Senior Security Analyst (TS/SCI with Polygraph)

Yellow Duck Technologies Inc.

• $110K — $130K *
Aerospace & Defense
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Active TS/SCI clearance with polygraph required.
  • Bachelor's degree in Cybersecurity, Computer Science, or relevant area (or equivalent experience).
  • Over 10 years of information security experience.
  • Strong knowledge of DoD security requirements including NIST 800-53 and RMF.
  • Experience with security testing tools such as SAST, DAST, and SCA.
  • Familiarity with secure software development lifecycle processes.
  • Knowledge in containerization and Kubernetes security.
  • Security+ certification required; advanced certifications like CISSP or GIAC preferred.

Responsibilities

  • Implement security controls and best practices throughout development.
  • Support DevSecOps pipeline integration for enhanced security.
  • Conduct thorough security assessments and vulnerability analysis.
  • Manage security findings with Plan of Action & Milestones (POA&M).
  • Support Risk Management Framework (RMF) activities and documentation efforts.
  • Coordinate security scans and remediation initiatives effectively.
  • Review code to identify and resolve security vulnerabilities.

Benefits

  • Comprehensive health, dental, and vision insurance.
  • 401(k) plan with company match.
  • Generous paid time off and holiday schedule.
  • Professional development and training opportunities.
  • Flexible work environment.
Full Job Description
Yellow Duck Technologies is seeking a cleared Senior Security Analyst to ensure that all development activities comply with security requirements and implements security best practices throughout the software lifecycle. This position supports DevSecOps implementation, conducts security assessments, and ensures the unified solution meets all DoD security standards and Risk Management Framework (RMF) requirements.

Responsibilities:
  • Implement security controls and best practices.
  • Support DevSecOps pipeline security integration.
  • Conduct security assessments and vulnerability analysis.
  • Manage security findings and Plan of Action & Milestones (POA&M).
  • Support RMF activities and security documentation.
  • Coordinate security scans and remediation efforts.
  • Review code for security vulnerabilities.
  • Implement secure coding practices and guidelines.
  • Support incident response and security investigations.
  • Maintain security documentation and compliance records.

Requirements:
  • Must have an active TS/SCI clearance with polygraph.
  • Bachelor's degree in Cybersecurity, Computer Science, or related field. An additional 4 years of experience may substitute for a Bachelor's degree.
  • 10+ years of information security experience.
  • Strong knowledge of DoD security requirements (NIST 800-53, RMF, etc.).
  • Experience with security testing tools (SAST, DAST, SCA).
  • Understanding of secure software development lifecycle.
  • Knowledge of containerization security and Kubernetes security.
  • Experience with security compliance and authorization processes.
  • Security+ or equivalent certification (required).
  • CISSP, GIAC, or similar advanced security certification (preferred).

Similar Jobs

More Jobs at Yellow Duck Technologies Inc.

More Aerospace & Defense Jobs

Find similar Senior Security Analyst (TS/SCI with Polygraph) jobs: