1

Security Analyst Jobs in Guam (NOW HIRING)

GU · On-site

Position Overview The Systems Security Analyst / Information Systems Security Engineer (ISSE) provides cybersecurity engineering support to the Naval Facilities Engineering Systems Command (NAVFAC ...

New

GU · On-site

Building 3190, Naval Base Guam (NBG), Santa Rita, Guam 96915 Position Overview We are seeking a Systems Security Analyst to support our client. You will help protect the confidentiality, integrity ...

New

Be Seen First

Information Systems Security Engineer (ISSE) - Systems Security Analyst Employment Type: Full-Time - Up to 40 hours per week Employment Status: Contingent Upon Contract Award Customer Agency: Naval ...

New

Be Seen First

Information Systems Security Engineer (ISSE) - Systems Security Analyst Employment Type: Full-Time - Up to 40 hours per week Employment Status: Contingent Upon Contract Award Customer Agency: Naval ...

New

GU · On-site

Duties include conducting routine vulnerability scans, performing audit log analysis, driving ... Security+ or CCSP or Cloud+ or GICSP or GISF or GSEC or RCCE Level 1 or CISSO or CISSP-ISSEP or ...

New

Ability to follow written procedures, instructions, and security protocols. * Strong observational, analytical, and problem-solving skills. * Proficiency with Microsoft Office applications and ...

New

Ability to follow written procedures, instructions, and security protocols. * Strong observational, analytical, and problem-solving skills. * Proficiency with Microsoft Office applications and ...

New

GU · On-site

Conduct detailed supply and demand analyses to support funding requests, resource allocation, and ... Security Requirements: Non-Critical Sensitive with Secret Access * Appointment is subject to the ...

next page

Showing results 1-20

Security Analyst information

What is a security analyst?

Security Analysts are professionals responsible for protecting an organization’s computer systems and networks from cyber threats. They monitor networks for security breaches, investigate suspicious activities, and implement security measures to prevent future attacks. Security Analysts also conduct vulnerability assessments, respond to incidents, and ensure compliance with security policies and regulations. Their work helps safeguard sensitive data and maintain the integrity of information systems.

What is the difference between Security Analyst vs Network Security Analyst?

AspectSecurity AnalystNetwork Security Analyst
CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, CISSP, Cisco CCNA Security
Work EnvironmentIT security teams, cybersecurity firms, corporate securityNetwork operations centers, IT departments, cybersecurity teams
ResponsibilitiesMonitor security systems, analyze threats, implement security measuresSecure network infrastructure, monitor network traffic, prevent intrusions

Security Analysts focus on overall cybersecurity, including threat detection and incident response, while Network Security Analysts specialize in protecting network infrastructure and traffic. Both roles require similar certifications and often work in overlapping environments, but their core responsibilities differ in scope and focus.

What do security analysts do?

Security analysts evaluate information systems and recommend security measures and protocols to protect a company’s sensitive data from security threats. Security administrators implement their recommendations and put suggested protocols into action. As a security analyst, your job duties include monitoring security access, performing audits of internal and external network security programs, analyzing breaches to inform future security system measures, and training colleagues in security awareness and proper procedures. You also collaborate with outside vendors on security plans, which may include website applications, container, or cloud-based solutions.

What qualifications do I need to be a security analyst?

A security analyst typically needs a bachelor's degree in cybersecurity, computer science, or a related field. Relevant skills include knowledge of network security, threat detection, and experience with security tools and protocols; certifications like CompTIA Security+ or CISSP can enhance job prospects.

What are some common challenges security analysts face when responding to security incidents, and how can they effectively manage these situations?

Security Analysts often encounter challenges such as rapidly evolving threats, the need to analyze large volumes of data, and coordinating responses across different teams. Responding quickly while accurately diagnosing incidents requires excellent technical skills and clear communication. To manage these situations effectively, successful analysts prioritize continuous learning, use automation tools to streamline repetitive tasks, and establish well-defined incident response procedures. Collaborating with IT, legal, and management teams is also crucial for a coordinated and effective response.

What are the key skills and qualifications needed to thrive as a security analyst, and why are they important?

To thrive as a Security Analyst, you need a solid understanding of cybersecurity principles, risk assessment, and network security, often backed by a degree in computer science or a related field. Familiarity with tools like SIEM platforms, intrusion detection systems, and certifications such as CompTIA Security+ or CISSP are commonly required. Analytical thinking, attention to detail, and strong problem-solving abilities help Security Analysts excel in identifying vulnerabilities and responding to threats. These skills are crucial for protecting organizational assets, ensuring compliance, and maintaining a robust security posture.
What are popular job titles related to Security Analyst jobs in Guam? For Security Analyst jobs in Guam, the most frequently searched job titles are:
What job categories do people searching Security Analyst jobs in Guam look for? The top searched job categories for Security Analyst jobs in Guam are:
Infographic showing various Security Analyst job openings in Guam as of August 2026, with employment types broken down into 83% Full Time, 13% Part Time, and 4% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution.

System Security Analyst

GBTI Solutions Inc

Santa Rita, GU • On-site

Full-time

Posted 4 days ago


Job description

Position Overview
The Systems Security Analyst / Information Systems Security Engineer (ISSE) provides cybersecurity engineering support to the Naval Facilities Engineering Systems Command (NAVFAC) Marianas Command Information Office (CIO). The role focuses on protecting the confidentiality, integrity, and availability of Facility-Related Control Systems (FRCS), networks, and data through the full Risk Management Framework (RMF) lifecycle, vulnerability management, continuous monitoring, policy development, and incident response.Personnel are considered Emergency Essential / Mission Essential and may be required to support the MAR Cyber Emergency Response Team (CERT) on-call rotation (with schedule flexing to stay within 40 hours/week).

Key Responsibilities
  • Drive end-to-end RMF lifecycle execution (Steps 1–6) in accordance with Department of the Navy (DoN) and NAVFAC Echelon II guidance; verify system inventories and artifacts for compliance, completeness, and quality; format and upload packages into eMASS.
  • Achieve, maintain, and track Authorities to Operate (ATOs) for FRCS; facilitate annual security reviews and draft/submit Memorandums for Record (MFRs) for baseline changes.
  • Develop, author, and maintain security policies, Standard Operating Procedures (SOPs), and implementation plans mapped to NIST SP 800-53 control families, tailored to the FRCS environment.
  • Develop and execute a comprehensive Vulnerability Management Strategy; perform vulnerability and compliance assessments using approved DoN tools (ACAS, SCAP, Evaluate STIG); complete manual STIG/SRG validations (.ckl/.cklb); generate Security Center and eMASSter reports; upload results to VRAM.
  • Sustain System-Level Continuous Monitoring (SLCM): conduct routine scans, audit log analysis, drive remediation/mitigation, and provide accurate quarterly Plan of Action and Milestones (POA&M) updates.
  • Deliver on-site validation and testing support for RMF Step 4, coordinating with system owners and independent validators.
  • Serve as technical representative / Configuration Management (CM) Officer on the Configuration Control Board (CCB); provide security impact analyses and risk assessments for proposed FRCS baseline changes.
  • Execute incident response operations as a member of the MAR CERT, including participation in on-call rotations.
  • Prioritize and coordinate technical support across FRCS environments; deliver bi-weekly RMF status reports to the ISSM and maintain project status records in Maximo and/or eProjects; prepare Monthly Status Reports (MSRs).

Required Qualifications
  • U.S. Citizenship.
  • Active Top Secret security clearance.
  • DoDM 8140.03 foundational qualification for Work Role 461 (Systems Security Analyst) at Intermediate (or Advanced) proficiency level.
    • Intermediate-level certifications (one required): CCSP, Cloud+, GICSP, GISF, GSEC, or Security+.
    • Advanced-level certifications also accepted (e.g., CISSP, CySA+, etc.).
  • Minimum of 5 years of RMF experience and 1 year of specialized experience with Facility-Related Control Systems (FRCS) performing RMF and cybersecurity engineering tasks (strongly preferred).
  • Demonstrated ability to work independently with minimal supervision.
  • Excellent written and verbal communication skills in English; proven ability to author technical reports, security policies, and procedures and interface effectively with system owners, ISSMs, and other government personnel.
  • Physical capability to perform the duties, including prolonged standing/walking over uneven surfaces, bending, climbing ladders, and lifting IT equipment up to 25 lbs.
  • Maintain certification currency and complete required Continuous Professional Development (CPD) hours annually.
Preferred / Highly Desired
  • Prior experience supporting NAVFAC, DoN, or DoD FRCS environments.
  • Hands-on experience with eMASS, ACAS/Nessus, VRAM, Security Center, STIG Viewer, and Maximo/eProjects.
  • Familiarity with NAVFAC Echelon II RMF Business Rules.