Junior Cyber Security Analyst
Technology Security Associates, Inc.
- Patuxent River, MD
- $45,000-60,000 per year
- Permanent
- Full-time
- A junior level person is responsible for assisting more senior positions and/or performing functional duties under the oversight of more senior positions.
- Work with Information System Security Officer (ISSO) and Information System Security Manager (ISSM) to develop technical solutions to problems, implement enhancements and upgrade system architectures.
- Implement Categorization for Security Control selection.
- Create, maintain, and update required Risk Management Framework (RMF) artifacts for ATO packages.
- Define system security requirements, assess system security architecture designs, and support the development and sustainment of the RMF authorization package throughout all lifecycle phases.
- Update and assess hardware, software, policies, and processes for compliance of system ATO packages.
- Review and update Plan of Action and Milestones (POA&Ms) as part of the Continuous Monitoring process.
- Perform required security testing as part of the RMF Assess & Authorize process to include, but not limited to, running SCAP or Evaluate-STIG, completing DISA Security Technical Implementation Guides (STIGs), and running ACAS scans.
- Accurately review vulnerability scan and STIG Checklist results and update as needed.
- Attend meetings requiring cyber support as necessary.
- Communicate cybersecurity and operations issues to ISSO/ISSM.
- Candidate must be a U.S. Citizen with the ability to obtain security clearance - interim required to start working.
- HS Diploma and one (1) year of experience or post-high school IT/cyber education.
- Security+ CE or equivalent DoD approved 8140 baseline certifications.
- Willingness to progress to more advanced problem solving.
- Proficiency with Windows 10 and Windows 11.
- Ability to communicate effectively.
- Experience with creating/maintaining documentation.
- Organizational skills
- Experience with NAVAIR RMF Process
- DISA STIG experience
- ACAS/Nessus experience
- Experience with eMASS, VRAM, DITPR/DADMS
- Experience with Unix-based Op