1

Security Awareness Training Jobs in Tennessee (NOW HIRING)

... security awareness training, user role validation, and account recertification in accordance with policy. • Act as liaison with Authorizing Officials (AOs), Control Assessors (CAs), and NETCOM to ...

Security Awareness & Culture * Design and lead the company-wide security awareness and phishing simulation program partnering with training team, across all sites. * Partner with HR, Compliance, and ...

Sr. GRC Analyst

Knoxville, TN · On-site

$95K - $105K/yr

Execute and maintain a comprehensive, year-round Security Awareness Training (SAT) program that meets PCI DSS requirements while driving actual behavioral change. * Phishing Simulations: Execute ...

Sr. GRC Analyst

Nashville, TN · On-site

$95K - $105K/yr

Execute and maintain a comprehensive, year-round Security Awareness Training (SAT) program that meets PCI DSS requirements while driving actual behavioral change. * Phishing Simulations: Execute ...

Lead the College's information security program, including development and delivery of cybersecurity awareness training and policy education. * Collaborate with departments including Internal Audit ...

Security Officer

Nashville, TN · On-site

$21.50/hr

Unarmed Security Officer, pay starting at $21.50 an hour Who we are: We love what we do and what we ... Plan, deliver and facilitate regular staff awareness training * Be fully conversant of company ...

next page

Showing results 1-20

Security Awareness Training information

See Tennessee salary details

$10

$16

$20

How much do security awareness training jobs pay per hour?

As of Aug 28, 2026, the average hourly pay for security awareness training in Tennessee is $16.10, according to ZipRecruiter salary data. Most workers in this role earn between $13.51 and $19.18 per hour, depending on experience, location, and employer.

What is security awareness training?

A Security Awareness Training job involves educating employees on best practices for recognizing, preventing, and responding to cybersecurity threats. Professionals in this role develop training programs, create engaging materials, and conduct workshops to enhance an organization's security culture. Their goal is to reduce risks such as phishing attacks, data breaches, and social engineering tactics. They also assess training effectiveness through simulations and tests to identify areas for improvement.

What are the key skills and qualifications needed for security awareness training?

To excel in Security Awareness Training, you need a solid understanding of cybersecurity principles, risk management, and instructional design, typically supported by a degree in information security or a related field. Familiarity with learning management systems (LMS), phishing simulation platforms, and industry certifications such as CISSP or CISM is highly beneficial. Strong communication, presentation skills, and the ability to engage diverse audiences set successful trainers apart. These competencies ensure employees are effectively educated on security best practices, helping organizations reduce risk and maintain a secure work environment.

What are some typical challenges faced by security awareness training professionals?

Security Awareness Training professionals often encounter challenges in making technical topics accessible and engaging for employees with varying levels of security knowledge. They must continuously adapt training materials to address new threats, regulatory changes, and evolving organizational needs, keeping content both current and relevant. Working across departments to tailor messages and measure the effectiveness of training programs is common, requiring both collaboration and creativity. These challenges make the role dynamic and impactful, providing constant opportunities for learning and professional growth.

What does security awareness training do?

Security awareness training prepares employees to recognize and respond to cybersecurity threats such as phishing, malware, and social engineering. It helps organizations reduce security risks by educating staff on best practices, policies, and tools to protect sensitive information and systems.

What are the most commonly searched types of Security Awareness Training jobs in Tennessee?

The most popular types of Security Awareness Training jobs in Tennessee are:

What are popular job titles related to Security Awareness Training jobs in Tennessee?

For Security Awareness Training jobs in Tennessee, the most frequently searched job titles are:

Infographic showing various Security Awareness Training job openings in Tennessee as of August 2026, with employment types broken down into 1% As Needed, 85% Full Time, 13% Part Time, and 1% Contract. Highlights an 89% Physical, 1% Hybrid, and 10% Remote job distribution, with an average salary of $33,492 per year, or $16.1 per hour.

SOC/Threat Analyst

Kingsport, TN • On-site

Marathon TS
IT Services • 51 - 200 employees

Full-time

Re-posted yesterday


Job description

Job Summary:
Marathon TS is hiring for a Local Defender (ISSO/SOC/Threat Analyst) in Kingsport, TN. The role involves ensuring compliance with security control baselines and managing RMF-related documentation, while also conducting security assessments and supporting incident response activities.
Responsibilities:
• Serve as the ISSO in support of the ISO for assigned systems, ensuring full compliance with RMF, DoDI 8510.01, and NIST SP 800-53 security control baselines.
• Manage and maintain all RMF-related documentation including System Security Plans (SSPs), Security Assessment Reports (SARs), Risk Assessment Reports (RARs), and Plan of Action and Milestones (POA&Ms).
• Conduct security control assessments and facilitate ongoing authorization (ATO/ATC) activities.
• Work directly with system owners, administrators, and the Government cybersecurity team to ensure all security controls are properly implemented and documented.
• Coordinate and support all phases of the RMF lifecycle from categorization to continuous monitoring.
• Lead vulnerability and compliance assessments using automated tools (e.g., ACAS, STIG Viewer) and ensure all findings are remediated or tracked via POA&Ms.
• Participate in Configuration Control Boards (CCBs) and validate that system changes do not negatively impact security controls or the authorization boundary.
• Track and report on system compliance metrics, ensuring timely updates to APMS and eMASS and supporting audit readiness activities.
• Develop and deliver security awareness training, user role validation, and account recertification in accordance with policy.
• Act as liaison with Authorizing Officials (AOs), Control Assessors (CAs), and NETCOM to facilitate ATO packages and compliance reviews.
• Monitor and analyze security events from SIEM platforms, firewalls, IDS/IPS, and EDR tools to detect threats and abnormal activity.
• Support incident response activities and coordinate with local defender to assess impact, containment, and recovery actions.
• Document all security incidents in alignment with incident handling procedures and provide after-action reports for leadership.
• Ensure that incident findings are mapped back to RMF controls, and that system documentation is updated accordingly.
• Monitor Cyber Tasking Orders (CTOs), security bulletins, CVEs, and threat intelligence feeds for relevance to the operational environment.
• Analyze potential threat vectors and adversary TTPs using frameworks such as MITRE Telecommunication&CK and translate findings into actionable security enhancements.
• Collaborate with stakeholders to recommend technical and policy-based countermeasures aligned with organizational risk tolerance and mission impact.
• Prepare detailed risk assessment reports, compliance dashboards, and security briefings for senior leadership and stakeholders.
• Submit timely updates and artifacts to eMASS and participate in regular cybersecurity status meetings.
• Provide clear, data-driven recommendations for improving system security postures and addressing identified risks.
• Coordinate with mission owners and developers to implement security in system development lifecycles (SDLC).
• Maintain awareness and proper configuration of continuous monitoring tools including SIEMs, vulnerability scanners, and audit logging tools.
• Ensure tools and scripts used for compliance monitoring (e.g., RMF assessments, ACAS scans) are operating effectively and producing accurate outputs.
• Collaborate with system administrators to remediate security findings and improve hardening based on STIGs and best practices.
Qualifications:
Required:
• Bachelor's degree in Cybersecurity, Computer Science, Information Assurance, or a related field (or equivalent experience). Minimum of 3 related certifications may be used in place of related academic field.
• Minimum of 10 plus years of work related experience to include 2+ years of direct ISSO or cybersecurity compliance experience, preferably within a DoD or Federal environment.
• CompTIA Security+, CISSP, or equivalent DoD 8570 IAT Level II/III certification.
• Active DoD Secret Security Clearance with the ability to obtain Top Secret.
• Strong working knowledge of RMF, NIST SP 800-53, DoDI 8510.01, DoDI 8500.01, CNSSI 1253, and associated security control families.
• Familiarity with vulnerability management tools such as ACAS, STIG Viewer, and SCAP Compliance Checker.
• Familiarity with DRAGOS, Corelight, Splunk, Snort.
• Experience managing cybersecurity artifacts within eMASS or other compliance platforms.
• Understanding of NETCOM directives and cybersecurity service provider (CSSP) coordination.
Preferred:
• Experience supporting Authority to Operate (ATO) processes, both initial and continuous monitoring.
• Strong analytical skills for evaluating control effectiveness, incident impact, and system vulnerabilities.
• Proficiency in security documentation, audit preparation, and stakeholder communication.
• Familiarity with scripting (e.g., PowerShell, Python) for automating compliance checks or log analysis.
• Demonstrated ability to balance RMF compliance with operational mission support.
• Previous experience with Dragos OT Sensor Equipment Preferred.
• CAP (Certified Authorization Professional), CISM, GSNA, or RMF-focused GIAC certifications.
Company:
Marathon TS provides a full range of consulting & manpower services for clients that needs support from skilled and experienced individuals. Founded in 2009, the company is headquartered in Sterling, USA, with a team of 51-200 employees. The company is currently Growth Stage.

Marathon TS logo

About Marathon TS

Sourced by ZipRecruiter

Marathon TS provides a full range of professional services for clients that require support from professionals with specialized skills and experience in a specific technical area or subject matter. Marathon TS also provides IT solutions, including strategy, operations, transformation and mission support.

Industry

It services

Company size

51 - 200 Employees

Headquarters location

Sterling, VA, US

Year founded

2009

Social media