Cybersecurity Support Specialist

The Nook
Arlington, United States
1 day ago
Apply on startup.jobs
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Compensation
$90,000.0 - $115,000.0
Working hours
Regular working hours
Job source

Tech stack

Active Directory Antivirus Softwares CompTIA Security+ Cyber Security Information Systems Linux Role-Based Access Control Security Content Automation Protocol Security Information and Event Management Software Vulnerability Management Information Technology Tenable Nessus
+4 more
Splunk ManageEngine Vulnerability Analysis User Accounts

Job description

Accredited systems generate a constant stream of security work - scans to run, findings to track, documentation to keep current, users to support. As Cybersecurity Support Specialist, you will keep that work moving at a single Nooks site, supporting the security and compliance of classified and unclassified systems alongside the site’s Cybersecurity Lead. You will bring two to five years of hands-on practice to a specialist seat, reporting to the Site IT/Cyber Manager as an individual contributor.

Our procedures are real but still maturing - audits, incidents, and new system standups will reshuffle your week, and you will step in wherever the site’s security posture needs attention without waiting to be asked., Security Monitoring & Vulnerability Management

  • Conduct vulnerability scanning, patch verification, and security configuration checks under the direction of the site Cybersecurity Lead.
  • Monitor and audit the security posture of classified and unclassified systems, applying Defense Information Systems Agency (DISA) Security Technical Implementation Guides (STIGs).
  • Track findings and remediation actions to closure, documented to organizational and Department of Defense (DoD) standards.

Compliance Documentation & Support

  • Maintain cybersecurity documentation - System Security Plans (SSPs), Plans of Action and Milestones (POA&Ms), audit logs, and standard operating procedures.
  • Record compliance actions and evidence so the site is ready for audits and self-inspections at any time.
  • Keep artifacts organized so the Cybersecurity Lead can hand assessors current documentation on demand.

User Support & Access Control

  • Provide Tier 1 support for cybersecurity-related user requests, escalating issues that need deeper analysis.
  • Manage user accounts, security groups, and permissions in partnership with the site’s IT Support Specialist - you both work in this space, so clean records and communication matter.
  • Support permissions reviews and the implementation of access control policies, including role-based access control.

Incident Response & Security Awareness

  • Participate in incident response and continuous monitoring - log collection, basic analysis, and security control status reporting.
  • Reinforce cybersecurity best practices with end users through daily interactions.
  • Collaborate with IT, personnel security, and physical security teams to keep site operations compliant with DoW requirements.

What Success Looks Like in This Role

Twelve months in, the site’s routine security workload - scans, checks, and documentation upkeep - runs on schedule with little prompting. The SSPs, POA&Ms, and audit artifacts you maintain are current enough to hand straight to an assessor. Tier 1 cybersecurity requests get resolved or escalated cleanly, and account and permissions records stay accurate through every review. Handoffs with the IT Support Specialist are smooth because the shared account work is documented and coordinated. The Cybersecurity Lead trusts your work enough to build audit responses on top of it.

Cross-Functional Expectations

Inside IT/Cyber, you will work most closely with your site’s Cybersecurity Lead and IT Support Specialist, coordinating daily on shared account and access work. You will partner with Security on personnel and physical security touchpoints, and support Operations, specifically the Site Lead, for site activities.

Requirements

  • 2-5 years of experience in cybersecurity or system administration.
  • DoD 8140.03/8570.01 Information Assurance Technical (IAT) Level II certification (e.g., CompTIA Security+), or the ability to obtain one within six months of hire.
  • Hands-on experience with DISA STIGs and tools such as the Security Content Automation Protocol (SCAP) Compliance Checker and STIG Viewer.
  • Familiarity with access control, vulnerability management, and system hardening, plus Active Directory - including Group Policy Object (GPO) and Organizational Unit (OU) structure.
  • Foundational knowledge of Windows and Linux operating systems, networking, and common IT troubleshooting practices.
  • Associate’s or Bachelor’s degree in Cybersecurity, Information Technology, or a related field - or equivalent practical experience.
  • Strong documentation habits, attention to detail, and clear communication across IT and security functions.

Preferred:

  • Familiarity with monitoring and scanning tools such as Tenable Nessus, ManageEngine, Splunk, antivirus platforms (e.g., ESET, Trellix), and other vulnerability and security information and event management (SIEM) tools.
  • Prior DoW or cleared-environment exposure.

Eligibility & Clearance

Candidates must be eligible to work in the United States and capable of maintaining eligibility up to the Top Secret/Sensitive Compartmented Information (TS/SCI) level within 45 days of hire.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on startup.jobs
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · World Congress 2025

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

3:55 min

Demonstrating .NET installation on Debian and Azure Linux

Silvano Coriani Silvano Coriani · Europe 2026 Virtual

Videos

See all

Related articles

See all