Intermediate Cybersecurity Analyst
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
Position Overview: Provides intermediate-level cybersecurity and information assurance support for the US Air Force Office of Special Investigations (AFOSI). Under the direction of experienced cybersecurity personnel, assists with Risk Management Framework (RMF) Assessment and Authorization packages, security control implementation and monitoring, vulnerability management, compliance documentation, and security reporting. Supports AFOSI cybersecurity operations by helping maintain system security documentation and by coordinating with infrastructure, operations, and development teams to address Department of Defense security requirement, * Provide technical engineering and implementation of security solutions. This includes designing and managing vulnerability scanning architecture, engineering the Security Information and Event Management (SIEM) solution, integrating security testing into the development pipeline, defining secure configuration baselines, and developing technical documentation for security architecture.
-
Assist with building, coordinating, maintaining, and updating RMF Assessment and Authorization packages and supporting security documentation for AFOSI systems and enclaves.
-
Assist with implementing and monitoring security controls, documenting findings, and tracking remediation activities through the Plan of Action and Milestones process.
-
Support vulnerability scanning, report review, asset-list maintenance, scan scheduling, and identification of configuration issues and missing patches using ACAS or comparable tools.
-
Help correlate vulnerability results with IAVM alerts, bulletins, and Common Vulnerabilities and Exposures to support compliance tracking.
-
Support reviews of system and application configurations against applicable DISA Security Technical Implementation Guides and Security Requirements Guidance.
-
Assist with maintaining Governance, Risk and Compliance records and eMASS artifacts, including policies, plans, procedures, reports, and authorization documentation.
-
Assist with security-log review and reporting using SIEM tools such as Splunk or ArcSight and use basic PowerShell scripts to collect and organize security data.
-
Collaborate with cybersecurity, infrastructure, operations, and development personnel; communicate findings clearly; and support readiness assessments and incident-response activities as assigned.
Requirements
-
Years of Experience: 5 years of experience in cybersecurity and information assurance, including at least 3 years of systems administration experience supporting servers and infrastructure.
-
Education Level: Associate’s or bachelor’s degree in cybersecurity, information technology, computer science, or a related field preferred; equivalent technical training and relevant experience considered.
-
Clearance Requirements: Must have an active Top Secret clearance and be SCI eligible.
-
Certification Requirements: Must possess an approved DoD 8570/8140 IAT Level II certification or be able to obtain the required certification within the timeframe permitted by the contract.
-
Any other work-related qualifications needed for the role: Foundational knowledge of RMF, STIGs, security controls, vulnerability management, POA&M tracking, event-log review, firewalls, and security risk assessments. Familiarity with eMASS, GRC applications, ACAS/Tenable, HBSS, Splunk, ArcSight, Active Directory, PowerShell, and asset-management tools is preferred rather than required. Must demonstrate attention to detail, analytical problem-solving skills, effective oral and written communication, the ability to learn DoD cybersecurity processes and tools, and U.S. citizenship.
Benefits & conditions
Eligible full-time employees receive a comprehensive benefits package, including medical, dental, vision, life and disability coverage, retirement savings with company match, and paid time off. Additional benefits include voluntary supplemental benefits, access to an employee assistance program, and educational assistance with tuition reimbursement.
About the company
Diné Development Corporation (DDC) is a Navajo Nation-owned family of companies that provides government agencies and commercial organizations with high-quality IT, professional, environmental, and research and development services. DDC is dedicated to empowering the Navajo Nation and the communities we serve.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Dev Digest 134 - Where pixels sing?
Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Understanding and Mitigating Common Web Vulnerabilities