, VA based federal civilian agency as a contractor. The role focuses on RMF/A&A activities, developing SSPs, POA&Ms, SARs, and related RMF artifacts, with emphasis on risk analysis and security documentation....Civilian Contractor
$150k
...Dental Insurance, Vision Insurance Full-Time | On-site Required Skills Cyber Threat Analysis Network Security SIEM Firewalls Cybersecurity Analyst CoreLogic Systems Washington, District of Columbia, United States Job Description A Cybersecurity Analyst is responsible for...Full time$57.2k - $109.4k
...more. Join us to drive positive, lasting change that moves missions and the government forward! The Work The Cybersecurity Incident Response Junior Analyst and Triage Analyst role will work in the CIRT team in the CISO organization. This role works on a shift under the...Work experience placementLive inWork at officeLocal areaShift work- Peraton is seeking a Cybersecurity Analyst for Security Standards & Baselines in a Hybrid role based in Arlington, VA. You will support the SSB section within the TIE Office, drive automation of workflows, and ensure compliance with FISMA, NIST 800-53 Rev. 5, CIS Benchmarks...Work at office
- myBridge Corporation in Chandler, AZ is seeking a Cybersecurity Incident Response Analyst to join our SOC. You will monitor real-time security events, detect threats, and triage incidents across network, cloud, and endpoints, translating alerts into actionable containment...
- Digital Global Connectors invites a Cybersecurity Analyst - Tier 1 to join the Federal program. You will monitor security tools, perform initial triage, and escalate complex events as part of an SOC team. Responsibilities include incident support, artifact preservation,...
- Dental Insurance, Vision Insurance, 401k, Medical Insurance Contractor | On-site Cybersecurity Analyst PrimeLife Therapeutics Monitor security systems, investigate security incidents, perform vulnerability assessments, implement security controls, conduct penetration testing...For contractors
- ARGO Cyber Systems in Arlington, VA is seeking a Program Control Analyst to support governance, risk, and compliance for cybersecurity programs in federal environments. The role involves coordinating with technical teams, program leadership, and customers to track deliverables...
- ...Enterprise Risk Management (ERM) services, including IT Engineering, Cybersecurity, Governance/Risk/Compliance (GRC), and Advisory services for... .... Role Description BlueStar Pros is seeking a Cybersecurity Analyst to support cybersecurity consulting engagements across...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cybersecurity Analyst. Be the first to apply!
- cyber security specialist Arlington, VA
- cyber security consultant Arlington, VA
- cybersecurity analyst remote Arlington, VA
- IT cyber security Arlington, VA
- cyber security intern Arlington, VA
- cybersecurity technical writer Arlington, VA
- cybersecurity certificate Arlington, VA
- cybersecurity grc Arlington, VA
- cybersecurity Arlington, VA
- remote cyber security Arlington, VA


