Cybersecurity Analyst

Metropolitan Washington Airports Authority
Washington, DC, United States
about 1 month ago
Apply on www.indeed.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience required
1 year minimum
Compensation
$94,665.0 - $137,265.0
Working hours
Regular working hours
Job source

Tech stack

Private Networks Software System Penetration Testing Software Documentation Cyber Security Information Systems Identity and Access Management Information Security Management Network Security Red Team (Cyber Security) Security Information and Event Management Software Vulnerability Management Diagnostic Tools
+8 more
Computer Network Operations Mitre Att&ck Information Technology Cybercrime CIS Benchmarks Purple Team (Cyber Security) Blue Team (Cyber Security) Vulnerability Analysis

Job description

As a Cybersecurity Analyst, you will implement and maintain information technology security systems in support of the Airports Authority’s Information Security Program. You will be responsible for protecting the Authority’s data, networks, and systems by implementing security measures, managing the Security Information and Event Management (SIEM) system responding to security alerts, conducting audits, ensuring compliance, addressing security issues, maintaining cybersecurity processes, providing training, documenting procedures, advising management, and leading incident response efforts. You will assist in reducing the attack surface by using appropriate technologies and processes to prevent, detect, and manage cyber threats; identify, monitor, assess, and counter cyber threats to our information systems and assist in implementing, and maintaining information technology security systems and procedures.

Serves in the Information Security Department of the Office of Technology located at the Headquarters Office Building.

GENERAL RESPONSIBILITIES

Monitors, tests, and reports on the confidentiality, integrity, and availability of information assets in compliance with MWAA’s information security policies and industry standards.

Ensures adherence to security and compliance standards, and participates in regular security audits and assessments.

Works closely with the Network Operations and Service Desk teams to address and resolve information security issues.

Provides expertise and support to various IT teams on deploying and configuring security appliances and systems.

Manages and monitors SIEM, Endpoint Detection and Response (EDR/XDR), and other enterprise security monitoring platforms to detect, analyze, and respond to cybersecurity events. Conducts vulnerability assessments and security scans; analyzes findings; and coordinates remediation activities with system owners and technical teams.

Analyzes and responds to security alerts, escalating high-risk events to the appropriate technology team for resolution.

Performs technical security reviews and cybersecurity risk assessments for systems, applications, and technology implementations.

Identifies, logs, blocks, and reports malicious activities within the Airports Authority networks and systems.

Implements and maintains cybersecurity processes and procedures to ensure threats are effectively managed and mitigated.

Monitors external third-party threat intelligence feeds and updates cybersecurity tools accordingly.

Informs and advises appropriate operations teams of threats to software, hardware, and operating systems.

Documents cybersecurity processes and procedures, ensuring clarity and consistency.

Conducts training sessions and creates user documentation to enhance awareness and adoption of cybersecurity best practices.

Works collaboratively with cyber and technical teams and business functions to promote a culture of security awareness.

Appropriately informs and advises management on security incidents and prevention strategies.

Monitors, tests, and reports user computing activities, such as failed logins and account lockouts, and reviews internal network and remote user access to ensure access management processes are working as designed.

Participates in penetration testing and Red Team, Blue Team, and Purple Team exercises and assists with validating remediation of identified findings.Participates as a core member of the incident response team, leading efforts to mitigate and resolve security incidents. Keeps abreast of security industry developments and best practices to identify and address emerging threats to protect organizational assets proactively.

Leads initiatives to improve the Airports Authority’s cybersecurity posture, proposing innovative solutions to enhance overall security capabilities.

Supports business continuity and disaster recovery planning, testing, and recovery activities related to cybersecurity.

Performs other duties as assigned.

Requirements

Four years of progressively responsible experience in cybersecurity or Information Security. An equivalent combination of education and experience may be considered.

Knowledge of the cyber threat landscape and proficiency in managing vulnerabilities to protect organizational systems and data.

Experience with Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR/XDR), vulnerability management, endpoint protection, identity and access management, and network security technologies.

Knowledge of NIST CSF, NIST 800-53, CIS Controls, MITRE ATT&CK, and incident response processes.

Exceptional problem-solving abilities with strong research and analytical skills to identify, assess, and address complex security challenges.

Ability to use IT system detection tools and/or penetration testing tools to safeguard IT data and systems.

Ability to implement, configure, and monitor information security devices to protect organizational systems and networks from security incidents.

Strong sense of ownership and motivation, with a drive to manage tasks from initiation to completion, ensuring high-quality outcomes.

Ability to perform general analyses of data and information and make recommendations.

Strong written and verbal communication skills with the ability to effectively communicate security information to both technical and non-technical stakeholders.

Proven ability to work collaboratively with cross-functional teams, including IT, network operations, and business units, to enhance overall security posture., Certifications such as Security+, CySA+, GSEC, GCIH, CISSP, or CISM., Bachelor’s Degree in Cybersecurity, Information Technology, or Information Security, or a related field., CompTIA Cybersecurity Analyst (CySA+) certification within one year of hire, placement, or promotion in the job.

Benefits & conditions

Pulled from the full job description

  • Health insurance
  • Vision insurance
  • Dental insurance
  • Flexible spending account, A career with the Airports Authority comes with more than just a paycheck; it offers a comprehensive benefits package designed to support you and your family’s health, financial security, and professional growth. Benefits include medical, dental, and vision coverage; well-being resources; health savings and flexible spending accounts; pension and retirement plans; and ongoing training and development opportunities. Discover more about our benefits package here.

A background security investigation will be required for all new hires.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:15 min

Auditing container configurations against CIS benchmark security standards

Madhu Akula · LIVE

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · World Congress 2026 Europe

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

3:39 min

Validating data queries and infrastructure security configurations

Philipp Krenn · World Congress 2023

Videos

See all

Related articles

See all