Cybersecurity Analyst 2 (Vulnerability) (GTA)
$70.8k - $91kState of Georgia
Start your career in public service - JOIN OUR TEAM Georgia Technology Authority (GTA) a Great Place to Work® certified! The Georgia Technology Authority (GTA) is currently seeking a Cybersecurity Analyst 2- in the Office of Information Security (OIS) Department The Georgia Technology Authority (GTA) currently manages the delivery of IT infrastructure services to 89 Executive Branch agencies and managed network services to more than 1,200 state and local government entities. IT infrastructure services encompass mainframes, servers, service desk, end user computing, disaster recovery and security. Managed network services include the state's wide and local area networks, voice, cable and wiring, and conferencing services. Want to know more about our AWARD-WINNING Authority visit: JOB SUMMARY: Cybersecurity Vulnerability Analyst 2 performs mid-level cybersecurity functions supporting the State of Georgia's enterprise vulnerability management program. This role is responsible for identifying, analyzing, prioritizing and tracking security vulnerabilities across statewide information systems, networks, applications and cloud environments. The position reports to the Section Director of Security Operations and collaborates closely with the State Security Operations Center (SOC) and cybersecurity intelligence analysts and managed security service providers to align vulnerability management activities with active threats, incident response efforts and emerging risk trends. The analyst independently conducts vulnerability assessments, evaluates risk using established frameworks and works with state agency vulnerability teams to support timely remediation and risk reduction. This role contributes to compliance with state and federal cybersecurity standards and supports enterprise security reporting requirements and helps strengthen the overall cybersecurity posture of Georgia's Executive Branch agencies. RESPONSIBILITIES:
• Perform routine and ad hoc vulnerability and compliance scanning across statewide networks, servers' endpoints, applications and cloud environments using industry standard security tools.
• Evaluate systems against approved security baselines and compliance requirements including CIS benchmarks, STIGs, NIST standards, CJIS Security Policy and State of Georgia cybersecurity policies.
• Analyze scan results to assess severity, exploitability, compliance gaps and overall enterprise risk, incorporating threat intelligence and asset critically.
• Validate findings to eliminate false positives and ensure accuracy, consistency and reliability of vulnerability data.
• Produce, maintain, and present vulnerability and compliance reports, including technical findings, remediation tracking trend analysis, and executive level metrics.
• Prioritize vulnerabilities and compliance findings and track them through remediation, mitigation, exception or formal risk acceptance processes.
• Collaborate with the State Security Operations Center (SOC) to align vulnerability data with incident response, threat hunting and active exploitation activity.
• Coordinate with cybersecurity intelligence analysts to evaluate emerging threats, zero-day vulnerabilities and adversary tactics relevant to state IT systems.
• Work with managed security service providers to oversee scanning activities, validate results and ensure service delivery requirements align with enterprise requirements.
• Partner with state agency IT teams, systems owners and shared service providers to support remediation efforts and promote secure configuration practices.
• Provide risk-based guidance and recommend mitigation or compensating controls to technical, operational and executive stakeholders.
• Support enterprise8 patch management, configuration management, and change management processes to reduce systemic risk.
• Assist with audits, security assessments, and reporting related to state and federal cybersecurity compliance obligations.
• Maintain accurate documentation, dashboards and vulnerability lifecycle records in accordance with enterprise governance and reporting requirements.
• Escalate critical, high risk or actively exploited vulnerabilities to the Director of Security Operations and appropriate stakeholders in a timely manner.
• Performs other duties as assigned. CORE COMPETENCIES
• Strong written and verbal communication skills, including the ability to explain technical risk in layman's terms.
• Ability to work independently, manage multiple priorities and meet established deadlines in a regulated environment.
• Ability to produce clear, accurate vulnerability and compliance reports for technical and nontechnical stakeholders. AGENCY SPECIFIC QUALIFICATIONS: Minimum Qualifications:
• BS/BA degree in Cybersecurity, Information Technology, Computer Science or a related field AND Three (3) or more years of experience in cybersecurity, vulnerability management, security operations or IT enterprise IT security WITH : o Demonstrated experience performing vulnerability and compliance scanning using industry standard security tools in an enterprise environment. o Working knowledge of vulnerability management concepts, including identification and reduction of false positives. o Familiarity with security configurations standards and frameworks such as NIST, CIS Benchmarks, STIGs, or CIS requirements. o Experience collaborating with multiple stakeholders, including IT teams, security operations personnel, or external service providers.
• Currently holds an intermediate cyber certification per state guidelines or achieves within 12 months of start date: (GCFE, CCNA-S, CASP, GCIH*, CEH) *any GIAC intermediate level certification accepted
• Must hold or be able to qualify for a US Department of Homeland Security (DHS) clearance
• The ability to successfully pass GBI and FBI background investigation for purposes of obtaining a Top-Secret SCI clearance o Pass a polygraph exam
• Must be flexible: available after core business hours and travel to/from incidents throughout the State of Georgia Comfortable working in restricted environment with limited connectivity
Note: An equivalent combination of education and job-specific experience that provided the knowledge, experience, and competencies required to successfully perform the job at the level listed may be substituted on a year-over-year basis. Preferred Qualifications: (Preference will be given to candidates who, demonstrate some or all of the following skills/experience):
• Experience working with various cybersecurity best practices, frameworks, and regulations such as: NIST Special Publications documents (SP 800-30, 800-37, 800-50, 800-53A, 800-53, 800-60, 800-61, and 800-64), NIST FIPS (FIPS-199, 200, 140-2), IT Security frameworks - (NIST Special Pubs 800 Series, NIST Cybersecurity Framework, ISO 27000 Series), CIS CSC, and regulations (FISMA, HIPAA, CJIS, SSA, PCI-DSS).
• Experience supporting statewide enterprise, or multi-agency cybersecurity environments.
• Hands-on experience with enterprise vulnerability management platforms (e.g., CrowdStrike, Tenable Qualys Rapid7, or equivalent).
• Knowledge of cloud security within AWS, Azure, or Google Cloud environments.
• One or more industry recognized cybersecurity certifications such as: o CompTIA Security+ o CEH o GSEC o CISSP o CISM
• Working knowledge of the cyber incident handling process and experience in its execution.
• Experience in network traffic analysis and threat indicator identification COMPENSATION/WORKER TYPE/ADDITIONAL DETAILS: Office Location: 47 Trinity Ave, Atlanta GA Worker Type: Hybrid - (in-office: 2-3 days per week) Target Hiring Salary Range: *$70,800 - $91,000 *Current Georgia state government employees will be subject to SPB rule provisions. EARN MORE THAN A SALARY! In addition to a competitive salary, the Georgia Technology Authority offers a generous benefits package, which includes employee retirement plan; paid holidays annually; vacation and sick leave; health, dental, vision, legal, disability, accidental death and dismemberment, health and childcare spending account; in addition to telework opportunities depending upon position. More information on Benefits: Due to the volume of applications received, we are unable to provide information on application status by phone or e-mail. All qualified applicants will be considered but may not necessarily receive an interview. Selected applicants will be contacted by the hiring agency for next steps in the selection process. Applicants who are not selected will not receive notification. Georgia Technology Authority does not discriminate in employment on the basis of race, color, religion, sex (including pregnancy and gender identity), national origin, political affiliation, sexual orientation, marital status, disability, genetic information, age, membership in an employee organization, retaliation, parental status, military service, or other non-merit factor.
• Perform routine and ad hoc vulnerability and compliance scanning across statewide networks, servers' endpoints, applications and cloud environments using industry standard security tools.
• Evaluate systems against approved security baselines and compliance requirements including CIS benchmarks, STIGs, NIST standards, CJIS Security Policy and State of Georgia cybersecurity policies.
• Analyze scan results to assess severity, exploitability, compliance gaps and overall enterprise risk, incorporating threat intelligence and asset critically.
• Validate findings to eliminate false positives and ensure accuracy, consistency and reliability of vulnerability data.
• Produce, maintain, and present vulnerability and compliance reports, including technical findings, remediation tracking trend analysis, and executive level metrics.
• Prioritize vulnerabilities and compliance findings and track them through remediation, mitigation, exception or formal risk acceptance processes.
• Collaborate with the State Security Operations Center (SOC) to align vulnerability data with incident response, threat hunting and active exploitation activity.
• Coordinate with cybersecurity intelligence analysts to evaluate emerging threats, zero-day vulnerabilities and adversary tactics relevant to state IT systems.
• Work with managed security service providers to oversee scanning activities, validate results and ensure service delivery requirements align with enterprise requirements.
• Partner with state agency IT teams, systems owners and shared service providers to support remediation efforts and promote secure configuration practices.
• Provide risk-based guidance and recommend mitigation or compensating controls to technical, operational and executive stakeholders.
• Support enterprise8 patch management, configuration management, and change management processes to reduce systemic risk.
• Assist with audits, security assessments, and reporting related to state and federal cybersecurity compliance obligations.
• Maintain accurate documentation, dashboards and vulnerability lifecycle records in accordance with enterprise governance and reporting requirements.
• Escalate critical, high risk or actively exploited vulnerabilities to the Director of Security Operations and appropriate stakeholders in a timely manner.
• Performs other duties as assigned. CORE COMPETENCIES
• Strong written and verbal communication skills, including the ability to explain technical risk in layman's terms.
• Ability to work independently, manage multiple priorities and meet established deadlines in a regulated environment.
• Ability to produce clear, accurate vulnerability and compliance reports for technical and nontechnical stakeholders. AGENCY SPECIFIC QUALIFICATIONS: Minimum Qualifications:
• BS/BA degree in Cybersecurity, Information Technology, Computer Science or a related field AND Three (3) or more years of experience in cybersecurity, vulnerability management, security operations or IT enterprise IT security WITH : o Demonstrated experience performing vulnerability and compliance scanning using industry standard security tools in an enterprise environment. o Working knowledge of vulnerability management concepts, including identification and reduction of false positives. o Familiarity with security configurations standards and frameworks such as NIST, CIS Benchmarks, STIGs, or CIS requirements. o Experience collaborating with multiple stakeholders, including IT teams, security operations personnel, or external service providers.
• Currently holds an intermediate cyber certification per state guidelines or achieves within 12 months of start date: (GCFE, CCNA-S, CASP, GCIH*, CEH) *any GIAC intermediate level certification accepted
• Must hold or be able to qualify for a US Department of Homeland Security (DHS) clearance
• The ability to successfully pass GBI and FBI background investigation for purposes of obtaining a Top-Secret SCI clearance o Pass a polygraph exam
• Must be flexible: available after core business hours and travel to/from incidents throughout the State of Georgia Comfortable working in restricted environment with limited connectivity
Note: An equivalent combination of education and job-specific experience that provided the knowledge, experience, and competencies required to successfully perform the job at the level listed may be substituted on a year-over-year basis. Preferred Qualifications: (Preference will be given to candidates who, demonstrate some or all of the following skills/experience):
• Experience working with various cybersecurity best practices, frameworks, and regulations such as: NIST Special Publications documents (SP 800-30, 800-37, 800-50, 800-53A, 800-53, 800-60, 800-61, and 800-64), NIST FIPS (FIPS-199, 200, 140-2), IT Security frameworks - (NIST Special Pubs 800 Series, NIST Cybersecurity Framework, ISO 27000 Series), CIS CSC, and regulations (FISMA, HIPAA, CJIS, SSA, PCI-DSS).
• Experience supporting statewide enterprise, or multi-agency cybersecurity environments.
• Hands-on experience with enterprise vulnerability management platforms (e.g., CrowdStrike, Tenable Qualys Rapid7, or equivalent).
• Knowledge of cloud security within AWS, Azure, or Google Cloud environments.
• One or more industry recognized cybersecurity certifications such as: o CompTIA Security+ o CEH o GSEC o CISSP o CISM
• Working knowledge of the cyber incident handling process and experience in its execution.
• Experience in network traffic analysis and threat indicator identification COMPENSATION/WORKER TYPE/ADDITIONAL DETAILS: Office Location: 47 Trinity Ave, Atlanta GA Worker Type: Hybrid - (in-office: 2-3 days per week) Target Hiring Salary Range: *$70,800 - $91,000 *Current Georgia state government employees will be subject to SPB rule provisions. EARN MORE THAN A SALARY! In addition to a competitive salary, the Georgia Technology Authority offers a generous benefits package, which includes employee retirement plan; paid holidays annually; vacation and sick leave; health, dental, vision, legal, disability, accidental death and dismemberment, health and childcare spending account; in addition to telework opportunities depending upon position. More information on Benefits: Due to the volume of applications received, we are unable to provide information on application status by phone or e-mail. All qualified applicants will be considered but may not necessarily receive an interview. Selected applicants will be contacted by the hiring agency for next steps in the selection process. Applicants who are not selected will not receive notification. Georgia Technology Authority does not discriminate in employment on the basis of race, color, religion, sex (including pregnancy and gender identity), national origin, political affiliation, sexual orientation, marital status, disability, genetic information, age, membership in an employee organization, retaliation, parental status, military service, or other non-merit factor.
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Cybersecurity Analyst 2 (Vulnerability) (GTA) in Atlanta, GA vacancy
$70.8k - $91k
...Cybersecurity Analyst 2 The Georgia Technology Authority (GTA) is currently seeking a Cybersecurity Analyst 2 – in the Office of Information Security (OIS)... ...conferencing services. JOB SUMMARY: Cybersecurity Vulnerability Analyst 2 performs mid-level cybersecurity...SuggestedWork at officeLocal areaRemote workFlexible hours2 days per week3 days per week- ...doing well, Job: GA DHS - Cybersecurity Analyst Location : 47 Trinity Ave... ...security tools, including vulnerability scanning platforms such as Tenable... ...Technology Authority (GTA). Ensure periodic monitoring... ...Required 2 Years Experience...SuggestedTemporary workFor contractorsWork at officeLocal area
$75.75k - $110k
...1. Students are our top priority. 2. We strive for excellence. 3. We thrive... ...human condition. Job Summary Cybersecurity Analysts are responsible for protecting the... ...systems and data from cyber threats and vulnerabilities. This role involves monitoring security...SuggestedFull timeContract workTemporary workPart timeFor contractorsWork at officeLocal area$76.4k - $138.6k
...business value. The opportunity As an Offensive Security Analyst on the Vulnerability Management team, you will play a supporting role in the... ...application process, please call 1-800-EY-HELP3, select Option 2 for candidate related inquiries, then select Option 1 for...SuggestedSummer holidayLocal areaFlexible hours- ...business risk that introduces. The analyst also drives process... ...and critical vendor access. 2. Line of Business (LOB) Request... ...years of experience in Cybersecurity or related work Broad knowledge... ...Threat (APT), insider), vulnerabilities, and exploits; incident...SuggestedFull timePart timeWork experience placementWork at officeShift workDay shift
- ...Job Title: IT Manager 2/Cybersecurity Audit Manager Address: Atlanta, GA 30334 6 Months Contract Position Job Description... ...management processes and frameworks to prioritize and address vulnerabilities. Security Policies and Procedures: Establish and...Contract work
$56.62k - $58.88k
...Security Operations Center (SOC) analyst role within a centralized SOC... ..., and escalation of cybersecurity events using established procedures... ...-on analysis. # Support vulnerability and exposure monitoring activities... ...in USG Board Policy 8.2.18.1.2 and can be found on-line...Permanent employmentFull timeInternshipWork at officeRemote workRelocation- ...Vulnerability Analyst Our client is a global manufacturing firm that partners with their customers to provide differentiated paper and packaging solutions that help them win in the marketplace. Our client is in Atlanta they are seeking a Vulnerability Analyst is responsible...Work at officeRemote workRelocation
- ...168,800 per year | Full Time POSITION SUMMARY : The Cybersecurity Analyst is responsible for safeguarding the Corporation's data, systems... ...incidents, and conducts investigations to mitigate vulnerabilities. Cybersecurity Analysts implement data classification frameworks...Full time
- ...Cybersecurity Analyst Atlanta, GA The Weather Company is the world's leading weather provider, helping people and businesses make more... ...incident response process. Monitor public threat and vulnerability disclosure sources to assess organizational impact and collaborate...Flexible hoursShift work
- ...The Home Depot is seeking a Cybersecurity professional in Atlanta, Georgia, to protect systems, data, and technology assets. This position... ...measures. Essential qualifications include a Bachelor's degree and 2+ years of relevant experience, with a focus on cybersecurity...
- ...Job Title: Cybersecurity Analyst Location: Hybrid , GA Pay Rate: $55/.hr C2C Need Copy or required certs and DL Copy... ...Strong expertise in Windows/Linux system administration, vulnerability scanning, and endpoint protection. Preferred Certifications...Work at office
- ...Cybersecurity Analyst PurpleBox is the leading technology consulting company that focuses on solving business problems utilizing new technologies... ...run daily processes and tools for managing cybersecurity: Vulnerability Management, End Point Protection, Security Logging,...Full timePart timeInternshipLocal area
$53.1k - $67.7k
...Georgia Technology Authority (GTA) a Great Place to Work® certified... ...currently seeking a Contract Analyst - in the Contracts &... ...systems) IT services (cloud, cybersecurity, development vendors) Hardware... ...Worker Type: Hybrid - (in-office: 2-3 days per week) Target...Contract workWork at officeLocal areaRemote work2 days per week3 days per week$98k - $120.7k
...thrive. What You'll Do As a Senior Analyst - Cyber Security Incident Response (CS3)... ...Bachelor's degree (or equivalent) in Cybersecurity, Computer Science, Information Security,... ...of professional experience, with at least 2+ years in cyber security or security operations...Work at officeLocal areaShift work$48.88k
...responsible for delivering a wide range of services to Georgia's most vulnerable populations. Our mission is to strengthen Georgia by providing... ...) is seeking candidates for the position of Human Resources Analyst 2 (Background Analyst). This position is located in Atlanta,...Full timeTemporary workInternshipWork at officeRemote workFlexible hours$105.79k - $141.05k
...What We Look For in a Candidate ~ Bachelor's degree with 6+ years of experience or Master's degree with 4+ years of experience. ~2-3 years practical experience with controls validation and compliance testing of CMMC audits, SSAE 16, AT-101 (SOC 1 / SOC 2), PCI, ISO...Full timeTemporary workRemote work- ...in practice Experience participating in IT projects Preferred Qualifications: ~5+ years in Identity and Access Management ~2+ years leading IAM initiatives ~ Experience with one or more IAM platforms such as: ~ Oracle Identity Manager ~ Sailpoint ~ CyberArk...Full timePart timeWork experience placementShift workDay shift
$146.28k - $219.42k
...Cybersecurity Senior Advisor - Offensive Security & Exposure Management Location: This... ...requires associates to be in-office 1 - 2 days per week, fostering collaboration... ...analysis of attack paths and systemic vulnerabilities. Establish risk-based prioritization...Temporary workWork experience placementWork at officeLocal area2 days per week1 day per week- ...Overview: Job Title: Systems Analyst 2 (685693) Location: Atlanta, GA Onsite Duration: Long Term Contract Provide onsite desktop support for customers located within assigned locations. • Troubleshoot end user workstation and peripheral problems...Long term contractRemote workRelocation
- ...J Cybersecurity & GRC Analyst We are CirrusLabs. Our vision is to become the world's most sought-after niche digital transformation company... ...Supporting cybersecurity risk assessments Tracking vulnerabilities, control gaps, and remediation Assisting with IT risk...
$130k - $145k
...Cybersecurity Analyst (III / IV) - Full Time Onsite for 1st few months then Hybrid (3x/week) | No Sponsorship Compensation: $130K-$145K base + ~20% bonus Overview We are seeking a Cybersecurity Analyst to help manage and evolve our security tooling, cloud...Full time$105k - $130k
...Cyber-Security Engineer/ Vulnerability Management Atlanta, Georgia Hybrid Full Time $105k - $130k Join a growing, security... ...'s Employment Accommodation policy. Applicants need to make their needs known in advance. Specialization: Cybersecurity...Full time$74.51 per hour
...and mentor other architects. A key responsibility is to work with GTA to design, develop, and implement IT architecture, AWS cloud implementations... ..., your candidate will be expected to start no later than 2 weeks (10 business days) after the client's selection date? Do...Hourly payWork experience placementLocal area$140.6k - $175.8k
...Architecture, and AI/ML. You will act as one of Cybersecurity Assurance's primary authorities on AI-... ...and other unintended side effects. 2. Engineering & Automation (The "Builder... ...frameworks to scale our Red Teaming and vulnerability discovery. You will leverage LLMs,...Full timeContract workTemporary workPart timeLocal areaShift work- ...Cyber Security Lead Specialist - Vulnerability Management The Cyber Security Lead Specialist for Vulnerability Management provides... ...Experience: ~5-7+ years of progressive experience in cybersecurity, with a deep specialization in Qualys vulnerability management...
$118.31k - $177.47k
...Offensive Security & Exposure Management Analyst Job Description: Senior Offensive... ...requires associates to be in-office 1 - 2 days per week, fostering collaboration and... ...security, penetration testing, or vulnerability management. ~ Experience with automated...Temporary workWork experience placementWork at officeLocal areaDay shift2 days per week1 day per week- The Home Depot is hiring a Cybersecurity Analyst to join our Cyber Governance team, where you’ll play a critical role in ensuring security controls are operating as intended across the enterprise. This role focuses on documenting control expectationsRemote work
- ...Senior Security Analyst / AppSec Specialist PowerPlan is looking for every opportunity... ...our application security posture, driving vulnerability management maturity, and supporting security... ...program maturity aligned with NIST CSF 2.0 is essential. You should also have...Work at officeWork from homeFlexible hours
- ...Information Security Analyst 3 Under broad supervision, plans,... ...We are looking for a skilled cybersecurity professional with relevant technical... ...technology experience, 2 years of which in information... ...security technologies (e.g., Vulnerability Management, Penetration...Work experience placementWork at officeLocal area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cybersecurity Analyst 2 (Vulnerability) (GTA). Be the first to apply!
Related searches
- cyber security consultant Atlanta, GA
- cyber security specialist Atlanta, GA
- cybersecurity analyst remote Atlanta, GA
- entry level cyber security Atlanta, GA
- cyber security Atlanta, GA
- remote cyber security Atlanta, GA
- cybersecurity software engineer Atlanta, GA
- cyber security incident responder Atlanta, GA
- cybersecurity technical writer Atlanta, GA
- no experience cyber security Atlanta, GA


