Cybersecurity Analyst
Booz Allen Hamilton
- Location
- San Diego, CA
- Work model
- On-Site
- Level
- Mid
- H-1B history
- 9 approvals (FY2023)
- Posted
- 1d ago
Skills
About this role
Cybersecurity Analyst The Opportunity: Cyber threats are everywhere, and the constantly evolving nature of these threats can make understanding them seem overwhelming to a program responsible for fielding a worldwide enterprise warfighter mission support system. In all of this “cyber noise”, how can these organizations understand their risks and how to mitigate them? The answer is an information security risk spe cia list like you who will break down complex threats into manageable plans of action. As an information security risk spe cia list on our team, you’ll work with DoD acquisition programs to discover their cyber risks, understand applicable policies , and develop a mitigation plan. You’ll get technical and operational details from Assistant Program Managers and Lead Systems Engineers to assess the entire threat landscape. Then, you’ll help your team perform risk and vulnerability assessments in network, system, and application areas. You’ll work with your client to translate security concepts so they can make the best decisions to secure their mission-critical system. This is your opportunity to act as an information security subject matter expert while broadening your skills in complex connected system vulnerability detection, mitigation, and remediation. Work with us as we protect our military’s critical mission systems for the better. Join us. The world can’t wait. You Have: 4+ years of experience working with Information Technology ( IT ) systems for a DoD or government agency 3+ years of experience leading Navy Risk Management Framework ( RMF ) projects and Assessment and Authorization ( A & A ) activities, including the end-to-end development and maintenance of all RMF artifacts and packages 3+ years of experience implementing security policies , conducting compliance assessments via industry-standard tools, and mitigating vulnerabilities across networks, systems, and communications protocols Experience with eMASS, including security plan development and processing of packages through workflows, assisting with generating security policies , evaluating assessment documentation, and developing written security risks, mitigations, and recommendations Experience with core enterprise platforms and technologies, spanning Windows and Linux operating systems, network architecture, and modern virtualized or containerized environments Experience translating complex network topologies into compliant RMF artifacts, including the development and lifecycle maintenance of Authorization Boundary Diagrams and detailed Data Flow Diagrams Ability to work independently to identify complex problems, develop analytical solutions, and manage client deliverables from inception to completion while effectively communicating results to both technical and non-technical stakeholders Secret clearance Bachelor’s degree DoD 8140 Certification Nice If You Have: Experience with tools such as the Assured Compliance Assessment Solution ( ACAS ) , Security Technical Implementation Guides ( STIG ) , and Evaluate-STIG Experience integrating security into DevSecOps pipelines and implementing automation met hodologies Experience deploying and integrating cybersecurity applications for tactical and strategic risk analysis Experience with network engineering across Windows, Linux, and virtual environments, including the management of firewalls, web proxies, IPS, and vulnerability scanners Experience developing cyber schedule, performance, and quality met rics throughout the systems development and acquisition lifecycles Experience with Navy systems, including Consolidated Afloat Network Enterprise Systems ( CANES ) , Platform Application Services ( PAS ) , Agile Core Services ( ACS ) , or Automated Digital Network System ( ADNS ) TS/SCI clearance Master’s degree in Engineering, CS, or a related technical field Operating System ( OS ) Certification such as Windows, RedHat, or Linux Certification Clearance: