1

Nist Security Analyst Jobs (NOW HIRING)

They are seeking a Security Analyst to support cybersecurity operations, compliance, and risk ... NIST 800-53, RMF, FedRAMP, ICD 503, ServiceNow GRC, Splunk, Azure Sentinel, Nessus, ACAS, AWS ...

Security Analyst

Mclean, VA · On-site

$150K - $200K/yr

Ensure compliance with NIST SP 800-53 / 800-37 RMF, FedRAMP baselines, ICD 503 * Perform risk assessments, control assessments, and gap analyses * Implement and manage RMF lifecycle activities ...

Security Analyst

Mclean, VA · On-site

$150K - $200K/yr

Ensure compliance with NIST SP 800-53 / 800-37 RMF, FedRAMP baselines, ICD 503 * Perform risk assessments, control assessments, and gap analyses * Implement and manage RMF lifecycle activities ...

Security Analyst

Columbia, MD · Hybrid

$55 - $60/hr

Essential Duties and Responsibilities • Support compliance initiatives aligned to NIST, HIPAA ... Security Analyst • Contract alignment • Implementing Security controls • Risk Management ...

They are seeking a Security Analyst to support cybersecurity operations, compliance, and risk ... NIST 800-53, RMF, FedRAMP, ICD 503, RSA Archer, ServiceNow GRC, Splunk, Azure Sentinel, Nessus ...

Security Analyst

Columbia, MD · Hybrid

$55 - $60/hr

Essential Duties and Responsibilities • Support compliance initiatives aligned to NIST, HIPAA ... Security Analyst • Contract alignment • Implementing Security controls • Risk Management ...

Incident response lifecycle and cybersecurity frameworks such as NIST Cybersecurity Framework, NIST Incident Response guidance, and PICERL. Skill in: * Security event analysis and threat triage.

New

Security Analyst

Boston, MA · On-site

$175K - $200K/yr

Security Analyst Position Summary As a Security Analyst, you will be part of our growing Security ... Knowledge of security frameworks such as NIST * Familiarity with vulnerability management tools (e ...

Security Analyst

Boston, MA · On-site

$175K - $200K/yr

Security Analyst Position Summary As a Security Analyst, you will be part of our growing Security ... Knowledge of security frameworks such as NIST * Familiarity with vulnerability management tools (e ...

NOW OPEN | OT SECURITY ANALYST Looking for an experienced OT security analyst with strong SOC, ICS ... 3, NIST CSF, Purdue Model, ISO 27001 • TCP/IP, DNS, Windows & Linux • Incident Response ...

... such as NIST, CIS Critical Controls, ISO 27001, etc. • 48 months experience triaging and ... systems security analysis using Secure System Development LifeCycle (SSDLC) • Applicable ...

Apply Security best practices leveraging SANS, OWASP, NIST & ISO recommendations and frameworks ... Security Analyst Mandatory Skills 1-2+ years of experience in security operations and/or incident ...

Wintellisys, Inc. has joined with a large company in search of a Security Analyst. This is a ... Understands the NIST framework * Innovative does not require micro-management, and good at ...

Showing results 21-40

Nist Security Analyst information

See salary details

$39.5K

$107.3K

$141K

How much do nist security analyst jobs pay per year?

As of Sep 12, 2026, the average yearly pay for nist security analyst in the United States is $107,334.00, according to ZipRecruiter salary data. Most workers in this role earn between $91,500.00 and $130,000.00 per year, depending on experience, location, and employer.

What is a NIST Security Analyst?

A NIST Security Analyst is a cybersecurity professional responsible for ensuring that an organization's information security practices comply with standards set by the National Institute of Standards and Technology (NIST). They assess, implement, and monitor security controls based on NIST frameworks, such as NIST SP 800-53 or NIST Cybersecurity Framework. Their work helps organizations identify vulnerabilities, manage risks, and maintain compliance with federal or industry regulations. NIST Security Analysts often conduct security assessments, develop policies, and provide recommendations for improving cybersecurity posture.

How does a NIST Security Analyst typically collaborate with other departments to ensure compliance?

A NIST Security Analyst frequently works with IT, risk management, and compliance teams to interpret and implement NIST standards across the organization. This involves coordinating risk assessments, sharing security control requirements, and helping business units understand their compliance obligations. Effective communication and regular meetings are essential, as the analyst must translate technical requirements into actionable steps for non-technical stakeholders. Building strong cross-functional relationships is key to maintaining a consistent and compliant security posture.

What are the key skills and qualifications needed to thrive as a NIST Security Analyst, and why are they important?

To thrive as a NIST Security Analyst, you need a solid understanding of cybersecurity frameworks, risk management, and compliance, often requiring a degree in information security or a related field. Familiarity with technical tools such as vulnerability scanners, SIEM systems, and certifications like CISSP or Security+ is typically expected. Analytical thinking, attention to detail, and strong communication skills help you interpret complex security controls and collaborate with stakeholders. These competencies are vital for ensuring organizations meet regulatory standards and effectively protect sensitive data.

What is the difference between Nist Security Analyst vs Cybersecurity Analyst?

AspectNist Security AnalystCybersecurity Analyst
CertificationsCompTIA Security+, CISSP, CISACompTIA Security+, CISSP, CEH
Work EnvironmentGovernment agencies, compliance-focused organizationsPrivate sector, tech companies, consulting firms
Primary FocusImplementing NIST frameworks, compliance, risk managementThreat detection, incident response, security monitoring

The Nist Security Analyst primarily focuses on implementing NIST cybersecurity frameworks and ensuring compliance within organizations, often in government or regulated sectors. In contrast, a Cybersecurity Analyst concentrates on identifying threats, monitoring security systems, and responding to incidents across various industries. While both roles require similar certifications and share overlapping skills, their core responsibilities and work environments differ.

What are popular job titles related to Nist Security Analyst jobs?

For Nist Security Analyst jobs, the most frequently searched job titles are:

Security Analyst

Mclean, VA • On-site

Core One
Guided Missile and Space Vehicle Manufacturing • 51 - 200 employees

Full-time

Re-posted 19 days ago


Job description

Job Summary:
Core One is a company dedicated to providing analytical, operational, and technical solutions to national security challenges. They are seeking a Security Analyst to support cybersecurity operations, compliance, and risk management for FedRAMP-authorized and Intelligence Community systems, ensuring adherence to federal security requirements while facilitating secure solutions.
Responsibilities:
• Lead and support FedRAMP Moderate/High and IC ATO authorization processes
• Develop, review, and maintain security documentation: System Security Plans (SSP), Security Assessment Reports (SAR), Plan of Action & Milestones (POA&M)
• Ensure compliance with NIST SP 800-53 / 800-37 RMF, FedRAMP baselines, ICD 503
• Perform risk assessments, control assessments, and gap analyses
• Implement and manage RMF lifecycle activities (Categorize → Monitor)
• Track and manage POA&M remediation activities
• Facilitate security control inheritance and shared responsibility models
• Execute continuous monitoring strategies and reporting
• Analyze security posture using Vulnerability scans and Configuration compliance
• Produce monthly/quarterly ConMon deliverables
• Monitor and analyze security events and alerts
• Support incident response and forensic analysis
• Coordinate with SOC teams and stakeholders for threat mitigation
• Conduct root cause analysis and lessons learned
• Secure cloud environments aligned with FedRAMP controls
• Implement identity and access controls
• Support 3PAO assessments and audits
• Prepare evidence artifacts for FedRAMP JAB/Agency ATO reviews and Inspector General (IG) audits
• Coordinate with internal/external auditors
• Utilize security tools for monitoring and compliance: Splunk, Sentinel, Vulnerability management tools, ServiceNow
• Support automation of compliance and reporting workflows
• Act as liaison between Engineering teams, ISSOs / ISSMs, and Compliance and audit teams
• Provide security guidance during system design and change management
• Mentor junior analysts and support team development
• Promote a culture of security-first engineering and compliance excellence
• Contribute to security governance and policy development
Qualifications:
Required:
• Active TS/SCI with Polygraph
• Bachelor's degree or higher in Cybersecurity, IT, or related field and 5+ years' experience in Cybersecurity in federal or IC environments
• OR Masters and 3+ years of experience in Cybersecurity in federal or IC environments
• Strong Knowledge of NIST RMF (800-37), NIST 800-53 controls, and FedRAMP requirements
• At least one of the following certifications: CISM or CISA, CompTIA Security+ (baseline), Certified Authorization Professional (CAP), CCSP (cloud security)
• Experience in the following tools: NIST 800-53, RMF, FedRAMP, ICD 503, ServiceNow GRC, Splunk, Azure Sentinel, Nessus, ACAS, AWS GovCloud, Azure Government, GCP, SCAP, STIG Viewer
Preferred:
• Experience with cloud-native security tools
• Knowledge of Zero Trust Architecture
• Experience with cross-domain solutions
• Experience with ICD 503
• Familiarity with DevSecOps pipelines in regulated environments
Company:
Core One is the frontier of innovative ideas and creative solutions to solve our nation's most complex challenges. Founded in 2014, the company is headquartered in Sterling, USA, with a team of 201-500 employees. The company is currently Growth Stage.

Core One logo

About Core One

Sourced by ZipRecruiter

Industry

Guided missile and space vehicle manufacturing

Company size

51 - 200 Employees

Headquarters location

Sterling, VA, US