ECS

Senior Cyber Security Analyst

ECS$100K — $130K *
Aerospace & Defense
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 3+ years experience in IT within a Department of Defense (DoD) environment
  • 3+ years experience with DIACAP and NIST Risk Management Framework (RMF) policies
  • Experience preparing or supporting DIACAP/RMF packages and documentation
  • Familiarity with the Enterprise Management Assurance Support Service (eMASS)
  • Active Secret clearance along with DoD 8140 IAM or IAT Certification, including Security+ CE, CISM, CISSP, or CASP
  • Knowledge of Information Assurance (IA) or Information Security (INFOSEC) concepts
  • Ability to analyze and tailor security controls effectively

Responsibilities

  • Create and modify hardening standards for both on-premise and cloud technologies
  • Collaborate with development teams to integrate secure coding practices
  • Recommend secure application configurations and conduct security testing
  • Perform continuous monitoring of security controls and ensure compliance
  • Mitigate security control deficiencies and manage vulnerability scans
  • Assess cybersecurity impacts of changes to IT systems
  • Conduct self-assessments and track remediation activities through the Plan of Action and Milestones (POA&M)

Benefits

  • Opportunities for professional development and certifications
  • Supportive team environment
  • Flexible work arrangements
  • Access to advanced tools and technologies
  • Work on impactful projects for the Department of Defense
Full Job Description
ECS is seeking a Senior Cyber Security Analyst to work in our Arlington, VA office.

ECS is seeking a seasoned security professional with experience in implementing and communicating RMF compliance for the Department of Defense and Navy in our Arlington, VA location.

The CS Analyst is responsible for helping to manage the program's Assessment and Authorization (A&A) efforts by focusing on the Risk Management and Security Authorization activities in accordance with the applicable National Institute of Standards and Technology (NIST) 800 series guidelines, the Risk Management Framework and applicable Federal Information Processing Standards (FIPS) standards. The CS Analyst will report to the CS Team Lead and perform and manage tasks related to the entire Assessment and Authorization (A&A) lifecycle. The CS Analyst Senior will:

  • Create new and modify existing hardening standards for emerging technologies for potential on-premise and cloud-based technologies.
  • Collaborate with developers and various teams to integrate secure coding and application security requirements and best practices into development processes.
  • Recommend secure application configurations and conduct security testing on the proposed application. Facilitate and support the IT Risk Acceptance process. Other duties as assigned. Complete required A&A activities on assigned IT systems.
  • Perform continuous monitoring of security controls to ensure that they are implemented correctly, operating as intended, and producing the desired outcome with respect to meeting the cybersecurity requirements for assigned IT systems.
  • Work with technical teams to mitigate security control deficiencies and scan vulnerabilities for assigned IT systems.
  • Assess the cybersecurity impact of changes to assigned IT systems.
  • Conduct self-assessments of security controls, identify weaknesses, and track remediation activities in Plan of Action and Milestones (POA&M) via eMASS.


  • 3+ years of experience with IT, including in a DoD environment
  • 3+ years of experience with DIACAP and NIST Risk Management Framework (RMF) policies, including continuous monitoring, information system security policies, standards, and procedures
  • Experience with preparing or supporting DIACAP or RMF packages and supporting documentation and DoD Authorization and Accreditation (A&A) process and standards
  • Experience with using the Enterprise Management Assurance Support Service (eMASS)
  • Knowledge of IA or INFOSEC concepts and requirements
  • Ability to conduct security control selection, tailoring, and overlays
  • Ability to analyze a security plan and perform system security analysis
  • Ability to work independently
  • Active Secret clearance -DoD 8140 IAM or IAT Certification, including Security+ CE, CISM, CISSP, or CASP

About ECS

ECS is a leading provider of digital solutions and services to the federal government. The company was founded in 2001 by Roy Kapani and has since grown to become a trusted partner to a wide range of government agencies. ECS offers a broad range of services, including cloud computing, cybersecurity, and artificial intelligence. The company has been recognized for its innovative solutions and has won numerous awards, including the AWS Public Sector Partner of the Year award.
Learn more about ECS
Size
2,000 employees
Industry

Similar Jobs

More Jobs at ECS

  • ECS
    STO Programmatic SETA
    $120K — $150K *
    Arlington, VA 22204 (Arlington County)
    Aerospace & Defense
    In-Person
  • ECS
    AI Methodologist
    $120K — $150K *
    Fairfax, VA 22030 (Fairfax City County)
    Aerospace & Defense
    In-Person
  • ECS
    Software Engineer IV
    $100K — $130K *
    Moorestown, NJ 08057 (Burlington County)
    Aerospace & Defense
    In-Person
  • ECS
    Software Engineer III
    $100K — $130K *
    Moorestown, NJ 08057 (Burlington County)
    Aerospace & Defense
    In-Person
  • ECS
    Program Control Analyst Senior
    $90K — $120K *
    Fairfax, VA 22030 (Fairfax City County)
    Aerospace & Defense
    In-Person

More Aerospace & Defense Jobs

Find similar Senior Cyber Security Analyst jobs: