1

Weekend Vulnerability Analyst Jobs in Alabama (NOW HIRING)

Senior ISSO / RMF Cyber Analyst (AvMC)

Huntsville, AL · On-site

$98K - $127K/yr

Vulnerability audits and security configuration checks. * Hardware and software assessments ... Complete analysis from monitoring tools such as Tenable Nessus ACAS, Trellix ePO / legacy HBSS, and ...

New

Cyber Security Manager

Huntsville, AL · Hybrid

$109K - $147K/yr

Manage vulnerability scanning and compliance * Analyze scan results, oversee IAVM reporting, and drive remediation through closure * Conduct and submit system-level self-assessments and risk ...

Cyber Security Manager

Huntsville, AL · On-site

$109K - $147K/yr

Manage vulnerability scanning and compliance * Analyze scan results, oversee IAVM reporting, and drive remediation through closure * Conduct and submit system-level self-assessments and risk ...

Perform system and network vulnerability scanning and analysis using automated and manual techniques with tools such as Nessus, ACAS, DB Protect, WebInspect, NMAP, and DISA STIGs/STIG Viewer.

Oversee cybersecurity assessments, vulnerability analyses, and penetration testing to identify and mitigate risks to critical infrastructure. Compliance & Standards: Ensure adherence to DoD RMF ...

Description Gray Analytics is seeking a DevSecOps Engineer to work as a member of our CIPHER ... Perform regular security audits and vulnerability assessments. Requirements * 2+ years of relevant ...

Showing results 41-60

Weekend Vulnerability Analyst information

What are the key skills and qualifications needed to thrive as a Weekend Vulnerability Analyst?

To thrive as a Weekend Vulnerability Analyst, you need strong knowledge of cybersecurity principles, vulnerability assessment methodologies, and a background in IT or computer science, often supported by certifications like CompTIA Security+ or CEH. Familiarity with tools such as Nessus, Qualys, or OpenVAS, as well as experience with SIEM systems, is typically required. Analytical thinking, attention to detail, and effective communication are standout soft skills for this role. These skills and qualities are crucial for accurately identifying, reporting, and helping to remediate security vulnerabilities, especially during off-hours when quick, independent decision-making is essential.

What are the typical challenges faced by a Weekend Vulnerability Analyst, and how can they be addressed?

Weekend Vulnerability Analysts often face the challenge of limited real-time collaboration with other team members and stakeholders, as most staff work standard weekday hours. This can make incident escalation and remediation coordination more complex. To address these challenges, strong documentation skills, clear communication protocols, and proactive planning are essential. Additionally, weekend analysts often have more autonomy, which provides opportunities to take initiative and demonstrate problem-solving abilities, potentially leading to faster career growth.

What is a Weekend Vulnerability Analyst?

A Weekend Vulnerability Analyst is a cybersecurity professional who specializes in identifying, assessing, and reporting security vulnerabilities within an organization's systems and networks, specifically during weekend hours. Their primary responsibilities include conducting vulnerability scans, monitoring for new threats, analyzing security alerts, and collaborating with IT teams to remediate discovered weaknesses. These analysts play a crucial role in ensuring continuous protection against cyber threats, even outside the standard workweek. Their work helps organizations maintain a strong security posture and meet compliance requirements.

What is the difference between Weekend Vulnerability Analyst vs Cybersecurity Technician?

AspectWeekend Vulnerability AnalystCybersecurity Technician
CertificationsCompTIA Security+, CEH (Certified Ethical Hacker)CompTIA Security+, Network+
Work EnvironmentPart-time, weekend-focused security assessmentsFull-time, technical support and security maintenance
Industry UsageIT security firms, corporate security teamsIT departments, managed service providers
Job FocusIdentifying vulnerabilities, security testingImplementing security measures, troubleshooting

The Weekend Vulnerability Analyst primarily focuses on identifying security weaknesses during weekends, often performing vulnerability scans and assessments. In contrast, a Cybersecurity Technician handles broader security tasks, including implementing security protocols and troubleshooting issues. While both roles require security certifications and work within the IT security industry, their responsibilities and work schedules differ significantly.

What are the most commonly searched types of Vulnerability Analyst jobs in Alabama? The most popular types of Vulnerability Analyst jobs in Alabama are:
What are popular job titles related to Weekend Vulnerability Analyst jobs in Alabama? For Weekend Vulnerability Analyst jobs in Alabama, the most frequently searched job titles are:
What job categories do people searching Weekend Vulnerability Analyst jobs in Alabama look for? The top searched job categories for Weekend Vulnerability Analyst jobs in Alabama are:
What cities in Alabama are hiring for Weekend Vulnerability Analyst jobs? Cities in Alabama with the most Weekend Vulnerability Analyst job openings:

Senior ISSO / RMF Cyber Analyst (AvMC)

COLSA Corporation

Huntsville, AL

$93K - $120K/yr

Full-time

Posted 3 days ago

New


Job description

General Summary:
COLSA Corporation is seeking a Risk Management Framework (RMF) Cyber Analyst to serve as an Information Systems Security Officer (ISSO) in support of a US Army contract, Aviation and Missile Center. The selected candidate will support system records for Authorization to Operate (ATO) approval on multiple Information Systems, including Enclaves and Major Applications for both classified and unclassified networks.  The candidate will provide support for system monitoring and analysis of detected cyber incidents and provide corrective action recommendations.

Principal Duties and Responsibilities (*Essential Functions):

The ISSO/RMF Cyber Analyst will be responsible for the authorization and compliance management of authorized computing enclaves. Additional duties include but are not limited to: 

  • Directly responsible for analyzing and implementing Cybersecurity (IA) requirements into RMF A&A accreditation packages that meet DoD and Army accreditation standards classified and unclassified enclaves. 
  • Develop and implement a Security-Focused Configuration Management Plan that includes, assisting the Information System Owner or Information System Security Manager in completing Information Security Continuous Monitoring responsibilities.
  • Implement, assess and monitor security controls on systems and within eMASS.  Conduct risk assessments to include: 
    • Configuration change security impact analysis.
    • Vulnerability audits and security configuration checks.
    • Hardware and software assessments. 
  • Ensure the implementation of vendor-supplied security software packages, performance of diagnostics for security problems, and assist with the identification/mitigation of security risks.
  • Monitor DISA Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRGs) by using tools similar to STIG Viewer and Security Content Automation Protocol (SCAP). 
  • Complete analysis from monitoring tools such as Tenable Nessus ACAS, Trellix ePO / legacy HBSS, and other IA-specific software. 
  • Create Cyber Security training materials and mentor team members when applicable. 
  • Continuously monitor and update artifacts in eMASS such as System Security Plan (SSP), IS Security Architecture, Hardware/Software list, and POA&Ms. 
  • Perform the activities necessary to obtain security accreditation of solutions/applications as it relates to system administration. 
  • Prepare and deliver the technical data needed for the submissions of accreditation packages in support of RMF. 
  • Provide data and information as well as make recommendations regarding the overall system security as it relates to system administration and system architecture. 
  • Work with System Administrators to identify and provide information regarding resolution of vulnerabilities, and computer incidents. 
  • Identify where systems/networks deviate from acceptable configurations, enclave policy, or local policy.
  • Provide compliance recommendations for networks, workstations, servers, and IT assets. 
  • Other duties as assigned.

At COLSA, people are our most valuable resource and centered at our core value. We invite you to unite your talents with opportunity and be a part of our “Family of Professionals!” Learn about our employee-centric culture and benefits here: https://www.colsa.com/culture_benefits  


Required Skills
Required Experience

Required Qualifications

  • Bachelor’s Degree in related field, or equivalent experience. 
  • Minimum of 10 years of work-related experience. 
  • CompTIA Security+ CE or another DoD 8570 Level II/III certification. 
  • Solid understanding and experience with Risk Management Framework (RMF). 
  • Solid understanding of creating Assessment & Authorization (A&A) accreditation packages. 
  • Very knowledgeable of Security Technical Implementation Guides (STIGs) and Security Requirements Guides (SRG). 
  • Experience working with the security team and system administrators to identify, fix, and provide information regarding resolving vulnerabilities and computer incidents. 
  • Experience using eMASS to create and update accreditation package records.
  • Ability to clearly present and communicate technical approaches and findings either verbally or in writing.
  • US Secret Clearance; US Citizenship required

Preferred Qualifications

  • RMF and cyber experience on U.S. Army systems.

Applicant selected will be subject to a government security investigation and must meet eligibility requirements for access to classified information. COLSA Corporation is an Equal Opportunity Employer, Minorities/Females/Veterans/Disabled. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, or national origin.