Skip to main content
Tallo logoTallo logo

Find Jobs

Find Jobs Near You – Available Work in Your Location

Skip to job details

Back to Results

Apply for this opportunity

To apply for this job, you'll continue to an external website or email application.

Dice.com

Cyber Security Analyst II

Career Insights for Cyber Security Analyst

See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.

Scorecard

Based on Maryland data

Review key factors to help you decide if this role fits your goals. How is this calculated?

Were these scores useful?

What they do

A Cyber Security Analyst works on monitoring, controlling, and maintaining systems that protect the security of large databases, including databases with customer information and patient files. Analyzes the examination of client computer systems, identification of weak points in security, development and implementation of new systems, and monitoring and response to security issues.

$145,455 / year median in Maryland

+2% projected growth

Explore Career

Job Description

Cyber Security Analyst II Skills
  • Screening
  • Aviation
  • Manufacturing
  • Research and Development
  • Network
  • Art
  • Security Operations
  • PIM
  • Regulatory Compliance
  • DLP
  • Identity Management
  • Patch Management
  • Reporting
  • Tier 2
  • Auditing
  • System Security
  • SSP
  • Security Awareness
  • Training
  • Mentorship
  • Technical Direction
  • Information Systems
  • Computer Science
  • Cyber Security
  • Management
  • Policies and Procedures
  • Mapping
  • Communication
  • GNU Compiler Collection
  • Splunk
  • Onboarding
  • ITAR
  • RP• Microsoft• Microsoft Office• SaaS•
NIST SP 800
Series
  • Vulnerability Management
  • Nessus
  • SIEM
  • Incident Management
  • Screening
  • Aviation
  • Manufacturing
  • Research and Development
  • Network
  • Art
  • Security Operations
  • PIM
  • Regulatory Compliance
  • DLP
  • Identity Management
  • Patch Management
  • Reporting
  • Tier 2
  • Auditing
  • System Security
  • SSP
  • Security Awareness
  • Training
  • Mentorship
  • Technical Direction
  • Information Systems
  • Computer Science
  • Cyber Security
  • Management
  • Policies and Procedures
  • Mapping
  • Communication
  • GNU Compiler Collection
  • Splunk
  • Onboarding
  • ITAR
  • RP• Microsoft• Microsoft Office• SaaS•
NIST SP 800
Series
  • Vulnerability Management
  • Nessus
  • SIEM
  • Incident Management
  • SummaryCompany DescriptionEvery minute of every day, Smiths Detection's threat detection and security screening technology helps to protect people and infrastructure, making the world a safer place.
Smiths Detection is a global leader in the development, manufacture and management of security and detection solutions designed to make the world a safer place. Our technology provides threat detection and screening solutions for customers in our key markets: aviation, ports and borders, defense, and urban security.

Our expertise spans 21 global offices, seven manufacturing sites and five R D centers, with a global network of 3,500 dedicated colleagues contributing towards over 40 years at the frontline of advances in safety and security.

This results in careers built on variety and the opportunity to work on a range of state-of-the-art solutions, w you can develop your knowledge and experience every day.

Job DescriptionJob ObjectiveThe Cyber Security Analyst II is the senior technical practitioner on a small, high-impact security team supporting a Defense Industrial Base (DIB) environment handling controlled data. This role is the hands-on owner of our Microsoft security stack and the primary author of the policies, procedures, and evidence artifacts required to sustain our CMMC Level 2 posture under
NIST SP 800-171.
The analyst works directly with the Information & Cyber Security Manager to mature the program, own cross-functional processes, and mentor a junior analyst.

ResponsibilitiesEssential functions
  • job duties to include but are not limited to; other duties as assigned.
Microsoft Security Operations:
Shared ownership of day-to-day administration and tuning of Microsoft Defender for Endpoint, Defender for Office 365, Defender for Cloud Apps, Entra ID (Conditional Access, PIM, Identity Protection), Intune (compliance policies, configuration profiles, update rings, app protection), and Purview (DLP, Insider Risk, Information Protection).
    Policy and Procedure Authorship:
    Draft, maintain, and operationalize written policies and procedures mapped to
    NIST SP 800-171
    Rev. 2 and CMMC Level 2 practices. Translate control language into runbooks, checklists, and evidence artifacts that an assessor can verify.
      Cross-Functional Process Ownership:
      Partner with HR, IT, and Facility Security to develop and improve the end-to-end joiner/mover/leaver process, quarterly access reviews, privileged access management, and onboarding/offboarding of authorized users.
        Vulnerability and Patch Management:
        Run the recurring vulnerability management cycle (Defender Vulnerability Management, Nessus, or equivalent): triage, prioritize, track SLAs, and report on remediation against a defined framework.
          Incident Response:
          Act as tier-2 responder for Defender and Entra alerts; investigate, contain, and document incidents; lead post-incident reviews; maintain and exercise the incident response plan.
            Evidence and Audit Support:
            Collect and maintain evidence for internal self-assessments and customer audits. Maintain the System Security Plan (SSP) and POA&M alongside the Security Manager.
              Security Awareness and Training:
              and measure the monthly phishing simulation program and deliver targeted training for elevated-risk roles.
                Mentoring:
                Provide technical direction and review for the Cyber Security Analyst I and serve as the escalation point for their work.
                  Other Duties:
                  Other duties as assigned.
                  QualificationsEducation RequirementsRequired Education and Experience:
                  • Bachelor's degree in Cybersecurity, Information Systems, Computer Science, or related field OR equivalent combination of certifications and hands-on experience.
                  Preferred Education and Experience:
                  Years of Experience:
                  • 3-5 years of hands-on Cyber security experience, at least 2 of which include direct administration of Microsoft 365 / Entra ID / Intune / Defender in a production environment.
                  • Demonstrable experience authoring security policies and procedures.
                  • Working knowledge of
                  NIST SP 800-171
                  Rev. 2 and/or CMMC Level 2; understands control mapping, procedure development, and evidence production.
                  Additional Qualifications:
                  • U.S. Citizenship required.
                  • Strong written communication
                  • will produce documents read by executives, auditors, and government customers.
                  • Prior experience in a DIB / defense contractor / cleared facility environment.
                  • Experience with Microsoft GCC C High tenants.
                  • Experience with a SIEM (Sentinel, Splunk, Google SecOps/Chronicle, or similar) including log source onboarding and rule tuning.
                  • Familiarity with DFARS , ITAR, and the SPRS scoring process.
                  • Microsoft certifications:
                  SC-200, SC-300, SC-400, MS-500, AZ-500.
                  • CMMC ed Practitioner (RP) or Certified CMMC Professional (CCP).
                  Technical Knowledge, Skills and Abilities:
                  • Microsoft Defender suite (Endpoint, Office 365, Cloud Apps)
                  • Entra ID
                  • Intune
                  • Purview
                  NIST SP 800-171
                  Rev. 2
                  • CMMC Level 2
                  • vulnerability management tools (Nessus or equivalent)
                  • SIEM platforms, incident responseAdditional InformationWe offer.
                  ..Join us and we'll help build your career, with excellent training and opportunities for career growth across the business, both locally and globally. You'll experience an inclusive environment, with strong leadership and a focus on safety and wellbeing. You'll also have the flexibility to choose from a wide range of benefits to suit your lifestyle, offering... Visit the Employer site for more details