> Markdown version of [/jobs/ext/2115133-security-analyst](https://www.wearedevelopers.com/jobs/ext/2115133-security-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Analyst - **Company:** Acuity - **Location:** Washington, DC, United States - **Experience:** Expert - **Salary:** $87,000.0 - **Contract:** Permanent contract - **Skills:** Active Directory, Agile Methodology, Microsoft Antivirus, Cloud Computing Security, Cyber Security, Information Systems, Information Technology Consulting, Identity and Access Management, Security Information and Event Management, Software Vulnerability Management, Information Technology, Tenable Nessus, Microsoft Sentinel, Splunk, Devsecops, Qualys, User Administration, Servicenow, Vulnerability Analysis - **Published:** August 19, 2026 - **Apply:** https://www.careerjet.com/job/us3fdf721ce84d24492dab69d6c3c65be0/eaa ## About the Role * Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or related field (or equivalent experience). * Minimum of three (3) years of experience supporting cybersecurity operations, information assurance, or security administration. * Experience with Active Directory, user account management, group management, or access control administration. * Experience working with one or more SIEM or enterprise security monitoring platforms. * Experience reviewing vulnerability scan results or supporting vulnerability remediation activities. * Familiarity with NIST RMF, FISMA, or other federal cybersecurity frameworks. * Strong analytical, organizational, communication, and problem-solving skills. * Ability to work collaboratively in a team environment and communicate effectively with technical and non-technical stakeholders. Preferred Qualifications * Security+, CySA+, SSCP, GSEC, or comparable cybersecurity certification. * Experience supporting the U.S. Department of State or other federal civilian agencies. * Experience with Microsoft Defender, Microsoft Sentinel, Splunk, ServiceNow, Tenable Nessus, Qualys, or similar enterprise security tools. * Familiarity with cloud security concepts, identity and access management (IAM), or continuous monitoring. * Experience supporting Agile, DevSecOps, or enterprise IT modernization initiatives. ## Description Looking to make a difference and help protect critical government missions? Join Acuity's cybersecurity team supporting the U.S. Department of State. As a Security Analyst, you will support day-to-day cybersecurity operations by monitoring security events, managing user access, tracking vulnerabilities, supporting compliance activities, and assisting with continuous monitoring initiatives. Working alongside cybersecurity engineers, cloud engineers, system administrators, and government stakeholders, you will help maintain a secure enterprise environment while supporting modernization efforts across cloud, infrastructure, and applications. Why Acuity?: Are you ready to use your expertise in the areas of IT Modernization, Data Enablement, and Hyperautomation to make a real difference? Join Acuity, Inc., a technology consulting firm that supports federal agencies. We combine industry partnerships and long-term federal experience with innovative technical leadership to support our customers' critical missions. Responsibilities: * Monitor enterprise security alerts, events, and system activity to identify potential security issues and escalate findings as appropriate. * Review and manage user access requests, Active Directory security groups, shared resource permissions, and privileged accounts in accordance with least-privilege principles. * Conduct periodic user access reviews and entitlement reviews to ensure appropriate access to enterprise systems, applications, and data. * Review vulnerability scan results, track remediation activities, and coordinate with technical teams to resolve security findings. * Support continuous monitoring activities by assisting with security assessments, compliance reviews, and control validation efforts. * Assist with incident response activities by gathering information, documenting findings, and supporting cybersecurity personnel during investigations. * Support security audits by collecting documentation, maintaining audit artifacts, and assisting with remediation tracking. * Maintain security documentation, standard operating procedures (SOPs), and operational records. * Prepare routine security reports, metrics, and status updates for program leadership and government stakeholders. * Collaborate with cybersecurity engineers, system administrators, and application teams to improve security processes and support enterprise modernization initiatives. * Perform additional duties as assigned in support of customer mission objectives. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [DevSecOps: Injecting Security into Mobile CI/CD Pipelines](https://www.wearedevelopers.com/videos/273-devsecops-injecting-security-into-mobile-ci-cd-pipelines) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) - [DevSecOps: Security in DevOps](https://www.wearedevelopers.com/videos/36-devsecops-security-in-devops) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)