2

Remote Gsoc Security Analyst Jobs in Virginia (NOW HIRING)

This position is majority remote (post-pandemic). This role serves as a "hands-on" senior-level technical security analyst responsible for interfacing with operations and security engineering teams ...

This position is majority remote (post-pandemic). This role serves as a "hands-on" senior-level technical security analyst responsible for interfacing with operations and security engineering teams ...

This position is majority remote (post-pandemic). This role serves as a "hands-on" senior-level technical security analyst responsible for interfacing with operations and security engineering teams ...

This position is majority remote (post-pandemic). This role serves as a "hands-on" senior-level technical security analyst responsible for interfacing with operations and security engineering teams ...

General information Job Posting Title Lead Security Engineer - Remote Date Wednesday, August 12 ... analysis, and remediation tracking. - Advise on security technologies such as SIEM, EDR, firewalls ...

New

... analyses and risk assessments, studying architecture/platform, and identifying integration points and issues - Develops requirements and strategies to address information security needs and oversees ...

next page

Showing results 1-20

Remote Gsoc Security Analyst information

What are the key skills and qualifications needed to thrive as a remote GSoC security analyst, and why are they important?

To thrive as a Remote GSoC Security Analyst, you need a solid background in cybersecurity principles, threat analysis, and vulnerability assessment, often supported by a degree in computer science or a related field. Familiarity with security tools like Wireshark, Metasploit, SIEM systems, and certifications such as CompTIA Security+ or CEH are typically required. Excellent problem-solving, attention to detail, and strong communication skills help you effectively collaborate in a remote, open-source environment. These skills and qualifications are crucial to identifying threats, securing code, and supporting project teams in maintaining robust security standards.

What is a remote GSoC security analyst?

A Remote GSoC Security Analyst is a cybersecurity professional who works remotely to help organizations participating in Google Summer of Code (GSoC) projects identify, analyze, and mitigate security risks. They assess code contributions, review project security practices, and provide recommendations for improving security. Their work ensures that open-source projects remain safe from vulnerabilities and comply with best security standards. This role is vital for maintaining trust and integrity within the open-source community, especially as projects grow and attract more contributors.

What is the difference between Remote Gsoc Security Analyst vs Remote Gsoc Cybersecurity Specialist?

AspectRemote Gsoc Security AnalystRemote Gsoc Cybersecurity Specialist
CredentialsCertifications like CompTIA Security+, CISSP, CEHSimilar certifications, often including CISSP, CEH, Security+
Work EnvironmentRemote, often in tech or finance industriesRemote, in various industries including tech, healthcare, finance
Employer UsageUsed by organizations to monitor security threats and analyze incidentsUsed by organizations to implement security measures and respond to threats
Search & Comparison IntentHigh overlap, both focus on security analysis roles

Both Remote Gsoc Security Analysts and Remote Gsoc Cybersecurity Specialists work remotely, often hold similar certifications, and serve organizations in protecting digital assets. The main difference lies in their focus: Security Analysts primarily monitor and analyze security incidents, while Cybersecurity Specialists implement security solutions and strategies. Both roles are vital in maintaining organizational security in the digital landscape.

What are some common challenges faced by remote GSoC security analysts when working with open-source projects?

Remote GSoC Security Analysts often encounter challenges such as coordinating security efforts across different time zones and cultures, ensuring clear communication with distributed development teams, and adapting to varying security practices among open-source communities. Additionally, analysts need to balance proactive threat assessments with the fast-paced development cycles typical of open-source projects. Building trust and rapport with contributors, while promoting security best practices, is key to success in this collaborative and dynamic environment.

What are the most commonly searched types of Gsoc Security Analyst jobs in Virginia?

The most popular types of Gsoc Security Analyst jobs in Virginia are:

What job categories do people searching Remote Gsoc Security Analyst jobs in Virginia look for?

The top searched job categories for Remote Gsoc Security Analyst jobs in Virginia are:

What cities in Virginia are hiring for Remote Gsoc Security Analyst jobs?

Cities in Virginia with the most Remote Gsoc Security Analyst job openings:

Infographic showing various Remote Gsoc Security Analyst job openings in Virginia as of August 2026, with employment types broken down into 86% Full Time, 12% Part Time, and 2% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution.

System Technical Security Analyst

FSR, LLC.

Herndon, VA • On-site, Remote

Full-time

Re-posted 28 days ago


Job description

Company Description
Entrusted by companies with challenging Cyber Security and IT data management recruiting needs, Flex Staffing Resources identifies exceptional talent and cutting edge companies and brings them together.
Job Description
System Technical Security Analyst
Location of Services: Herndon, VA 20171 (Remote)
Employment Type: FTE + Benefits
Client is supporting the FedRAMP and FISMA authorization(s) of new Cloud Products and 3rd Party Applications into our various cloud environments. This effort requires security testing/assessment support, the knowledge/development of the appropriate security documentation (i.e., System Security Plan (SSP), plans and procedures), and ongoing continuous monitoring activities. This position is majority remote (post-pandemic).
This role serves as a "hands-on" senior-level technical security analyst responsible for interfacing with the build, operations and security engineering teams on security issues and information gathering; creating and managing the Plan of Action and Milestones (POAM) for multiple environments, configuration/execution/analysis of vulnerability scans, gathering the security control implementations information for the technical controls and documenting their implementation in the SSP.
Additionally, this role will assist with the security assessments, and continuous monitoring evidence for any of the CLIENT environments (corporate, commercial regulated, FedRAMP, DOD and International).
The Technical Security Analyst will be responsible for maintenance of the commercial and corporate environment POAM and analysis of the corresponding vulnerability scans; development of the metrics / trends of vulnerabilities, assisting with the FedRAMP or FISMA authorization processes to include prep of the operations and build teams, and technical documentation summary and update as required. This role serves as a senior level technical security analyst who has the knowledge to create policies and execute vulnerability scans as needed, evaluates the vulnerability scan data and control implementation and who can provide thoughtful recommendations, as well as conduct security impact analysis of changes to the environments. This role must communicate between security, engineering, build/development and operations teams daily, and be able to interpret and document the results of data gathering.
GENERAL RESPONSIBILITES:
  • Configuration, Execution and Analysis of vulnerability scans
  • Ability to interpret and assess network diagrams and drawings using Visio.
  • Identify and assess Cloud System state, including vulnerabilities, RMF package status/accreditation model, PPS compliance, and patching, Cyber Security Vulnerability Assessments (CSVA) mechanisms.
  • Demonstrate familiarity with current FedRAMP, DOD and NIST Security controls and technologies, including vulnerability management capabilities.
  • Understand enterprise operating environments, including security posture, application environment, and associated security controls
  • Understand/document information system specifications and security controls, including logical and physical diagrams, connectivity, communication, and data flow diagrams, both internal and external to the system.
  • Gather information, architecture diagrams and implementation of the security controls through interfacing with the security engineering, operations and build teams
  • Develop security documentation input of technical control implementation
  • Understand the intent of the FedRAMP moderate security controls, FISMA security controls and communicate as needed
  • Assist with the FedRAMP or FISMA authorization to include, but not limited to, prep of security engineering, build and operations teams through training and mock interviews, update implementation language in the security documentation and develop processes as required, and support FedRAMP PMO/ Agency / CISO requests
  • Maintain and update a monthly Plan of Actions and Milestones (POAM), inventory and other continuous monitoring deliverables as appropriate
  • Ability to respond effectively to customer's concerns regarding ConMon activities

Qualifications
  • Bachelor's Degree in Computer Science / MIS / Information Technology, or equivalent experience in Information Security, Information Technology, or related technical discipline
  • Minimum 5 years Information Technology experience
  • Experience with Cloud technologies, especially AWS and Azure, desirable
  • Experience with FedRAMP and/or other authorization processes and NIST risk management framework
  • Execution and Analysis of vulnerability scans; such as but not limited to: Nessus/Security Center, WebInspect, etc.
  • Familiarity with Splunk to execute queries, search/review data for impact.
  • Experience in developing, evaluating, and implementing information security architectures, technologies, standards, and practices to secure applications and IT systems, desirable
  • Flexible, self-motivated, and able to work independently in a fast paced environment
  • Excellent communication skills and the proven ability to work effectively with all levels of IT and business management.
  • Skill in preparing and making written and oral presentations of complex technical nature.
  • Demonstrated ability to coordinate multiple tasks
  • U.S. Citizenship

SPECIFIC TECHNICAL SKILLS DESIRED:
  • Professional industry certifications in area of expertise.
  • Knowledge of Best Practice and security guides (ex. NIST 800-53 rev 4, NIST 800-53, FedRAMP)
  • ISC CISSP or ISACA CISM or equivalent certification

Additional Information
Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status.