Cybersecurity Analyst
SHR Consulting Group
SHR Consulting Group, LLC is a small business delivering enterprise IT, cybersecurity, and program management services to the Department of Defense and federal civilian agencies. We support mission-critical infrastructure at the Pentagon and across the National Capital Region, and we invest in our people through competitive compensation, professional certification support, and long-term career growth on stable, multi-year programs. Position Summary We are a rapidly growing organization seeking experienced Cybersecurity Analysts to support cyber compliance, technical security assessments, vulnerability management, cyber hardening, and Risk Management Framework (RMF) activities for a large enterprise Department of Defense environment. Multiple openings are available at Senior and Intermediate levels. The successful candidate will analyze enterprise security-tool results, validate technical findings, drive remediation, maintain RMF evidence in eMASS, support cyber-readiness activities, and brief technical and Government leadership on risk and compliance status. eMASS is a government-owned application that supports integrated cybersecurity management, dashboard reporting, control-scorecard measurement, and authorization-package development. Key Responsibilities Perform technical cybersecurity assessments of enterprise Windows, Red Hat Linux, workstation, server, application, network, and supporting infrastructure environments. Analyze and validate findings from ACAS, HBSS/ESS, Trellix, Axonius, Evaluate-STIG, Splunk, Tanium, SCAP, STIG Viewer, and other approved Enterprise Security Services (ESS) tools. Assess systems against DISA STIGs, IAVM notices, DoD cyber tasking, and approved security baselines; identify vulnerabilities, configuration deviations, missing patches, security-tool coverage gaps, and asset discrepancies. Coordinate with system administrators, engineers, system owners, and platform teams to implement and validate patches, Group Policy changes, certificate updates, endpoint-security changes, and secure-configuration remediations. Drive assigned systems toward compliance with DISA STIGs, IAVMs, applicable DoD orders, and organizational remediation timelines. Develop, maintain, and track Plans of Action and Milestones (POA&Ms) for unresolved vulnerabilities and compliance deviations, including technical details, risk impact, mitigation actions, responsible parties, milestones, and planned completion dates. Support RMF activities in accordance with DoDI 8510.01 and NIST guidance, including eMASS updates, control implementation statements, evidence collection, security-control validation, assessment artifacts, risk records, and authorization-package support. Validate security controls against NIST SP 800-53 requirements and document results in eMASS, SharePoint, or other approved repositories. Support CCORI, CORA, CSSP, and Cyber Hardening Mission activities through pre-assessment validation, checklist management, evidence preparation, corrective-action tracking, remediation coordination, and closure verification. Monitor approved DoD, DISA, JSP, and organizational channels for IAVMs, cyber orders, security directives, and other tasking; disseminate actions to responsible teams and track execution through closure. Provide DTO support by reviewing, analyzing, coordinating, tracking, and validating closure of DISA Task Orders, including required security configuration changes, firewall-rule updates, ports/protocols/services changes, vulnerability mitigations, technical documentation, validation testing, and completion evidence in accordance with established DoD, DISA, JSP, and program procedures. Maintain and validate required security-tool coverage across managed assets, ensuring ESS/HBSS, ACAS, Splunk, Tanium, and other required tools are installed, properly configured, communicating with management consoles, and tracked to resolution when reporting issues occur. Support patch and hot-fix deployment across multiple operating-system platforms using MECM, Group Policy, PowerShell, Tanium, Red Hat Satellite Server, YUM, or equivalent enterprise-management tools. Develop cyber-compliance metrics, remediation trackers, dashboards, and executive-ready reports for monthly program reviews and leadership briefings. Apply advanced Microsoft Excel skills—including formulas, pivot tables, XLOOKUP/VLOOKUP, conditional logic, data reconciliation, charts, and trend analysis to evaluate vulnerability trends, compliance posture, risk scores, overdue actions, and remediation performance. Brief technical teams, program management, and Government leadership on technical findings, enterprise risk, compliance trends, remediation status, and decisions required. Support Systems Security Reviews, independent control testing, audit preparation, inspection response, and continuous-monitoring activities. Minimum Qualifications Demonstrated ability and experience in daily operations and maintenance of large, complex IT projects and IT staff similar in size and scope to this order Three (3) or more years of experience securing operating systems against DISA STIGs and configuring/maintaining host firewalls; experience hardening Windows Server and Red Hat Linux platforms required. Working knowledge of the DoD IAVM program, the DISA Vulnerability Management System (VMS), and the Continuous Monitoring Risk Scoring (CMRS) system. Knowledge of DoD vulnerability scanning standards and tools, defense-in-depth concepts, and incident response, auditing, and CNDSP practices. Hands-on experience with cyber tools, including HBSS/ESS, ACAS (Tenable), Splunk, and Tanium. Experience supporting RMF (NIST SP 800-37), NIST SP 800-53R control documentation and validation, and accreditation programs such as FISMA, OMB, DoD IG inspections, and ACA. Experience deploying patches and hot fixes against required deadlines using MECM, Group Policy, PowerShell, Red Hat Satellite/YUM, or Tanium. For the Senior variant: 5+ years of experience and ACAS administrator certification/experience are strongly preferred. Strong analytical, written, and verbal communication skills with the ability to brief technical risk to Government leadership. Education Bachelor’s degree in Computer Engineering, Computer Information Systems, Telecommunications, Management Information Systems, Cybersecurity, or a related field; or equivalent combination of education and three (3)+ recent years of documented relevant experience. Certification Requirements Must meet DoD 8570.01-M / DoD 8140 IAT Level II baseline certification requirements prior to start (e.g., Security+ CE, CCNA-Security, CySA+, GICSP, GSEC, or equivalent). Computing Environment certification appropriate to the role is also required. Security Clearance Active Secret clearance required at minimum. U.S. citizenship required. 100% onsite at a government facility within the National Capital Region (NCR), primarily at the Pentagon, Crystal Gateway, Taylor Building, Mark Center, or other JSP-designated alternate site. Must be local to the DC Metro Area with reliable transportation. Competitive salary commensurate with experience and clearance level Comprehensive medical, dental, and vision coverage 401(k) with company contribution Paid time off and eleven federal holidays Certification reimbursement and training support (DoD 8140 baseline and computing environment certifications) Life and disability insurance SHR Consulting Group, LLC is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or protected veteran status. #J-18808-Ljbffr
$86.8k - $198k
Enterprise Cybersecurity Vulnerability Analyst, SeniorThe Opportunity:Support Booz Allen Hamilton's internal Enterprise Cybersecurity team by utilizing enterprise-level vulnerability scanning and assessment tools to identify internally and externally facing vulnerabilities...SuggestedFull timeContract workPart timeWork at officeLocal areaRemote work- DescriptionActioNet has an immediate opportunity for a Cyber Security Analyst requiring a Public Trust clearance located in Silver Spring,... ...and requirements: Firewall Policy, Ports & Protocols, Cybersecurity, CybersafeFamiliarity with Tenable and BigFix, preferred.Experience...SuggestedImmediate start2 days per week1 day per week
- ...MANTECH seeks a motivated, career and customer-oriented Cyber Incident Response Analyst to join our team in McLean, Virginia . Our team provides 24x7x365 cybersecurity support to one of the most coveted targets in the world. The Cyber Incident Response Analyst...SuggestedShift workNight shiftDay shiftAfternoon shift
- ...Medical Insurance, Dental Insurance, Vision Insurance Full-Time | On-site Required Skills powershell Cybersecurity SIEM Cybersecurity Incident Response Analyst Job Description: The Cybersecurity Incident Response Analyst is responsible for real-time threat detection,...SuggestedFull time
$135k - $143k
...0/year Work Location: Remote with occasional on-site work in Washington, DC, at least once per month. The Senior Cybersecurity Analyst leads in the proactive defense of the organization's information systems. This role provides expert-level guidance on cybersecurity...SuggestedFull timeContract workCasual workRemote workFlexible hours- ...Job Title: Cybersecurity Analyst (RMF/ATO) - SECRET Clearance Required Location: Vandenberg Space Force Base (VSFB), CA (On-site) Clearance: Active SECRET Clearance Required; U.S. Citizenship required Job Type: Full-time Contract Type: Government Contract (Base Year +...Full timeContract workTemporary workFor contractorsCasual workWork at officeRemote workMonday to Friday
- ...Host Forensic Analyst/Host Based Systems AnalystLocation: Arlington, VAMust have Top Secret Security ClearanceNode is seeking Host Forensic Analyst to support this critical customer mission.Responsibilities:- Assisting Federal leads with overseeing and leading forensic...
- ...Enterprise Risk Management (ERM) services, including IT Engineering, Cybersecurity, Governance/Risk/Compliance (GRC), and Advisory services for... .... Role Description BlueStar Pros is seeking a Cybersecurity Analyst to support cybersecurity consulting engagements across...
- ...Capital One in McLean, VA seeks a Senior Analyst for Technology Controls Testing within ESRO. You will design and execute control tests, identify gaps, and document findings for stakeholder teams across technology, risk, and security. The role emphasizes IAM, cloud tech...
- ...Master Level Cyber Defense Analyst/Intrusion Detection Team Shift LeadAn organization is seeking an experienced Master Level Cyber... ...host-based threats, leveraging SIEM technologies, and leading cybersecurity operations personnel in a mission-critical environment.Key ResponsibilitiesLead...Remote workShift workNight shiftDay shiftAfternoon shift
- ...JCD Staffing is seeking a Senior Cybersecurity Supply Chain Risk Management Analyst in Washington, DC, to support federal cybersecurity initiatives. This role focuses on identifying and mitigating risks related to complex supply chains, requiring an active TS clearance...
- ...Clearance Node is supporting a U.S. Government customer to provide cybersecurity vulnerability analysis support to reduce the prevalence and... ...Key Resources (CIKR). The Cybersecurity Vulnerability Analyst utilizes cybersecurity best practices, risk management techniques...
- ...A leading social media company in Washington, DC is seeking a Cybersecurity Strategy Senior Analyst. This role focuses on developing and executing strategic initiatives that enhance cybersecurity operations. The ideal candidate should have a strong understanding of cybersecurity...
$129.81k - $166.48k
...SOC Analyst PrincipalAdvance your career while impacting our national security in cyber as a SOC Analyst Principal at GDIT. Here, technologists have many paths to grow a meaningful career supporting cyber missions and operations across the federal government. WHAT YOU'...Temporary workImmediate startWorldwideFlexible hours- ...Senior Principal Cyber Network AnalystIron EagleX is seeking a Senior Principal Cyber Network Analyst to join our fast-paced technical team. In this role, you will analyze, engineer, and troubleshoot complex network environments while supporting the integration and operationalization...Contract work
$130k - $160k
...Amentum is seeking a Cybersecurity Analyst to join our team and support our McLean, VA customer. We are looking for team members who are passionate about making a difference by working on critical efforts we manage as a premier government contractor. Here at Amentum, we...Hourly payCivilian ContractorContract workFor contractorsWork at officeLocal area- ...At Tlingit Haida Tribal Business Corporation, the Senior Cybersecurity Analyst collaborates with IT leadership and stakeholders to build a risk-based, defense-in-depth cybersecurity program. The role supports regulatory and contractual requirements, protects critical assets...
$100k - $150k
...Cybersecurity Risk AnalystSalary Range: $100,000 – $150,000Clearance: TS/SCI + CI PolyLocation: 50 miles of McLean, VirginiaPosition is contingent... ...awardOps Tech Alliance is seeking a Cybersecurity Risk Analyst to support enterprise cybersecurity and cyber defense...Contract work- ...Mid-Level Cybersecurity Analyst/Engineer Technomics is a growing employee‑owned decision analytics company that specializes in cost and economic analysis to facilitate better decisions faster . We enable a wide range of clients across the Federal government, from senior...Work at office
- ...lead audits focused on technology and cyber risk within a global asset manager. You will execute all audit phases, interact with Cybersecurity and front/middle/back office, and apply AI tools to enhance efficiency and quality. You will contribute to risk assessments,...
- ...Systems Planning and Analysis, Inc. (SPA) seeks a Senior ISR and Space Control Analyst to support the C4ISR and Space portfolios at the Pentagon in Arlington, VA. The role bridges both domains, coordinating with stakeholders and senior leaders to align acquisition strategies...
$128.04k - $173.23k
...Cybersecurity AnalystSeize your opportunity to make a personal impact as a Cybersecurity Analyst. GDIT is your place to make meaningful contributions to challenging projects and grow a rewarding career.At GDIT, people are our differentiators. You will help ensure that...Temporary workImmediate startWorldwideFlexible hours- ...Cybersecurity Analyst Location: Tysons, VA 22182 Clearance: TS/SCI Full Poly (Please note this position requires full U.S. Citizenship) Key Summary We are seeking a dedicated and detail-oriented Cybersecurity Analyst to join our team and help safeguard our systems and...Temporary workFor contractorsImmediate startFlexible hours
- ...security controls and best practices Support compliance initiatives Create security documentation and reports Requirements 3+ years of cybersecurity experience Knowledge of security frameworks (NIST, ISO 27001) Experience with SIEM and security tools Understanding of network...Full timeFlexible hours
- ...Cyber Security Analyst (Senior)The Cyber Security Analyst (Senior) provides expert-level cybersecurity support for Navy systems, ensuring compliance with DoD and Department of the Navy security requirements. This role leads Risk Management Framework (RMF) activities, supports...
$86k - $138k
Responsibilities Peraton is currently seeking to hire a Cybersecurity Analyst - Security Standards & Baselines to become part of our Federal Strategic Cyber group. Location: Hybrid position, based in Arlington, VA.In this role, you will:Support the Security Standards...Contract workCurrently hiringWork at officeShift work$86.8k - $198k
Enterprise Cybersecurity Product AnalystThe Opportunity:As an Enterprise Cybersecurity Product Analyst, you will support Booz Allen's Enterprise Cybersecurity (ECS) Product Security function by helping scale a structured, repeatable, and trackable security review model...Full timeContract workPart timeWork at officeLocal areaRemote work$70k - $98k
...year Requirements: High School Diploma Experience in a cybersecurity-related position Capability to acquire DoD 8570 IAT-II... ...strategies Provide guidance and technical mentorship to junior analysts during intensive investigative processes Technologies:...Shift workDay shift- cFocus Software seeks a Cybersecurity Triage Analyst (Tier 1) to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This position requires a Public Trust clearance...Work at office
$130k - $155k
...efficiency and operational reliability at significantly lower capital cost. We Are Seeking Qualified Applicants For The Position Cybersecurity Analyst Located Arlington Summary The Cybersecurity Engineer is responsible for designing, implementing, and maintaining security...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cybersecurity Analyst. Be the first to apply!
- cyber security consultant Arlington, VA
- cyber security specialist Arlington, VA
- cybersecurity policy and compliance analyst Arlington, VA
- remote cyber security Arlington, VA
- cyber security intern Arlington, VA
- cybersecurity certificate Arlington, VA
- cyber security lead Arlington, VA
- cyber security sales Arlington, VA
- cyber security part time Arlington, VA
- entry level cyber security Arlington, VA



