Security Analyst

Posted Yesterday
Be an Early Applicant
Morrisville, NC, USA
Hybrid
Senior level
Information Technology • Professional Services • Consulting • Defense
The Role
Administer Tenable/Nessus vulnerability scanners, perform and analyze scans, prioritize remediation, manage firewalls/IDS/IPS, support incident investigations, coordinate penetration testing remediation, and ensure compliance with NIST, FISMA, NIH/HHS and CISA directives while producing security reports and dashboards.
Summary Generated by Built In

Computer World Services (CWS) is seeking an experienced Security Analyst to support enterprise cybersecurity operations within a Federal IT environment. The Security Analyst will be responsible for administering and maintaining security technologies, identifying and mitigating vulnerabilities, supporting vulnerability management initiatives, and serving as a technical advisor to infrastructure and application teams.


The successful candidate will possess strong experience with vulnerability management, firewall administration, security monitoring, and Federal cybersecurity compliance. This individual will work closely with infrastructure engineers, application developers, and security stakeholders to improve the organization's security posture while ensuring compliance with NIST, FISMA, NIH/HHS, and other Federal security requirements.

Key Tasks & Responsibilities

    Essential Duties and Responsibilities

    Vulnerability Management

    • Serve as the primary administrator for Tenable Security Center (SC) and Nessus vulnerability scanners.
    • Perform authenticated and unauthenticated vulnerability scans across enterprise systems.
    • Analyze scan results and prioritize remediation activities using CVSS scores, CISA Known Exploited Vulnerabilities (KEV), and organizational risk criteria.
    • Produce recurring vulnerability reports for management, system owners, and compliance activities.
    • Track remediation progress and validate vulnerability closures.
    • Manage vulnerability waivers, risk acceptance documentation, and exception tracking.
    • Monitor End-of-Life (EOL), End-of-Support (EOS), and Binding Operational Directive (BOD) vulnerability requirements.
    • Coordinate with stakeholders across technical teams to drive timely vulnerability remediation efforts.
    •  

      Security Operations

      • Experience with:
        • Firewall Management
          • Cisco
          • Checkpoint
          • IDS/IPS technologies
          • Log aggregation systems (Splunk)
          • File integrity monitoring solutions
          • Red Hat Linux
          • Windows workstation and server OS
          • MacOS
          • Participate in incident investigations and support cybersecurity response activities.
          • Assist with security assessments and continuous monitoring activities.
          •  

            Application & Infrastructure Security

            • Perform application vulnerability scanning.
            • Coordinate vulnerability remediation with application owners.
            • Support troubleshooting for application security issues.
            • Partner with the Application Development team to identify security improvements throughout the software lifecycle.
            •   

              Compliance & Reporting

              Support organizational compliance initiatives including:

              • NIST 800-53
              • FISMA
              • NIH/HHS cybersecurity policies
              • CISA Binding Operational Directives (BODs)
              • Continuous Monitoring (ConMon)
              • Prepare:

                • Executive vulnerability reports
                • Compliance dashboards
                • Monthly security metrics
                • Remediation status reports
                •  

                  Penetration Testing Remediation Support

                  Serve as the primary coordinator for annual penetration testing activities.

                  Responsibilities include:

                  • Coordinating testing schedules
                  • Supporting external penetration testing teams
                  • Managing findings
                  • Tracking remediation efforts
                  • Validating corrective actions
                  • Producing final response documentation
                  •  

                    Operational Support

                    Provide day-to-day operational cybersecurity support including:

                    • Customer requests
                    • Security consultations
                    • Incident investigations
                    • Security engineering support
                    • Technical documentation
                    •  

                      Security Frameworks

                      Working knowledge of:

                      • NIST 800-53
                      • NIST Cybersecurity Framework (CSF)
                      • Risk Management Framework (RMF)
                      • FISMA
                      • CISA Binding Operational Directives (BODs)
                      • Continuous Monitoring (ConMon)
                      •  

Education & Experience

    Education

    • Bachelor’s degree in Computer Science, Information Systems, Engineering, or related field. Equivalent experience.
    • Experience

      • 5–8 years of experience in information security, network security, or related fields.
      • Experience working in Data Center or hybrid infrastructure environments  

Certifications

    One or more of the following preferred:

    • CompTIA Security+
      • Tenable Certified Professional (TCP) 
      • ITIL certification preferred.

Security Clearance

  • Applicants must be able to obtain a Public Trust clearance

Computer World Services is an affirmative action and equal employment opportunity employer. Current employees and/or qualified applicants will receive consideration for employment without regard to race, color, religion, sex, disability, age, sexual orientation, gender identity, national origin, disability, protected veteran status, genetic information or any other characteristic protected by local, state, or federal laws, rules, or regulations.
Computer World Services is committed to the full inclusion of all qualified individuals. As part of this commitment, Computer World Services will ensure that individuals with disabilities (IWD) are provided reasonable accommodations. If reasonable accommodation is needed to participate in the job application or interview process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact Human Resources at [email protected]

Skills Required

  • 5-8 years of experience in information security or network security
  • Bachelor's degree in Computer Science, Information Systems, Engineering, or equivalent experience
  • Primary administrator experience for Tenable Security Center and Nessus vulnerability scanners
  • Experience performing authenticated and unauthenticated vulnerability scans and analyzing scan results using CVSS and CISA KEV
  • Vulnerability management: tracking remediation, waivers, risk acceptance, and exception management
  • Firewall management experience (Cisco, Check Point)
  • Experience with IDS/IPS technologies and log aggregation systems (Splunk)
  • Experience with file integrity monitoring solutions
  • Experience administering or supporting Red Hat Linux, Windows server/workstation, and MacOS
  • Experience supporting incident investigations and cybersecurity response activities
  • Knowledge of Federal cybersecurity compliance frameworks: NIST 800-53, NIST CSF, RMF, FISMA, CISA BODs, Continuous Monitoring
  • Experience coordinating penetration testing activities and tracking remediation
  • Experience working in data center or hybrid infrastructure environments
  • Ability to obtain a Public Trust clearance
  • CompTIA Security+, Tenable Certified Professional (TCP), or ITIL (preferred)
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Washington, DC
400 Employees
Year Founded: 1990

What We Do

Computer World Services Corp. (CWS) is a provider of enterprise-wide IT solutions, digital transformation, and process optimization services. With over 30 years of experience, the company serves both Defense and Civilian federal government customers, focusing on delivering quality, value, and technological innovation. They are recognized for their consistent performance and high ratings in federal programs, maintaining a commitment to integrity and excellence in their service delivery.

Similar Jobs

Hybrid
Charlotte, NC, USA
205000 Employees
100K-163K Annually
Hybrid
Charlotte, NC, USA
205000 Employees
119K-187K Annually

Lowe’s Logo Lowe’s

Analyst, Information Security (Disaster Recovery)

Consumer Web • eCommerce • Information Technology • Retail • Software • Analytics • App development
Hybrid
Charlotte, NC, USA
300000 Employees
In-Office
Charlotte, NC, USA
20252 Employees

Similar Companies Hiring

NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Outpost Space Thumbnail
Aerospace • Defense
US
24 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account