Cybersecurity Analyst to support security compliance, assessment, monitoring, documentation, and remediation activities for a Federal information system. The analyst will work with cybersecurity specialists, system owners, developers, and administrators to maintain current security artifacts and reduce operational risk.
Location Key Responsibilities- Assist with implementation, validation, and documentation of applicable security controls.
- Collect and organize security evidence for assessments, authorization activities, audits, and continuous monitoring reviews.
- Maintain security documentation, control narratives, assessment results, risk records, and Plan of Action and Milestones entries.
- Review vulnerability scan results, support remediation tracking, and verify closure documentation.
- Monitor security alerts and logs and escalate suspicious activity in accordance with established procedures.
- Support incident-response documentation, lessons learned, and corrective-action tracking.
- Assist with account reviews, access-control validation, configuration reviews, and security compliance checks.
- Prepare recurring cybersecurity status reports, metrics, dashboards, and briefing materials.
- Support security awareness, Controlled Unclassified Information handling, and required training activities.
- Coordinate with technical and program personnel to ensure cybersecurity actions are completed on schedule.
Required SkillsExperience- Minimum five (5) years of cybersecurity, information assurance, security compliance, or related experience.
- Experience supporting vulnerability management, continuous monitoring, security documentation, or audit activities.
- Experience working with NIST security controls or comparable security frameworks.
Education- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, or a related discipline.
ClearanceCertifications / Tools- Active CompTIA Security+certification or higher
- Experience with vulnerability scanners, SIEM platforms, GRC tools, ticketing systems, Microsoft Office, Teams, and SharePoint.
Desired SkillsExperience- Experience supporting cloud, enterprise application, or ServiceNow environments.
- Experience supporting security authorization packages or formal control assessments.
Education- Master's degree in Cybersecurity, Information Assurance, or a related discipline.
Certifications- Security+, CySA+, SSCP, CAP/CGRC, CASP+, CISSP, or comparable certification.
CompensationAt Graham Technologies, we believe in treating everyone with fairness and respect. Our compensation package is designed to ensure fair pay for work, reflecting our commitment to integrity.
Many IT companies offer similar services, but what truly sets us apart is our people! We care deeply about our employees and consistently show our appreciation-not just for the final outcomes, but also for the effort and dedication shown every step of the way. Additionally, our generous benefits package supports our team members in living fulfilling and prosperous lives.
Here are just a few highlights of what we offer:
- Four Weeks of Accrued PTO in the First Year
- Eleven Paid Federal Holidays
- Comprehensive Health, Dental, Vision, and Life Insurance
- 401(k) Plan with Annual Employer Contributions
- Flexible Schedules
- Reimbursements for Continued Education and Training