Senior Cybersecurity Analyst - ONSITE - US Citizen
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+9 more
Job description
We are seeking a Senior Cybersecurity Analyst to support the National Transportation Safety Board (NTSB) at their headquarters in Washington, DC. You will lead security monitoring, incident response, and risk-management activities, helping protect the agency’s sensitive data and IT infrastructure from evolving threats., * Monitor SIEM and EDR platforms (Splunk, Sentinel, CrowdStrike, or Defender) for security events and anomalies.
-
Lead incident response activities including triage, containment, eradication, and post-incident reporting.
-
Conduct vulnerability assessments using Tenable Nessus, Rapid7, or similar tools and coordinate remediation with system owners.
-
Support FISMA / RMF compliance activities including system categorization, control selection, assessment, and continuous monitoring.
-
Develop and maintain security policies, procedures, and standard operating procedures aligned with NIST 800-53 and 800-171.
-
Perform threat hunting and analysis of indicators of compromise (IOCs) and tactics, techniques, and procedures (TTPs).
-
Lead phishing simulation campaigns and security awareness training.
-
Coordinate with the CISO and IT leadership on security strategy, audits, and reporting.
-
Mentor junior analysts and serve as technical escalation point for the security operations team.
Requirements
Do you have experience in Zero Trust security?, Do you have a Bachelor’s degree?, * Bachelor’s degree in Cybersecurity, Computer Science, or a related field (or equivalent experience).
-
7+ years of progressive cybersecurity experience, including hands-on incident response and SIEM operations.
-
Deep knowledge of NIST 800-53, NIST 800-171, FISMA, and the Risk Management Framework (RMF).
-
Hands-on experience with SIEM (Splunk, Sentinel, or QRadar) and EDR (CrowdStrike, Defender, SentinelOne).
-
Strong understanding of network protocols, common attack vectors, and the MITRE ATT&CK framework.
-
Experience conducting vulnerability scans and producing remediation plans.
-
DoD 8570 / 8140 IAT Level II baseline certification (Security+, CySA+, CISSP, or equivalent).
-
US citizenship and ability to obtain a Public Trust clearance.
-
Strong written and verbal communication skills, including the ability to brief executive stakeholders.
Preferred Qualifications
-
CISSP, CISM, GCIH, or GCIA certification.
-
Experience with federal civilian agency security operations.
-
Familiarity with cloud security (Azure, AWS) and zero-trust architecture.
-
Scripting experience (Python, PowerShell) for security automation.
-
Active Public Trust or higher clearance.
-
Experience with continuous monitoring (ConMon) reporting and FISMA audits.
Benefits & conditions
Pulled from the full job description
- 401(k)
- Health insurance
- 401(k) matching
- Paid time off
- Vision insurance
- Dental insurance, * 401(k)
- 401(k) matching
- Dental insurance
- Health insurance
- Paid time off
- Vision insurance
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on indeed.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Dev Digest 134 - Where pixels sing?
Understanding and Mitigating Common Web Vulnerabilities
The Overflow: Security and Privacy
What Are The Top Skills Required For Azure Developers?