Senior Information Security Analyst

QUANTUM SKY LLC
Oceanside, CA, United States
2 days ago
Apply on www.techcareers.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
1 year minimum
Compensation
$140,000.0 - $150,000.0
Working hours
Regular working hours

Tech stack

Microsoft Windows Software System Penetration Testing Cyber Security Local Security Policy NIPRNet Red Team (Cyber Security) Secure Coding Plan of Action and Milestones Vulnerability Analysis

Job description

Quantum Sky is searching for a Senior Information Security Analyst with Red Team experience to support a DoW customer at Camp Pendleton. This candidate will provide senior-level cybersecurity assessment and continuous monitoring support for customer’s systems and networks, with emphasis on OCONUS execution, security control effectiveness, vulnerability analysis, configuration monitoring, and technically defensible risk recommendations., * Lead or execute security control assessments and continuous monitoring activities for assigned systems and portfolios.

  • Analyze vulnerability scans, IAVMs, configuration baselines, security-control evidence, and remediation status to determine control effectiveness and mission risk.
  • Conduct or support authorized secure code review, penetration testing, and security evaluation activities and document technical results.
  • Develop assessment plans, findings, final reports, vulnerability and drift reporting, POA&M recommendations, and quarterly AO reporting inputs.
  • Coordinate with system owners and site stakeholders to deconflict scan windows, testing, maintenance periods, and field-training schedules.
  • Validate remediation actions, conduct retests, and ensure findings are evidence-traceable and mapped to governing controls.
  • Mentor/support Journeyman-level personnel as assigned and help enforce technical and quality standards.
  • Maintain required certifications, clearance, privileged-access status, and training., * Complete and maintain required initial/annual NIPRNET account training, including Cyber Awareness, OPSEC, and Privacy/PII.
  • Complete applicable SIPRNET training, including Derivative Classification and local SIPRNET user agreements; NATO Secret briefing if mission-required.
  • Complete annual CUI training and local installation/security briefings.
  • Maintain required CAC/DBIDS/site-access credentials and comply with DISS visit request requirements.
  • Maintain valid passport/visa/driver documentation when required by the duty location or travel assignment.

Performance Expectations:

  • Produce complete, accurate, evidence-traceable assessment products in accordance with the SOW, approved QCP, Government formats, and established delivery timelines.
  • Escalate critical/high or mission-impacting issues through Quantum Sky program leadership in accordance with the approved governance and escalation process.
  • Protect classified information, CUI, Government property, credentials, and assessment data in accordance with contract and local security requirements.
  • Operate within the non-personal-services construct; Government personnel provide requirements, priorities, surveillance, and acceptance, while Quantum Sky management directs contractor personnel.

Certification: IAT Level III OR CSSP Analyst certification required (e.g. SecurityX, CISA, CISSP, CISA, CySA+)

Requirements

Required:

  • US. citizenship.
  • DoD 8140 /cyberspace workforce qualification: IAT Level III or applicable CSSP/DCWF role.
  • Certification: CISSP, CEH, or other Government-accepted certification meeting the required 8140 work role.
  • 3+ years conducting DoW network assessments.
  • 5+ years performing secure code reviews.
  • 2+ years performing penetration testing.
  • 3+ years performing security evaluations.
  • 1+ year experience supporting DoW expeditionary network environments of similar size and complexity to the customer’s Cyberspace Environment
  • Ability to meet current DoW, DoN, and USMC privileged-access, background investigation, training, and least-privilege requirements.

Desired:

  • Garrison-to-tactical architecture experience; OCONUS execution experience; strong written communication for AO-level risk reporting.

Benefits & conditions

  • Compensation is unique to each candidate and relative to the skills and experience they bring to the position. The salary range for this position is typically between $140,000-$150,000. This does not guarantee a specific salary as compensation is based upon multiple factors such as education, experience, certifications, and other requirements, and may fall outside of the above-stated range., * Highlights of our benefits include Health/Dental/Vision, 401(k) match, Paid Time Off, STD/LTD/Life Insurance, Referral Bonuses, professional development reimbursement, and parental leave.

The world the mission operates in is going post-quantum, contested, and machine-speed. Quantum Sky engineers the advantage across cyber, networks, software, and quantum because the mission demands dominance, not parity. We don’t follow the map. We draw it.

About the company

At Quantum Sky, we believe that success starts with our people. We foster a collaborative, innovative, and mission-driven environment where every team member plays a critical role in shaping the future of technology. Are you ready to join #TeamQuantumSky?

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.techcareers.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:59 min

Applying secure coding practices and proactive system monitoring

Mihaela-Roxana Ghidersa · LIVE

10:35 min

Teaching and coaching security concepts for lasting impact

Tanya Janca · World Congress 2021

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all