CompTIA Cybersecurity Analyst
Role details
Job location
Tech stack
Job description
Triage Gitlab Jenkins Auditing DevSecOps Operations Burp Suite Cryptography Code Analysis Cyber Security Authentications Computer Science General Security Network Security Security Policies Business Valuation Security Awareness Security Solutions Penetration Testing Amazon Web Services Security Technology GIAC Certifications Security Engineering Software Development Computer Engineering Application Security Full Stack Development Artificial Intelligence Business Transformation C (Programming Language) Java (Programming Language) Python (Programming Language) JavaScript (Programming Language) Generative Artificial Intelligence GIAC Web Application Penetration Tester Static Application Security Testing (SAST) Dynamic Application Security Testing (DAST) Open Web Application Security Project (OWASP), Perform security assessments and manual penetration testing using tools such as Burp Suite and other proxy tools.
Triage static (SAST), dynamic (DAST), interactive (IAST) analysis results to identify, prioritize and remediate security vulnerabilities.
Integrate security practices into C/CD pipeline to support DevSecOps initiative.
Maintain documentation of security findings, remediation plans, and compliance requirements
Develop and interpret security policies and procedures Participate in security compliance efforts
Develop and deliver training materials and perform general security awareness and specific security technology training
Evaluate and recommend new and emerging security products and technologies
Leverage GenAI technologies to scale application security reviews and automate code analysis
Evaluate various application security tools/capabilities i.e., SAST,DAST, IaC, Secrets detection tools
Stay current with emerging security threats and countermeasures.
Ability to train or explain the common security issues to raise the security awareness among developers and assurance engineers.
Perform AWS configuration reviews, Use of Artificial Intelligence (AI): We may use Artificial Intelligence (AI) to support parts of our hiring process, including sourcing, screening, and evaluating candidates. AI helps assess applications and qualifications, but final decisions are made by our hiring team. By applying, you acknowledge and agree that your application may be reviewed using AI tools. Related Jobs Cybersecurity Engineer SME Leidos
Bethesda, MD*On-Site
Linux CI/CD Splunk Nessus Rapid7 Ansible Auditing Firewall Equities Scripting SonarQube DevSecOps Pipelines Operations Automation Purchasing Upskilling Market Data Coordinating Oracle Cloud Cryptography Investigation Cyber Security Key Management Risk Management Authentications Cloud Computing Ancient History Network Security Security Controls Incident Response CompTIA Security+ Digital Forensics System Monitoring Endpoint Security Cyber Engineering Analytical Method Windows PowerShell AWS CloudFormation Systems Engineering Amazon Web Services Time Off Management Security Engineering Software Development Contingency Planning Signals Intelligence Programming Languages Regulatory Frameworks Vulnerability Scanning Security Configuration Cyber Security Policies Configuration Management Vulnerability Management Certified Ethical Hacker Cyber Security Standards Cybersecurity Compliance Risk Management Framework Authorization (Computing) Cyber Threat Intelligence Cyber Security Assessment IT Security Documentation Agile Software Development Splunk Enterprise Security Google Cloud Platform (GCP) Computer Network Operations Change Management Processes Information Systems Security Customer Information Systems React.js (Javascript Library) Python (Programming Language) Enterprise Application Software Endpoint Detection And Response Troubleshooting (Problem Solving) Host Based Security System (HBSS) Intrusion Detection And Prevention CompTIA Cybersecurity Analyst (CySA+) Plan Of Action And Milestones (POA&M) Security Information And Event Management (SIEM) Certified Information Systems Security Professional Top Secret-Sensitive Compartmented Information (TS/SCI Clearance) +0 Information Systems Security Engineer (Part-time) Leidos
Columbia, MD*On-Site
Auditing Equities Operations Purchasing Upskilling Market Data NIST 800-53 Cryptography Self-Starter Key Management Microsoft Excel Ancient History Defense In Depth Microsoft Outlook Rapid Prototyping Analytical Method Systems Engineering GIAC Certifications Enterprise Security Technology Research Time Off Management Security Engineering Software Development CompTIA Security+ CE Signals Intelligence Information Assurance Prototype Development Risk Management Framework Computer Network Operations Information Systems Security GIAC Security Leadership Certification Systems Security Certified Practitioner Top Secret-Sensitive Compartmented Information (TS/SCI Clearance) +0 Firewall Engineer Leidos
Arlington, VA*On-Site
Firewall Equities DevSecOps Operations Management Automation Market Data Consolidation Cyber Security Self-Motivation Working Capital Cloud Migration Service Catalog Virtual Routers Ancient History Customer Service Security Clearance Service Management Security Solutions Technology Roadmaps Networking Hardware Information Sharing GIAC Certifications Palo Alto Firewalls CompTIA Security+ CE Continuous Integration Continuous Development Web Application Security IAT Level II Certification Virtual Private Networks (VPN) Internet Protocol Security (IP SEC) CompTIA Cybersecurity Analyst (CySA+) Systems Security Certified Practitioner Information Technology Infrastructure Library GIAC Security Essentials Certification (GSEC) Counter Intelligence Polygraph (CI Clearance) GIAC Global Industrial Cyber Security Professional Cisco Certified Network Associate Security (CCNA Security) Top Secret-Sensitive Compartmented Information (TS/SCI Clearance) +0 Login | JoinContact
Requirements
Bachelor's degree in a technical field such as computer science, computer engineering or related field required
5+ years of experience required in Cyber security and application security
Familiarity with SAST, DAST, IAST tools.
Understanding of AWS is required
Deep understanding of OWASP top issues and remediation guidelines.
Proficiency in one or more programming language ( Java, Python, JavaScript is preferred)
Understanding of CI/CD tools such as Jenkins and GITLAB.
Familiarity with GenAI tools is a plus.
Strong experience and detailed technical knowledge in security engineering, system and network security, authentication and security protocols, cryptography, and application security
Candidates with software development is a plus
Consistent implementation of security solutions
Experience in infrastructure or application-level vulnerability testing and auditing
Certifications like GWAPT, OSWE, Burp Suite Certified Practitioner are good to have
Skills
application security, owasp, information security, penetration test
Additional Skills & Qualifications
SAST and DAST experience
Strong experience in OWASP Top 10