> Markdown version of [/jobs/ext/2284628-continuous-monitoring-analyst](https://www.wearedevelopers.com/jobs/ext/2284628-continuous-monitoring-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Continuous Monitoring Analyst - **Company:** Leidos, Inc. - **Location:** Alexandria, VA, United States - **Experience:** Experienced - **Salary:** $57,850.0 - $104,575.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Information Systems, Identity and Access Management, Intrusion Detection and Prevention, Network Security, Network Intrusion Detection Systems, Operational Data Store, Security Information and Event Management, Software Vulnerability Management, Information Technology, Splunk, Plan of Action and Milestones - **Published:** August 28, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9123551/continuous-monitoring-analyst ## About the Role * Bachelor's degree (IT-related field preferred) and 4+ years of prior relevant experience in a cybersecurity or network security position. Additional relevant experience may be considered in lieu of a degree. * Active DoD Top Secret security clearance with SCI eligibility is required prior to start. * Current DoD 8570 IAM II or IAT II certification. * High-level understanding of Splunk with proven experience building and managing Splunk dashboards (Splunk Power User certification is not required). * Understanding of the RMF process, NIST SP 800-37, NIST SP 800-53, and CNSSI 1253. * Understanding of security architecture, system hardening, Vulnerability Management Programs (VMP), and intrusion detection/prevention. * Excellent written, oral communication, and presentation skills; able to appropriately present highly technical material to both technical and non-technical audiences. Preferred Qualifications: * Prior experience as a network intrusion analyst or Security Operations Center (SOC) analyst. * Experience configuring and maintaining security tools in a multi-tenant environment. * Experience with one or more of the following security tools: + MDE ## Description Leidos is seeking a ConMon Analyst to be responsible for overseeing and monitoring authorized IT systems (re-authorization and new systems) throughout their lifecycle for security posture impact. This position is based out of Alexandria, VA and is primarily on-site. An active Top Secret security clearance (With SCI eligibility) is required prior to start and this role will be based onsite in the Alexandria, VA area. Primary Responsibilities: * Analyze proposed or actual system changes to determine security impact, and assess security controls and their effectiveness. * Utilize Axonius, Splunk, Assured Compliance Assessment Solution (ACAS), Microsoft Defender, and Host Based Security System (HBSS)/ESS to assess, validate, and monitor enterprise and system-level security controls in order to support on-going authorization. * Develop and maintain the DISA RE5 ConMon Strategy and Standard Operating Procedures (SOP), outlining required activities and artifacts that include the oversight and monitoring of IT systems throughout their lifecycle. * Conduct continuous assessments of security controls, perform automated/manual security control monitoring of information systems, and provide IS / Security Control Status Reports based on live data from security monitoring tools. * Design efficient and reusable reports and dashboards to integrate multiple mission applications' health, performance, and operational data systems. * Create alerts that trigger on anomalous activities, threat detections, or configured settings to deploy notifications to particulate destination emails or groups. * Ensure ConMon-related controls are properly implemented in RMF packages within eMASS and ensure ongoing assessments comply with industry auditor standards to monitor security, vulnerabilities, and threats. * Maintain and expand upon the ConMon Dashboard, tracking compliance, POA&M status, CMRS visibility, asset management, FISMA reviews, and annual validations. * Coordinate with System, ACAS, and HBSS/ESS Administrators to resolve credentialing and data issues. * Provide real-time security status metrics based on the ConMon Strategy and SOP, and alert leadership of security posture changes with negative impact. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Small, Secure, Interconnected: The next Internet Protocol](https://www.wearedevelopers.com/videos/100062-small-secure-interconnected-the-next-internet-protocol) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Better Together: Leveraging Your Observability Tools as a SIEM](https://www.wearedevelopers.com/videos/2118-better-together-leveraging-your-observability-tools-as-a-siem) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Dev Digest 210: AI Agents Are Go! Is MCP Dead? LLMs Crack Anonymity](https://www.wearedevelopers.com/magazine/709-dev-digest-210-ai-agents-are-go-is-mcp-dead-llms-crack-anonymity) - [Dev Digest 162: AI careers, MCP, AWS best practices & floppy sweaters](https://www.wearedevelopers.com/magazine/571-dev-digest-162-ai-careers-mcp-aws-best-practices-floppy-sweaters)