> Markdown version of [/jobs/ext/3538699-cyber-security-analyst-i](https://www.wearedevelopers.com/jobs/ext/3538699-cyber-security-analyst-i). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Security Analyst I - **Company:** Scientific Research Corporation - **Location:** North Charleston, SC, United States - **Experience:** Starter - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Configuration Management, Code Review, Cyber Security, Linux, Information Security Management, Networking Hardware, Red Hat Enterprise Linux, Security Content Automation Protocol, Virtual Machines, VMware VSphere, Nessus, Routing & Switching, Devsecops, Vmware - **Published:** October 1, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9207130/cyber-security-analyst-i ## About the Role * Must currently hold a DoD 8570-compliant IAT II certification (SSCP or Security+CE with appropriate CE/OS certificate) or be able to obtain within six months + CE/OS certificate may include Windows or Linux * Experience with eMASS, SSPs, POAMs, ACAS/Nessus, SCAP, Security Checklists, and STIG Viewer * Experience with risk management framework processes * Have developed communication skills and the ability to express thoughts and ideas clearly and concisely * Must be capable of multitasking and working several complex and diverse tasks with simultaneous or near simultaneous deadlines * Be a self-starter who is accountable and requires minimal direction and supervision * Be open to new and innovative ideas * Be a team player willing to interface with client(s) and relay information back to team Desired Skills * Experience in a RHEL environment * Experience with Networking Devices * Experience with DevSecOps * Experience with EvaluateSTIG and/or STIGManager * Experience with Virtual Machines (VMware, Vsphere) * Experience with Cisco products (Switches & Routers) ## Description * Verifying configuration management and tracking security update implementation to the systems using existing automated tools * Adhering to pre-defined configuration management and change management policies and procedures for authorizing software prior to its implementation on systems * Ensuring systems are operated, used, maintained, and disposed of in accordance with all applicable security policies and practices * Performing cybersecurity testing, analysis, and reporting by conducting the following: Assured Compliance Assessment Solution (ACAS) scans, Security Technical Implementation Guide (STIG) checks, port scanning, application code review, Risk Management Framework (RMF) control review, and Plan of Action and Milestone (POAM) * Providing in depth analysis on cybersecurity test results, remediation steps, and potential mitigating factor(s) * Supporting the Information System Security Manager (ISSM) and Cybersecurity Lead in meeting all RMF documentation, process, policy, risk assessment, testing, and continuous monitoring requirements per the NIST SP-800 series * Providing RMF support for all future and/or new Assessment and Authorization (A-A) * Maintaining security reporting compliance requirements outlined in the System SLCM Strategy ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [WebAssembly: The Next Frontier of Cloud Computing](https://www.wearedevelopers.com/videos/972-webassembly-the-next-frontier-of-cloud-computing) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Generating code with Angular schematics](https://www.wearedevelopers.com/videos/129-generating-code-with-angular-schematics) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [DevSecOps culture](https://www.wearedevelopers.com/videos/783-devsecops-culture) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this)