1

Junior Cyber Security Analyst Jobs in Reston, VA

Cyber Security Analyst - Sr. Consultant level

Ashburn, VA · On-site

$102K - $131K/yr

Mentor and train junior analysts in advanced incident response techniques, tactics, and procedures ... Support and manage cybersecurity projects to enhance overall security posture. This is a hybrid ...

Conduct cybersecurity risk assessments, vulnerability analyses, and security control evaluations ... Provide technical guidance and mentorship to junior cybersecurity personnel What You Bring Required ...

Cybersecurity Engineer - Senior

Washington, DC · On-site

$129K - $177K/yr

... risk analyses. • Monitor systems for security incidents and support incident response and ... guidance to junior cybersecurity staff. Qualifications : Required : • U.S. Citizenship. • ...

Conduct security assessments, vulnerability analyses, penetration testing reviews, and risk ... Mentor junior cybersecurity professionals and provide technical guidance across cybersecurity ...

Conduct security assessments, vulnerability analyses, penetration testing reviews, and risk ... Mentor junior cybersecurity professionals and provide technical guidance across cybersecurity ...

Showing results 21-40

Junior Cyber Security Analyst information

See Reston, VA salary details

$16

$33

$55

How much do junior cyber security analyst jobs pay per hour?

As of Aug 25, 2026, the average hourly pay for junior cyber security analyst in Reston, VA is $33.41, according to ZipRecruiter salary data. Most workers in this role earn between $23.99 and $36.78 per hour, depending on experience, location, and employer.

What does a junior cyber security analyst do?

A Junior Cyber Security Analyst is responsible for assisting in the protection of an organization’s computer systems and networks from security breaches and cyber threats. Their day-to-day tasks often include monitoring network traffic for suspicious activity, responding to minor security incidents, maintaining security tools, and collaborating with senior analysts to investigate vulnerabilities. They may also help with security audits, update documentation, and educate staff about basic security practices. This entry-level role is a great starting point for a career in the rapidly growing field of cyber security.

What does a junior cyber security analyst do?

As a junior cyber security analyst, your responsibilities involve identifying and preventing cyber threats to a company or other organization. Your duties may include establishing threat plans and protocols, maintaining data, monitoring security network access, performing tests and risk analysis, reviewing security alerts and taking steps to protect the information, updating and maintaining a firewall, and recommending security tools and countermeasures to your superiors. Most junior cyber security analyst positions are entry-level, so you usually work under the supervision of a senior cyber security analyst until you have gained the necessary skills and experience to work on your own.

What are the key skills and qualifications needed to thrive as a junior cyber security analyst?

To thrive as a Junior Cyber Security Analyst, you need a foundational understanding of networking, operating systems, and security principles, typically supported by a relevant degree or certifications like CompTIA Security+. Familiarity with security tools such as SIEM platforms, vulnerability scanners, and incident response systems is commonly expected. Attention to detail, analytical thinking, and strong communication skills are crucial soft skills for success in this role. These competencies are vital for identifying threats, mitigating risks, and ensuring clear reporting in dynamic security environments.

What are the typical challenges a junior cyber security analyst faces during their first year on the job?

Junior Cyber Security Analysts often encounter challenges such as adapting to rapidly changing threat landscapes and learning to use a variety of security tools and systems. They may also need to quickly develop strong analytical skills to assess alerts, investigate incidents, and differentiate between false positives and real threats. Collaboration is key, as juniors frequently work alongside senior analysts and IT teams to coordinate responses and implement security measures. Navigating these challenges helps build a solid foundation for growth in the cyber security field.

What is the difference between Junior Cyber Security Analyst vs Cyber Security Technician?

AspectJunior Cyber Security AnalystCyber Security Technician
Required CertificationsCompTIA Security+, CEH (Certified Ethical Hacker)CompTIA Security+, Network+
Work EnvironmentMonitoring security systems, analyzing threats, reportingImplementing security measures, maintaining hardware/software
Employer & Industry UsageIT security teams in various industriesIT support and security teams in organizations
Common Search/ComparisonYesYes

The main difference between a Junior Cyber Security Analyst and a Cyber Security Technician lies in their focus. Analysts primarily monitor, analyze, and respond to security threats, while Technicians focus on implementing and maintaining security infrastructure. Both roles often require similar certifications and work within IT security teams, but their day-to-day tasks differ based on their core responsibilities.

What are the most commonly searched types of Cyber Security Analyst jobs in Reston, VA?

The most popular types of Cyber Security Analyst jobs in Reston, VA are:

What are popular job titles related to Junior Cyber Security Analyst jobs in Reston, VA?

For Junior Cyber Security Analyst jobs in Reston, VA, the most frequently searched job titles are:

What job categories do people searching Junior Cyber Security Analyst jobs in Reston, VA look for?

The top searched job categories for Junior Cyber Security Analyst jobs in Reston, VA are:

What cities near Reston, VA are hiring for Junior Cyber Security Analyst jobs?

Cities near Reston, VA with the most Junior Cyber Security Analyst job openings:

Infographic showing various Junior Cyber Security Analyst job openings in Reston, VA as of August 2026, with employment types broken down into 85% Full Time, 13% Part Time, and 2% Contract. Highlights an 92% Physical, 2% Hybrid, and 6% Remote job distribution, with an average salary of $69,498 per year, or $33.4 per hour.

Cybersecurity SME (Junior)

Alexandria, VA • On-site

Chenega Corporation
IT Services • 5 - 10K employees

Full-time

Re-posted 22 days ago


Job description

Summary

Cybersecurity SME JR

Alexandria, VA

Are you ready to enhance your skills and build your career in a rapidly evolving business climate? Are you looking for a career where professional development is embedded in your employer’s core culture? If so, Chenega Military, Intelligence & Operations Support (MIOS) could be the place for you! Join our team of professionals who support large-scale government operations by leveraging cutting-edge technology and take your career to the next level! 

The Cybersecurity SME is a key contract personnel who provides expert guidance and technical leadership, leading the contractor cybersecurity personnel, supporting, and representing the AGC Information System Security Manager (ISSM) in customer and management/leadership meetings for the area of cybersecurity.


Responsibilities
  • Report on and perform Continuous Monitoring on all AGC-supported systems and networks; identify, mitigate, and resolve cybersecurity incident issues and concerns
  • Develop guidelines/plans, analyses, reviews, and mitigations in the areas of security incident response and mitigation strategies, vulnerability scanning, writing security assessments, and other cybersecurity-related activities and mandates
  • Respond to all cybersecurity notices as directed by the Cyber Security Service Provider (CSSP) and pertinent service providers, take action to comply with security notices, and record compliance
  • Provide technical support, including documentation, to enable required AGC systems to meet the requirements of receiving an Authority to Operate (ATO) accreditation decision via the Department of Defense (DoD) Risk Management Framework (RMF)
  • Support operational cybersecurity activities, including vulnerability scanning, IAVM compliance, STIG and SRG application, assessment, and remediation, and POA&Ms
  • Support cybersecurity governance, risk, and compliance by providing plans, policies, and procedures relevant to AGC’s systems, applications, and networks, including AGC GovCloud (L2/L4), and other accredited systems/applications.
  • Manage accreditation and continuously monitor activities, as well as the vulnerability management and incident response functions for all supported systems and networks.
  • Support operational cybersecurity activities, including vulnerability scanning, IAVM compliance, STIG and SRG application, assessment, and remediation, and POA&M.
  • Support cybersecurity governance, risk, and compliance by providing plans, policies, and procedures relevant to AGC’s systems, applications, and networks, including AGGC-R Cloud and/or AGC Army AWS Cloud, C2IE, OHASIS.
  • Maintains AGC’s Tenant Security Plans (TSP) for SIPR and NIPR, Authority to Operate (ATO) for JWICS and Interim Authority to Test (IATT), Approval to Connect (ATC), and any other documentation necessary to support AGC’s network connections and mission systems.
  • Manage the eMASS records for AGC’s mission systems and enclaves, create and track POA&Ms, track IAVM and STIG compliance, and manage eMASS artifacts necessary to support evidence for applicable security controls.
  • Support RMF activities, including categorization of systems IAW NIST SP 800-60, selection of security controls IAW CNSSI 1253 and NIST SP 800-53, assessment of security controls IAW NIST SP 800-53A, development and implementation of Continuous Monitoring Plans IAW NIST SP800-137, STIG Traceability Matrix, hardware/software/firmware list, and System Security Plan (SSP).
  • Participate in the configuration process (CM) through representation on the Technical Review Board (TRB) and Configuration Control Board (CCB) and provide a security impact assessment for changes submitted through Request for Change (RFCs).
  • Responsible for the continuous monitoring of AGC’s systems, applications, and networks
  • Configure vulnerability scanning, analyze results, and close or mitigate findings.
  • Organize the assessment of AGC GISO IT assets using applicable STIGs, SRGs, and/or vendor supply hardening guidelines.
  • Responsible for configuring AGC GISO IT assets for vulnerability scanning and ensuring 100% coverage using credentialed scans.
  • Coordinate with RNEC-NCR, C5ISR, GISA, and other Army enterprise service providers, as necessary, to ensure vulnerability assessment tools are in place and working properly.
  • Analyze vulnerability scan results and resolve open findings for findings that cannot be closed, create a POA&M, and recommend mitigation(s) to lessen the impact of the vulnerability; submit Operational Impact Statements (OIS) for Critical and High IAVAs.
  • Create a POA&M and recommend mitigation(s) to lessen the impact of the vulnerability IAW with ARCYBER OPORD 2016-129, submit Operational Impact Statements (OIS) for Critical and High IAVAs.
  • Support response procedures for cybersecurity incidents, like breaches, spills, and insider threat actions.
  • In coordination with the ISSM and IA Officer, all cybersecurity documentation required for accreditation for AGC’s GISO assets, including but not limited to: architecture diagrams, boundary diagrams, data flow diagrams, ports, protocols, service exception requests, PKI certifications, IA metrics, and Privacy Impact Assessments (PIA) in the requisite cybersecurity document repository.
  • Identify, mitigate, and resolve cybersecurity incident issues and concerns
  • Develop guidelines/plans, analyses, reviews, and mitigations in the areas of security incident response and mitigation strategies, vulnerability scanning, writing security assessments, and other cybersecurity-related activities and mandates.
  • Provide technical support, including documentation, to enable AGC systems to meet the requirements of receiving an Authority to Operate (ATO) accreditation decision via the Department of Defense (DoD) Risk Management Framework (RMF).
  • Provide input to the weekly and monthly status report covering technical activities for this functional area, including priorities, tasks, accreditation due dates and schedules, POA&M status, metrics, continuous monitoring tasks, etc.
  • Other duties as assigned

Qualifications
  • BA/BS degree preferred
  • 5+ years of relevant experience with DoD in an IA/Cybersecurity role preferred
  • DoD 8570.01-M IAM II required
    • IASE III certifications preferred
  • Active TS/SCI clearance required

Knowledge, Skills, and Abilities:

  • Trained and experienced with DoD vulnerability scanning tools, including Assured Compliance Assessment Solution (ACAS), Security Content Automation Protocol Compliance Checker (SCAP), Security Technical Implementation Guide (STIG) Viewer, Endpoint Security Solution (ESS), and AWS GovCloud security tools, including AWS Security Hub, Amazon Inspector, AWS Config, Amazon GuardDuty, Amazon Detective, and Amazon Macie.
  • Must be proficient with related automated tools, including but not limited to the Enterprise Mission Assurance Support Service (eMASS), Host-Based Security System (HBSS), and Assured Compliance Assessment Solution (ACAS).
  • Shall possess expert knowledge and in-depth experience with:
  • Application and system assessment, determination of accreditation requirements (Assess Only, ATO, IATT, etc.).
  • Categorization of information systems and/or data types IAW NIST SP 800-60 Vol II.
  • Establishment of Security Requirements Traceability Matrix, which identifies applicable DISA STIGs and SRGs.
  • Selection of security controls per NIST SP 800-53 and CNSSI 1253.
  • Writing System Security Plan (SSP), associated security controls assessment artifacts, and PO&AMs.
  • Application of DISA STIGs and SRGs.
  • Management of security controls assessment artifacts in eMASS in preparation of packages for RMF (DoDI 8510.01, NIST SP 800-37) processes.
  • Evaluation of security controls per NIST SP 800- 53A.
  • Implementation of continuous monitoring solutions per NIST SP 800-13
  • Knowledge and experience with current DoD and Army IA policies and procedures, RMF certification and accreditation procedures and requirements, APMS reporting procedures, and an understanding of the unique acquisition community IA issues.
  • Familiarity with Army and DoD regulations concerning IA implementation
  • Able to lead/oversee Program Protection Planning (PPP) and Security Classification Guide development and production for developmental and production systems.
  • Knowledge and experience in the security sub-disciplines supporting Army IA, certification and accreditation, IA security testing, and security management for both developmental and production systems, including but not limited to Communications Security, Physical Security, OPSEC, Risk Assessments, Personnel Security, Tempest, Network Security, Security Inspections, and User Training.
  • Must have advanced working knowledge of a variety of computer software applications in word processing, spreadsheets, database (MSWord, Excel, Access, PowerPoint), and Outlook.

How you’ll grow 

At Chenega MIOS, our professional development plan focuses on helping our team members at every level of their careers to identify and use their strengths to do their best work every day. From entry-level employees to senior leaders, we believe there’s always room to learn. 

We offer opportunities to help sharpen skills in addition to hands-on experience in the global, fast-changing business world. From on-the-job learning experiences to formal development programs, our professionals have a variety of opportunities to continue to grow throughout their careers. 

Benefits 

At Chenega MIOS, we know that great people make a great organization. We value our team members and offer them a broad range of benefits. 

Learn more about what working at Chenega MIOS can mean for you. 

Chenega MIOS’s culture 

Our positive and supportive culture encourages our team members to do their best work every day. We celebrate individuals by recognizing their uniqueness and offering them the flexibility to make daily choices that can help them be healthy, centered, confident, and aware. We offer well-being programs and continuously look for new ways to maintain a culture where we excel and lead healthy, happy lives. 

Corporate citizenship 

Chenega MIOS is led by a purpose to make an impact that matters. This purpose defines who we are and extends to relationships with our clients, our team members, and our communities. We believe that business has the power to inspire and transform. We focus on education, giving, skill-based volunteerism, and leadership to help drive positive social impact in our communities. 

Learn more about Chenega’s impact on the world. 

Chenega MIOS News- https://chenegamios.com/news/ 

Tips from your Talent Acquisition Team 

We want job seekers exploring opportunities at Chenega MIOS to feel prepared and confident. To help you with your research, we suggest you review the following links: 

Chenega MIOS web site - www.chenegamios.com 

Glassdoor - https://www.glassdoor.com/Overview/Working-at-Chenega-MIOS-EI_IE369514.11,23.htm 

LinkedIn - https://www.linkedin.com/company/1472684/ 

Facebook - https://www.facebook.com/chenegamios/

#Chenega IT Enterprise Services, LLC


Estimated Salary/Wage
USD $120,000.00/Yr. Up to USD $145,000.00/Yr.Qualifications:
  • BA/BS degree preferred
  • 5+ years of relevant experience with DoD in an IA/Cybersecurity role preferred
  • DoD 8570.01-M IAM II required
    • IASE III certifications preferred
  • Active TS/SCI clearance required

Knowledge, Skills, and Abilities:

  • Trained and experienced with DoD vulnerability scanning tools, including Assured Compliance Assessment Solution (ACAS), Security Content Automation Protocol Compliance Checker (SCAP), Security Technical Implementation Guide (STIG) Viewer, Endpoint Security Solution (ESS), and AWS GovCloud security tools, including AWS Security Hub, Amazon Inspector, AWS Config, Amazon GuardDuty, Amazon Detective, and Amazon Macie.
  • Must be proficient with related automated tools, including but not limited to the Enterprise Mission Assurance Support Service (eMASS), Host-Based Security System (HBSS), and Assured Compliance Assessment Solution (ACAS).
  • Shall possess expert knowledge and in-depth experience with:
  • Application and system assessment, determination of accreditation requirements (Assess Only, ATO, IATT, etc.).
  • Categorization of information systems and/or data types IAW NIST SP 800-60 Vol II.
  • Establishment of Security Requirements Traceability Matrix, which identifies applicable DISA STIGs and SRGs.
  • Selection of security controls per NIST SP 800-53 and CNSSI 1253.
  • Writing System Security Plan (SSP), associated security controls assessment artifacts, and PO&AMs.
  • Application of DISA STIGs and SRGs.
  • Management of security controls assessment artifacts in eMASS in preparation of packages for RMF (DoDI 8510.01, NIST SP 800-37) processes.
  • Evaluation of security controls per NIST SP 800- 53A.
  • Implementation of continuous monitoring solutions per NIST SP 800-13
  • Knowledge and experience with current DoD and Army IA policies and procedures, RMF certification and accreditation procedures and requirements, APMS reporting procedures, and an understanding of the unique acquisition community IA issues.
  • Familiarity with Army and DoD regulations concerning IA implementation
  • Able to lead/oversee Program Protection Planning (PPP) and Security Classification Guide development and production for developmental and production systems.
  • Knowledge and experience in the security sub-disciplines supporting Army IA, certification and accreditation, IA security testing, and security management for both developmental and production systems, including but not limited to Communications Security, Physical Security, OPSEC, Risk Assessments, Personnel Security, Tempest, Network Security, Security Inspections, and User Training.
  • Must have advanced working knowledge of a variety of computer software applications in word processing, spreadsheets, database (MSWord, Excel, Access, PowerPoint), and Outlook.

How you’ll grow 

At Chenega MIOS, our professional development plan focu...