S

Scientific Research Corporation

Engineering, integration, testing for defense systems

Cyber Security Analyst

Full-TimeDeadline 9/10/27
$96.6k - $160.8k/yr
Senior
San Diego, CA, USA
In PersonOne to two annual trips may be required.
No H1B Sponsorship
US Citizenship, US Top Secret Clearance Required

About the job

Requirements
  • 5-8 years of cybersecurity experience.
  • Must currently hold a Department of Defense 8140-compliant IAT II certification, such as Security+CE with an appropriate continuing-education or operating-system certificate, or obtain an IAT Level II certification within six months.
  • Knowledge of Risk Management Framework versions 3 and 5, including processes and workflows.
  • Experience with System Security Plans, Plans of Action and Milestones, Assured Compliance Assessment Solution or Nessus, Secure Content Automation Protocol, Defense Information Systems Agency Security Technical Implementation Guides, and all Authorization to Operate package artifacts.
  • Ability to coordinate Security Technical Implementation Guide remediation with system administrators and developers.
  • Experience with continuous monitoring tools including LATTEART, BISCOTTI, and CYBORGBUNNY.
  • Ability to use eMASS to execute Risk Management Framework version 5 activities, including documenting and updating system status; identifying, documenting, and managing implementation of operational and technical security controls; managing implementation and risk assessment tabs; tracking non-compliant and non-validated controls; managing Plans of Action and Milestones entries, evidence, and close-out; producing reports; and tracking due dates.
  • Must be able to be appointed as an Information Systems Security Officer for NCS systems within six months of employment.
Responsibilities
  • Develop and update assessment and authorization documentation, including the Body of Evidence, for management and continuous monitoring of information systems.
  • Perform ongoing compliance assessments using tools such as Assured Compliance Assessment Solution, Secure Content Automation Protocol, and Trellix Virus Scan Enterprise, while reviewing, documenting, and maintaining all results.
  • Verify system patches and virus definitions using existing automated tools.
  • Follow configuration management and change management policies and procedures for authorizing software before implementation on systems.
  • Perform security audits to track multiple events, including inappropriate or unusual activity, intrusion events, and data transfers.
  • Perform security assessments of NCS family of systems in accordance with National Institute of Standards and Technology, Navy, National Security Agency, and Naval Intelligence information-assurance guidance.
  • Work with system engineers to take corrective action on identified problems.
  • Perform Site Based Security Assessments of systems and recommend authorization to the Designated Authorizing Official as a certified Trusted Agent.
  • Report security incidents in accordance with the Command Incident Response Plan.
  • Ensure systems are operated, used, maintained, and disposed of in accordance with applicable security policies and practices.
Desired Qualifications
  • Experience with Windows and UNIX-based information-system standards and working knowledge of networking devices.
  • Knowledge of configuration and manual Security Technical Implementation Guide reviews for SQL databases, including Microsoft SQL Server, PostgreSQL, MongoDB, MariaDB, MySQL, and Elasticsearch.
  • Knowledge of web servers, including Apache Web Server and Apache Tomcat.
  • Experience with container security and DevSecOps.
  • Knowledge of data flows and ability to create readable network-topology and data-flow diagrams.
  • Experience with Naval Intelligence information assurance and National Security Agency enterprise services, including continuous monitoring.
  • Experience with XACTA, XACTA 360, eMASS, Host-Based Security System, Assured Compliance Assessment Solution, Nessus, and Splunk.
  • Experience implementing or monitoring zero-trust compliance.

About the company

S

Scientific Research Corporation

View

Scientific Research Corporation is an advanced engineering company that provides engineering, integration, testing, support, and research and development services to the U.S. government, private industry, and international markets. Its work spans information, communications, intelligence, electronic warfare, simulation, training, and instrumentation systems. SRC designs and builds complex systems, integrates them into clients’ environments, conducts rigorous testing, and offers ongoing field support through laboratories and facilities that replicate real-world operation. The company differentiates itself through its broad, end-to-end capabilities across multiple disciplines, its long history since 1988, and its extensive network of engineering offices and state-of-the-art test facilities for both defense and commercial applications. SRC’s goal is to help customers meet emerging challenges by delivering high-quality products and technical services that perform in real-world conditions.

Company Size

1,001-5,000

Company Stage

N/A

Total Funding

N/A

Headquarters

Atlanta, Georgia

Founded

1988

Get referred to Scientific Research Corporation

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • NAVSEA Seaport Enhanced gives SRC access to a $3.5 billion, 15-year Navy pipeline.
  • The August 2026 Navy contract for C4I engineering broadens work across multiple ship fleets.
  • CBP kept SRC as incumbent for $21.39 million aircraft sensor support through September 2026.

What critics are saying

  • CBP’s Aircraft Sensors Technical Support Services ends September 22, 2026, forcing recompete risk.
  • SRC’s growth depends on defense contracting cycles and incumbent renewals, not product revenue.
  • Private ownership and federal concentration make a single protest or budget cut damaging.

What makes Scientific Research Corporation unique

  • SRC won NAVSEA Seaport Enhanced across seven zones in March 2026.
  • SRC holds deep C4I, cyber, and aircraft-sensor sustainment work across Navy and CBP.
  • SRC remains embedded in follow-on federal vehicles, including OASIS UNR and Seaport.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Dental Insurance

Vision Insurance

Life Insurance

401(k) Company Match

401(k) Retirement Plan

Paid Vacation

Paid Sick Leave

Paid Holidays

Tuition Reimbursement

Growth & Insights

Headcount

6 month growth

↑ 7%

1 year growth

↑ 7%

2 year growth

↑ 9%