> Markdown version of [/jobs/ext/2587517-junior-security-analyst](https://www.wearedevelopers.com/jobs/ext/2587517-junior-security-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Junior Security Analyst - **Company:** Cadmus - **Location:** Atlanta, GA, United States - **Experience:** Starter - **Salary:** $75,000.0 - $95,000.0 - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Confluence, JIRA, Burp Suite, Cloud Computing Security, Static Program Analysis, Software Documentation, Cyber Security, Linux, Dynamic Program Analysis, Federal Information Processing Standards (FIPS), Github, Windows Servers, Red Hat Enterprise Linux, Scaled Agile Framework, Security Information and Event Management, Information Technology, Splunk, Devsecops, Plan of Action and Milestones, Vulnerability Analysis - **Published:** August 15, 2026 - **Apply:** https://www.atlantacareerpath.com/job.asp?id=3354567030&tx=TT434THZ&pt=1&aff=0B19D771-A501-4A5E-8338-2A822B784D54&utm_source=Job%20Feed&utm_medium=textkernel&utm_campaign=DE&utm_term=0B19D771-A501-4A5E-8338-2A822B784D54 ## About the Role * Bachelor's degree in computer science, Information Technology, or a related field (or equivalent practical experience) * 1-2 years of experience in Security Analysis work * Excellent Technical Writing skills * Experience working directly with clients. * Ability to work autonomously and consistently deliver within deadlines. * Experience with creating and maintaining detailed documentation. * Excellent oral and written communication skills * Excellent multitasking skills * Security+, or equivalent security certification * Ability to obtain a Public Trust is required ## Description This Junior Security Analyst role will have client facing responsibilities that encompass security analyst, engineering, and operations skill sets. Responsibilities include ensuring security and FISMA compliance of Cadmus's client's systems that are currently in the cloud. At various times, the successful candidate will perform security analyst tasks, such as analysis of security control implementation and assessment findings, development, and maintenance of security program documentation as well as more technical and operations tasks such as security testing and vulnerability scanning, security systems operation, and assisting with remediation of findings., * 1-2 years of IT security experience including work with the following: * JIRA * Confluence * Burp Suite or equivalent Dynamic Analysis Security Testing tool * Snyk or equivalent Static Analysis Security Testing and Dependency Management tool * Amazon Web Services (AWS) - Cloud Computing Security Services * Monitor security events and alerts using SIEM platforms like Splunk * Scaled Agile Framework (SAFe) * DevSecOps Framework and mindset * GitHub * Windows Server * Linux (Amazon Linux, RedHat preferred * NIST SP 800-37 Rev.2 Risk Management Framework and associated NIST Special Publications (NIST SP 800-53 Rev. 5, etc.) * Federal Information Processing Standards (FIPS) * Other Federal Government Security Standards, Guidelines, Baselines, and Memoranda * Development and maintenance of security program documentation (security policies, procedures, standards, etc.) * Business Continuity and Disaster Recovery Planning and Testing * Analysis of security testing findings, control implementations, and resultant security documentation updates (Plan of Action and Milestones, System Security Plans, etc.) ## Related Videos - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Improving quality with Agentic AI with Rovo Dev and Xray](https://www.wearedevelopers.com/videos/2005-improving-quality-with-agentic-ai-with-rovo-dev-and-xray) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Maturity assessment for technicians or how I learned to love OWASP SAMM](https://www.wearedevelopers.com/videos/351-maturity-assessment-for-technicians-or-how-i-learned-to-love-owasp-samm) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)