Security Analyst - Mid

Seneca Resources
Arlington, VA, United States
5 days ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$110,000.0
Working hours
Regular working hours

Tech stack

Microsoft Windows Configuration Management Cyber Security Information Systems System Configuration Security Content Automation Protocol Software Vulnerability Management Infrastructure Automation Frameworks

Job description

Join a dynamic team supporting a high-profile federal client as a Security Analyst - Jr. with a focus on cybersecurity, configuration management, and security technical implementation. You will be critical in maintaining secure system configurations, supporting DISA STIGs, and leveraging frameworks like NIST and RMF to reduce vulnerabilities and strengthen security postures. This role offers the opportunity to work directly on-site at DEA headquarters, ensuring compliance with federal security standards and enhancing your expertise in cybersecurity operations., * Implementing and maintaining secure configurations for multiple information systems in accordance with NIST 800-128, DISA STIGs, and related security standards.

  • Conducting configuration management activities, including pulling and updating STIG settings across Windows and various operating systems.
  • Supporting system hardening, vulnerability mitigation, and continuous security monitoring.
  • Collaborating with cross-functional teams to ensure security controls are appropriately applied and documented.
  • Assisting in audits and security assessments aligned with federal cybersecurity guidelines.
  • Updating and reviewing system registries and configuration settings regularly to remain compliant with new and existing STIGs.
  • Participating in policy development and security documentation efforts.

Requirements

  • Active Secret federal security clearance
  • Strong knowledge of NIST security standards, especially RMF (Risk Management Framework) and NIST SP 800-128
  • Extensive experience working with DISA STIGs, configuration management tools, and related security frameworks (SCAP, PowerSTIG, Chef InSpec, OpenSCAP)
  • Proven ability to pull, interpret, and update STIGs across Windows and multiple OS environments
  • Experience with system hardening, vulnerability mitigation, and continuous monitoring
  • On-site availability five days a week at DEA HQ in Arlington, VA
  • No recent drug use (at least three years, including marijuana)

About the company

At Seneca Resources, we are more than just a staffing and consulting firm, we are a trusted career partner. With offices across the U.S. and clients ranging from Fortune 500 companies to government organizations, we provide opportunities that help professionals grow their careers while making an impact.

When you work with Seneca, you’re choosing a company that invests in your success, celebrates your achievements, and connects you to meaningful work with leading organizations nationwide. We take the time to understand your goals and match you with roles that align with your skills and career path. Our consultants and contractors enjoy competitive pay, comprehensive health, dental, and vision coverage, 401(k) retirement plans, and the support of a dedicated team who will advocate for you every step of the way.

Seneca Resources is proud to be an Equal Opportunity Employer, committed to fostering a diverse and inclusive workplace where all qualified individuals are encouraged to apply.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:59 min

Why existing security and device management tools fail

Marcus Wermuth Marcus Wermuth · World Congress 2026 Europe

59 sec

Proving regulatory compliance to auditors and chief officers

Mike Bursell Mike Bursell · World Congress 2026 Europe

2:03 min

Microsoft integrating native Unix coreutils into Windows environments

Chris Heilmann Chris Heilmann +2 · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

2:28 min

Preventing sensitive information disclosure in RAG systems

Deepu Deepu · World Congress 2025

1:24 min

Installing premium packages using the Store CLI

Noraa Junker Noraa Junker · Europe 2026 Virtual

Videos

See all

Related articles

See all