Part-Time

Cybersecurity Analyst

Arlo Solutions

Arlo Solutions

No salary listed

No H1B Sponsorship

Arlington County, Arlington, VA, USA

Hybrid

Remote, or hybrid in Arlington, Virginia.

US Top Secret Clearance Required

Bachelor's

Category
IT & Security (1)
Required Skills
Microsoft Azure
Cybersecurity
Vulnerability Analysis
AWS
DevOps
Google Cloud Platform

Get referred to Arlo Solutions

See people who can refer or advise you

Requirements
  • Active Department of Defense Secret Clearance.
  • A bachelor's degree in Cybersecurity, Computer Science, Information Assurance, Information Systems, Engineering, or a related discipline.
  • Five or more years supporting Department of Defense cybersecurity programs.
  • Experience implementing the Department of Defense Risk Management Framework.
  • Experience with National Institute of Standards and Technology Special Publication 800-53 Revision 5.
  • Experience supporting Authorization to Operate, Interim Authorization to Test, and Authorization to Operate-Conditional activities.
  • Experience writing Risk Management Framework artifacts.
  • Experience conducting security control validation.
  • Experience supporting vulnerability management.
  • Experience with Security Technical Implementation Guide implementation.
  • Experience with ACAS/Nessus.
  • Ability to brief senior Government leadership.
Responsibilities
  • Assist Government Information System Security Managers with maintaining cybersecurity authorization packages.
  • Review and analyze cybersecurity documentation for completeness and compliance.
  • Perform cybersecurity policy research and interpretation.
  • Develop recommendations to reduce organizational cyber risk.
  • Assist with cybersecurity governance boards and risk review meetings.
  • Support cybersecurity strategy development.
  • Assist leadership with enterprise cybersecurity initiatives.
  • Support all six Risk Management Framework steps: Prepare, Categorize, Select, Implement, Assess, Authorize, and Monitor.
  • Develop and review Security System Plans, Security Assessment Plans, Security Assessment Reports, Risk Assessment Reports, Plans of Action and Milestones, security categorizations, control inheritance analyses, reciprocity reviews, and authorization package quality reviews.
  • Conduct or support Security Control Assessments, cybersecurity readiness assessments, gap assessments, compliance reviews, risk assessments, technical control validation, architecture reviews, cloud security reviews, and Zero Trust assessments.
  • Assist in validating implementation of National Institute of Standards and Technology Special Publication 800-53 Revision 5 security controls.
  • Support enterprise continuous monitoring activities, including Plans of Action and Milestones tracking, vulnerability trend analysis, configuration management reviews, security control effectiveness reviews, monthly cybersecurity status reporting, audit log reviews, incident trend analysis, compliance metrics, and risk dashboards.
  • Review vulnerability management activities and ACAS/Nessus scan results.
  • Analyze Security Technical Implementation Guide compliance, validate vulnerability remediation, track critical findings, prioritize risk, coordinate remediation activities, develop mitigation recommendations, and support cybersecurity inspections.
  • Develop and maintain Security System Plans, Security Assessment Plans, Security Assessment Reports, Risk Assessment Reports, Plans of Action and Milestones, Configuration Management Plans, Continuous Monitoring Strategies, security engineering documentation, architecture diagrams, data flow diagrams, standard operating procedures, cybersecurity briefings, and executive reports.
Desired Qualifications
  • Certified Information Systems Security Professional.
  • CompTIA Advanced Security Practitioner Plus.
  • CompTIA Security+.
  • Certified Information Security Manager.
  • Certified Cloud Security Professional.
  • Governance, Risk, and Compliance Certification (formerly CAP).
  • Certified Ethical Hacker.
  • GIAC certifications.
  • Cloud security certifications for AWS, Azure, or Google Cloud.
  • Experience with Xacta, eMASS, or other Governance, Risk, and Compliance platforms.
  • Experience with Agile Authorization and Continuous Authorization.
  • Experience supporting Cloud Service Providers.
  • Knowledge of Zero Trust Architecture.
  • Experience supporting DevSecOps pipelines.
  • Experience with AI-enabled systems and emerging technologies.

Company Size

N/A

Company Stage

N/A

Total Funding

N/A

Headquarters

N/A

Founded

N/A

Get referred to Arlo Solutions

See people who can refer or advise you