Continuous Monitoring Analyst

Leidos, Inc.
Alexandria, VA, United States
2 days ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
4 years minimum
Compensation
$57,850.0 - $104,575.0
Working hours
Regular working hours

Tech stack

Cyber Security Information Systems Identity and Access Management Intrusion Detection and Prevention Network Security Network Intrusion Detection Systems Operational Data Store Security Information and Event Management Software Vulnerability Management Information Technology Splunk Plan of Action and Milestones

Job description

Leidos is seeking a ConMon Analyst to be responsible for overseeing and monitoring authorized IT systems (re-authorization and new systems) throughout their lifecycle for security posture impact. This position is based out of Alexandria, VA and is primarily on-site.

An active Top Secret security clearance (With SCI eligibility) is required prior to start and this role will be based onsite in the Alexandria, VA area.

Primary Responsibilities:

  • Analyze proposed or actual system changes to determine security impact, and assess security controls and their effectiveness.
  • Utilize Axonius, Splunk, Assured Compliance Assessment Solution (ACAS), Microsoft Defender, and Host Based Security System (HBSS)/ESS to assess, validate, and monitor enterprise and system-level security controls in order to support on-going authorization.
  • Develop and maintain the DISA RE5 ConMon Strategy and Standard Operating Procedures (SOP), outlining required activities and artifacts that include the oversight and monitoring of IT systems throughout their lifecycle.
  • Conduct continuous assessments of security controls, perform automated/manual security control monitoring of information systems, and provide IS / Security Control Status Reports based on live data from security monitoring tools.
  • Design efficient and reusable reports and dashboards to integrate multiple mission applications’ health, performance, and operational data systems.
  • Create alerts that trigger on anomalous activities, threat detections, or configured settings to deploy notifications to particulate destination emails or groups.
  • Ensure ConMon-related controls are properly implemented in RMF packages within eMASS and ensure ongoing assessments comply with industry auditor standards to monitor security, vulnerabilities, and threats.
  • Maintain and expand upon the ConMon Dashboard, tracking compliance, POA&M status, CMRS visibility, asset management, FISMA reviews, and annual validations.
  • Coordinate with System, ACAS, and HBSS/ESS Administrators to resolve credentialing and data issues.
  • Provide real-time security status metrics based on the ConMon Strategy and SOP, and alert leadership of security posture changes with negative impact.

Requirements

  • Bachelor’s degree (IT-related field preferred) and 4+ years of prior relevant experience in a cybersecurity or network security position. Additional relevant experience may be considered in lieu of a degree.
  • Active DoD Top Secret security clearance with SCI eligibility is required prior to start.
  • Current DoD 8570 IAM II or IAT II certification.
  • High-level understanding of Splunk with proven experience building and managing Splunk dashboards (Splunk Power User certification is not required).
  • Understanding of the RMF process, NIST SP 800-37, NIST SP 800-53, and CNSSI 1253.
  • Understanding of security architecture, system hardening, Vulnerability Management Programs (VMP), and intrusion detection/prevention.
  • Excellent written, oral communication, and presentation skills; able to appropriately present highly technical material to both technical and non-technical audiences.

Preferred Qualifications:

  • Prior experience as a network intrusion analyst or Security Operations Center (SOC) analyst.
  • Experience configuring and maintaining security tools in a multi-tenant environment.
  • Experience with one or more of the following security tools:
  • MDE

Benefits & conditions

Pay and benefits are fundamental to any career decision. That’s why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits .

About the company

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com .

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:16 min

Securing internal pod communication with network security policies

Marc Nimmerrichter Ā· World Congress 2022

4:11 min

Introduction to cloud-native application developer security

Micah Silverman Ā· World Congress 2022

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 Ā· LIVE

1:37 min

Leveraging continuous intelligence tracking for rapid vulnerability alerting

Matthew Brady Matthew Brady Ā· World Congress 2026 Europe

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler Ā· LIVE

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger Ā· LIVE

Videos

See all

Related articles

See all