Senior Cybersecurity Operations Analyst

Posted Yesterday
Be an Early Applicant
Hiring Remotely in United States
Remote
Senior level
Information Technology • Professional Services • Defense • Manufacturing
The Role
Provides senior cybersecurity operations and program support for FHWA systems, including incident handling, vulnerability management, secure configuration validation, DevSecOps, audit support, continuous monitoring, contingency-plan testing, risk mitigation, and cybersecurity documentation. Advises system owners and technical teams, supports FISMA and government audits, reviews suspicious logs, maintains security procedures, and communicates findings and recommendations to technical and nontechnical stakeholders.
Summary Generated by Built In

The Senior Cybersecurity Operations Analyst

 

The Senior Cybersecurity Operations Analyst provides program management and technical cybersecurity support for the Department of Transportation (DOT) Federal Highway Administration (FHWA) Cyber Security Management Support program. Under the oversight of the FHWA Information System Security Manager (ISSM), this position plans, implements, operates, monitors, and reports on cybersecurity activities that strengthen the security posture of FHWA information systems.

 

Key Responsibilities

  • Provide cybersecurity and Information Assurance expertise in support of the Agency’s Security Program. 

  • Support cybersecurity incident-handling activities. 

  • Assist with vulnerability detection and development of vulnerability-remediation strategies. 

  • Provide expertise regarding secure application-development techniques. 

  • Support secure baseline configuration validation, security audit-log monitoring activities and integration and management of static-code vulnerability scanners.

  • Support the security portion of DevSecOps implementation. 

  • Develop and maintain cybersecurity architecture diagrams. 

  • Develop processes, procedures, and Standard Operating Procedures supporting DevSecOps and cybersecurity activities. 

  • Maintain a current inventory of network ranges, assets, groups, and custom groups within the DOT CDM BigFix tool. 

  • Assist with remediation of cybersecurity issues identified through applicable security reports. 

  • Provide cybersecurity subject-matter expertise in incident handling, vulnerability detection, remediation planning, secure application development, cloud environments, and cloud services

  • Maintain core system documentation using standardized templates, technical guides, baseline-management documentation, and supporting checklists. 

  • Maintain and update the organization’s Cybersecurity Handbook, Verify Secure Configuration Procedures, Incident Handling Procedures, Threat, Vulnerability, and Risk Monitoring Standard Operating Procedures and Continuous Monitoring Risk Management Plan. 

  • Coordinate with functional teams to collect supporting documentation and artifacts for audits and evaluations. 

  • Draft responses supporting FISMA, CFO, Office of Inspector General (OIG), Government Accountability Office (GAO), and other applicable audits or evaluations. Track and report OIG and GAO Notices of Findings and Recommendations. 

  • Support Government suspense dates associated with audits, evaluations, findings, and data calls. 

  • Support responses to cybersecurity data calls and other Government inquiries. 

  • Provide programmatic cybersecurity assistance and guidance to system owners as requested. 

  • Execute information-system contingency-plan testing in accordance with applicable NIST guidance. Provide information-system contingency training to personnel with contingency-plan responsibilities. Capture lessons learned and corrective actions resulting from contingency exercises. 

  • Support updates to information-system contingency plans based on testing results. 

  • Review logs using suspicious log-activity queries to identify, investigate, and support response to cybersecurity incidents.

  • Help personnel understand ISCP roles and the skills necessary to perform system-recovery responsibilities. 

  • Support risk analysis and mitigation activities as directed and approved by authorized Government officials. 

  • Provide recommendations addressing cybersecurity threats, vulnerabilities, and risks. 

  • Perform other job-related duties as assigned within the scope of the program. 

  • Assists with the development and delivery of cybersecurity awareness communications and outreach efforts in coordination with internal stakeholders

 

Required Knowledge, Skills, and Experience

  • Ability to communicate technical cybersecurity findings and recommendations, cybersecurity guidance and programmatic assistance to system owners, business sponsors, developers, infrastructure teams, and IT operations personnel.

  • Ability to communicate effectively with technical and nontechnical stakeholders.

  • Possess strong technical writing, research, analytical, organizational, and communication skills. Expert knowledge of Federal cybersecurity and privacy laws, regulations, policies, procedures, and implementation standards.

  • Expert experience supporting compliance with NIST SP 800-18, NIST SP 800-30, NIST SP 800-34, NIST SP 800-37, NIST SP 800-53 Rev. 4, NIST SP 800-53A Rev. 4, NIST SP 800-60, NIST SP 800-66 Rev. 1, NIST SP 800-137, FIPS 199, and FIPS 200.

  • Knowledge of incident handling, vulnerability detection, vulnerability management, and remediation. 

  • Understanding of the FISMA assessment and authorization process, GSA FedRAMP processes, and current cloud-service technologies.

  • Experience applying Federal Information Security Continuous Monitoring and Continuous Diagnostics and Mitigation program technologies. 

  • Understanding of static-code vulnerability scanning and vulnerability-management tools. 

  • Experience or knowledge related to security audit-log monitoring. 

  • Support DevSecOps implementation, including architecture diagrams, process documentation, standard operating procedures, and the integration and management of static code vulnerability scanners.

  • Expert experience with enterprise security architecture methodologies, concepts, procedures, principles, and tools.

  • Knowledge of secure configuration and baseline-validation practices. 

  • Knowledge of secure application-development concepts, dynamic and static application-security testing tools, scan results, and remediation practices.

  • Experience conducting vulnerability, application-security, database-security, and network-security assessments and interpreting assessment results.

  • Understanding of Identity, Credential, and Access Management implementation.

  • Knowledge of domain structures, network protocols, user authentication, digital signatures, firewalls, data-loss-prevention technologies, intrusion-detection and intrusion-prevention systems, and security best practices.

  • Knowledge of Windows Server, Linux/Unix, Active Directory, and related operating-system services.

  • Knowledge of Federal cybersecurity audits and evaluations, including FISMA, OIG, and GAO activities. 

  • Ability to plan, execute, document, and report on internal and external application and network vulnerability analyses and provide technical recommendations that improve mission functionality and security.

  • At least three years of experience in contingency planning, backup and recovery best practices, and NIST contingency-planning guidance.

  • Experience with risk-management tools, including JCAM (formerly CSAM).

  • Proficiency with Microsoft Word, Excel, PowerPoint, Visio, Teams, Tableau, and SharePoint.

  • Ability to manage multiple concurrent priorities, including developing documentation for new systems while supporting updates to systems in production.

Education, Certifications, and Clearance

  • Bachelor’s degree in Cybersecurity or a related technical field.

  • 6+ years in security operations, vulnerability management, or offensive security domains, including experience in a senior or lead capacity.

  • Must satisfy all applicable Cherokee Federal, Government and DOT personnel-security and background-screening requirements.

  • Must possess or be able to obtain a DOT Public Trust clearance.

  • Current, verifiable Certified Information Systems Security Professional (CISSP) certification.

  • Current, verifiable Certificate of Cloud Security Knowledge, Microsoft Azure certification, or another recognized cloud-security certification.

  • Desired certifications include ITIL v3 or later, and relevant certifications from ISC2, SANS, EC-Council, Microsoft, Cisco, or similar organizations.

 

##CherokeeFederal #LI-SM2 #AppC

 

Similar job titles:

  • Senior Cybersecurity Analyst
  • Senior Information Security Analyst
  • Cybersecurity Operations Specialist
  • Information Assurance Analyst
  • Senior Security Compliance Analyst

Keywords:

  • CISSP
  • NIST Risk Management Framework (RMF)
  • FISMA
  • Vulnerability Management
  • DevSecOps

Legal disclaimer:

Cherokee Federal is an Affirmative Action and Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to protected veteran status, disability, or any other status protected under applicable federal, state, or local law.

 
 

 

Skills Required

  • Bachelor's degree in Cybersecurity or a related technical field
  • 6+ years of experience in security operations, vulnerability management, or offensive security, including senior or lead experience
  • Current, verifiable CISSP certification
  • Current, verifiable Certificate of Cloud Security Knowledge, Microsoft Azure certification, or another recognized cloud-security certification
  • Must possess or be able to obtain a DOT Public Trust clearance
  • At least three years of experience in contingency planning, backup and recovery best practices, and NIST contingency-planning guidance
  • Expert experience supporting applicable NIST, FIPS, federal cybersecurity, and privacy standards
  • Understanding of FISMA assessment and authorization, GSA FedRAMP processes, and cloud-service technologies
  • Experience with Federal Information Security Continuous Monitoring and Continuous Diagnostics and Mitigation technologies
  • Knowledge of incident handling, vulnerability detection, vulnerability management, and remediation
  • Experience or knowledge of security audit-log monitoring
  • Experience with secure application development, static and dynamic application-security testing, scan results, and remediation
  • Experience conducting vulnerability, application-security, database-security, and network-security assessments
  • Understanding of Identity, Credential, and Access Management implementation
  • Knowledge of Windows Server, Linux/Unix, Active Directory, network protocols, authentication, firewalls, DLP, IDS, and IPS
  • Experience with risk-management tools, including JCAM or CSAM
  • Proficiency with Microsoft Word, Excel, PowerPoint, Visio, Teams, Tableau, and SharePoint
  • Strong technical writing, research, analytical, organizational, and communication skills
  • Ability to communicate cybersecurity findings to technical and nontechnical stakeholders
  • Ability to manage multiple concurrent priorities and produce system documentation
  • ITIL v3 or later certification
  • Relevant certifications from ISC2, SANS, EC-Council, Microsoft, Cisco, or similar organizations
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Tulsa, OK
5,000 Employees
Year Founded: 1969

What We Do

Cherokee Federal is a top federal contractor that empowers mission success for over 60 U.S. federal agencies by delivering innovative solutions in defense, technology, health, and intelligence, focusing on solving complex challenges and serving national missions.

Similar Jobs

Block Logo Block

Account Executive

Blockchain • eCommerce • Fintech • Payments • Software • Financial Services • Cryptocurrency
In-Office or Remote
San Jose, CA, USA
12000 Employees
129K-233K Annually

GitLab Logo GitLab

Senior Software Engineer

Cloud • Security • Software • Cybersecurity • Automation
Easy Apply
Remote
4 Locations
2500 Employees
139K-235K Annually

AlertMedia Logo AlertMedia

Security Engineer

Artificial Intelligence • Cloud • Information Technology • Security • Social Impact • Software
Easy Apply
Remote or Hybrid
2 Locations
450 Employees

CrowdStrike Logo CrowdStrike

Account Manager

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
TX, USA
11000 Employees
33-50 Hourly

Similar Companies Hiring

Amalgamated Sugar Thumbnail
Food • Greentech • Agriculture • Industrial • Manufacturing
Boise, Idaho
768 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Outpost Space Thumbnail
Aerospace • Defense
US
24 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account