Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cyber Security Analyst Level III

Blackwatch International

Blackwatch International Corporation (Blackwatch) is a small business founded in 2010 and dedicated to supporting Federal business and national security objectives. Our headquarters are in McLean, VA, with satellite offices in Sacramento, CA.

Blackwatch invests in innovation and quality for our customers and staff, holding corporate-level ISO 9001:2015, ISO/IEC 27001:2013, and ISO/IEC 20000-1:2018 and CMMI Level 3 certifications. We are a leading provider of information technology (IT) infrastructure, cybersecurity, DevSecOps, data exploitation, and engineering services, specializing in large and complex projects. Blackwatch is dedicated to growth and offers a dynamic working environment with multiple opportunities for advancement.


Position Description: Develops and implements cyber security standards and procedures. Coordinates, develops, and evaluates security programs. Recommends cyber security solutions to solve complex government requirements. Identifies, reports, and resolves security violations. Establishes and satisfies information assurance and security requirements based upon the analysis of user, policy, regulatory, and resource demands. Performs analysis, design, and development of security features for system architectures. Analyzes and defines security requirements for IT systems. Leads development of documentation which may include systems scope statements, process models, process updates, workflows, functional requirements, testing documentation, training materials, and cyber-IT specific deliverables.

Provides technical/management leadership on major tasks or technology assignments. Establishes goals and plans that meet project objectives. Has domain and expert technical knowledge. Directs and controls activities for a client, having overall responsibility for financial management, methods, and staffing to ensure that technical requirements are met. Interactions involve client negotiations and interfacing with senior management. Decision making and domain knowledge may have a critical impact on overall project implementation.

Position Title: Cyber Security Analyst Level III

Position Location: On-site in Alexandria, VA; remote (if authorized)

Position Type: Regular

Years of experience: 5

Security Clearance: Public Trust

US Citizenship Required: Yes, must have Real ID

Summary

The scope of work for effort includes infrastructure Hosting (On-premise internal cloud only) - Compute support provides vital services in the provision and maintenance of those resources through a focus on the workflows and methodologies of how compute is created, maintained, and recaptured to deliver timely compute resources to customers, faster, and right sized while ensuring products stay secure and stable. Compute services provide engineering, and security and operations maintenances support for Server Operating Systems, as well as, requirements analysis and design, to ensure adherence to standards & policies for any USPTO Product or Component.

Objectives: Security Operations

Information Assurance, RMF A&A, and documentation

  • Combined scope: Provide NIST-based IA governance, full RMF A&A lifecycle support (Categorize → Authorize → Monitor), and produce/update required artifacts (SSP, PTA/PIA, CAW, FIPS-199, PIAs, Contingency Plans, and associated A&A artifacts where applicable).
  • Rationale: RMF activities and IA documentation are tightly coupled-same knowledge, same deliverables.
  • Acceptance criteria / metrics: SSP and associated artifacts updated within 30 calendar days of change; A&A artifacts produced for all major systems within 5 business days when requested.
Vulnerability & Configuration Management (KEV handling and scan tuning)
  • Combined scope: Perform vulnerability/compliance scan analysis, false-positive validation, REGEX/signature tuning, root-cause analysis, prioritization (KEV-first), and feed findings into POA&Ms and remediation actions. Track vulnerability lifecycle to ensure vulnerability closure ≤180 days unless exception approved.
  • Rationale: Scan analysis, signature tuning, and KEV remediation are one continuous remediation workflow.
  • Acceptance criteria / metrics: Help ensure at least 50% of KEVs remediated by associated CISA deadlines; For non-KEVs help ensure vulnerabilities are closed within timeframes dictated in the Vulnerability Management Policies; false-positive suppression documented with expiry.
Baseline Management and Hardening
  • Combined scope: Maintain and update security configuration baselines for OS/network/middleware/databases; align with CIS/STIG/DISA; perform impact analysis and coordinate deployment of baseline changes with the OCISO Enterprise Scan Team. Time to notify OCISO Enterprise Scan Team should be within 15 calendar days of security configuration baseline release.
  • Rationale: Baseline creation, STIG/CIS adoption, and coordination with scanning are the same change management activity.
  • Acceptance criteria / metrics: Security Configuration Baselines should be at least 90% compliant to the associated DISA or CIS benchmark; time-to-deploy new benchmark ≤ 45 calendar days from approved release to OCISO scan policy change.
Identity, Privileged Access, and DHS CDM Initiatives
  • Combined scope: Implement and support IdAM (e.g., Okta), Privileged Access Management (CAPAM or equivalent), and CDM program technical integration; produce integration runbooks and control evidence.
  • Rationale: IdAM, PAM, and CDM are identity/credential posture functions that share controls and evidence requirements.
  • Acceptance criteria / metrics: Integration runbook delivered; % of high-risk privileged accounts under vaulting/policy; CDM dashboard metrics updated per schedule.
Cloud Security and Cloud A&A
  • Combined scope: Support RMF/FedRAMP-tailored A&A for cloud systems, produce cloud responsibility/control matrices, collect cloud-native evidence, and maintain continuous monitoring for cloud environments.
  • Rationale: Cloud A&A and cloud control mapping are a single domain of work and require different deliverables but the same ownership.
  • Acceptance criteria / metrics: Cloud A&A packages
Security Operations, Tooling, and Automation
  • Combined scope: Operate and integrate scanners and security tools (Tenable/DBProtect/HP WebInspect, CSAM repo), maintain detection rules and regex for signatures, provide scripting support (Linux/Windows/Python/PowerShell), and integrate network devices (Cisco/Juniper) and IPv6 assessments.
  • Rationale: Tool operations, automation, tunings, and scripting are continuous SOC/scan support functions.
  • Acceptance criteria / metrics: Tools and scans run per schedule; automation scripts stored in repo with versioning; mean time to validate scan findings. Assist Product Teams to integrate with Reference Pipeline.
POA&M Management, Remediation Coordination, and Knowledge Transfer
  • Combined scope: Maintain POA&M lifecycle (intake→assign→remediate→verify→close), provide remediation planning and translation for technical leads, and deliver training and job aids for sustainment.
  • Rationale: POA&M administration and knowledge transfer are part of remediation operations and change acceptance.
  • Acceptance criteria / metrics: POA&M aging distribution; 60% POA&Ms closed on schedule; number of training sessions and job aids delivered.
Incident Response Support and Enterprise Operations Command Center (EOCC) Coordination
  • Combined scope: Provide incident triage, forensic collection guidance, containment/eradication support, and follow-up lessons learned that feed POA&Ms and baselines.
  • Rationale: Incident response is discrete but tightly linked to remediation and baseline updates.
  • Acceptance criteria / metrics: Rally artifact coverage for security work; sprint predictability and throughput metrics; At least 90% data call submission timeliness.
Agile Delivery, Reporting, and Data Calls
  • Combined scope: Provide Scrum Master services, create Rally artifacts for POA&M and remediation work, manage sprints/epics/stories, and support USPTO data calls with timely, quality submissions and SME coordination.
  • Rationale: Agile management, reporting, and data-call delivery are governance and transparency functions supporting technical work.
  • Acceptance criteria / metrics: Rally artifact coverage for security work; sprint predictability and throughput metrics; At least 90% data call submission timeliness.
Compliance & External Directives Impact Assessment
  • Combined scope: Monitor and assess DHS/OMB memos, CISA BODs, and other directives; map to controls and operational actions; track and report compliance status and exceptions.
  • Rationale: Agile management, reporting, and data-call delivery are governance and transparency functions supporting technical work.
  • Acceptance criteria / metrics: New BOD/memo assessed within 15 calendar days; compliance register updated; exceptions documented and approved.
Responsibilities:

Lead a small team, focused on security services and solutions in support of the ten objectives listed above. The manager will take responsibility for:
  • Developing the Project Management plans and other contract documents
  • Directing the day-to-day efforts of technical personnel.
  • Ensuring the quality of deliverables: cyber documentation, software, engineering and testing plans, or network installations.
  • Monitors activities under the contract to ensure that all activities are executed in accordance with contract requirements and the COR's direction.
Minimum Qualifications:

Possesses and applies expertise on multiple complex work assignments. Assignments may be broad in nature, requiring originality and innovation in determining how to accomplish tasks. Operates with appreciable latitude in developing methodology and presenting solutions to problems. Contributes to deliverables and performance metrics where applicable. Experience across the following is required:
  • Support of Operations Security and Remediation Team's role providing technical advice and National Institute of Standards and Technology (NIST) based information assurance governance guidance.
  • Strong Knowledge of the NIST Risk Management Framework (RMF) to perform technical support for annual Assessment and Authorization (A&A) security assessments performed by Office of the Chief Information Security Officer (OCISO).
  • Strong Understanding of all the NIST RMF Assessment and Authorization (A&A) documents and how to use the following but not limited to: Privacy threshold analysis (PTA), Privacy Impact Assessment (PIA), Control Assessment Worksheet (CAW), E-Auth, FIPS 199.
  • Transfer of Knowledge on managing Plans of Actions and Milestones (POA&Ms) for weakness remediation.
  • Strong Knowledge of the Department of Homeland Security (DHS) and the Office of Management and Budget (OMB) memo/Binding Operational Directives (BODs) impact assessment.
  • Group to develop, update, and manage, cybersecurity documentation: System Security Plans, Privacy Assessments, Contingency Plans, Federal Information Processing Standard Publication 199 (FIPS-199) categorization changes Security Impact Assessments, etc.
  • Perform Technical support for Department of Homeland Security (DHS) initiatives that require implementation (such as Continuous Diagnostics and Mitigation (CDM) using Okta and Certificate Management-Privileged Access Management (CA-PAM).
  • Analyze vulnerability and compliance scans for false positive identification and evaluate in terms of operational system data in coordination with Product Team Leads.
  • Track and establish cause of vulnerabilities that are precise but no more than 180 days.
  • Review/Update/Create system security configuration baselines - revise as necessary as the Center for Internet Security (CIS) and Security Technical Implementation Guides (STIG).
  • benchmarks are updated and coordinate changes with associated OCISO Enterprise Scan Team's compliance configurations upon three days of release.
  • Support teams to define and prioritize actionable timely recommendations for addressing compliance and vulnerability issues for network, operating systems, middleware, databases, and application. With experience leading remediation of Known Exploitable Vulnerabilities (KEVs).
  • Strong Understanding of the Federal Information Security Modernization Act (FISMA) systems, and National Institute of Standards and Technology (NIST) controls and support on how to implement them - potentially how to automate them whether through process, NIST OSCAL programming or other common scripting languages (e.g. Python).
  • In depth knowledge with networking, operating system, and middleware builds (configuration baselines).
  • In depth knowledge with CLOUD and Federal Information Security Management Act (FISMA) processes to include customer control metrics security tools and options.
  • Provide support with the Regular Expression (REGEX) for understanding/editing scan signatures.
  • Provide support, oversight, review, log data, network operation and security, and analysis for the following but not limited to: Scripting for Linux, Windows, Tenable, DBProtect, HP WebInspect, CSAM (the official cybersecurity repository), Juniper, CISCO, advance tools, IPv6.
  • Cloud security: to manage Assessment and Authorization (A&A) work for those systems
  • Use Rally to manage Epics, Features, and User Stories; provide Scrum Master services to create Rally artifacts and Agile documentation; translate Plan of Action and Milestones (POA&M) findings into clear, actionable guidance for technical leads and track remediation progress in Rally.
  • Supporting USPTO Data Calls and ensuring timely and completed submission, collaborating with subject matter experts.
  • Support incident response activities with Enterprise Operations Command Center.
  • Support new tools as required.
Desired Qualifications (not required, but a huge plus):
  • Experience with Rally and agile ceremonies.
  • Python coding
  • Experience using the Cybersecurity Asset Management (CSAM) system for customer base.
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Cyber Security Analyst Level III in McLean, VA vacancy
  • $110.8k - $185.1k

     ...Information Systems Security Officer (ISSO), Mid (MCSES III) Location US-VA-McLean ID 2026-4378 Category IT / Cyber Security / Network Systems Position Type...  ...supported organization, maintain a high level of operational availability.... 
    Suggested
    Full time
    For contractors
    Remote work

    American Systems

    McLean, VA
    3 days ago
  •  ...Contract Job #3080 0Title: Cyber Security Analyst Location: McLean, VA *Clearance...  ...knowledge of the current security threat level by monitoring related Internet postings...  ...start date DoD 8570 IAT Level III or CSSP-SPM within 6 months of start... 
    Suggested
    Contract work
    Work at office
    Shift work

    Cornerstone Defense

    McLean, VA
    3 days ago
  • $156k - $193k

     ...Sr. Information Systems Security Engineer Tysons Corner, VA We are seeking a skilled...  ...compliance with security controls. ~ Senior-level skills in specifying and implementing log...  .... ~ CISSP or equivalent IAT III certification to support DoD 8140 requirements... 
    Suggested
    Full time
    Work experience placement
    Local area
    Flexible hours

    MetroStar Corporation

    McLean, VA
    4 days ago
  • $81k - $120k

     ...Security Engineer (Senior Level) Are you looking for limitless career opportunities with a company that values growth, innovation, and teamwork? At Ntiva, we're more than a Managed Services Provider, we're a community dedicated to helping each other, our clients, and... 
    Suggested
    Contract work
    Temporary work
    Remote work

    Ntiva

    McLean, VA
    1 day ago
  • $111.43k - $192.89k

    Cybersecurity Information System Security Officer (ISSO) Job LocationsUS-Remote Job ID2026-...  ...compliance (GRC) tooling DoD 8570/8140 IAM Level II certification (Security+ CE, CAP,...  ...related field DoD 8570/8140 IAM Level III certification (CISSP, CISM, or equivalent... 
    Suggested
    Full time
    Contract work
    Local area
    Remote work

    LMI Consulting, LLC

    McLean, VA
    6 hours ago
  •  ...Mid-Level Project Manager / Scrum Master McLean, VA (Onsite – 5 Days/Week) 6 Months Contract Our client is seeking a Mid-Level Project Manager / Scrum Master to support enterprise data initiatives within a fast-paced delivery environment. This role is ideal for... 
    Contract work
    Local area

    RIT Solutions

    McLean, VA
    1 day ago
  • $104.8k - $192.2k

     ...to assess, improve, build, and in some cases operate integrated security operations for our clients.  We will support you with...  ...engagement. Provide technical oversight and mentoring to staff-level penetration testers during testing execution and report development... 
    For contractors
    Work experience placement
    Summer holiday
    Work at office
    Local area
    Flexible hours

    EY

    McLean, VA
    1 day ago
  •  ...working for a safer, healthier, and more secure nation and world. Our workplace reflects...  ...for our customers at all classification levels. Our engineers have expertise in research...  ...networks in different environments Work with cyber and infrastructure automation... 
    Work experience placement
    Internship
    Local area

    MITRE

    McLean, VA
    2 days ago
  •  ...Overview We’re looking for a Cyber Engineer to help deploy,...  ...language processing to provide secure, private, and trustworthy GenAI...  ...management on system risk levels and cybersecurity posture for...  ...equivalent DoD 8140 IAM Level III certification  ~ Expertise in... 
    Work experience placement
    Local area

    Logistics Management Institute

    McLean, VA
    2 days ago
  •  ...Threat Detection Specialist A specialized security professional responsible for designing,...  ...behavior analytics), and enterprise-level governance of insider threat detection and...  ...Requirements: Must be DoD 8570 IAT Level III Certified ~ Highly Desired: Certified Counter... 

    Navstar

    McLean, VA
    1 day ago
  • $280.6k - $320.2k

     ...Sr. Distinguished Engineer - Network Security (Remote Eligible) As a Senior Distinguished Engineer (Sr. Director Individual Contributor...  ...solutions to complex problems. You will drive innovation at multiple levels, helping optimize business outcomes while driving towards... 
    Full time
    Part time
    Local area
    Remote work

    Capital One National Association

    McLean, VA
    4 days ago
  •  ...Job Overview PenFed is hiring a (Hybrid) Cloud Engineer III at our Tysons, Virginia location. The primary purpose of this job...  ...monitoring, logging and other development tools. Collaborate with Cyber Security team in periodic reviews of the cloud security in order to... 
    Work experience placement
    Work at office
    Local area
    Worldwide
    Relocation

    PENFED Credit Union

    McLean, VA
    12 hours ago
  • $124.09k - $166.75k

     ...Cyber Analyst Principal GDIT is seeking a highly skilled and multi-faceted Cyber Analyst Principal...  ...blend of technical engineering prowess, security assessment and auditing skills, deep...  ...must have: Security clearance level: Must possess a current and active TS/SCI... 
    Full time
    Contract work

    General Dynamics

    McLean, VA
    1 day ago
  •  ...Lead Cyber Risk Manager (Splunk Engineer) Why choose between doing meaningful work and...  ...working for a safer, healthier, and more secure nation and world. Our workplace reflects...  ...audiences. Must meet DoD 8570.01M IAM Level III requirements. Active Top Secret clearance... 
    Work experience placement

    Navstar

    McLean, VA
    1 day ago
  • $151.8k - $187.5k

     ...Senior Cyber Analyst Everfox is one of the world's most significant private cybersecurity...  ...CI Poly ~ A bachelor's degree in cyber security, intelligence, or equivalent education and...  ...8570 Baseline Certification at IAT level II (2) or higher. Required only for DoD... 
    Permanent employment
    For contractors
    Work experience placement
    Local area
    Flexible hours

    Everfox

    McLean, VA
    17 hours ago
  •  ...resolve unique problems in space, cyber, and special operations in...  ...Analysis Center (JWAC), Space Security and Defense Program (SSDP), National...  ...for a Senior Cyber Access Analyst. Responsibilities...  ...Combatant Command and national levels ~ Extensive working knowledge... 
    Full time
    Work at office
    Local area
    Immediate start
    Long distance

    Systems Planning and Analysis, Inc

    McLean, VA
    1 day ago
  • $86.8k - $198k

     ...products in development to identify vulnerabilities and reinforce our security posture. This unique opportunity allows you to lead dynamic...  ...including senior executives, making your voice heard at every level. Join a passionate team of cybersecurity professionals... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    McLean, VA
    2 days ago
  • $104.8k - $192.2k

     ...Technology Consulting – Cybersecurity - Cyber Engineering Senior Consultant EY’s Government...  ...degree in Computer Science, Information Security, Engineering, or a related field At...  ...able to obtain and maintain a Top Secret-level clearance or higher Experience in... 
    Private practice
    Summer holiday
    Flexible hours

    EY

    McLean, VA
    1 day ago
  •  ...Mid-Level DevOps Engineer We are seeking a highly skilled Mid-Level DevOps Engineer who understands cloud architectural constructs...  ...Helm, Flux, or Argo CD. · Experience with Cloud and Network Security architecture, including least privilege and IAM, secrets management... 

    Software Technology Inc

    McLean, VA
    1 day ago
  • $119.81k - $189k

    Information System Security Officer (ISSO) - DHS Job LocationsUS-Remote Job ID2025-13054 #...  ...Advise senior management on system risk levels and cybersecurity posture for cloud-based...  ...teams to integrate information assurance/cyber security and remediate vulnerabilities throughout... 
    Full time
    Contract work
    Local area
    Remote work

    LMI Consulting, LLC

    McLean, VA
    6 hours ago
  • $89.2k - $175.36k

     ...Job Description: AT&T Global Public Sector is a trusted provider of secure, IP enabled, cloud-based, network solutions and professional services to the Federal Government. We are dedicated to recruiting, developing and empowering a diverse, high-performing workforce... 
    Temporary work
    Local area
    Night shift

    AT&T

    McLean, VA
    12 hours ago
  • $158.63k - $214.61k

     ...Information Systems Security Officer Seize your opportunity to make a personal impact as...  ...skilled team to be a premier provider of cyber security services to the customer. We provide...  ...security plans Security Clearance Level: TS/SCI with active polygraph... 
    Temporary work
    Immediate start
    Remote work
    Worldwide
    Flexible hours

    General Dynamics

    McLean, VA
    2 days ago
  • $90k - $120k

     ...Senior Information System Security Officer (ISSO) Work Location: Tysons, VA (SCIF - Onsite...  ...support all activities that ensure the level of security documented with the security...  ...Responsibilities: Collaborate with the Cyber ISSM to execute security program tasks,... 
    Contract work
    Work experience placement
    Flexible hours

    Navstar

    McLean, VA
    1 day ago
  • $134.21k - $175k

     ...Salary Range: $134,206.00 - $175,000.00 Security Clearance: TS/SCI Level of Experience: Senior This...  ...division. Warfare Systems comprises cyber and mission IT; electronic warfare; and...  ...environments. • DoD 8570 IAT Level III or IASAE II/III. Physical Requirements... 
    Full time
    For contractors
    Work experience placement
    Work at office
    Local area
    Worldwide

    Huntington Ingalls Industries

    McLean, VA
    4 days ago
  • $182.75k - $247.25k

     ...Requisition: Regular Clearance Level Must Currently Possess:...  ...best practices, designing security and excellence while minimizing...  ...troubleshooting to users. (Tier I, II, and III) May serve as a technical...  ...modernization, AI/ML, Cloud, Cyber and application development.... 
    Temporary work
    Local area
    Immediate start
    Remote work
    Worldwide
    Flexible hours

    General Dynamics Information Technology

    McLean, VA
    1 day ago
  •  ...Salary Range: $0.00 - $0.00 Security Clearance: TS/SCI Level of Experience: Intern This...  ...division. Warfare Systems comprises cyber and mission IT; electronic warfare;...  ...interns. Week 16: Finalize DoD IAT II/III prep; build career roadmap; reflect... 
    Permanent employment
    Full time
    Temporary work
    Work experience placement
    Internship
    Local area
    Worldwide

    Huntington Ingalls Industries

    McLean, VA
    2 days ago
  • $62k - $141k

     ...Job Number: R0238311 Information System Security Officer The Opportunity: We're looking for an Information System Security Officer...  ...with a polygraph HS diploma or GED DoD 8570 IAM Level II Certification Nice If You Have: Experience executing... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    McLean, VA
    1 day ago
  • $90k - $140k

     ...you to be a Senior?Information Systems Security Officer (ISSO) on our team?to support a government...  ...support all activities that ensure the level of security documented with the security...  ...Masters degree and 4 years of cyber & FISMA experience; OR Bachelors degree... 
    Local area
    Flexible hours

    Steampunk.com

    McLean, VA
    12 hours ago
  •  ...Senior Information System Security Officer McLean, VA Join our team at Core One! Our mission is to be at the forefront of devising...  ...reviews, and deliver security awareness training at the system level. Serve as the primary cybersecurity point of contact for... 

    Core One

    McLean, VA
    2 days ago
  •  ...government. Federal Information System Security Officer (ISSO) Location: McLean, VA...  ...FISMA, CMMC, RMF) into actionable system-level controls and implementation guidance Coordinate...  ...has been recognized by leading analyst evaluations and 50+ awards. Learn more at... 

    Exiger

    McLean, VA
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cyber Security Analyst Level III. Be the first to apply!