1

Cyber Audit Jobs in Virginia (NOW HIRING)

Perform internal and external security audits. Requirements * Minimum 5 years experience as a Tier 2 Cyber Threat Analyst * Certifications: Security+ or CEH * Proven experience with SIEM (Rules ...

Director, Cyber Risk

Sterling, VA · On-site

$180 - $280/hr

Serve as primary point of contact for cyber risk in regulatory exams, audits, and carrier‑partner due diligence. * Integrate cyber risk into Enterprise Risk Management to ensure consistency in ...

Support the AFDW MDT in conducting active and passive DCO-IDM to monitor, audit, detect, report, analyze and mitigate threats to mission relevant and key terrain in cyberspace (MRT-C/KT-C) Support ...

Provide technical support to Audit SMEs and ISSOs by producing, validating, and explaining system ... and cyberspace. The company serves as a valued partner to essential government agencies and ...

Provide technical support to Audit SMEs and ISSOs by producing, validating, and explaining system ... and cyberspace. The company serves as a valued partner to essential government agencies and ...

Cyber Systems Administrator

Herndon, VA · On-site

$112K - $179K/yr

Provide technical support to Audit SMEs and ISSOs by producing, validating, and explaining system ... and cyberspace. The company serves as a valued partner to essential government agencies and ...

Support the AFDW MDT in conducting active and passive DCO-IDM to monitor, audit, detect, report, analyze and mitigate threats to mission relevant and key terrain in cyberspace (MRT-C/KT-C) Support ...

They are seeking a Cyber Systems Administrator to provide operational support for enterprise ... audit evidence collection, and operational troubleshooting. • Write and refine Search Processing ...

Showing results 21-40

Cyber Audit information

What is the difference between Cyber Audit vs Cyber Security Analyst?

AspectCyber AuditCyber Security Analyst
CertificationsISO 27001 Lead Auditor, CISACompTIA Security+, CISSP
Work EnvironmentAudit firms, consulting companies, internal audit departmentsSecurity operations centers, IT departments, corporate security teams
Employer & Industry UsageFinancial, healthcare, government sectorsAll industries with IT infrastructure
Primary FocusAssessing compliance, evaluating controls, auditing security policiesMonitoring security threats, implementing security measures, incident response

While both roles focus on cybersecurity, Cyber Audit primarily involves evaluating an organization's security controls and compliance through audits. Cyber Security Analysts actively monitor and respond to security threats. Understanding these differences helps organizations assign the right responsibilities and professionals for their cybersecurity needs.

What are popular job titles related to Cyber Audit jobs in Virginia?

For Cyber Audit jobs in Virginia, the most frequently searched job titles are:

What cities in Virginia are hiring for Cyber Audit jobs?

Cities in Virginia with the most Cyber Audit job openings:

Infographic showing various Cyber Audit job openings in Virginia as of August 2026, with employment types broken down into 1% Internship, 83% Full Time, 14% Part Time, and 2% Contract. Highlights an 83% Physical, 8% Hybrid, and 9% Remote job distribution.

Cyber Incident Responder (24x7 Days)

asrcfh

Quantico, VA • On-site

Full-time

Posted 19 days ago


Job description

ASRC Federal is seeking a highly skilled and experienced Cyber Incident Responder to join our dynamic team on the day shift (0600 – 1600), providing extended-hours coverage that includes weekend and holiday rotations. This is a fully on-site position at Quantico Marine Corps Base, VA — no telework is available for this role.

The successful candidate will serve as a front-line defender, rapidly detecting, triaging, containing, and eradicating cyber threats across our enterprise infrastructure. This role is critical for minimizing the impact of security incidents, coordinating response actions, and preserving forensic evidence in support of Department of Defense (DoD) missions.

Position Description:

The Cyber Incident Responder is a vital role responsible for executing the full incident response lifecycle during day shift, weekend, and holiday coverage windows. This position focuses on detecting and responding to security incidents in real time, performing containment and eradication actions, and coordinating recovery efforts using enterprise tools such as SIEM, SOAR, CrowdStrike, CyberArk, and Endpoint Security Suite (ESS).

The Incident Responder will collaborate with cross-functional IT and security teams to:

  • Execute incident response procedures in accordance with NIST SP 800-61 and DoD guidelines
  • Coordinate with JFHQ-DODIN on cyber incident reporting and remediation
  • Support insider threat response and investigations
  • Contain and remediate compromised systems, accounts, and endpoints
  • Preserve and document forensic evidence for incident case management
  • Maintain incident response playbooks and ensure high operational readiness during all covered hours

Minimum Requirements: 

  • At least Five (5) years of hands-on technical cybersecurity experience and knowledge of incident response concepts, Computer Network Defense, DISA Security Technical Implementation Guides (STIGs), DoD A&A Process, NIST SP 800-53, NIST SP 800-61, CJCSM 6510.01B, United States Cyber Command guidelines, and other applicable DoD Cyber Security and Computer Network Defense policies.
  • Active Top-Secret Clearance REQUIRED, eligible to be upgraded to TS/SCI.
  • Bachelor’s degree in Information Technology, Information Systems Management, Cyber Security, or equivalent experience.
  • Must meet DoD 8570 certification requirements at time of hire — IAT Level II (e.g., CCNA Security, CySA+, GICSP, GSEC, Security+, SSCP); CSIH, GCIH, or GCFA preferred for incident handling.
  • Willingness and availability to work the day shift (0600 – 1600), including weekend and holiday rotations, fully on-site at Quantico, VA.

Required Skills:

  • Knowledge of computer network defense concepts, DISA Security Technical Information Guides, DoD A&A Process, NIST SP 800-53, NIST SP 800-61, CJCSM 6510.01 B, United States Cyber Command guidelines, and other applicable DoD Cybersecurity and Computer Network Defense Policies Cybersecurity and Computer Network Defense policies
  • Develop, maintain, and provide a weekly brief that captures all the cyber events including metrics and trends.
  • Ability to provide continuous monitoring, data to include but not limited to network and host vulnerability scanning IDS, firewall, network sensor tuning, net flow/packet capture (PCAP). Collect and keep audit data in order to conduct a technical analysis relating to misuse, penetration, or other incidents.
  • Document incidents, response actions, and remediation recommendations in accordance with government reporting requirements. 
  • Monitor multiple environments for malicious or anomalous activity using SIEM, SOAR, and on-prem security tooling. 
  • Analyze logs, telemetry, alerts, and audit data to identify indicators of compromise (IOCs) and attack patterns. 

Work Environment and Physical Demands: 

  • This is a fully on-site position at DCSA facilities, Quantico Marine Corps Base, VA. Telework is not offered for this shift.
  • Must work the assigned day shift (0600 – 1600) and support weekend and holiday coverage as scheduled.
  • Must be able to communicate complex technical ideas to a diverse customer base, both verbally and in written form.