> Markdown version of [/jobs/ext/881431-cyber-analyst](https://www.wearedevelopers.com/jobs/ext/881431-cyber-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Analyst - **Company:** Accelint LLC - **Location:** San Diego, CA, United States - **Experience:** Experienced - **Salary:** $85,731.0 - $97,336.0 - **Contract:** Permanent contract - **Skills:** Systems Development Life Cycle, Software Security, SC Clearance, Vulnerability Analysis - **Published:** June 5, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=187c0d8f52b30363 ## About the Role Do you have experience in RMF?, * Bachelor's degree in engineering, cybersecurity, or related technical field * Minimum 3+ years of experience with cybersecurity projects or programs * Thorough knowledge of the Risk Management Framework (RMF) and the Assessment and Authorization (A&A) activities needed to obtain and maintain an Authority to Operate (ATO) * Thorough knowledge of National Institute of Standards and Technology (NIST) and Committee on National Security Systems Instruction, including NIST SP 800-60, NIST SP 800-53, and CNSSI 1253 * Active Secret clearance Clearance Requirements Some positions will require access to U.S. National Security information. Positions that require this access will be required to receive and maintain a U.S. government personnel security clearance (PCL). In order to qualify for this position, the candidate must be a US Citizen and either currently possess this National Security eligibility or be able to complete the investigation application process with a favorable determination and maintain that eligibility throughout their employment. To learn more about the security clearance process please access this link. ## Description * Support system Assessment and Authorization (A&A) efforts by conducting cyber risk assessments, policy analysis, technology evaluations, and National Institute of Standards and Technology (NIST) security control validation. Analyze system and application security implementations and provide technical recommendations to engineers and decision-makers to strengthen security posture and support authorization activities. * Apply subject matter expertise in cybersecurity disciplines, including Department of Defense (DoD) Risk Management Framework (RMF), Security Test and Evaluation (ST&E), vulnerability assessment, and compliance management. Support A&A activities throughout the System Development Life Cycle (SDLC) to ensure systems meet security requirements and maintain authorization readiness. * Review and provide guidance to hardware and software vendors to ensure secure system implementation. * Review vendor artifacts to ensure appropriate security practices are adhered to. * Identify applicable NIST security controls. * Create RMF artifacts and review security audits in both unclassified and classified environments. ## Related Videos - [Software Security 101: Secure Coding Basics](https://www.wearedevelopers.com/videos/220-software-security-101-secure-coding-basics) - [How to Cause (or Prevent) a Massive Data Breach- Secure Coding and IDOR](https://www.wearedevelopers.com/videos/39-how-to-cause-or-prevent-a-massive-data-breach-secure-coding-and-idor) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Reporting Active Exploits in 24 Hours: Are You Ready for the CRA?](https://www.wearedevelopers.com/videos/100248-reporting-active-exploits-in-24-hours-are-you-ready-for-the-cra) - [Unleashing the Power of Developers: Why Cybersecurity is the Missing Piece?!?](https://www.wearedevelopers.com/videos/712-unleashing-the-power-of-developers-why-cybersecurity-is-the-missing-piece) - [Lessons learned from observing a billion API requests](https://www.wearedevelopers.com/videos/1574-lessons-learned-from-observing-a-billion-api-requests) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)