Cybersecurity Analyst
Role details
Job location
Tech stack
Job description
-
Creating and maintaining cybersecurity Body of Evidence (BOE) documentation, including Plans of Action and Milestones (POA&Ms), network diagrams, and system security plans.
-
Supporting Authority to Operate (ATO) and Authority to Connect (ATC) processes in alignment with DoD cybersecurity frameworks (e.g., NIST 800-53, CMMC Level 2).
-
Coordinating vulnerability scanning and remediation efforts across systems and infrastructure, including both CONUS and OCONUS assets.
-
Performing cyber risk assessments on third-party vendors and supply chain systems in accordance with security requirements.
-
Developing, managing, and enforcing OPSEC procedures and Incident Response Plans (IRPs) tailored to operational needs.
-
Working with multidisciplinary teams to embed cybersecurity throughout all logistics and sustainment mission planning and execution phases.
-
Coordinating with U.S. and host nation partners on shared cybersecurity efforts across logistics platforms.
Requirements
-
Bachelor's degree in Information Systems, Cybersecurity, or a related technical field.
-
9+ years of cybersecurity experience in DoD or Intelligence Community environments, with 4+ years directly overseeing complex federal or DoD projects
-
Strong knowledge of RMF, ICD 503, and NIST 800-53.
-
Hands-on experience supporting cybersecurity in logistics, sustainment, or operational environments.
-
Familiarity with OPSEC, SIGINT, and other information protection requirements for dynamic environments.
-
Experience performing security audits, vulnerability assessments, and patch compliance in classified environments.
-
High School and 4 years of additional experience or Associate's Degree and 2 years of additional experience may be exchanged in lieu of a required Bachelor's degree
Preferred Qualifications:
-
Master's degree in a relevant discipline
-
CISSP, CISM, or CISA certification.
-
Experience with DoD logistics and sustainment platforms (e.g., GCSS, JOPES, C2IE).
-
Familiarity with expeditionary logistics and military prepositioning programs.
-
Experience applying cybersecurity measures in denied, degraded, intermittent, or limited (DDIL) network environments.