
Cybersecurity Analyst
- Portsmouth
- Permanent
- Full-time
- Verify Information Assurance (IA) and Cyber Security (CS) data for units reported via various databases such as Enterprise Mission Assurance Support Service (eMASS), Vulnerability Remediation Asset Manager (VRAM), etc.
- Compile and analyze data and develop a weekly/monthly CS Dashboard for leadership review.
- Communicate feedback to senior stakeholders the identified CS vulnerabilities and coordinate corrections, collect responses and validate reporting.
- Provide support in drafting leadership strategies, plans, policy, and procedures.
- Process requests for use of computer equipment and accessories on site used by Contractors. Inspect the equipment and issue a for-use memo.
- Assist with the generation of assessment framework and methods for continued improvement of IA documentation, policy and procedures and IA/CS requirements for defending environment architectures.
- Assist with Assured Compliance Assessment System (ACAS) scans, ensuring daily Nessus plugin file signatures to help meet our continuous monitoring security posture efforts.
- Support cross-functional coordination with Information System Security Managers (ISSMs), System Owners, and Network Engineers to ensure cyber policy implementation, asset compliance, and secure system design lifecycle integration.
- Ensure audit artifacts are accurate, complete, and accessible, including evidence of continuous monitoring, patch management, user account management, and vulnerability remediation efforts.
- Coordinate with ISSMs, Information System Security Officers (ISSOs), and system owners to validate that all systems are in compliance with the Risk Management Framework (RMF) requirements and audit readiness standards.
- Track and report the status of audit findings and ensure all findings are assigned to responsible stakeholders, properly documented in the Plan of Action and Milestones (POA&Ms) and resolved within designated timelines.
- Support the development and delivery of audit preparation training and awareness materials for staff, ensuring all personnel understand their roles and responsibilities in maintaining cyber audit readiness.
- Minimum of 4 years of experience in CS analysis in support of Cyber metrics analysis, incident response and mitigation; risk mitigation analysis, developing contingency plans
- BS Degree in IT or related discipline
- Active DoD Top Secret Clearance
- Experience with Cyber applications, [e.g., ACAS, HBSS, MDE, MDI, Splunk]
- Expert and Mastery levels with institutional knowledge and a minimum of 4 years’ experience, on the mission critical procedures, systems, and processes, as they pertain to Information Technology and Cyber Security requirements.
- Expert knowledge of and experience with CS requirements as defined by Public Laws, National, DoD, and DON guidance [e.g., Federal Information Security Management Act (FISMA), DoDD 8100.02, DODI 8500.01, DoDI 8520, DoDI 8530, DoDI 8531, SECNAV 5239 Series and OPNAV 5239 Series, NIST Special Publications Series 800, etc.]
- Fully qualified in accordance with DoD 8570.01M.
- Security + or higher certification