Security Analyst
Lynk Inc
Full-time Chevy Chase, MD (Hybrid) US-based Senior level Reports to CISO US citizenship or Lawful Permanent Resident status required. This role involves access to Controlled Unclassified Information (CUI); no security clearance required. About Lynk Lynk is building the world’s first global satellite-to-cellular network, enabling direct device-to-device (D2D) connectivity from commercial low Earth orbit (LEO) satellites to standard mobile phones, no special hardware required. We operate in a market alongside other commercial LEO constellations, satellite-direct-to-cellular providers, and large-scale broadband satellite networks, competing for the same spectrum, orbits, and government contracts. Our technology and network infrastructure are of significant interest to US government and defense customers. Protecting the integrity of that infrastructure and the Controlled Unclassified Information that flows through it is mission critical. That’s where you come in. Role Overview Reporting directly to the CISO, you’ll own Lynk’s cybersecurity compliance program across CMMC Level 2 / NIST SP 800-171, DFARS 7012, SOC 2 Type II, and GDPR. You’ll be ISSO for CUI-scoped systems: authoring SSPs, maintaining POA&Ms, running control assessments, and leading C3PAO engagement. Lynk has a functioning security toolset in place including SIEM/log management, EDR, MDM, vulnerability management and IT asset management; your job is to mature and align that stack to CMMC requirements, not start from zero. Responsibilities GRC & Compliance (primary) Own and maintain the System Security Plan (SSP) and Plan of Action & Milestones (POA&Ms) for all CUI-scoped systems; always keep documentation audit-ready. Assess all 110 NIST SP 800-171 practices for implementation and effectiveness; map existing controls (Wazuh, ThreatDown, Tenable, ManageEngine, AD GPOs, SnipeIT) to CMMC requirements, identify gaps, and drive remediation. Maintain the organizational risk register; support ongoing Risk Management Framework (RMF) processes and report risk posture to the CISO. Lead preparation for CMMC Level 2 assessments — build evidence packages, coordinate with the C3PAO, and manage assessor requests and findings. Develop and maintain cybersecurity policies, procedures, and standards aligned to CMMC, DFARS, SOC 2, and GDPR; ensure version control and staff acknowledgment records are maintained. Define, track, and report security metrics and KPIs to the CISO and non-technical stakeholders including legal, contracts, and business development teams. Support contract teams with DFARS clause requirements, cybersecurity representations, and customer security questionnaires. Conduct vendor and third-party risk assessments; maintain supplier risk documentation. Manage the security awareness training program and phishing simulations; maintain completion records per CMMC requirements. Security Operations (secondary) Monitor SIEM for security events and alerts relevant to CUI systems; write and tune detection rules; triage and elevate incidents; produce post-incident reports with compliance impact assessment. Leverage audit log aggregation to satisfy CMMC AU (Audit & Accountability) control evidence requirements. Monitor EDR alerts for CUI-scoped endpoints; investigate detections and coordinate response with IT. Work with IT to ensure vulnerability findings are remediated within CMMC-required timeframes, track and report on remediation status. Leverage MDM and Active Directory to enforce device compliance, GPO-based security baselines, and access control policies across CUI-scoped endpoints. Use asset inventory as the authoritative hardware/software asset register for CMMC system boundary documentation; keep it current and audit ready. Conduct periodic access control audits; enforce least-privilege across AD, SSO, and SaaS tooling handling CUI. Required Skills And Experience 3–6 years in cybersecurity with a strong GRC or compliance focus; prior ISSO experience or equivalent accountability preferred. Deep, working knowledge of NIST SP 800-171 and DFARS 7012. Able to assess, gap-analyze, and evidence all 110 controls independently. Demonstrated experience authoring SSPs and POA&Ms for government-facing or regulated environments. Familiarity with the CMMC Level 2 assessment process and C3PAO engagement. Hands-on SIEM experience: writing detection rules, querying logs, and generating compliance-grade audit evidence. Hands-on experience with EDR and vulnerability scanning tools in a compliance context. Mapping tool outputs to NIST controls and generating assessor evidence. Working knowledge of SOC 2 Type II and GDPR compliance requirements. Some cloud security fundamentals (AWS preferred). IAM, CloudTrail, GuardDuty, access policies. Clear, structured communicator. Equally comfortable writing formal policy documentation and briefing non-technical executives. US citizenship or Lawful Permanent Resident status. Nice To Have CMMC Registered Practitioner (RP) or Professional (CCP) CISSP / CISM / Security+ RMF / ATO experience FedRAMP familiarity Space / satellite industry background Telecom or critical infrastructure security Prior C3PAO assessment experience GRC platform experience (Vanta, Drata, Archer, ServiceNow) Scripting in Python or Bash for evidence collection automation Zero-trust architecture What Lynk Offers Competitive salary and equity in a company building genuinely novel global infrastructure. Remote-first, US-based role. Direct line to the CISO; your work defines Lynk’s compliance posture at a critical growth stage. A functioning security toolset already in place. Your focus is maturing and aligning it, not standing it up from scratch. Learning and certification budget. ITAR Requirements To comply with U.S. Government export control regulations (ITAR), applicants must be one of the following: (i) a U.S. citizen or national, (ii) a lawful permanent resident (green card holder), (iii) a refugee under 8 U.S.C. §1157, or (iv) an asylee under 8 U.S.C. §1158. Individuals who do not meet these criteria must be eligible to obtain the necessary authorizations from the U.S. Department of State. For more information, please refer to the ITAR guidelines. Learn about ITAR here. Lynk is an equal opportunity employer. This position requires US citizenship or Lawful Permanent Resident status due to access to Controlled Unclassified Information. #J-18808-Ljbffr
$100k - $120k
...companies. Learn more at bonterratech.com. About the Role The Bonterra Information Security Risk and Compliance department is looking to hire a Senior Information Security Risk Analyst to our team. If you enjoy problem solving, are enthusiastic working in a team format...SuggestedFull timeLocal area$60k - $130k
Personnel Vetting (PV) Specialist In this role you will be part of a federal agency team that provides personnel security program support for the vetting, investigation, and adjudication of individuals seeking access to federal employment, national security information...SuggestedContract workFor contractorsWork at officeLocal area- ...HackerOne is seeking a Product Security Analyst to work remotely within ~50 miles of certain U.S. cities. You will evaluate and reproduce vulnerabilities, ensuring high-quality experiences for customers and security researchers. This role demands a strong understanding...SuggestedRemote work
- ...Koniag Information Security Services, LLC is seeking a SME II Technology Capabilities Analyst with a TS/SCI security clearance to support our government customer at the Pentagon in Arlington, VA. Ideal candidates will have 15 years of technical experience, an advanced...Suggested
- ...First Division Consulting is seeking candidates with active TS/SCI clearance to support a broad range of security programs across personnel, information, and physical security disciplines. The role involves analyzing policies, preparing reports and briefing materials,...SuggestedFor contractors
$155k - $165k
...Position Title: Security Analyst II Department: Cybersecurity & Program Management Corporate Area: PBS Technology Status: Regular, Full time Exempt Manager Title: Director, Cybersecurity Position Overview: The Security Analyst II is responsible for the design, configuration...Hourly payFull timeTemporary work$40 - $60 per hour
...Description Tyto Athene is searching for a detail-oriented and customer-focused temporary Personnel Security Analyst to support our security operations program in Washington, DC. This role is ideal for someone with foundational experience in personnel security support...Temporary workWork at officeWorldwideMonday to Friday- ...X-energy in Rockville, Maryland is seeking a qualified Plant Security Analyst to support the development and implementation of the Physical Protection Program for the Xe-100 plant. This includes security planning for construction and the oversight of access programs....Full time
- ...A global development consulting firm seeks a full-time Security Assistance Financial Analyst in Washington, DC. The role involves supporting financial management for security assistance accounts, requiring a BA/BS degree and active Secret-level clearance. Candidates should...Full time
- ...established procedures. Produce clear technical documentation, reports, and briefings. Collaborate with cross-functional teams to improve security posture. Support compliance with federal cybersecurity standards and best practices. Required Qualifications Three (3) years...
$60k
...inquiries from the customer base in a timely manner.You will provide exceptional custo... Show more Full-time We are seeking a Senior Security Analyst to join a team of mission-focused professionals.This role is pivotal in safeguarding and strengthening the security posture of...Hourly payFull timeContract workTemporary workPart timeFor contractorsH1bWork at officeWork from homeFlexible hoursShift workNight shift- ...the severity of breaches, develop mitigation plans, and assist with the restoration of services. Nightwing is seeking a Cloud Security Analyst to support this critical customer mission. The Cloud Security Analyst will assess, monitor, and secure cloud-based technology...Contract workLocal areaImmediate start
- ...Systems Planning and Analysis, Inc. (SPA) seeks a Program Analyst to serve as a Foreign Disclosure Representative (FDR) and Foreign Visit Analyst (FVA) for the AUKUS Integration and Acquisition program office. Location: SPA Headquarters in Alexandria, VA, and client site...Work at office
- ...predictive and real-time analytical assessments to identify and manage security, safety, and product-related risks; issue real-time threat... ...Friday (6am to 10pm coverage split as 8 hours each between two analysts). Work Environment and Physical Demands Exposure to stressful...Full timeMonday to FridayDay shiftAfternoon shift
$55.2k - $126k
...Endpoint Policy Analyst When our country’s cybersecurity is on the line, we need a plan to protect the Department of War’s enterprise... ...develop a strategic cyber roadmap and aid the client in operating securely in an evolving IT environment. Responsibilities Assess current...Full timeContract workPart time- ...Standard job duties include: Receive and process contractor, licensee, and employee clearance or access requests. Pre-screen all security forms to ensure accuracy. Conducting on-line credit checks, Federal Bureau of Investigation Fingerprint (FBIF) checks, Personnel Investigations...For contractorsWork at office
- ...Position Title: Security Analyst Location: US-Virginia-McLean Job ID: 5372 # of Openings: 14 Category: Information Technology Clearance: Top Secret/SCI Clearance Status: Active Type: Regular Full-Time Overview The Security Analyst supports the United States (U.S.) Army...Full time
$110k - $160k
...Defensive Security Analyst-Washington, DC Hybrid, Washington DC Defensive Security Analyst Job Description SpecterOps is looking for candidates to support Security Operations at a SpecterOps customer site working directly with client personnel and systems. Candidates...Remote workHome officeMonday to FridayFlexible hoursWeekend work- ...and technical solutions to our Nation's most complex national security challenges. In order to achieve our mission, Core One values people... ...Active TS/SCI with Polygraph Summary We are seeking a Security Analyst to support cybersecurity operations, compliance, and risk...
- ...: Washington, DC Overtime Exempt: Yes Reports To: ARMADA HQ Security Clearance Required: Secret Clearance CONTINGENT UPON AWARD****... ...**** Duties & Responsibilities The Physical Security (PHYSEC) Analyst provides expert-level support for physical security policy development...Full timeFor contractorsWork at officeLocal areaRelocation
$60k - $130k
Physical Security Analyst In this role you will be a part of the U.S. Coast Guard headquarters team that provides policy and security program support for the security and resilience of critical USCG missions, infrastructures, and assets. In this high-visibility, demanding...Hourly payContract workWork experience placementLocal areaWorldwide- ...Glassdoor of 4.8 and who puts their people first, then continue to read below and join the FirstDiv team! Duties / Responsibilities Security Program Support Analyze security policies, regulations, and procedures to evaluate compliance and identify opportunities for...Civilian ContractorContract workFor contractorsWork at officeLocal area
- ...When it comes to excellence, we deliver. Learn more about our employer brand at makpar.com/careers . The Senior Information Security Analyst will perform the core cybersecurity assessment and compliance work for IRS Safeguards. The role supports computer security...Full timeStart working todayFlexible hours
- ...Security Analyst – Forensics/Malware Analysis Full-time Clearance Requirement: Secret Founded in 1989, SOSi is among the largest private, founder-owned technology and services integrators in the defense and government services industry. We deliver tailored solutions,...Full timeContract workWork at officeWorldwideMonday to FridayWeekend workAfternoon shift
- ...Time Location: Washington, DC Overtime Exempt: Yes Reports To: ARMADA HQ Security Clearance Required: Secret clearance ***************CONTINGENT UPON AWARD************** The Industrial Security Analyst provides expert-level support for industrial security policy...Full timeContract workFor contractorsWork at officeLocal area
$40 per hour
...for experienced cybersecurity professionals to join our team to help train AI models. In this role, you will evaluate AI-generated security content, solve technical cybersecurity problems, and provide feedback to improve how AI systems reason about real-world threats...Hourly payFull timePart timeRemote work- ...Industrial Security Analyst Position Summary: Position Description: Industrial Security Analyst Location: National Capital Region Work Posture: On-site Travel: Occasional Deployment: No Drug screening: Yes...Contract workFor contractors
$58k - $72k
...worldwide. We are a leading provider of emergency medical and security solutions for corporations and individuals. Our 24/7 Operations... ...Position Overview The Global Security Operations Center (GSOC) Analyst will be responsible for security operations requests, managing...Full timeWorldwideOverseasShift work- ...global workforce solutions on behalf of its clients. Artech's deep heritage, proven expertise and insightful market intelligence has secured long‑term partnerships with Fortune 500 and government clients seeking world‑class professional resources. Job Description The...Work experience placementWeekend work
- ...NextGen Federal Systems is seeking an Information Security Analyst to join our work supporting our DHS customer in Washington, DC. The ISA will report to the ISSM and provide security and compliance duties to assigned systems stakeholders. Duties include but are not limited...Work at office
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Analyst. Be the first to apply!



