Title: Lead Cybersecurity Risk & Exposure Subject Matter Expert IV Location: Alexandria, VA ... Demonstrated expert knowledge of vulnerability/exposure management, threat-informed risk analysis ...
Title: Lead Cybersecurity Risk & Exposure Subject Matter Expert IV Location: Alexandria, VA ... Demonstrated expert knowledge of vulnerability/exposure management, threat-informed risk analysis ...
Title: Lead Cybersecurity Risk & Exposure Subject Matter Expert IV Location: Alexandria, VA ... Demonstrated expert knowledge of vulnerability/exposure management, threat-informed risk analysis ...
Title: Lead Cybersecurity Risk & Exposure Subject Matter Expert IV Location: Alexandria, VA ... Demonstrated expert knowledge of vulnerability/exposure management, threat-informed risk analysis ...
Cybersecurity Analyst Expert
Mclean, VA · On-site
Description The Cybersecurity Analyst supports the security, compliance, and maintenance of information systems throughout the Risk Management Framework (RMF) lifecycle, from system preparation ...
Cybersecurity Analyst Expert
Mclean, VA · On-site
Description The Cybersecurity Analyst supports the security, compliance, and maintenance of information systems throughout the Risk Management Framework (RMF) lifecycle, from system preparation ...
Third-Party Risk Analyst
Mclean, VA · On-site
$45 - $47/hr
Third-Party Risk Analyst Location: McLean, VA (5 days - Onsite) Job Overview The Third-Party Risk ... Knowledge of cybersecurity or information security incident management. * Familiarity with third ...
Quick apply
Third-Party Risk Analyst
Mclean, VA · On-site
$45 - $47/hr
Third-Party Risk Analyst Location: McLean, VA (5 days - Onsite) Job Overview The Third-Party Risk ... Knowledge of cybersecurity or information security incident management. * Familiarity with third ...
Senior Cybersecurity Analyst
Falls Church, VA · On-site +1
$91K - $124K/yr
Senior Cybersecurity Analyst Work Location: Remote or hybrid remote if near CO/VA offices Labor ... Support third-party/vendor risk management, technology security reviews, change management, and ...
Senior Cybersecurity Analyst
Falls Church, VA · On-site +1
$91K - $124K/yr
Senior Cybersecurity Analyst Work Location: Remote or hybrid remote if near CO/VA offices Labor ... Support third-party/vendor risk management, technology security reviews, change management, and ...
Cybersecurity Analyst
Petersburg, VA · On-site
Knowledge of cybersecurity supply chain risk management principles, including NIST SP 800-161 or ... Strong analytical, technical writing, documentation, and communication skills. * Ability to ...
Cybersecurity Analyst
Petersburg, VA · On-site
Knowledge of cybersecurity supply chain risk management principles, including NIST SP 800-161 or ... Strong analytical, technical writing, documentation, and communication skills. * Ability to ...
Senior Technical Risk Analyst
Vienna, VA · On-site
Proven experience in managing and mitigating cybersecurity risks * Advanced knowledge of risk ... Excellent analytical, problem-solving, and decision-making skills * Strong interpersonal and ...
Senior Technical Risk Analyst
Vienna, VA · On-site
Proven experience in managing and mitigating cybersecurity risks * Advanced knowledge of risk ... Excellent analytical, problem-solving, and decision-making skills * Strong interpersonal and ...
Senior Technical Risk Analyst
Vienna, VA · On-site
Proven experience in managing and mitigating cybersecurity risks * Advanced knowledge of risk ... Excellent analytical, problem-solving, and decision-making skills * Strong interpersonal and ...
Senior Technical Risk Analyst
Vienna, VA · On-site
Proven experience in managing and mitigating cybersecurity risks * Advanced knowledge of risk ... Excellent analytical, problem-solving, and decision-making skills * Strong interpersonal and ...
Cybersecurity Analyst
Petersburg, VA · On-site
$105K - $140K/yr
Knowledge of cybersecurity supply chain risk management principles, including NIST SP 800-161 or ... Strong analytical, technical writing, documentation, and communication skills. * Ability to ...
Cybersecurity Analyst
Petersburg, VA · On-site
$105K - $140K/yr
Knowledge of cybersecurity supply chain risk management principles, including NIST SP 800-161 or ... Strong analytical, technical writing, documentation, and communication skills. * Ability to ...
Knowledge of cybersecurity supply chain risk management principles, including NIST SP 800-161 or ... Strong analytical, technical writing, documentation, and communication skills. * Ability to ...
Knowledge of cybersecurity supply chain risk management principles, including NIST SP 800-161 or ... Strong analytical, technical writing, documentation, and communication skills. * Ability to ...
Cybersecurity Analyst
Petersburg, VA · On-site
$105K - $140K/yr
Knowledge of cybersecurity supply chain risk management principles, including NIST SP 800-161 or ... Strong analytical, technical writing, documentation, and communication skills. * Ability to ...
Cybersecurity Analyst
Petersburg, VA · On-site
$105K - $140K/yr
Knowledge of cybersecurity supply chain risk management principles, including NIST SP 800-161 or ... Strong analytical, technical writing, documentation, and communication skills. * Ability to ...
Risk and Compliance Analyst
Springfield, VA · On-site
$95K - $105K/yr
Develop risk analyses, compliance reports, executive briefings, and remediation strategies ... Bachelor's degree in Business Administration, Business Management, Cybersecurity, Computer Science ...
Risk and Compliance Analyst
Springfield, VA · On-site
$95K - $105K/yr
Develop risk analyses, compliance reports, executive briefings, and remediation strategies ... Bachelor's degree in Business Administration, Business Management, Cybersecurity, Computer Science ...
Risk and Compliance Analyst
Springfield, VA · Remote
$95K - $105K/yr
Develop risk analyses, compliance reports, executive briefings, and remediation strategies ... Bachelor's degree in Business Administration, Business Management, Cybersecurity, Computer Science ...
Risk and Compliance Analyst
Springfield, VA · Remote
$95K - $105K/yr
Develop risk analyses, compliance reports, executive briefings, and remediation strategies ... Bachelor's degree in Business Administration, Business Management, Cybersecurity, Computer Science ...
... risk management, and capability-development activities. Key Responsibilities * Analyze cybersecurity requirements for CIS and capability initiatives. * Support secure architecture and systems ...
... risk management, and capability-development activities. Key Responsibilities * Analyze cybersecurity requirements for CIS and capability initiatives. * Support secure architecture and systems ...
... risk management, and capability-development activities. Key Responsibilities * Analyze cybersecurity requirements for CIS and capability initiatives. * Support secure architecture and systems ...
... risk management, and capability-development activities. Key Responsibilities * Analyze cybersecurity requirements for CIS and capability initiatives. * Support secure architecture and systems ...
As a Cybersecurity Analyst you will play a crucial role in ensuring the cyber security and ... You will be responsible for managing the Risk Management Framework (RMF) support for multiple ...
As a Cybersecurity Analyst you will play a crucial role in ensuring the cyber security and ... You will be responsible for managing the Risk Management Framework (RMF) support for multiple ...
The Cybersecurity Analyst will perform assessment and authorization (A&A) efforts under the NIST Risk Management Framework (RMF) on behalf of a federal civilian agency as a contractor. The role will ...
The Cybersecurity Analyst will perform assessment and authorization (A&A) efforts under the NIST Risk Management Framework (RMF) on behalf of a federal civilian agency as a contractor. The role will ...
... risk management, and capability-development activities. Key Responsibilities * Analyze cybersecurity requirements for CIS and capability initiatives. * Support secure architecture and systems ...
... risk management, and capability-development activities. Key Responsibilities * Analyze cybersecurity requirements for CIS and capability initiatives. * Support secure architecture and systems ...
RMF Cyber Security Analyst Senior
Quantico, VA · On-site
$120K - $160K/yr
Perform other duties as related to risk management, communication, and assessments. Qualifications It is required that the RMF Cyber Security Analyst Senior have the following qualifications:
RMF Cyber Security Analyst Senior
Quantico, VA · On-site
$120K - $160K/yr
Perform other duties as related to risk management, communication, and assessments. Qualifications It is required that the RMF Cyber Security Analyst Senior have the following qualifications:
The role ensures cybersecurity strategy, risk management, and assurance activities are embedded ... analytics, AI, and OT systems) while maintaining appropriate risk management and assurance.
The role ensures cybersecurity strategy, risk management, and assurance activities are embedded ... analytics, AI, and OT systems) while maintaining appropriate risk management and assurance.
Manager Cyber Security Risk Analyst information
What is the difference between Manager Cyber Security Risk Analyst vs Cyber Security Risk Analyst?
| Aspect | Manager Cyber Security Risk Analyst | Cyber Security Risk Analyst |
|---|---|---|
| Certifications | CISSP, CISM, CRISC | CISSP, CISA, CompTIA Security+ |
| Work Environment | Oversees teams, strategic planning | Analyzes risks, implements security measures |
| Employer & Industry Usage | Financial, healthcare, tech firms | Same industries, entry to mid-level roles |
The main difference is that the Manager Cyber Security Risk Analyst leads teams and develops security strategies, while the Cyber Security Risk Analyst focuses on assessing risks and implementing security controls. The manager role involves more leadership and strategic planning, whereas the analyst role is more hands-on with risk assessment tasks.
Cybersecurity Risk & Exposure Subject Matter Expert IV
Alexandria, VA • On-site
Full-time
Posted 7 days ago
Job description
Title: Lead Cybersecurity Risk & Exposure Subject Matter Expert IV
Location: Alexandria, VA
Clearance: TS/SCI with the ability to obtain and maintain a CI polygraph
Job Details:
- Serve as the senior SME for operational cyber risk, vulnerability/exposure analysis, and continuous monitoring supporting a DoD cyber defense mission
- Establish methodologies for correlating vulnerability, asset, configuration, network reachability, system criticality, security-control, threat, and incident data to identify and prioritize the exposures most likely to create operational or mission risk
- Lead complex exposure and impact assessments, including development of plausible exploitation scenarios, attack paths, affected-system analysis, compensating-control considerations, and risk-informed courses of action
- Provide expert vulnerability, asset, architecture, and security-control context to SOC leadership, Cybersecurity Operations Analysts, Threat Analysts, incident responders, and engineering teams during significant investigations and proactive defensive activity
- Lead analysis of ACAS/Tenable results, runZero asset information, STIG/configuration findings, system documentation, and other approved data to identify systemic weaknesses, exploitable conditions, and remediation priorities
- Own the SOC-side process for coordinating material cyber findings with affected system ISSOs/ISSMs, system owners, administrators, engineers, and authorization stakeholders; ensure operational findings are translated into appropriate mitigation, continuous-monitoring, POA&M, or RMF actions without duplicating system ISSO responsibilities
- Establish and maintain checklists, TTPs, guides, procedures, quality standards, and reporting methods for exposure analysis, risk prioritization, remediation validation, and SOC-to-system-security coordination
- Lead review of remediation evidence, recurring vulnerabilities, exposure trends, control weaknesses, and SOC-derived findings to identify systemic risk and recommend enterprise or site-level corrective actions
- Develop briefings, executive summaries, risk assessments, metrics, dashboards, and technical products that communicate operational exposure, remediation progress, control effectiveness, and mission impact to technical and leadership audiences
- Advise SOC leadership on vulnerability/exposure trends, high-risk assets, recurring security weaknesses, remediation priorities, and opportunities to improve the integration of vulnerability management, threat information, and cyber defense operations
- Mentor senior and developing analysts and provide technical quality review of exposure assessments, risk conclusions, remediation recommendations, and stakeholder coordination products
- Experience integrating vulnerability management, continuous monitoring, RMF/ISSO processes, and SOC or incident-response operations in a DoD/IC or similarly complex enterprise environment is highly desired
Requirements:
- Bachelor's degree from an accredited institute in a technical discipline applicable to the position; an additional 4 years of may be substituted in lieu of a degree
- Minimum of eight (8) years of relevant experience in addition to education level
- Demonstrated expert knowledge of vulnerability/exposure management, threat-informed risk analysis, DoD continuous monitoring, RMF/security controls, network/system security, and technical risk assessment
- Experience with ACAS/Tenable, runZero or comparable exposure/asset-discovery tools, DoD STIG/STIG Viewer, SCAP, POA&M processes, and integration of SOC/incident-response findings with ISSO/ISSM or RMF functions is highly desired
- Demonstrated experience establishing exposure-analysis methodology, leading complex risk assessments, prioritizing remediation, and translating operational cyber findings into continuous-monitoring or RMF actions is strongly desired
- Must possess current DoD 8570 IAT II or IAM II certification
- Experience working in a DoD or IC environment
- Current active TS/SCI clearance, with the ability to obtain and maintain a CI polygraph
Equal Opportunity Employer/Veteran/Disabled
About Invictus International Consulting
Sourced by ZipRecruiter
Industry
Guided missile and space vehicle manufacturing
Company size
11 - 50 Employees
Headquarters location
Alexandria, VA, US
Year founded
2014