Job Closed
This listing is no longer active.
Security Mailbox Analyst
Location
United States
Posted
75 days ago
Salary
0
Seniority
Mid Level
Job Description
Security Mailbox Analyst
BLN24
Job Title: Security Mailbox Analyst Company: BLN24 About Us: We find strength in teamwork - a better you is a better us BLN24 is an award-winning Management Consulting Firm that supports the U.S. Federal Government in successfully achieving their mission and goals. Our service and solutions delivery start with understanding each client’s end-state, and then seamlessly integrating within each Agency’s organization to improve and enhance strategic and technical operations and deployments. Position Overview: BLN24 is seeking a Security Mailbox Analyst to monitor and triage messages sent to the organization’s security/abuse mailbox (e.g., phishing reports), perform initial analysis, and coordinate rapid response. The role helps contain threats, educates users, and improves detection and response playbooks. The analyst operates within an Agile service delivery model, ensuring 24-hour acknowledgment of inquiries, maintaining knowledge bases, tracking service metrics, and producing monthly performance reports. Key Responsibilities: Mailbox & Inquiry Management - Monitor and manage official security and privacy mailboxes. - Ensure 24-hour acknowledgment of all incoming inquiries. - Triage, categorize, and assign tickets using Agile ticketing workflows. - Track and document inquiry lifecycle through resolution. Workflow & Process Management - Maintain standardized intake, routing, and response procedures. - Coordinate with subject matter experts across privacy, cybersecurity, policy, and training teams. - Escalate high-risk or time-sensitive issues appropriately. - Identify trends in inquiries and recommend process improvements. Knowledge Management - Develop and maintain FAQ repositories and knowledge base articles. - Standardize response templates to ensure consistency and compliance. - Continuously improve documentation to reduce repeat inquiries and manual workload. Reporting & Performance Metrics - Produce monthly reports on: - Acknowledgment timeliness - Response time and resolution metrics - Inquiry volume trends - Stakeholder engagement indicators - Support data-driven improvements aligned with PRISM performance objectives. Compliance & Governance Support - Ensure all communications align with federal mandates including FISMA and HIPAA. - Maintain documentation to support audit readiness. - Protect confidentiality, integrity, and availability (CIA) of sensitive information. Required Qualifications - Bachelor’s degree in Information Systems, Cybersecurity, Business, or related field (or equivalent experience). - 4+ years of experience in help desk, service desk, mailbox management, or workflow coordination within IT, cybersecurity, or federal environments. - Experience working with ticketing systems (e.g., ServiceNow, Jira, Remedy, or similar). - Strong written communication skills suitable for federal stakeholders. - Experience tracking metrics and generating operational reports. - Ability to manage multiple inquiries with competing priorities. - Familiarity with Agile workflow processes. Preferred Qualifications - Experience supporting federal cybersecurity or privacy programs. - Knowledge of FISMA, HIPAA, or federal information security frameworks. - Experience with knowledge management platforms. - Experience supporting enterprise governance or compliance functions. - Understanding of cybersecurity terminology and incident response workflows. What BLN24 brings to the Game: BLN24 benefits are game changing. We like our team to play hard and that means they need to be taken care of — physically, financially, and emotionally. We make sure to keep them in the game by giving them access to generous medical, dental, and vision plans. - You can join one of the fastest growing companies headquartered in the Washington DC Metro Area. We give you the opportunity to work in different sectors, so you have the chance at variety while maintaining stability. - Flexibility at BLN24 allows each individual the opportunity to balance quality work and their personal lives. Depending on projects, we allow remote working opportunities so you can always be in the game no matter where you call home. BLN24 is an Equal Opportunity Employer. We believe people are our strength and understand diverse talents are key to our success. We are an equal opportunity employer and place a high value on diversity and inclusion at our company. We do not discriminate on the basis of any protected attribute, including race, religion, color, national origin, gender, sexual orientation, gender identity, gender expression, age, marital or veteran status, pregnancy or disability, or any other basis protected under applicable law. In accordance with applicable law, we make reasonable accommodations for applicants' and employees' religious practices and beliefs, as well as any mental health or physical disability needs.
Related Guides
Related Categories
Related Job Pages
More Security Analyst Jobs
Cybersecurity Analyst
Anytime MailboxCheers for 10 years! 🔟🎂 Here's to an incredible decade of top-notch virtual mailbox service and customer support 🥂🧡
• Monitor and triage security alerts, logs, and system activity to identify potential threats or suspicious behavior. • Support investigation and response activities during security events and incidents, escalating confirmed or high-risk incidents to the Director of Cybersecurity. • Help operate and maintain endpoint protection and security monitoring platforms. • Assist with the day-to-day operation of security platforms used across the company’s technology environment, including endpoint protection, identity security, vulnerability tracking, and monitoring tools. • Assist with managing identity and device security controls across company systems. • Support secure onboarding and offboarding of users and systems. • Help enforce authentication and access policies across company platforms and cloud services. • Track and prioritize security vulnerabilities identified across applications, infrastructure, and third-party systems, and coordinate remediation efforts with engineering teams. • Support remediation tracking and follow-up to ensure vulnerabilities are addressed within agreed timelines. • Help maintain visibility into the company’s security risk posture across systems and environments. • Support the maintenance and continuous improvement of security monitoring capabilities. • Assist with improving alert visibility, logging coverage, and detection capabilities across the company’s systems. • Help ensure operational readiness of security tools and monitoring platforms. • Support day-to-day security incident response activities, including alert triage, investigation, and initial containment actions in accordance with the company’s Security Incident Response Plan (SIRP). • Assist with the collection and analysis of logs, alerts, and system data during potential security incidents. • Escalate confirmed or high-risk incidents to the Director of Cybersecurity and support coordinated response activities. • Maintain incident documentation, timelines, and evidence records to support investigation, reporting, and post-incident review. • Maintain clear documentation of security processes, configurations, investigations, and operational procedures. • Help ensure evidence and records are maintained to support internal security reviews and operational tracking. • Work closely with engineering, infrastructure, and operations teams to support secure system practices. • Collaborate with internal stakeholders to strengthen security awareness and operational resilience.
Journeyman Information Security Analyst
Chameleon Integrated ServicesWe are a growing information technology company that offers its employees a culture of success, the chance to work on revolutionary federal IT infrastructure, and the opportunity to grow alongside cutting-edge technology that is reshaping the industry. Chameleon Integrated Services has expertise in operations management, quality systems, data operations, and cybersecurity. We secure some of the most sensitive data for the Department of Defense and for other U.S. federal government agencies. We are known for the great care we take with clients and employees, and we believe in promoting from within.
We are a growing information technology company that offers its employees a culture of success, the chance to work on revolutionary federal IT infrastructure, and the opportunity to grow alongside cutting-edge technology that is reshaping the industry. We are seeking forward thinking candidates that have strong experience in operational support and can help take to the next level in a pro-active stance. Chameleon Integrated Services has expertise in operations management, quality systems, data operations and cybersecurity. We secure some of the most sensitive data for the Department of Defense and for other U.S. federal government agencies. We are known for the great care we take with clients and employees, and we believe in promoting from within. We offer a Full Benefits package including: - Competitive Employee Health Insurance options including dental - 100% company paid vision plan - 401K plan with generous company match and no vesting period - 100% company paid life insurance - 100% company paid long and short-term disability insurance - Training allowance - PTO and more The Position: Chameleon Integrated Services is currently looking for a remote, Journeyman Information Security Analyst to support one of our federal clients in a high-visibility federal cybersecurity ad compliance program. Due to federal contract requirements, this position requires U.S. citizenship. Lawful permanent residents (green card holders) and individuals requiring visa sponsorship are not eligible for this role. *This position is contingent upon the successful award of a contract and subsequent funding.* Overview: The Journeyman Information Security Analyst will conduct hands-on NIST SP 800-53 security control assessments in support of federal FISMA and RMF requirements. This role is assessment-heavy and includes discovery, control testing, evidence review, stakeholder interviews, vulnerability analysis, and production of audit-defensible documentation packages. The ideal candidate has direct experience producing SAPs, SSPs, SARs, SCTMs, and POA&Ms in federal enterprise environments. Skills & Abilities: - NIST SP 800-53 security control testing and validation - Development of SAPs, SSPs, SARs, and POA&Ms - Evidence collection and documentation review - Risk identification and findings development - FISMA and RMF compliance processes - FedRAMP and cloud assessment familiarity - Experience with GRC tools such as ServiceNow, Qmulos, Archer, or eMASS - Ability to manage multiple concurrent assessments Responsibilities: - Conduct security control assessments - Review and validate system documentation - Perform risk and vulnerability analysis - Draft and update assessment deliverables - Support documentation package finalization - Coordinate with system owners and stakeholders Education & Experience - 5–8 years of information security or cyber risk management experience - Minimum 3 years of hands-on federal or enterprise security assessment experience - Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, or related field Certs Required: - Security+ CE required - CISSP, CISM, CISA, CAP, CEH, GIAC, or SSCP preferred Clearance: - Public Trust (or ability to obtain) The Location: Remote in the US Due to federal contract requirements, this position requires U.S. citizenship. Lawful permanent residents (green card holders) and individuals requiring visa sponsorship are not eligible for this role. *This position is contingent upon the successful award of a contract and subsequent funding.* “We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status” Texting Privacy Policy - Message type: Informational; you will receive text messages regarding your application and potentially regarding interview scheduling. - No mobile information will be shared with third parties/affiliates for marketing/promotional purposes. - Message frequency will vary depending on the application process.Msg & data rates may apply. - OPT out at any time by texting "Stop".
Intermediate Vulnerability Researcher, AST: Vulnerability Research
GitLabGitLab, founded in 2011 and based in San Francisco, California, maintains a distributed team of professionals that work remotely across multiple continents. GitLab advocates for pr
GitLab is the intelligent orchestration platform for DevSecOps. GitLab enables organizations to increase developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital transformation. More than 50 million registered users and more than 50% of the Fortune 100* trust GitLab to ship better, more secure software faster. The same principles built into our products are reflected in how our team works: we embrace AI as a core productivity multiplier, with all team members expected to incorporate AI into their daily workflows to drive efficiency, innovation, and impact. GitLab is where careers accelerate, innovation flourishes, and every voice is valued. Our high-performance culture is driven by our values and continuous knowledge exchange, enabling our team members to reach their full potential while collaborating with industry leaders to solve complex problems. Co-create the future with us as we build technology that transforms how the world develops software. *Fortune 500® is a registered trademark of Fortune Media IP Limited, used under license. Claim based on GitLab data. Fortune 100 refers to the top 20% ranked companies in the 2025 Fortune 500 list, published in June 2025. Fortune and Fortune Media IP Limited are not affiliated with, and do not endorse products or services of GitLab. An overview of this role As an Intermediate Vulnerability Researcher, AST: Vulnerability Research, you'll help improve how GitLab detects and understands software vulnerabilities across our Application Security Testing offerings. Your work will support stronger detection in Static Application Security Testing (SAST), Secret Detection, and Composition Analysis (SCA), while also contributing to future security products. You will research vulnerabilities and exploitation methods, turn findings into practical improvements, and help GitLab teams and customers get more accurate, useful security results. In this role, you'll work at the intersection of research, product quality, and security engineering within GitLab's Engineering organization. You will help shape how detection capabilities evolve over time by creating proof of concepts, evaluating product output, and applying root cause analysis to improve efficacy. This is a strong fit if you're motivated by practical security research and want your work to influence both GitLab's platform and the people who rely on it. What you'll do - Carry out vulnerability research and develop proof of concepts that inform GitLab security products and internal security efforts. - Curate advisory databases for dependency scanning by reviewing, editing, and adding advisories while reducing repetitive manual work through automation. - Build benchmarks that test the efficacy of scanning and detection products across supported security categories. - Measure product efficacy over time and use findings to improve the quality and reliability of detection results. - Assess security product output and perform root cause analysis to identify gaps, false positives, false negatives, and opportunities for improvement. - Write detailed technical reports that document research findings, methods, and recommendations clearly. - Respond to internal and external questions related to vulnerabilities, advisories, and detection behavior. - Collaborate with Security, Development, and Product teams to apply research insights to GitLab's integrated security capabilities. What you'll bring - Experience developing or improving vulnerability detection capabilities in web security or a closely related area. - Knowledge of the vulnerability management process and how research connects to product outcomes. - Understanding of software composition analysis and software supply chain ecosystems. - Experience with source code analysis, static application security testing, dynamic application security testing, and benchmarking the efficacy of security tools. - Knowledge of compilers and compiler design as it relates to code analysis and detection techniques. - Experience building automated web security testing or analysis tools. - Ability to contribute in a product development environment and work effectively with cross-functional partners. - Interest in security and open source, with openness to candidates who bring transferable experience from adjacent research, application security, or detection-focused roles. About the team The Vulnerability Research team at GitLab works closely with GitLab Security, Development, and Product to build, tune, and improve the efficacy of the security capabilities integrated into GitLab. We focus on practical research that strengthens detection quality, supports advisory content, and helps translate emerging vulnerability knowledge into product improvements across a distributed, asynchronous environment. The base salary range for this role’s listed level is currently for residents of the United States only. This range is intended to reflect the role's base salary rate in locations throughout the US. Grade level and salary ranges are determined through interviews and a review of education, experience, knowledge, skills, abilities of the applicant, equity with other team members, alignment with market data, and geographic location. The base salary range does not include any bonuses, equity, or benefits. See more information on our benefits and equity. Sales roles are also eligible for incentive pay targeted at up to 100% of the offered base salary. United States Salary Range $98,000—$210,000 USD How GitLab will support you - Benefits to support your health, finances, and well-being - Flexible Paid Time Off - Team Member Resource Groups - Equity Compensation & Employee Stock Purchase Plan - Growth and Development Fund - Parental leave - Home office support Please note that we welcome interest from candidates with varying levels of experience; many successful candidates do not meet every single requirement. Additionally, studies have shown that people from underrepresented groups are less likely to apply to a job unless they meet every single qualification. If you're excited about this role, please apply and allow our recruiters to assess your application. Country Hiring Guidelines: GitLab hires new team members in countries around the world. All of our roles are remote, however some roles may carry specific location-based eligibility requirements. Our Talent Acquisition team can help answer any questions about location after starting the recruiting process. Privacy Policy: Please review our Recruitment Privacy Policy. Your privacy is important to us. GitLab is proud to be an equal opportunity workplace and is an affirmative action employer. GitLab’s policies and practices relating to recruitment, employment, career development and advancement, promotion, and retirement are based solely on merit, regardless of race, color, religion, ancestry, sex (including pregnancy, lactation, sexual orientation, gender identity, or gender expression), national origin, age, citizenship, marital status, mental or physical disability, genetic information (including family medical history), discharge status from the military, protected veteran status (which includes disabled veterans, recently separated veterans, active duty wartime or campaign badge veterans, and Armed Forces service medal veterans), or any other basis protected by law. GitLab will not tolerate discrimination or harassment based on any of these characteristics. See also GitLab’s EEO Policy and EEO is the Law. If you have a disability or special need that requires accommodation, please let us know during the recruiting process.
• Avint is hiring a Journeyman Information Security Analyst to support and protect critical federal information systems. • In this role, you’ll be part of a high-performing team responsible for system security analysis, vulnerability management, and incident response within a Federal Information Systems Security environment. • You’ll work at the intersection of security operations, risk management, and compliance, helping ensure systems remain secure, resilient, and aligned with federal cybersecurity requirements.




