Skip to main content
Tallo logoTallo logo

Find Jobs

Find Jobs Near You – Available Work in Your Location

Skip to job details

Back to Results

Apply for this opportunity

To apply for this job, you'll continue to an external website or email application.

Procession Systems

4532 Cybersecurity Analyst

Job Description

Job Requirements Mclean Top Secret/SCI Polygraph Unspecified Career Level not specified Salary not specified Join Premium to unlock estimated salaries Job Description
OVERVIEW
We are seeking a Cybersecurity Analyst who will support the security and maintenance of information systems throughout the RMF lifecycle; from preparation through decommission in alignment with DoD/DoW cybersecurity policies. This role focuses on executing RMF tasks while actively engaging with ISSMs/SCAs, and client PMs/ISSOs teams to ensure security activities lead to meaningful outcomes.
GENERAL DUTIES
Ensure ISSOs remain focused on risk reduction priorities, not just administrative tasks. Help stakeholders understand why certain vulnerabilities matter and how remediation improves the system's overall security posture. Provide technical input and continuous monitoring support that contributes to measurable improvements in compliance and audit readiness. Evaluates cybersecurity impacts of system changes, supports control implementation, and helps maintain accurate, actionable security documentation. Document vulnerabilities, misconfigurations, and issues clearly and thoroughly to support remediation planning and stakeholder understanding. Use XACTA to manage risk assessments, security control evidence, POA&M tracking, and compliance status. Monitor and track POA&M items, ensuring vulnerabilities identified in scans or audits are documented, mitigated, and closed appropriately with a focus on reducing repeat findings. Collaborate with ISSMs, ISSOs, SCAs, PMs, and other partners by providing guidance, clarifications, and context that help them make informed decisions. Represent cybersecurity standards and expectations in all engagements, reinforcing mission alignment and transparency. Sound knowledge of
RMF, NIST
800series, FIPS, SA&A processes, continuous monitoring, POA&M policies, and vulnerability/patch management. Experience using Cyber Risk Management Platforms (e.g., XACTA) for workflow automation, compliance tracking, and RMF execution. Strong interpersonal and communication skills to engage stakeholders and explain technical issues in a clear, mission-focused way. Hands-on experience interpreting vulnerability and compliance reports from XACTA, STIGs, ACAS, Prisma, Splunk, Trellix (HBSS), or similar tools. Solid analytical and problem solving skills to identify root causes and recommend practical remediation steps. Some experience leading or contributing to security initiatives that require coordination across multiple teams. Ability to collaborate effectively in mixed technical environments and contribute to improving the overall security maturity of supported programs.
REQUIRED QUALIFICATIONS
Obtain an IAT-III or Maintain IAT Level II Certification in compliance with DoD 8570.01-M and DoD Directive 8140 Cyberspace Workforce Management. CompTIA Cybersecurity Analyst (SySA+) CompTIA Security EC-Council Certified Network Defense CND v3 CCNA Security Global Industrial Cyber Security Professional (GICSP) GIAC Security Essentials (GSEC) Systems Security Certified Practitioner (SSCP) Possess a Bachelor's degree 12 years' experience in addition to education.
CLEARANCE
Active Top Secret clearance minimum required group id: 90943786 Apply now

Career Insights for Vulnerability Analyst / Penetration Tester

See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.

Scorecard

Based on Virginia data

Review key factors to help you decide if this role fits your goals. How is this calculated?

Were these scores useful?

What they do

A Vulnerability Analyst or Penetration Tester probes for and exploits security vulnerabilities in web-based applications, networks and systems. Penetration Tests are designed to achieve a specific, attacker-simulated goal and should be requested by customers who are already at their desired security posture. A typical goal could be to access the contents of the prized customer database on the internal network, or to modify a record in an HR system. Vulnerability Assessments are designed to yield a prioritized list of vulnerabilities and are generally for clients who already understand they are not where they want to be in terms of security. The customer already knows they have issues and simply need help identifying and prioritizing them.

$121,440 / year median in Virginia

+4% projected growth

Explore Career