> Markdown version of [/jobs/ext/2773127-ai-assisted-cyber-analysis-specialist](https://www.wearedevelopers.com/jobs/ext/2773127-ai-assisted-cyber-analysis-specialist). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # AI-Assisted Cyber Analysis Specialist - **Company:** Caci Inc - **Location:** United States - **Experience:** Expert - **Salary:** $90,300.0 - $189,600.0 - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Artificial Intelligence, Amazon Web Services, Microsoft Azure, CompTIA Security+, Continuous Integration, Data as a Services, Information Engineering, Information Leak Prevention, Data Stores, Python (Programming Language), Machine Learning, Search Technologies, Data Processing, Retrieval-Augmented Generation, Large Language Models, Software Security, Model Validation, Kubernetes, Information Technology, Data Management, Splunk, Static Application Security Testing, Vulnerability Analysis, Dynamic Application Security Testing - **Published:** September 7, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9146776/ai-assisted-cyber-analysis-specialist ## About the Role Required: * U.S. citizenship is required. * The selected candidate must meet eligibility requirements for access to sensitive information and be able to obtain a Public Trust fitness determination (High Risk). * Ability to work in customer-provided remote environments, use customer-approved tools, and comply with rules of engagement, data-handling requirements, evidence controls, deconfliction procedures, and stop-work criteria. * Five or more years of combined cybersecurity analysis, security engineering, software/data engineering, or applied AI/ML experience, including production automation used by analysts or operators. * Strong Python, API, data-processing, testing, and source-control skills; experience handling structured and unstructured technical artifacts at scale. * Practical knowledge of vulnerability assessment, attack paths, source-code or configuration analysis, malware/artifact triage, or security-tool outputs sufficient to validate analytical results. * Experience building and evaluating AI/ML or LLM-assisted workflows with explicit human review, grounding/provenance, structured outputs, and measurable quality controls. * Understanding of AI security risks including data leakage, prompt injection, untrusted content, model hallucination, authorization, auditability, and secure deployment. * Ability to communicate limitations and uncertainty clearly and to produce maintainable technical documentation. Desired: * Experience with agentic workflow frameworks, retrieval-augmented generation, vector search, model evaluation/observability, or secure model gateways in approved enterprise environments. * Experience with Semgrep, CodeQL, YARA, Sigma, SAST/DAST, SBOM, malware-analysis, vulnerability-management, or exposure-management data. * Familiarity with MITRE ATLAS, NIST AI RMF, secure AI development, adversarial testing, and AI red-team practices. * AWS/Azure AI and data services, container/Kubernetes, CI/CD, data-lake, Splunk/Elastic, or graph-analytics experience. * Relevant cloud, data, AI/ML, or cybersecurity certifications. ## Description CACI is seeking an AI-Assisted Cyber Analysis Specialist to design and operate governed workflows for large-scale code, configuration, scan-result, and security-artifact triage. This is an applied cyber-analysis role, not a generic data-science position. The specialist will combine security expertise, Python automation, approved AI/ML or agentic workflows, and human validation to accelerate analysis while preserving accuracy, provenance, confidentiality, and reproducibility. This position will provide continuous technical assessment support for full-time, proactive testing of externally and internally visible federal cyber assets. This expands federal visibility by conducting continual assessments of .gov domains, subdomains, and internet-facing assets to uncover unknown exposures, validate vulnerabilities, and provide agencies with actionable remediation guidance. This role supports the Continuous Diagnostics and Mitigation (CDM) Program's mission to safeguard and secure cyberspace in an environment where the threat of cyber-attack is continuously growing and evolving and is responsible for enhancing the security, resilience, and reliability of the Nation's cyber and communications infrastructure. The CDM Program defends the United States (U.S.) Federal Information Technology (IT) networks from cybersecurity threats by providing continuous monitoring sensors (tools), diagnosis, mitigation tools, and associated services to strengthen the security posture of Government networks. Responsibilities: * Design human-in-the-loop AI-assisted workflows to classify, enrich, correlate, summarize, and prioritize large volumes of code, configurations, scan results, findings, evidence, and other cyber artifacts. * Build Python services, tools, APIs, prompts, schemas, retrieval pipelines, and evaluation harnesses using customer-approved model endpoints and data stores. * Integrate deterministic security tools and rules-such as SAST/DAST, Semgrep, YARA, Sigma, SBOM, vulnerability, and configuration results-with AI-assisted triage rather than relying on model output alone. * Measure precision, recall, false-positive and false-negative rates, latency, cost, drift, and analyst time saved; document acceptance thresholds and rollback paths. * Protect sensitive data by enforcing access controls, approved model boundaries, provenance, audit logs, redaction, prompt-injection defenses, and safe handling of untrusted code and artifacts. * Present structured findings and uncertainty to security analysts, support manual validation, and capture analyst feedback for continuous improvement. * Maintain technical documentation, test datasets, model/workflow versions, and reproducible release processes. ## Related Videos - [Fault Tolerance and Consistency at Scale: Harnessing the Power of Distributed SQL Databases](https://www.wearedevelopers.com/videos/1520-fault-tolerance-and-consistency-at-scale-harnessing-the-power-of-distributed-sql-databases) - [Understanding Kubernetes in a visual way](https://www.wearedevelopers.com/videos/100085-understanding-kubernetes-in-a-visual-way) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [The New AI Security Stack: Observe, Detect, Protect](https://www.wearedevelopers.com/videos/100302-the-new-ai-security-stack-observe-detect-protect) - [Giving the individual control of their data: Open Source Decentralized Web Nodes](https://www.wearedevelopers.com/videos/1100-giving-the-individual-control-of-their-data-open-source-decentralized-web-nodes) - [Instant KAI Sandboxes with vCluster: Multi-Tenant, Multi-Scheduler GPU Sharing](https://www.wearedevelopers.com/videos/100333-instant-kai-sandboxes-with-vcluster-multi-tenant-multi-scheduler-gpu-sharing) ## Related Articles - [Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud](https://www.wearedevelopers.com/magazine/600-got-ai-ideas-but-no-money-here-are-10-free-ways-to-level-up-your-ai-skills-with-google-cloud) - [How to Become an AI Engineer](https://www.wearedevelopers.com/magazine/331-how-to-become-an-ai-engineer) - [Dev Digest 166: Sycophancy, Zip bombs and AI Native Development](https://www.wearedevelopers.com/magazine/585-dev-digest-166-sycophancy-zip-bombs-and-ai-native-development) - [Dev Digest 164: AI Agents, AI Blindspots and MCP security problems](https://www.wearedevelopers.com/magazine/578-dev-digest-164-ai-agents-ai-blindspots-and-mcp-security-problems) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing)