Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cyber Security Analyst

Pitech Solutions, Inc.

PiTech Solutions Inc is pleased to provide a comprehensive assessment of a federal agency's cybersecurity. Our mandate is a team of professionals that support an entire federal agency's technology infrastructure, cybersecurity posture and cloud services. We will deliver six months of structured, evidence-based assessment work culminating in actionable findings across eight domains — organizational, governance, operational, infrastructure, cybersecurity, contracts and licensing, modernization, and data/AI readiness. Every recommendation is weighted against priorities, cybersecurity, and compliance first, followed by governance accountability, operational performance, technology lifecycle, and cost efficiency. Job Description: Cybersecurity Analyst (Federal Assessments Top Secret Clearance) Position Summary PiTech Solutions Inc. is seeking a Cybersecurity Analyst to support independent, evidence-based cybersecurity assessments for U.S. federal agencies. This role plans and executes security control assessments, technical testing, and compliance evaluations aligned to federal requirements (e.g., FISMA, NIST, and agency-specific policies). The analyst documents objective evidence, identifies risk and root cause, and produces clear, actionable recommendations for executives and technical teams. This position requires an active Top Secret (TS) clearance (with eligibility to maintain access as required). Key Responsibilities Assessment planning and scoping: Participate in discovery with agency stakeholders to confirm system boundaries, environments (on-prem/cloud/hybrid), interconnections, data types, and mission priorities; define assessment objectives, methodology, schedule, sampling strategy, and evidence request lists. Security control assessment (SCA): Evaluate management, operational, and technical controls against applicable baselines and overlays (e.g., NIST SP 800-53); map implementation statements to objective evidence and document assessment results, rationale, and traceability. Risk Management Framework (RMF) support: Assist with RMF activities across the system lifecycle (categorization, selection, implementation validation, assessment, authorization support, and continuous monitoring); review and validate SSPs, SAP/SAR artifacts, POA&Ms, and continuous monitoring strategies. Technical validation and testing: Perform hands‑on security testing where authorized, including configuration reviews, vulnerability validation, log review, and control verification across endpoints, servers, network devices, IAM services, cloud resources, and security tooling. Vulnerability and configuration assessment: Execute and analyze results from automated scans (credentialed when possible), benchmark configurations (e.g., CIS/STIG guidance as applicable), and identify false positives/negatives; develop prioritized remediation recommendations. Cloud security assessment: Assess cloud service configurations and controls (e.g., identity, network segmentation, encryption, logging/monitoring, key management, and shared responsibility considerations) across major CSP platforms and FedRAMP-aligned control expectations. Incident readiness and operational security: Evaluate detection and response capabilities (SOC processes, playbooks, alerting, escalation, forensics readiness, and tabletop exercises); assess logging coverage and retention to support investigations and compliance. Policy, governance, and program reviews: Assess cybersecurity program documentation, governance, and oversight processes (e.g., risk acceptance, exception handling, asset management, vulnerability management, secure configuration, change control, and third‑party risk). Evidence management: Collect, organize, and protect sensitive assessment materials; maintain a defensible evidence trail, including interview notes, screenshots, configuration exports, scan outputs, and log samples in accordance with handling requirements. Reporting and briefings: Draft assessment deliverables (findings, risk ratings, root cause, impacts, and recommendations) and present results to technical teams and executive leadership; tailor communications for both technical depth and leadership decision‑making. Remediation support and verification: Collaborate with system owners and engineers to validate remediation plans, track POA&Ms, and confirm corrective actions through re‑testing and evidence review. Stakeholder coordination: Work effectively with federal personnel, contractors, and third parties; facilitate interviews and working sessions; provide clear status updates and elevate blockers in a timely manner. Quality and compliance: Follow internal assessment standards, templates, and QA processes to ensure consistency, accuracy, and alignment with contract requirements and federal audit expectations. Required Qualifications Active Top Secret (TS) clearance (and ability to meet ongoing access eligibility requirements). Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, or related field, or equivalent relevant experience. Demonstrated experience conducting cybersecurity assessments, audits, or security control assessments in federal or regulated environments, including 7+ years of related cybersecurity experience (or 5+ years with a Master’s degree). Working knowledge of federal cybersecurity requirements and assessment approaches (e.g., FISMA; NIST SP 800-53 control assessments; RMF concepts and artifacts such as SSP, SAP/SAR, and POA&M). Hands‑on technical capability to review configurations and validate controls across common enterprise technologies (Windows/Linux, Active Directory/Azure AD or equivalent IAM, network fundamentals, endpoint security, vulnerability management, and logging/monitoring). Strong written communication skills, including ability to produce clear findings, objective evidence narratives, and executive‑ready summaries. Strong verbal communication and interviewing skills; comfortable working with stakeholders from engineers to senior leaders. Ability to lead assessment workstreams with minimal oversight, including mentoring junior assessors, coordinating evidence requests, and driving deliverable quality. Ability to manage multiple tasks, meet deadlines, and work independently with minimal supervision. Desired Qualifications Industry certifications such as Security+, CySA+, SSCP, CISSP, CISM, CISA, CCSP, or equivalent. Experience supporting ATO packages and authorization activities, including coordination with Authorizing Officials (AOs) and SCA teams. Familiarity with FedRAMP requirements and control expectations for cloud services. Experience with DISA STIGs and security technical implementation guidance; familiarity with benchmark tooling and configuration baselines. Experience with vulnerability scanning and security tools (e.g., Tenable/Nessus, Qualys, Rapid7; endpoint security; SIEM platforms such as Splunk, Sentinel, or Elastic). Basic scripting/automation experience (e.g., PowerShell, Python) for evidence collection, analysis, or reporting efficiency. Experience supporting Zero Trust initiatives (e.g., identity‑centric security, MFA/conditional access, segmentation, device compliance, and continuous verification) aligned to federal guidance. Experience performing tabletop exercises, incident response assessments, or log management maturity reviews. Tools & Technologies (Representative) GRC and assessment artifacts: SSP/SAP/SAR/POA&M documentation, evidence trackers, control matrices, and risk registers Vulnerability and configuration assessment: credentialed scanning, secure configuration benchmarks, patch/vulnerability remediation workflows Identity and access management: RBAC, MFA, privileged access management concepts, account lifecycle processes Logging and monitoring: SIEM queries, log source onboarding validation, alert triage concepts, retention/immutability considerations Cloud platforms: configuration review concepts for major CSP services (networking, IAM, encryption, logging, resource governance) Collaboration and documentation: Microsoft 365, Word/Excel/PowerPoint, SharePoint/Teams, ticketing systems, and secure file handling Security Requirements This position requires an active Top Secret (TS) clearance and strict adherence to all applicable security requirements, including need-to-know access, approved information system use, and proper handling of sensitive and classified information. Candidate must be able to maintain clearance eligibility and comply with agency and contract‑specific security policies. Work may be performed on‑site at federal facilities and/or in secure environments as required by the agency. Occasional travel may be required for on‑site interviews, evidence collection, and briefings. The role may involve working with time‑sensitive deliverables during assessment fieldwork and reporting cycles. Work shall be performed primarily onsite in NW, Washington, DC 20573. We recognize that select analytical activities (e.g., drafting, synthesis, and report development) may be performed offsite when coordinated with the COR; however, quoters shall assume the engagement requires substantial onsite presence to support interviews, workflow observation, and stakeholder engagement Period of Performance 6 months PiTech Solutions Inc. is an equal opportunity employer. Employment decisions are based on qualifications, merit, and business needs. #J-18808-Ljbffr Pitech Solutions, Inc.

Vacancy posted 6 days ago
Similar jobs that could be interesting for youBased on the Cyber Security Analyst in Brooklyn, NY vacancy
  • Cyber Security Analyst Onsite: New York W2 OR 1099 Exp: 8+ Visa: GC, USC, H4 Ead, L2 Ead The position requires fully on-site reporting. Provide support for all corporate and enclave firewalls, application delivery controllers, RADIUS, RSA. Develop and implement firewall... 
    Suggested
    Work experience placement
    Local area
    Rotating shift

    Kaav Inc.

    Jackson Heights, NY
    6 days ago
  • $110k - $120k

    Job Overview The Cybersecurity Analyst - SOC Operations is responsible for monitoring, detecting...  ...This role serves as a key member of the Security Operations Center (SOC) and focuses on...  ...security visibility and minimizing cyber risk exposure. Key Responsibilities/Accountabilities... 
    Suggested
    Full time
    For contractors
    Local area
    Remote work

    Primoris Services Corporation

    Brooklyn, NY
    6 days ago
  • The Cybersecurity Analyst is responsible for monitoring and defending our customers’ environments within a 24/7 Security Operations Center (SOC). This role investigates security alerts...  ...: Minimum 3 years of experience in cyber security Experience with SEIM tools Experience... 
    Suggested

    Inversion6

    Brooklyn, NY
    4 days ago
  • Cyber Security Analyst *Please note, that this position is contingent upon the award or funding. The essential duties, experience, education requirements, and salary are subject to change.* The Cyber Security Analyst provides advanced cybersecurity engineering, RMF leadership... 
    Suggested
    Temporary work
    Work at office
    Immediate start

    790 IPKeys Technologies, LLC

    Brooklyn, NY
    6 days ago
  •  ...and maintain servers continuously to meet security compliance standards. Ensure that the Red...  ..., and implement network systems. Perform cyber investigations and analysis. Research and...  ...Microsoft Certified: Security Operations Analyst Associate (SC-200) Microsoft Certified:... 
    Suggested
    Full time

    Makoa

    Brooklyn, NY
    6 days ago
  • $102.17k

     ...Trinnex delivers value and impact to public sector clients across the country. Job Description Join the Trinnex Security Team as a Senior Cyber Security Analyst, where you will operate at the intersection of cybersecurity and DevSecOps to protect critical software... 
    Work experience placement
    H1b

    ATLVets Inc.

    Brooklyn, NY
    6 days ago
  • $7,094.23 per month

     ...be eligible for this role. Employees will be required to work at a FedEx office location up to several times per week. Sr Cyber Security Analyst Job Description We are seeking an experienced and technically proficient Senior Cyber Security Analyst to join our Information... 
    Work experience placement
    Work at office

    FedEx Group

    Brooklyn, NY
    3 days ago
  • Company Description Job Description CANDIDATES MUST BE PERMANENT IN THE CYBER SECURITY ANALYST CIVIL SERVICE TITLE OR HAVE A COMPARABLE CIVIL SERVICE TITLE TO APPLY The Information Security Analyst supports day-to-day security operations by monitoring alerts, investigating... 
    Permanent employment

    CITY OF NEW YORK INC

    Brooklyn, NY
    2 days ago
  • $63.5k - $105.9k

     ...with MANTECH! Join a dynamic team at the forefront of national security, providing advanced solutions to government intelligence agencies...  ...a motivated, career and customer-oriented Tier 1 Cybersecurity Analyst to join our Cybersecurity Operations Center (CSOC) team in... 
    Hourly pay
    Contract work
    Temporary work
    Work experience placement
    Work at office
    Local area
    Remote work
    Monday to Friday
    Shift work
    Night shift
    Weekend work
    Weekday work

    ManTech International

    Brooklyn, NY
    5 days ago
  •  ...facilitate trust for a digital-first world. Today, impersonation, fraud, AI-driven scams, and identity abuse spread faster than any security team can respond to. So we built something different: an agentic AI platform that proactively detects, monitors and takes down... 
    Full time
    Work at office
    Flexible hours

    Out Take

    Brooklyn, NY
    1 day ago
  • Make an impact at DTCCCyber Security Risk Office (CSSRO)As an Analyst within DTCC's Cyber Security Risk Office (CSRO), you will help support the firm's cyber security risk management objectives by contributing to activities that strengthen cyber governance, oversight, and... 
    Work at office
    Remote work

    DTCC- The Depository Trust & Clearing Corporation

    Jersey City, NJ
    7 days ago
  •  ...Washington, DC area. You will resolve complex IT issues, including hardware, software, and telecom problems, while aligning with security and policy guidelines. You’ll work with security operations, perform malware analysis, and help harden network devices. Strong Microsoft... 
    Full time

    AAC

    Brooklyn, NY
    6 days ago
  •  ...Cybersecurity Assessments And Exercises Vice President Drive the security of critical banking applications and platforms through hands-on offensive testing. As an Assessments & Exercises Vice President in the Cybersecurity and Technology Controls organization, you... 

    Chase

    Brooklyn, NY
    2 days ago
  • $180k - $218k

     ...systems and business platforms. We leverage leading-edge secure systems and software development, backed by industry-leading...  ...us. Job Description: We are seeking a highly skilled Lead Cyber Mission Threat Analyst to serve as the senior technical authority for cyber... 
    Hourly pay
    Contract work
    Temporary work
    Work experience placement
    Interim role
    Monday to Friday

    International Executive Service Corps

    Brooklyn, NY
    4 days ago
  •  ...Performs advanced troubleshooting and resolution of Data Center infrastructure problems. Requirements Assists with maintaining building security and immediately responds to building emergencies on a 24- hour basis Serve as a backup to the Data Center Manager, as directed... 
    For contractors
    Immediate start
    Night shift

    ARK

    Brooklyn, NY
    2 days ago
  • $53k - $89k

    Join us as we work to create a thriving ecosystem that delivers accessible, high-quality, and sustainable healthcare for all. athenahealth, Inc. as a web-based practice management and electronic health record (EHR) software product, is a large and ever-changing ecosystem...
    Full time
    Temporary work
    Work at office
    Local area
    Remote work

    Socket

    Brooklyn, NY
    3 days ago
  •  ...JOB DESCRIPTION Make an impact at DTCC Cyber Security Risk Office (CSSRO) As an Analyst within DTCC's Cyber Security Risk Office (CSRO), you will help support the firm's cyber security risk management objectives by contributing to activities that strengthen cyber... 
    Full time
    Internship
    Work at office
    Remote work

    DTCC

    Jersey City, NJ
    1 day ago
  • Technology Science Corporation seeks a network professional to maintain enterprise networks and security across LAN/WAN environments. You will support day-to-day operations of hardware and data communications to minimize downtime and maximize performance. The role requires... 

    Technology Science Corporation

    Brooklyn, NY
    2 days ago
  •  ...Engineer Level 3 to provide senior-level systems and network engineering in mission-critical environments. You will design, configure, secure, and troubleshoot complex infrastructures using Cisco switches/routers/firewalls, security appliances, and fiber networks. You will... 

    Independent Software, Inc.

    Brooklyn, NY
    5 days ago
  •  ...application due to a disability, contact this employer to ask for an accommodation or an alternative application process. Network Security Administrator/Security Net V Full Time 44 Virginia Beach, VA, US Join Our Talent Community to Stay Connected! *This position is... 
    Full time
    Contract work
    Temporary work
    Work at office
    Local area
    Immediate start
    Flexible hours

    Zel Technologies, LLC

    Brooklyn, NY
    5 days ago
  •  ...Davis H. Elliot Company, Inc. is seeking an Information Systems Security Administrator II to support and strengthen the organization's...  ...Administrator II serves as an intermediate-level contributor within the Cyber & GRC team and is responsible for supporting the implementation... 
    Temporary work
    Work experience placement

    Elliot Services

    Brooklyn, NY
    3 days ago
  •  ...Chief Information Security Officer The Fire Department of the City of New York (FDNY) seeks a full-time Chief Information Security...  ...information security strategy to protect data and systems from cyber threats. Key Responsibilities: Establish Security Strategy... 
    Full time
    Local area

    New York City | Jobs

    Brooklyn, NY
    5 days ago
  • The Role The analyst conducts digital forensic examinations across Windows, Linux, and macOS environments, performs disk duplication and mobile device acquisition, and carries out malware analysis. Day-to-day work also includes cloud-based investigations using M365, Azure... 
    For contractors

    Forensic Focus Limited

    Brooklyn, NY
    5 days ago
  •  ...Services company, is seeking an experienced Digital Forensics Analyst to support cybersecurity operations and incident response activities...  ...a federal government client. This position requires an active security clearance or the ability to obtain and maintain a government... 
    Local area
    Remote work
    Flexible hours
    Night shift

    Koniag Services, Inc.

    Brooklyn, NY
    6 days ago
  • $103k - $130k

     ...Clinical Application Analyst Department: 8610-Hospital Admin Employment Type: Full Time Location: 14662 Newport Ave, Tustin, CA 92780 ("HOSPITAL") Reporting To: Araceli Lonergan Compensation: $103,000 - $130,000 / year Description About the Role The Clinical Applications... 
    Full time

    Astrana Health Management

    Brooklyn, NY
    5 days ago
  •  ...Booz Allen Hamilton looks for an information security risk specialist to help DoD clients assess cyber risk, review RMF packages, and guide authorities to actionable plans. You will translate complex security concepts into practical recommendations and support accreditation... 

    Booz Allen Hamilton

    Brooklyn, NY
    3 days ago
  •  ...Please review the JD below and let me know if you would be interested in exploring the opportunity. Role: Information Security Consultant Location: Titusville, NJ Onsite Job Type: Fulltime Job Description Must Have Technical/Functional... 
    Full time

    Siri InfoSolutions Inc

    Jersey City, NJ
    3 days ago
  • Savannah River National Laboratory (SRNL) seeks highly skilled cybersecurity professionals to lead and advance cyber engineering efforts to protect national security and DOE missions. You will apply systematic analysis, coordinate with related functions, and drive... 

    SRNL

    Brooklyn, NY
    6 days ago
  •  ...Provide technical leadership to a team of analysts delivering software solutions and maintaining existing applications Analyze and develop long-term solutions to IT needs by developing new or modifying existing applications Review systems requirements and business processes... 
    Work at office

    Jobtailor

    Brooklyn, NY
    1 day ago
  •  ...messages, application logs, interfaces, and data issues. Support US regulatory reporting processes, including TRACE/FINRA reporting, security symbol mapping, and related EOD processes. Work with SQL and Sybase databases to investigate production issues and validate... 

    PB consulting

    Ridgewood, NY
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cyber Security Analyst. Be the first to apply!