Senior Continuous Monitoring Analyst

Analygence

• $110K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • BS degree in IT, Cybersecurity, Information Systems, Data Science, or Computer Science, or 10 years of IT/cybersecurity experience.
  • 7+ years in vulnerability management or continuous monitoring.
  • Active TS/SCI clearance and U.S. citizenship; willing to undergo a DHS polygraph.
  • Knowledge of NIST SP 800-137 and RMF continuous monitoring requirements.
  • Familiarity with IC security performance reporting metrics (ICVM/ICVA, CPEM, FISMA ConMon).
  • Proficient in using Tenable.sc/ACAS or Nessus for vulnerability management.
  • Skilled in building dashboards using Splunk or Tableau.

Responsibilities

  • Monitor DHS IE networks, systems, and users with approved tools.
  • Integrate automated data feeds into cyber heat maps and dashboards.
  • Develop and maintain RIVET dashboards linked with the GRC tool.
  • Produce automated monthly IC Vulnerability Alerts and IC Vulnerability Management reports.
  • Create the CISO Scorecard and quarterly Cybersecurity Performance Evaluation Model submissions.
  • Conduct weekly monitoring of POA&M and track remediation efforts.
  • Identify and report anomalies in the operational environment.

Benefits

  • On-site work in a secure Government SCIF in Washington, DC.
  • Opportunity to work with advanced security tools and methodologies.
  • Engagement in a mission-critical role supporting national security.
  • Collaboration with leadership on enterprise risk posture.
  • Potential for professional development in cybersecurity and continuous monitoring.
Full Job Description
Description

In support of this mission, we have an immediate opportunity for a Senior Continuous Monitoring Analyst. In this role you will mature DHS continuous monitoring (ConMon) program toward an advanced Intelligence Community Zero Trust maturity level. You will integrate security tool data into automated dashboards and cyber heat maps, produce IC vulnerability and performance reporting, and brief leadership on enterprise risk posture. This position is on-site in a Government SCIF in Washington, DC.

Duties include but not limited to:
  • Provide continuous monitoring of DHS IE networks, systems, and users using Government-approved tools.
  • Integrate automated data feeds (GRC, Nessus, Axonius, GitLab, Splunk, SCCM) into cyber heat maps and dashboards.
  • Develop and maintain RIVET dashboards and analytics integrated with the GRC tool.
  • Produce and maintain the automated feed for monthly IC Vulnerability Alerts (ICVA) and IC Vulnerability Management (ICVM) reports.
  • Produce the CISO Scorecard and quarterly Cybersecurity Performance Evaluation Model (CPEM) submissions.
  • Conduct weekly POA&M monitoring and track system owner remediation.
  • Identify anomalies in the operational environment and report them to designated personnel.
  • Recommend ConMon improvements and update ConMon SOPs.


Requirements

  • BS degree in Information Technology, Cybersecurity, Information Systems, Data Science, or Computer Science OR minimum of 10 years' experience in IT or cybersecurity.
  • Minimum of 7 years' experience in vulnerability management or continuous monitoring.
  • Active TS/SCI clearance and U.S. citizenship; willingness to undergo a DHS counterintelligence-scope polygraph.
  • Knowledge of continuous monitoring program requirements under NIST SP 800-137 and RMF.
  • Knowledge of vulnerability management metrics and reporting.
  • Knowledge of Federal or IC security performance reporting (e.g., ICVM/ICVA, CPEM, FISMA ConMon).
  • Skill in using Tenable.sc/ACAS or Nessus.
  • Skill in building dashboards in Splunk or Tableau.
  • Ability to integrate data from multiple security tools into a single view of risk.
  • Proficient in Microsoft Office Suite to include Teams or similar workplace chat and videoconferencing tools.
  • Excellent written and oral communications skills.

Desired
  • Knowledge of IC Zero Trust maturity levels.
  • Experience with RSA Archer, Axonius, Tanium, or CyberArk.
  • Proficiency with Python, PowerShell, or Splunk SPL.
  • CISSP, CySA+, GCIA, or Tenable certification.

Similar Jobs

More Jobs at Analygence

More Information Technology Jobs

Find similar Senior Continuous Monitoring Analyst jobs: