Cybersecurity Analyst II to support the government customer located in
Tallahassee, FL. This is an exempt hybrid remote position.
Responsibilities:- Perform cybersecurity assessments, technical testing, vulnerability assessments, and security control validation in support of enterprise cybersecurity audit and testing activities.
- Execute approved Ground-Truth and Ad Hoc testing procedures, test scripts, sampling methodologies, and technical verification activities.
- Analyze network, system, application, endpoint, identity, and security infrastructure configurations to identify vulnerabilities, weaknesses, and control deficiencies.
- Conduct vulnerability scanning and security assessments using approved tools and methodologies and analyze scan results to identify and prioritize cybersecurity risks.
- Review security logs, alerts, system events, and monitoring data to evaluate the effectiveness of cybersecurity detection, monitoring, and escalation capabilities.
- Support controlled adversarial simulations, behavioral anomaly generation, access-control testing, and other authorized techniques used to validate cybersecurity controls.
- Collect, document, and maintain detailed technical evidence, including logs, screenshots, scan results, configuration data, test results, and other artifacts supporting assessment conclusions.
- Analyze testing results and technical evidence to determine whether security controls are operating effectively and in accordance with established requirements and acceptance criteria.
- Support root-cause analysis of identified vulnerabilities, control deficiencies, and cybersecurity weaknesses and assist in developing practical, risk-based remediation recommendations.
- Map assessment results and technical findings to applicable cybersecurity frameworks, controls, policies, procedures, and regulatory requirements, including NIST-based security practices.
- Develop and maintain test documentation, technical workpapers, evidence matrices, findings documentation, and other artifacts necessary to support repeatable and defensible cybersecurity assessments.
- Assist the Senior Cybersecurity Subject Matter Expert in developing testing strategies, detailed procedures, test cases, sampling approaches, and technical assessment methodologies.
- Provide technical support during cybersecurity testing activities and coordinate testing requirements, system access, scheduling, and evidence collection in accordance with approved procedures.
- Perform technical quality reviews of assessment results and supporting evidence to ensure accuracy, completeness, consistency, and traceability prior to submission for management review.
- Contribute to technical reports, assessment summaries, lessons learned, knowledge-transfer materials, and presentations by translating technical test results into clear, actionable cybersecurity findings and recommendations.
Required:- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or a related field
- Security+ Certification
- Capable of Public Trust clearance
Qualifications:- Knowledge of the processes and documentation requirements for RMF methodologies
- Demonstrated experience supporting Government Agencies, preferably DOS.
- Able to gain proficiency with a broad array of security software applications and tools
- Security + certification
- Organized with attention to detail