Cyber Security Analyst
Pitech Solutions, Inc.
PiTech Solutions Inc is pleased to provide a comprehensive assessment of a federal agency's cybersecurity. Our mandate is a team of professionals that support an entire federal agency's technology infrastructure, cybersecurity posture and cloud services. We will deliver six months of structured, evidence-based assessment work culminating in actionable findings across eight domains — organizational, governance, operational, infrastructure, cybersecurity, contracts and licensing, modernization, and data/AI readiness. Every recommendation is weighted against priorities, cybersecurity, and compliance first, followed by governance accountability, operational performance, technology lifecycle, and cost efficiency. Job Description: Cybersecurity Analyst (Federal Assessments Top Secret Clearance) Position Summary PiTech Solutions Inc. is seeking a Cybersecurity Analyst to support independent, evidence-based cybersecurity assessments for U.S. federal agencies. This role plans and executes security control assessments, technical testing, and compliance evaluations aligned to federal requirements (e.g., FISMA, NIST, and agency-specific policies). The analyst documents objective evidence, identifies risk and root cause, and produces clear, actionable recommendations for executives and technical teams. This position requires an active Top Secret (TS) clearance (with eligibility to maintain access as required). Key Responsibilities Assessment planning and scoping: Participate in discovery with agency stakeholders to confirm system boundaries, environments (on-prem/cloud/hybrid), interconnections, data types, and mission priorities; define assessment objectives, methodology, schedule, sampling strategy, and evidence request lists. Security control assessment (SCA): Evaluate management, operational, and technical controls against applicable baselines and overlays (e.g., NIST SP 800-53); map implementation statements to objective evidence and document assessment results, rationale, and traceability. Risk Management Framework (RMF) support: Assist with RMF activities across the system lifecycle (categorization, selection, implementation validation, assessment, authorization support, and continuous monitoring); review and validate SSPs, SAP/SAR artifacts, POA&Ms, and continuous monitoring strategies. Technical validation and testing: Perform hands‑on security testing where authorized, including configuration reviews, vulnerability validation, log review, and control verification across endpoints, servers, network devices, IAM services, cloud resources, and security tooling. Vulnerability and configuration assessment: Execute and analyze results from automated scans (credentialed when possible), benchmark configurations (e.g., CIS/STIG guidance as applicable), and identify false positives/negatives; develop prioritized remediation recommendations. Cloud security assessment: Assess cloud service configurations and controls (e.g., identity, network segmentation, encryption, logging/monitoring, key management, and shared responsibility considerations) across major CSP platforms and FedRAMP-aligned control expectations. Incident readiness and operational security: Evaluate detection and response capabilities (SOC processes, playbooks, alerting, escalation, forensics readiness, and tabletop exercises); assess logging coverage and retention to support investigations and compliance. Policy, governance, and program reviews: Assess cybersecurity program documentation, governance, and oversight processes (e.g., risk acceptance, exception handling, asset management, vulnerability management, secure configuration, change control, and third‑party risk). Evidence management: Collect, organize, and protect sensitive assessment materials; maintain a defensible evidence trail, including interview notes, screenshots, configuration exports, scan outputs, and log samples in accordance with handling requirements. Reporting and briefings: Draft assessment deliverables (findings, risk ratings, root cause, impacts, and recommendations) and present results to technical teams and executive leadership; tailor communications for both technical depth and leadership decision‑making. Remediation support and verification: Collaborate with system owners and engineers to validate remediation plans, track POA&Ms, and confirm corrective actions through re‑testing and evidence review. Stakeholder coordination: Work effectively with federal personnel, contractors, and third parties; facilitate interviews and working sessions; provide clear status updates and elevate blockers in a timely manner. Quality and compliance: Follow internal assessment standards, templates, and QA processes to ensure consistency, accuracy, and alignment with contract requirements and federal audit expectations. Required Qualifications Active Top Secret (TS) clearance (and ability to meet ongoing access eligibility requirements). Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, or related field, or equivalent relevant experience. Demonstrated experience conducting cybersecurity assessments, audits, or security control assessments in federal or regulated environments, including 7+ years of related cybersecurity experience (or 5+ years with a Master’s degree). Working knowledge of federal cybersecurity requirements and assessment approaches (e.g., FISMA; NIST SP 800-53 control assessments; RMF concepts and artifacts such as SSP, SAP/SAR, and POA&M). Hands‑on technical capability to review configurations and validate controls across common enterprise technologies (Windows/Linux, Active Directory/Azure AD or equivalent IAM, network fundamentals, endpoint security, vulnerability management, and logging/monitoring). Strong written communication skills, including ability to produce clear findings, objective evidence narratives, and executive‑ready summaries. Strong verbal communication and interviewing skills; comfortable working with stakeholders from engineers to senior leaders. Ability to lead assessment workstreams with minimal oversight, including mentoring junior assessors, coordinating evidence requests, and driving deliverable quality. Ability to manage multiple tasks, meet deadlines, and work independently with minimal supervision. Desired Qualifications Industry certifications such as Security+, CySA+, SSCP, CISSP, CISM, CISA, CCSP, or equivalent. Experience supporting ATO packages and authorization activities, including coordination with Authorizing Officials (AOs) and SCA teams. Familiarity with FedRAMP requirements and control expectations for cloud services. Experience with DISA STIGs and security technical implementation guidance; familiarity with benchmark tooling and configuration baselines. Experience with vulnerability scanning and security tools (e.g., Tenable/Nessus, Qualys, Rapid7; endpoint security; SIEM platforms such as Splunk, Sentinel, or Elastic). Basic scripting/automation experience (e.g., PowerShell, Python) for evidence collection, analysis, or reporting efficiency. Experience supporting Zero Trust initiatives (e.g., identity‑centric security, MFA/conditional access, segmentation, device compliance, and continuous verification) aligned to federal guidance. Experience performing tabletop exercises, incident response assessments, or log management maturity reviews. Tools & Technologies (Representative) GRC and assessment artifacts: SSP/SAP/SAR/POA&M documentation, evidence trackers, control matrices, and risk registers Vulnerability and configuration assessment: credentialed scanning, secure configuration benchmarks, patch/vulnerability remediation workflows Identity and access management: RBAC, MFA, privileged access management concepts, account lifecycle processes Logging and monitoring: SIEM queries, log source onboarding validation, alert triage concepts, retention/immutability considerations Cloud platforms: configuration review concepts for major CSP services (networking, IAM, encryption, logging, resource governance) Collaboration and documentation: Microsoft 365, Word/Excel/PowerPoint, SharePoint/Teams, ticketing systems, and secure file handling Security Requirements This position requires an active Top Secret (TS) clearance and strict adherence to all applicable security requirements, including need-to-know access, approved information system use, and proper handling of sensitive and classified information. Candidate must be able to maintain clearance eligibility and comply with agency and contract‑specific security policies. Work may be performed on‑site at federal facilities and/or in secure environments as required by the agency. Occasional travel may be required for on‑site interviews, evidence collection, and briefings. The role may involve working with time‑sensitive deliverables during assessment fieldwork and reporting cycles. Work shall be performed primarily onsite in NW, Washington, DC 20573. We recognize that select analytical activities (e.g., drafting, synthesis, and report development) may be performed offsite when coordinated with the COR; however, quoters shall assume the engagement requires substantial onsite presence to support interviews, workflow observation, and stakeholder engagement Period of Performance 6 months PiTech Solutions Inc. is an equal opportunity employer. Employment decisions are based on qualifications, merit, and business needs. #J-18808-Ljbffr Pitech Solutions, Inc.
- Cyber Security Analyst Onsite: New York W2 OR 1099 Exp: 8+ Visa: GC, USC, H4 Ead, L2 Ead The position requires fully on-site reporting. Provide support for all corporate and enclave firewalls, application delivery controllers, RADIUS, RSA. Develop and implement firewall...SuggestedWork experience placementLocal areaRotating shift
$110k - $120k
Job Overview The Cybersecurity Analyst - SOC Operations is responsible for monitoring, detecting... ...This role serves as a key member of the Security Operations Center (SOC) and focuses on... ...security visibility and minimizing cyber risk exposure. Key Responsibilities/Accountabilities...SuggestedFull timeFor contractorsLocal areaRemote work- The Cybersecurity Analyst is responsible for monitoring and defending our customers’ environments within a 24/7 Security Operations Center (SOC). This role investigates security alerts... ...: Minimum 3 years of experience in cyber security Experience with SEIM tools Experience...Suggested
- Cyber Security Analyst *Please note, that this position is contingent upon the award or funding. The essential duties, experience, education requirements, and salary are subject to change.* The Cyber Security Analyst provides advanced cybersecurity engineering, RMF leadership...SuggestedTemporary workWork at officeImmediate start
- ...and maintain servers continuously to meet security compliance standards. Ensure that the Red... ..., and implement network systems. Perform cyber investigations and analysis. Research and... ...Microsoft Certified: Security Operations Analyst Associate (SC-200) Microsoft Certified:...SuggestedFull time
$102.17k
...Trinnex delivers value and impact to public sector clients across the country. Job Description Join the Trinnex Security Team as a Senior Cyber Security Analyst, where you will operate at the intersection of cybersecurity and DevSecOps to protect critical software...Work experience placementH1b$7,094.23 per month
...be eligible for this role. Employees will be required to work at a FedEx office location up to several times per week. Sr Cyber Security Analyst Job Description We are seeking an experienced and technically proficient Senior Cyber Security Analyst to join our Information...Work experience placementWork at office- Company Description Job Description CANDIDATES MUST BE PERMANENT IN THE CYBER SECURITY ANALYST CIVIL SERVICE TITLE OR HAVE A COMPARABLE CIVIL SERVICE TITLE TO APPLY The Information Security Analyst supports day-to-day security operations by monitoring alerts, investigating...Permanent employment
$63.5k - $105.9k
...with MANTECH! Join a dynamic team at the forefront of national security, providing advanced solutions to government intelligence agencies... ...a motivated, career and customer-oriented Tier 1 Cybersecurity Analyst to join our Cybersecurity Operations Center (CSOC) team in...Hourly payContract workTemporary workWork experience placementWork at officeLocal areaRemote workMonday to FridayShift workNight shiftWeekend workWeekday work- ...facilitate trust for a digital-first world. Today, impersonation, fraud, AI-driven scams, and identity abuse spread faster than any security team can respond to. So we built something different: an agentic AI platform that proactively detects, monitors and takes down...Full timeWork at officeFlexible hours
- Make an impact at DTCCCyber Security Risk Office (CSSRO)As an Analyst within DTCC's Cyber Security Risk Office (CSRO), you will help support the firm's cyber security risk management objectives by contributing to activities that strengthen cyber governance, oversight, and...Work at officeRemote work
- ...Washington, DC area. You will resolve complex IT issues, including hardware, software, and telecom problems, while aligning with security and policy guidelines. You’ll work with security operations, perform malware analysis, and help harden network devices. Strong Microsoft...Full time
- ...Cybersecurity Assessments And Exercises Vice President Drive the security of critical banking applications and platforms through hands-on offensive testing. As an Assessments & Exercises Vice President in the Cybersecurity and Technology Controls organization, you...
$180k - $218k
...systems and business platforms. We leverage leading-edge secure systems and software development, backed by industry-leading... ...us. Job Description: We are seeking a highly skilled Lead Cyber Mission Threat Analyst to serve as the senior technical authority for cyber...Hourly payContract workTemporary workWork experience placementInterim roleMonday to Friday- ...Performs advanced troubleshooting and resolution of Data Center infrastructure problems. Requirements Assists with maintaining building security and immediately responds to building emergencies on a 24- hour basis Serve as a backup to the Data Center Manager, as directed...For contractorsImmediate startNight shift
$53k - $89k
Join us as we work to create a thriving ecosystem that delivers accessible, high-quality, and sustainable healthcare for all. athenahealth, Inc. as a web-based practice management and electronic health record (EHR) software product, is a large and ever-changing ecosystem...Full timeTemporary workWork at officeLocal areaRemote work- ...JOB DESCRIPTION Make an impact at DTCC Cyber Security Risk Office (CSSRO) As an Analyst within DTCC's Cyber Security Risk Office (CSRO), you will help support the firm's cyber security risk management objectives by contributing to activities that strengthen cyber...Full timeInternshipWork at officeRemote work
- Technology Science Corporation seeks a network professional to maintain enterprise networks and security across LAN/WAN environments. You will support day-to-day operations of hardware and data communications to minimize downtime and maximize performance. The role requires...
- ...Engineer Level 3 to provide senior-level systems and network engineering in mission-critical environments. You will design, configure, secure, and troubleshoot complex infrastructures using Cisco switches/routers/firewalls, security appliances, and fiber networks. You will...
- ...application due to a disability, contact this employer to ask for an accommodation or an alternative application process. Network Security Administrator/Security Net V Full Time 44 Virginia Beach, VA, US Join Our Talent Community to Stay Connected! *This position is...Full timeContract workTemporary workWork at officeLocal areaImmediate startFlexible hours
- ...Davis H. Elliot Company, Inc. is seeking an Information Systems Security Administrator II to support and strengthen the organization's... ...Administrator II serves as an intermediate-level contributor within the Cyber & GRC team and is responsible for supporting the implementation...Temporary workWork experience placement
- ...Chief Information Security Officer The Fire Department of the City of New York (FDNY) seeks a full-time Chief Information Security... ...information security strategy to protect data and systems from cyber threats. Key Responsibilities: Establish Security Strategy...Full timeLocal area
- The Role The analyst conducts digital forensic examinations across Windows, Linux, and macOS environments, performs disk duplication and mobile device acquisition, and carries out malware analysis. Day-to-day work also includes cloud-based investigations using M365, Azure...For contractors
- ...Services company, is seeking an experienced Digital Forensics Analyst to support cybersecurity operations and incident response activities... ...a federal government client. This position requires an active security clearance or the ability to obtain and maintain a government...Local areaRemote workFlexible hoursNight shift
$103k - $130k
...Clinical Application Analyst Department: 8610-Hospital Admin Employment Type: Full Time Location: 14662 Newport Ave, Tustin, CA 92780 ("HOSPITAL") Reporting To: Araceli Lonergan Compensation: $103,000 - $130,000 / year Description About the Role The Clinical Applications...Full time- ...Booz Allen Hamilton looks for an information security risk specialist to help DoD clients assess cyber risk, review RMF packages, and guide authorities to actionable plans. You will translate complex security concepts into practical recommendations and support accreditation...
- ...Please review the JD below and let me know if you would be interested in exploring the opportunity. Role: Information Security Consultant Location: Titusville, NJ Onsite Job Type: Fulltime Job Description Must Have Technical/Functional...Full time
- Savannah River National Laboratory (SRNL) seeks highly skilled cybersecurity professionals to lead and advance cyber engineering efforts to protect national security and DOE missions. You will apply systematic analysis, coordinate with related functions, and drive...
- ...Provide technical leadership to a team of analysts delivering software solutions and maintaining existing applications Analyze and develop long-term solutions to IT needs by developing new or modifying existing applications Review systems requirements and business processes...Work at office
- ...messages, application logs, interfaces, and data issues. Support US regulatory reporting processes, including TRACE/FINRA reporting, security symbol mapping, and related EOD processes. Work with SQL and Sybase databases to investigate production issues and validate...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Security Analyst. Be the first to apply!
- information security consultant Brooklyn, NY
- cyber security analyst Brooklyn, NY
- cyber sales Brooklyn, NY
- cyber Brooklyn, NY
- cyber insurance Brooklyn, NY
- cyber security Brooklyn, NY
- cybersecurity Brooklyn, NY
- cybersecurity software engineer Brooklyn, NY
- cyber security sales Brooklyn, NY
- remote cyber security Brooklyn, NY




