1

Continuous Monitoring Jobs (NOW HIRING)

Specialist, Continuous Improvement

Palm Bay, FL ยท On-site

$59K - $76K/yr

Ensure the sustainability of improvements through follow-up and continuous monitoring. * Training and Development: Provide training and coaching to employees at all levels on Lean methodologies ...

Summary Monitor Tech Full-Time-First Shift BHCOR-Cor Surgical Services Dept. I Corbin, KY The Monitor Tech is responsible for continuous monitoring and interpretation of cardiac rhythms, documenting ...

next page

Showing results 1-20

Continuous Monitoring information

See salary details

$31K

$104K

$144K

How much do continuous monitoring jobs pay per year?

As of Jun 6, 2026, the average yearly pay for continuous monitoring in the United States is $104,014.00, according to ZipRecruiter salary data. Most workers in this role earn between $85,000.00 and $124,000.00 per year, depending on experience, location, and employer.

What is continuous monitoring?

Continuous monitoring is the ongoing process of collecting, analyzing, and evaluating information about an organization's systems, networks, and operations to detect security threats, compliance issues, or performance problems in real time. This approach helps organizations identify and respond to risks quickly, maintain regulatory compliance, and ensure the security and reliability of their IT environments. Continuous monitoring is widely used in cybersecurity, IT operations, and compliance management to provide up-to-date visibility into system health and vulnerabilities.

What is the difference between Continuous Monitoring vs Security Analyst?

AspectContinuous MonitoringSecurity Analyst
Primary RoleOngoing assessment of security systems and infrastructure to detect vulnerabilities and threatsAnalyzing security incidents, investigating breaches, and developing security strategies
Required CredentialsCertifications like CISSP, CISA, or Security+ often preferredCertifications such as CISSP, Security+, or CEH commonly required
Work EnvironmentTypically in security operations centers (SOCs) or IT departmentsIn security teams, incident response units, or IT security departments
Industry UsageUsed across industries for compliance and threat detectionUsed in cybersecurity teams for threat analysis and response

While both roles focus on security, Continuous Monitoring emphasizes real-time system oversight, whereas Security Analysts analyze incidents and develop security measures. They often work together to ensure comprehensive cybersecurity defense.

What are the key skills and qualifications needed to thrive as a Continuous Monitoring Specialist, and why are they important?

To thrive as a Continuous Monitoring Specialist, you need a strong background in information security, risk management, and familiarity with frameworks like NIST or ISO, usually supported by a degree in cybersecurity or related fields. Proficiency with security information and event management (SIEM) tools, vulnerability scanners, and compliance platforms is typically required, along with relevant certifications such as CISSP or CISA. Attention to detail, analytical thinking, and effective communication are crucial soft skills for identifying and reporting threats. These skills and qualifications ensure robust, real-time security oversight and help organizations proactively mitigate risks.

What are some common challenges faced by professionals in Continuous Monitoring roles, and how can they be addressed?

Professionals in Continuous Monitoring often encounter challenges such as managing large volumes of real-time data, ensuring timely detection of anomalies, and maintaining effective communication with cross-functional teams. Staying current with evolving compliance requirements and integrating new monitoring tools can also be demanding. These challenges can be addressed by leveraging automated monitoring solutions, participating in ongoing training, and establishing clear processes for incident response and reporting. Collaborating closely with IT, security, and compliance teams ensures that monitoring practices remain robust and effective.
What cities are hiring for Continuous Monitoring jobs? Cities with the most Continuous Monitoring job openings:
What states have the most Continuous Monitoring jobs? States with the most job openings for Continuous Monitoring jobs include:
What job categories do people searching Continuous Monitoring jobs look for? The top searched job categories for Continuous Monitoring jobs are:
Infographic showing various Continuous Monitoring job openings in the United States as of May 2026, with employment types broken down into 1% As Needed, 85% Full Time, 10% Part Time, 3% Contract, and 1% Nights. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $104,014 per year, or $50 per hour.
Cybersecurity Analyst (Vulnerability Management & Continuous Monitoring)

Cybersecurity Analyst (Vulnerability Management & Continuous Monitoring)

Chenega MIOS SBU

Oakton, VA โ€ข On-site

Full-time

This job post hasย expired 1 day ago.ย Applications are no longer accepted.


Job description

Job Summary:
Chenega MIOS is a company that supports large-scale government operations by leveraging cutting-edge technology. They are seeking a Cybersecurity Analyst to support Department of Defense cybersecurity operations by executing vulnerability management, security compliance, and Continuous Monitoring activities in accordance with the Risk Management Framework.
Responsibilities:
โ€ข Perform vulnerability scanning using Assured Compliance Assessment Solution (ACAS) (e.g., Tenable.sc / Nessus).
โ€ข Enforcing the ACAS best practice guide requirements when performing vulnerability scans in ACAS
โ€ข Analyze scan results to identify vulnerabilities, misconfigurations, and compliance gaps.
โ€ข Validate findings against the latest released DISA STIGs and applicable security baselines.
โ€ข Review of provided checklists and working with system admins in identifying gaps for POA&M creation.
โ€ข Assess and track vulnerabilities in accordance with DoD timelines and risk severity.
โ€ข Correlate vulnerabilities with IAVA/IAVM notices and ensure timely remediation or mitigation.
โ€ข Develop and maintain Plan of Action and Milestones (POA&M) documentation.
โ€ข Maintenance of Risk Acceptance (RA) POA&M items within SOR (System of Record) and coordinating with System administrators to validate that RA is required instead of a POA&M.
โ€ข Apply and validate Security Technical Implementation Guides (STIGs) across operating systems, applications, and network devices.
โ€ข Conduct manual and automated STIG compliance checks using tools such as ACAS Audit checks, STIG Viewer, SCAP Compliance Checker (SCC), and Evaluate-STIG.
โ€ข Document compliance status and provide remediation guidance to system administrators.
โ€ข Support system hardening efforts aligned with DoD baseline configurations.
โ€ข Ensure that golden images are maintained for Servers (RHEL and Windows) and Workstations following STIG guidance.
โ€ข Monitor and assess Information Assurance Vulnerability Alerts (IAVAs) and Bulletins (IAVBs).
โ€ข Determine system applicability and operational impact.
โ€ข Coordinate remediation actions and track compliance deadlines.
โ€ข Maintain IAVA compliance reporting and documentation for audits.
โ€ข Execute Continuous Monitoring activities in accordance with RMF Step 6.
โ€ข Monitor security controls for effectiveness and ongoing compliance.
โ€ข Conduct control assessments and assist with periodic security reviews.
โ€ข Support automated and manual data collection for ConMon dashboards and reporting.
โ€ข Identify trends, recurring issues, and systemic risks across systems.
โ€ข Support RMF activities across all six steps, with emphasis on:
โ€ข Control implementation validation
โ€ข Security control assessment support
โ€ข Ongoing authorization (ATO sustainment)
โ€ข Update and maintain RMF artifacts, including:
โ€ข System Security Plan (SSP)
โ€ข Security Assessment Report (SAR)
โ€ข Plan of Action and Milestones (POA&M)
โ€ข Security Assessment Plan (SAP)
โ€ข Map vulnerabilities and findings to NIST SP 800-53 controls.
โ€ข Generate vulnerability and compliance reports for leadership and Authorizing Officials (AOs).
โ€ข Provide risk-based recommendations and remediation strategies.
โ€ข Maintain audit-ready documentation in accordance with DoD and agency requirements.
โ€ข Other duties as assigned
Qualifications:
Required:
โ€ข High school diploma or GED equivalent
โ€ข 5+ years of experience in DoD cybersecurity or RMF-based environments
โ€ข Hands-on experience with: ACAS (Nessus / Tenable.sc), STIG implementation and validation, IAVA/IAVM processes, Experience with vulnerability assessment, risk analysis, and remediation tracking.
โ€ข DoD 8570/8140 Compliance: Must meet IAT Level II requirements (e.g., Security+)
โ€ข Active DoD Top Secret clearance with SCI eligibility.
โ€ข Strong understanding of: DoD RMF (DoDI 8510.01), NIST SP 800-53 security controls
โ€ข Ability to manage multiple systems and priorities in a regulated environment
โ€ข Strong analytical and problem-solving skills
โ€ข Attention to detail and compliance rigor
โ€ข Ability to translate technical risk into mission impact
โ€ข Effective communication with technical and non-technical stakeholders
Preferred:
โ€ข Relevant certifications: Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH) or equivalent, DISA ACAS Training Certificate
โ€ข Experience with: ACAS, SCAP Compliance Checker (SCC) / Evaluate-STIG, STIG Viewer, eMASS, Xacta, Trellix, MDE, Splunk, Elastic
โ€ข Familiarity with scripting (e.g., PowerShell, Python) for automation.
โ€ข Experience in enterprise-level ConMon programs or NOSC/SOC environments.
Company:
Chenega MIOS (Military, Intelligence, and Operations Support) brings together a family of highโ€‘performing companies united by a common purpose: supporting the most critical missions of the federal government, the Department of Defense, and the Intelligence Community. Founded in 2010, the company is headquartered in Lorton, VA, US, , with a team of 1001-5000 employees. The company is currently Late Stage.