> Markdown version of [/jobs/ext/3055286-it-security-analyst](https://www.wearedevelopers.com/jobs/ext/3055286-it-security-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IT Security Analyst - **Company:** Lynker Technologies - **Location:** John C. Stennis Space Center, MS, United States - **Experience:** Expert - **Salary:** $90,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Amazon Web Services, Data Analysis, Microsoft Azure, Cloud Computing, Cyber Security, Databases, Linux, Networking Hardware, Security Information and Event Management, Information Technology, Tenable Nessus, CIS Benchmarks, Plan of Action and Milestones - **Published:** September 24, 2026 - **Apply:** https://www.jofdav.com/jobs/59849582-it-security-analyst ## About the Role The IT Security Analyst selected should have the following: Education Requirements: Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or equivalent. Certificate Requirements: Minimum of Security+ certification; CISSP certification is preferred. - 5+ years of progressive experience in cybersecurity, with a heavy focus on federal Information Assurance (IA) and the Risk Management Framework (RMF). - Proven track record working within federal agency guidelines (e.g., NOAA, DOC, GAO, OIG) and navigating complex internal/external audit cycles. - Deep, practical understanding of NIST SP 800-53 (Revision 4/5) security controls and the 7-step RMF process. - Demonstrated ability to author and defend highly technical artifacts, including System Security Plans (SSPs), Risk Assessment Reports (RARs), and Plan of Action and Milestones (POA&Ms). - Proficiency in translating DISA STIGs and CIS Benchmarks into actionable technical requirements for operating systems, databases, and network devices. - Advanced experience operating and analyzing data from enterprise scanning tools, specifically Tenable Nessus, SecurityCenter, or ACAS. - Experience navigating SIEM platforms and security dashboards to monitor system logs, correlate events, and isolate anomalies. - Ability to conduct technical Security Impact Analyses (SIA) to determine how proposed system, hardware, or software changes will affect the overall security baseline. - Strong technical background and able to liaison between technical IT personnel and stakeholders. - Extensive knowledge of implementing security controls on Windows and Linux systems, both onsite and in a cloud environment (Amazon Web Services (AWS) and Microsoft Azure environments). - Excellent communication skills with an ability to translate technical concepts for diverse stakeholders. - Well organized, with an attention to detail. Other: - Must be able to successfully complete a NOAA (Stennis Space Center)/NASA background investigation for site/system access. - Must be able to obtain and maintain facility credentials/authorization. Must be able to obtain and maintain a Public Trust clearance. Note: US Citizenship or a valid Green Card is required for facility credentials/authorization at this work location. ## Description Duties of the IT Security Analyst will include the following: - Support the ISSO in maintaining all Risk Management Framework (RMF) artifacts, including System Security Plans (SSPs), Risk Assessment Reports (RARs), and Plans of Action and Milestones (POA&Ms). - Lead technical teams through internal and external security audits (e.g., DOC, GAO, OIG) and the annual Assessment and Authorization (A&A) process. Gather evidence, document audit paths, and drive remediation actions to ensure continuous ATO. - Execute routine vulnerability scans using enterprise tools (e.g., Tenable Nessus/ACAS) and guide technical teams in hardening operating systems, databases, and network devices according to DISA STIGs and CIS Benchmarks. - Perform Security Impact Analyses (SIA) for proposed hardware, software, and configuration changes to evaluate risk and ensure compliance with NIST SP 800-53 controls. - Monitor system logs to identify, isolate, and mitigate potential threats across hybrid infrastructure. - Translate complex security controls into actionable requirements for IT personnel, while effectively communicating risk and compliance status to non-technical stakeholders and leadership. - Ensure related documentation is kept current.