> Markdown version of [/jobs/ext/3078135-cyber-analyst-iii](https://www.wearedevelopers.com/jobs/ext/3078135-cyber-analyst-iii). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Analyst III - **Company:** General Atomics - **Location:** Rome, NY, United States - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Data Analysis, Cloud Computing, Cloud Computing Security, CompTIA Security+, Information Systems, Identity and Access Management, Network Security, Network Segmentation, Cloud Services, Security Information and Event Management, Software Vulnerability Management, Data Logging, Cloud Platform System, Serverless Computing, Vulnerability Analysis - **Published:** September 25, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9194636/cyber-analyst-iii ## About the Role * Typically requires a bachelors degree in related field and five or more years of professional computer system security experience or related field. Equivalent professional experience may be substituted in lieu of education. * Equivalent professional experience may be substituted in lieu of education. * Must demonstrate a complete understanding of computer system security principles, concepts, practices and techniques. * Must have experience organizing, planning scheduling, conducting, and managing work assignments to meet project milestones or established completion dates. * Must possess the ability to understand new concepts quickly and apply them in an evolving environment while contributing to the development of new processes. * Must be customer focused and possess: + (1) the ability to identify issues, analyze and interpret data and develop solutions to a variety of complex issues; + (2) strong analytical skills, verbal and written communication skills to accurately document, report and present findings; + (3) strong interpersonal skills and ability to interface with other professionals; and + (4) strong computer skills. + Ability to work both independently and in a team environment is essential as is the ability to work extended hours as required. Desired Skills: * Experience supporting DoD contracts and working with Controlled Unclassified Information (CUI). * Experience conducting or supporting security audits, assessments, or authorization activities for cloud systems. * Familiarity with FedRAMP, NIST SP 800-171, NIST SP 800-53, or other USG cybersecurity frameworks. * Hands-on experience with AWS security services (e.g., IAM, KMS, CloudTrail, GuardDuty, Security Hub, Config) and securing workloads at IL5 or similar impact levels. * Experience with cloud security architecture and best practices for multi-account AWS environments, including network segmentation, zero trust concepts, and secure landing zones. * Experience with GRC (Governance, Risk, and Compliance) platforms. * Knowledge of supply chain risk management requirements (e.g., NIST SP 800-161). * Experience with SIEM tools, vulnerability scanners, and other cybersecurity monitoring platforms. * Relevant certifications such as CISSP, Security+, CISM, CISA, CRISC, AWS Certified Security - Specialty, or AWS Certified Solutions Architect. * Experience supporting RMF or other authorization processes for cloud-based USG information systems. ## Description * Supports the design, implementation, and operation of secure AWS cloud environments (e.g., AWS GovCloud, DoD IL5), including identity and access management (IAM), network security, encryption, logging/monitoring, and configuration baselines. * Implements and maintains security controls for cloud workloads that handle Controlled Unclassified Information (CUI) and/or USG federal information, ensuring alignment with applicable frameworks (e.g., CMMC/NIST 800-171, FedRAMP/FISMA/NIST 800-53), as directed by program requirements. * Works with internal compliance leads to map and implement required controls in AWS and other cloud environments; provides technical input for System Security Plans (SSPs), Plans of Action and Milestones (POA&Ms), and related documentation for cloud systems. * Supports efforts to achieve and maintain DoD IL5 or equivalent impact levels for cloud workloads, including preparation for assessments, evidence collection, and remediation of findings. * Collaborates with USG customers, program security teams, and other stakeholders to understand security requirements for specific tenants and workloads, including when environments transition to USG federal information systems and fall under non-CMMC frameworks. * Conducts regular security control assessments and configuration reviews for cloud resources; validates that implemented controls are effective and aligned with approved baselines. * Reviews and analyzes security logs, alerts, and reports from cloud-native services (e.g., AWS CloudTrail, GuardDuty, Security Hub, Config) and SIEM platforms to identify potential security and compliance issues in cloud environments. * Supports vulnerability management for cloud workloads, including scanning, triage, coordination with engineering teams, and tracking remediation in accordance with applicable requirements and timelines. * Contributes to the development, review, and maintenance of cloud security policies, standards, and procedures, including documentation of shared responsibility models and tenant-specific requirements. * Prepares and delivers technical and compliance-related information to both technical and non-technical stakeholders, including internal leadership and USG representatives. * Maintains the strict confidentiality of sensitive information. * Performs other duties as assigned. We recognize and appreciate the value and contributions of individuals with diverse backgrounds and experiences and welcome all qualified individuals to apply. ## Related Videos - [Crypto-secure Data Management with In-Database Blockchain](https://www.wearedevelopers.com/videos/632-crypto-secure-data-management-with-in-database-blockchain) - [Data Science in Retail](https://www.wearedevelopers.com/videos/586-data-science-in-retail) - [Leverage Cloud Computing Benefits with Serverless Multi-Cloud ML ](https://www.wearedevelopers.com/videos/78-leverage-cloud-computing-benefits-with-serverless-multi-cloud-ml) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Developers Communities in San Francisco - WeAreDevelopers LIVE from Corgi Cafe](https://www.wearedevelopers.com/videos/2144-developers-communities-in-san-francisco-wearedevelopers-live-from-corgi-cafe) - [Build Delightful Mobile Experiences with Kotlin, Realm, and Atlas Device Sync](https://www.wearedevelopers.com/videos/694-build-delightful-mobile-experiences-with-kotlin-realm-and-atlas-device-sync) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [7 Cloud Computing Trends Coming in 2025 for Developers](https://www.wearedevelopers.com/magazine/412-7-cloud-computing-trends-coming-in-2025-for-developers) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market)