Intermediate Cybersecurity Analyst
Job Description
The Intermediate II System Security and Information Assurance Analyst supports cybersecurity and assurance activities for National Airspace System (NAS) systems and subsystems. The role includes vulnerability assessment, penetration testing, threat analysis, and information assurance, with the possibility of work in both unclassified and classified environments.
Key Responsibilities
- Support vulnerability assessments and penetration testing by handling planning, execution, analysis, and documentation of results.
- Assist with the design and execution of cybersecurity exercises and penetration testing scenarios, including creation of exercise timelines, event injections, and anticipated response activities.
- Apply cybersecurity and penetration testing tools to identify vulnerabilities, evaluate system security, and support threat analysis.
- Develop and use Python scripts and other automation tools to support cybersecurity testing, vulnerability analysis, data processing, threat analysis, and repeatable security tasks.
- Analyze actual or attempted cybersecurity incursions to determine likely sources, methods, impacts, and associated risks.
- Identify potential information security threats and recommend mitigation measures and corrective actions.
- Analyze and prioritize security enhancements, remediation, and system security upgrades based on identified vulnerabilities and threats.
- Support development, implementation, and maintenance of security policies, procedures, and controls for NAS systems and subsystems.
- Help protect sensitive, proprietary, and Government information and information systems from unauthorized access, disclosure, modification, or loss.
- Support the development, maintenance, and use of threat modeling databases, cybersecurity tools, and related security artifacts.
- Participate in cybersecurity working groups, technical reviews, assessments, and other security-related activities as assigned.
- Prepare and maintain technical documentation for vulnerability assessments, penetration testing, threat analysis, mitigation recommendations, and cybersecurity exercises.
Required Qualifications
- Bachelor's Degree in Science and/or Engineering.
- Minimum 3 years performing vulnerability assessments, penetration testing, cybersecurity analysis, information assurance, or related cybersecurity activities.
- Working knowledge of cybersecurity vulnerabilities, threats, attack methods, and mitigation techniques.
- Experience with Python programming/scripting, including the ability to develop or modify scripts that support cybersecurity testing, automation, data analysis, or related technical activities.
- Ability to analyze technical information and clearly document findings, risks, and recommended corrective actions.
Preferred Qualifications
- Experience using vulnerability assessment, penetration testing, or offensive security tools such as Metasploit, Nmap, Nessus, Kali Linux, Cobalt Strike, Core Impact, or similar tools.
- Experience using Python to automate cybersecurity tasks, interact with security tools/APIs, analyze security-related data, or develop testing utilities.
- Experience with code analysis, malware analysis, incident analysis, and/or data breach investigations.
- Experience developing or supporting cybersecurity exercise scenarios, timelines, and detailed event injection plans.
- Knowledge of cybersecurity threat modeling methodologies, databases, and tools.
- Experience supporting cybersecurity activities within Government, aviation, NAS, or other mission-critical environments.
Technologies
- Python
- Metasploit
- Nmap
- Nessus
- Kali Linux
- Cobalt Strike
- Core Impact
Benefits
- Medical
- Dental
- Matched 401k contributions
- Life/Disability
- Tuition Reimbursement
- PTO/federal holidays
Location and Work Setting
Egg Harbor Township, NJ (onsite).
Company Values
Quality, Consistency, Value, Mission, and our Employees