IT Security Operations Analyst
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
The IT Security Operations Analyst works alongside the Patch Management Team to align security processes, policies, and procedures with DOJ security standards and operational goals. This position is responsible for vulnerability assessment, malware impact analysis, and the management and distribution of Microsoft and third-party software patches in a high-security federal environment., * Align security processes, policies, and procedures with established security standards and operational goals
- Assess and document malware impact; inspect and analyze vulnerability scans
- Manage and distribute Microsoft OS patches using ELMS and Microsoft Endpoint Configuration Manager (MECM)
- Coordinate third-party patch management activities in collaboration with the Patch Management Team
- Evaluate compliance with DOJ information security standards including FISMA and NIST SP 800-53
- Support continuous monitoring of covered information systems for security vulnerabilities
- Assist in developing and implementing plans of action to correct security deficiencies
- Document security findings and produce reports for the COR and program management
- Participate in cybersecurity awareness training and security program activities
- Submit weekly status reports to the Chief, Customer Support Section
Requirements
Do you have experience in Vuls?, * Minimum 2 years of experience with patching and vulnerability management
- Hands-on experience with Microsoft Endpoint Configuration Manager (MECM) or SCCM
- Knowledge of infrastructure security, compliance frameworks, and security policies and practices
- Familiarity with FISMA, NIST SP 800-53, and federal information security standards
- Ability to assess malware impact and interpret vulnerability scan results
- Strong analytical, documentation, and communication skills
Preferred Qualifications / Substitutions
- CompTIA Security+ Certification may substitute for 1 year of required experience
- Experience with ELMS (Enterprise License Management System)
- Familiarity with DOJ or BOP IT security environments
- Knowledge of NIST SP 800-37 Risk Management Framework
Security Clearance Requirement
All candidates must hold or be eligible to obtain a Public Trust clearance prior to commencing work under this contract. Candidates must:
- Have legally resided in the United States for three of the five years immediately preceding performance
- Be a U.S. citizen or lawful permanent resident seeking U.S. citizenship
- Be willing to complete e-QIP (Electronic Questionnaires for Investigations Processing)
- Successfully complete fingerprinting (FD-258), OF-306, and all DOJ security documentation
- Comply with DOJ self-reporting requirements throughout the period of performance, * Do you have experience working with the DOJ?
- Do you have a strong knowledge of NIST RMF?
- Are you experienced with ELMS (Enterprise License Management System)?
Work Location: Hybrid remote in Washington, DC 20534
Benefits & conditions
Pulled from the full job description
- Health insurance
- Paid time off
- Vision insurance
- Dental insurance, Work Schedule: Monday - Friday, 8-hour shift (start between 6:30 AM - 8:30 AM EST)
Work Model: Hybrid remote/on-site; primary remote with occasional travel
Hours: approx. 40 hours/week
Pay: $45.00 - $50.00 per hour
Benefits:
- Dental insurance
- Health insurance
- Paid time off
- Vision insurance
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on indeed.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents
9 Ways to Make Money Hacking
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Dev Digest 134 - Where pixels sing?