Senior Cybersecurity Analyst - ONSITE - US Citizen

SOLUTIONS ETCETERA
Washington, DC, United States
3 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
7 years minimum
Compensation
$145,000.0 - $160,000.0
Working hours
Regular working hours
Job source

Tech stack

Amazon Web Services Microsoft Azure Cloud Computing Security Cyber Security IT Management Python (Programming Language) Network Protocols Windows PowerShell Phishing Zero Trust Network Access Security Information and Event Management Scripting
+9 more
Mitre Att&ck QRadar Information Technology Cybercrime Tenable Nessus Splunk SentinelOne Expertise Security Orchestration, Automation & Response Vulnerability Analysis

Job description

We are seeking a Senior Cybersecurity Analyst to support the National Transportation Safety Board (NTSB) at their headquarters in Washington, DC. You will lead security monitoring, incident response, and risk-management activities, helping protect the agency’s sensitive data and IT infrastructure from evolving threats., * Monitor SIEM and EDR platforms (Splunk, Sentinel, CrowdStrike, or Defender) for security events and anomalies.

  • Lead incident response activities including triage, containment, eradication, and post-incident reporting.

  • Conduct vulnerability assessments using Tenable Nessus, Rapid7, or similar tools and coordinate remediation with system owners.

  • Support FISMA / RMF compliance activities including system categorization, control selection, assessment, and continuous monitoring.

  • Develop and maintain security policies, procedures, and standard operating procedures aligned with NIST 800-53 and 800-171.

  • Perform threat hunting and analysis of indicators of compromise (IOCs) and tactics, techniques, and procedures (TTPs).

  • Lead phishing simulation campaigns and security awareness training.

  • Coordinate with the CISO and IT leadership on security strategy, audits, and reporting.

  • Mentor junior analysts and serve as technical escalation point for the security operations team.

Requirements

Do you have experience in Zero Trust security?, Do you have a Bachelor’s degree?, * Bachelor’s degree in Cybersecurity, Computer Science, or a related field (or equivalent experience).

  • 7+ years of progressive cybersecurity experience, including hands-on incident response and SIEM operations.

  • Deep knowledge of NIST 800-53, NIST 800-171, FISMA, and the Risk Management Framework (RMF).

  • Hands-on experience with SIEM (Splunk, Sentinel, or QRadar) and EDR (CrowdStrike, Defender, SentinelOne).

  • Strong understanding of network protocols, common attack vectors, and the MITRE ATT&CK framework.

  • Experience conducting vulnerability scans and producing remediation plans.

  • DoD 8570 / 8140 IAT Level II baseline certification (Security+, CySA+, CISSP, or equivalent).

  • US citizenship and ability to obtain a Public Trust clearance.

  • Strong written and verbal communication skills, including the ability to brief executive stakeholders.

Preferred Qualifications

  • CISSP, CISM, GCIH, or GCIA certification.

  • Experience with federal civilian agency security operations.

  • Familiarity with cloud security (Azure, AWS) and zero-trust architecture.

  • Scripting experience (Python, PowerShell) for security automation.

  • Active Public Trust or higher clearance.

  • Experience with continuous monitoring (ConMon) reporting and FISMA audits.

Benefits & conditions

Pulled from the full job description

  • 401(k)
  • Health insurance
  • 401(k) matching
  • Paid time off
  • Vision insurance
  • Dental insurance, * 401(k)
  • 401(k) matching
  • Dental insurance
  • Health insurance
  • Paid time off
  • Vision insurance

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

2:39 min

Exposing stored XSS and phishing attacks via markdown

Ramona Schwering Ramona Schwering · WWC Europe 2026

Videos

See all

Related articles

See all