Cybersecurity Analyst

General Dynamics Corp
Colorado Springs, CO, United States
1 day ago
Apply on www.careerbuilder.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$125,275.0
Working hours
Regular working hours

Tech stack

Microsoft Windows Computer-Aided Audit Tools Static Program Analysis CompTIA Security+ Cyber Security Dynamic Program Analysis Network Topologies Identity and Access Management Systems Analysis Networking Hardware Internet Security Machine Learning
+11 more
Network Configuration and Change Management Red Hat Enterprise Linux Fortify (Software) Security Content Automation Protocol SonarQube System Testing Virtual Environment National Industrial Security Program Operating Manual (NISPOM) Plan of Action and Milestones Vulnerability Analysis User Accounts

Job description

We are seeking a detail-oriented Cybersecurity Analyst to support critical cybersecurity initiatives. This position involves managing user accounts, conducting system assessments, performing Security Technical Implementation Guide (STIG) assessments, and supporting Risk Management Framework (RMF) activities. The ideal candidate will possess strong technical expertise in cybersecurity practices, compliance audits, and risk mitigation processes within DoD environments., * Manage and track DD Form 2875 user account forms and training for privileged and non-privileged accounts, including annual account validations and coordination with system administrators for account creation, modification, and removal.

  • Assess systems and networks in virtual environments for compliance with configurations, policies, and standards using tools like STIG Viewer, SCAP, and ACAS.
  • Perform Security Technical Implementation Guide (STIG) assessments and hardening for Windows, Red Hat Enterprise Linux (RHEL), and networking equipment using ConfigOS.
  • Develop test plans and document expected outcomes of STIG checks.
  • Update RMF documentation to ensure non-compliance issues are tracked and remediated.
  • Implement government cybersecurity policies (e.g., NISPOM, NIST, DoD) and recommend process improvements.
  • Conduct compliance audits, vulnerability assessments, and periodic reviews of systems to validate cybersecurity controls.
  • Prepare and maintain RMF artifacts, including Test Results (TR), Authorization Boundary Diagrams (ABD), Network Topologies, Ports, Protocols, and Services Management documentation, and Plan of Actions and Milestones (POA&M).

Requirements

Bachelor’s degree in Engineering, or a related Science or Mathematics field, plus a minimum of 5 years of relevant experience; or Master’s degree plus a minimum of 3 years of relevant experience., * 3+ years of related experience and/or post-secondary degree in a relevant discipline.

  • Active TS/SCI clearance required.
  • IAT Level II/IAM Level I DoD 8570 certification (e.g., Security+ CE or equivalent).
  • Strong security engineering skills with knowledge of cybersecurity technology and DoD/Federal policies (e.g., DoDI 8500.01, NIST SP 800-53)., * Proficiency in Enterprise Mission Assurance Support Service (eMASS).
  • In-depth understanding of the RMF Cybersecurity Lifecycle, including controls, overlays, requirements generation, architecture design, audit tools, and compliance assessments.
  • Knowledge of Software Assurance (SwA) tools for static and dynamic code analysis (e.g., Fortify, SonarQube).

Preferred Qualifications

  • Experience with Windows and Red Hat Enterprise Linux (RHEL) system administration.
  • Background in working within virtual environments, dockers, and containers.
  • Proficiency in administering ACAS and Endpoint Security Solutions (ESS).
  • Experience using ConfigOS for system hardening.
  • Experience working with or familiarity with Al/ML models is preferred.
  • Identifies opportunities to apply Al for continuous improvement and innovation.

Join our team to enhance the cybersecurity posture of mission-critical systems and make a significant impact. Apply today!, Analysis Skills, Architectural Design, Auditing, CompTIA Security+, Computer Security, Continuous Improvement, Customer Support/Service, Detail Oriented, DoD Directive 8140, DoD Directive 8570, Documentation, Documentation Plan, Dynamic Analysis, Endpoint Security, Engineering, Environmental Compliance, Government Policies, IAM - Information Assurance Management, Internet Security, Maintain Compliance, Mathematics, Microsoft Windows Operating System, Network Configuration Management, Network Performance/Analysis, Network System Hardware, Network Topology, Policy Implementation, Process Improvement, Red Hat Linux Operating System, Regulatory Compliance, Risk Management, Risk Management Framework (RMF), Sensitive Compartmented Information (SCI), System Validation, Systems Administration/Management, Systems Analysis, Test Plan/Schedule, Testing, Top Secret Clearance, U.S. National Institute of Standards and Technology (NIST), United States Department of Defense (DoD), User Account Administration

Benefits & conditions

Maximum Salary

About the company

General Dynamics Mission Systems (GDMS) engineers a diverse portfolio of high technology solutions, products and services that enable customers to successfully execute missions across all domains of operation. With a global team of 12,000+ top professionals, we partner with the best in industry to expand the bounds of innovation in the defense and scientific arenas. Given the nature of our work and who we are, we value trust, honesty, alignment and transparency. We offer highly competitive benefits and pride ourselves in being a great place to work with a shared sense of purpose. You will also enjoy a flexible work environment where contributions are recognized and rewarded. If who we are and what we do resonates with you, we invite you to join our high-performance team!

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerbuilder.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

3:23 min

Building and installing the compiled custom rule extension

Daniel Strmečki +1 · World Congress 2022

3:44 min

Domain modeling for multi-user scalable account systems

Bartosz Pietrucha · JS Congress

7:25 min

Writing system tests to verify operational infrastructure

Ryan Latta · World Congress 2021

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

3:46 min

Adding metadata and documentation to new custom rules

Daniel Strmečki +1 · World Congress 2022

Videos

See all

Related articles

See all