Job Closed

This listing is no longer active.

Cherokee Federal logo
Cherokee Federal

Building. Solving. Serving.

Cyber Security Analyst

Security AnalystSecurity AnalystOtherRemoteLeadTeam 5,001-10,000Since 1969H1B No SponsorCompany SiteLinkedIn

Location

United States

Posted

125 days ago

Salary

$135K - $151K / year

Seniority

Lead

Bachelor Degree10 yrs expEnglishSDLCTableau

Job Description

Cyber Security Analyst

Cherokee Federal

• Provide support to the MARAD Information Assurance Program for operations, business and administrative in support of the System Authorization Process and deliverables as defined in this document. • Direct involvement with MARAD Program Office and the Information System Security Manager (ISSM) on cybersecurity and authority to operate (ATO) matters related to information systems supporting the MARAD CIO. • Manage MARAD’s Information System’s core documentation, in accordance with each phase of the system engineering process / System Development Life Cycle (SDLC) with standardized templates, baseline management with supporting checklists and technical guides. • Support creation/update of FIPS 199 Security Categorization document. • Support creation/update security control selection listing (include justification for applicable tailor and or risk acceptance). • Support creation/update System Security Plan (SSP); ensure discovered and identified system components, control implementation status are addressed. • Assist in security incident response, risk mitigation, and compliance reporting. • Performs other job-related duties as assigned.

Job Requirements

  • 10+ years of experience in cybersecurity, with expertise in maritime/vessel cybersecurity, IT/OT security, and federal cybersecurity policies.
  • Strong knowledge of NIST RMF, NIST Cybersecurity Framework (CSF), FISMA, and Navy or U.S. Coast Guard Maritime Organization cybersecurity requirements.
  • Experience with Continuous Diagnostics and Mitigation (CDM), Information Security Continuous Monitoring (ISCM), and Identity, Credential, and Access Management (ICAM).
  • Proven ability to lead cybersecurity assessments, compliance audits, and risk management activities.
  • Understanding of the principles, methods, and tools of quality assurance and quality control used to ensure a product fulfills functional requirements and standards.
  • Proficiency in Microsoft Office Suite, Power BI, Tableau, and SharePoint.
  • Must pass pre-employment qualifications of Cherokee Federal.

Benefits

  • Medical
  • Dental
  • Vision
  • 401K
  • other possible benefits as provided
  • Benefits are subject to change with or without notice.

Related Job Pages

More Security Analyst Jobs

OtherRemoteTeam 5,001-10,000H1B Sponsor

• Running detection & response monitor SIEM/EDR telemetry, triage alerts, contain and eradicate threats, then lead root-cause analysis and post-mortems. • Enhancing signal quality by designing correlation searches, refining detection rules, and automating SOAR playbooks to reduce false positives and MTTR. • Analyzing vulnerabilities by extracting findings from platforms like Wiz, Vulcan, Grype, Tenable, and quantifying infrastructure impact to prioritize effectively. • Ensuring remediation governance by generating tickets, assigning owners, enforcing deadlines, and verifying resolutions through rescans and evidence collection thoroughly. • Creating visibility and KPIs by maintaining dashboards tracking vulnerabilities, remediation speed, SLA adherence, MTTR/MTTD, patch age, and risk trends. • Strengthening controls by mapping emerging TTPs to defenses, recommending new detections, and implementing safeguards across cloud, container, and on-prem environments.

United States
Job Closed
Republic Services, Inc. logo

Senior Information Security Analyst

Republic Services, Inc.

Republic Services is a public environmental services company self-described as a U.S. industry leader in recycling and nonhazardous solid waste disposal. Republ

Security Analyst126 days ago

• Acts as the escalation point for reviewing security events and incidents from a wide variety of cybersecurity technologies such as endpoint security tools, network security tools, etc. • Performs event correlation using information gathered from a variety of sources within the enterprise to continuously improve detection • Provides support in obtaining and maintaining compliance with NIST standards • Creates and/or maintains incident response documentation including the Incident Response Plan, Incident Response Playbooks, etc. • Partners with various stakeholders across the business to improve overall security posture • Coordinates end-to-end incident response activities related to a wide variety of security risks and threats, including but not limited to, ransomware, system compromise, account takeover, phishing, etc. • Implements security controls and processes to protect digital assets and conduct routine security audits to ensure compliance • Maintains active Threat Intelligence program, integrate Threat Intel with detection and monitoring to proactively block malicious actors • Proactively searches for advanced threats that may evade existing security solutions • Uses threat intelligence to analyze network, endpoint, and application data • Creates and adjusts threat-hunting scripts and queries to improve detection • Contributes to knowledge base and procedural documentation • Mentors less experienced analysts and provide guidance during critical incidents and investigations • Performs other job-related duties as assigned or apparent • Implementing and maintaining security controls in IaaS environments • Driving optimization of Cloud specific security coverage • Developing and maintaining Cloud specific security standards and procedures

United States
$99.8K - $137.3K / year
Job Closed
eHealth, Inc. logo

Information Security Compliance Analyst

eHealth, Inc.

Connecting millions to quality, affordable health insurance

Security Analyst127 days ago
OtherRemoteTeam 1,001-5,000Since 1997H1B No Sponsor

• Assisting with internal and external audit engagements (SOC2 Type II, HITRUST, PCIDSS, SOX, GuardianSphere etc.) • Gather control evidence to ensure the information provided fulfills the requirements • Organize audit evidence and manage the control and process libraries • Assist the business to assess, document and remediate risks identified during the assessment • Contributing to eHealth’s compliance maturity: • Work with the business to implement sound security controls aligned with the security policies and standards and identify control gaps • Develop metrics to report to management • Assisting with Security awareness training and phishing campaign exercises • Working with business partners to respond to carrier security questionnaires • Evaluating new vendors for security concerns • Assess the status of projects to identify and implement appropriate corrective measures to resolve security concerns as they arise • Assists in the development and ongoing refinement of enterprise AI policies, standards, and guardrails, embedding responsible and compliant AI use into core governance processes, risk assessments, and control frameworks

United States
$78K - $97.5K / year
Job Closed
PurpleBox, Inc. logo

Cybersecurity Analyst

PurpleBox, Inc.

Secure Cloud Solutions Consulting and Managed Services PurpleBox Security Services include assessment, design, implementation and management of information security, compliance, and technical security solutions. - Compliance Assessment and Reporting - Risk Assessment - Vulnerability Assessment and Penetration Testing (VA/PT) - Security Policy and Controls - Vulnerability Scanning Services (PCI ASV, OS, Network, Database, Web Application) - SCADA and Industrial Control Systems Security - Security Configuration Baselines - Security Monitoring and Threat Intelligence Services - Application Security Testing Services - Managed Web Application Firewall PurpleBox is an Amazon Web Services (AWS) Partner and helps clients with their Cloud Transformation and Cloud Migration needs: - Cloud Trasformation Strategy - Current State Assessment - Migration Project Management - Cloud Architecture - Cloud Security Architecture - Security and Compliance in the Cloud - Cloud Cost Optimization PurpleBox Cloud Services are focused on providing its customers with the most complete and cost effective cloud solutions. From scoping and designing new environments, to decoupling and migrating complex existing platforms, our experienced team of certified professionals has a proven track record of delivery excellence.

Security Analyst127 days ago

Company Description PurpleBox is the leading technology consulting company that focuses on solving business problems utilizing new technologies.  We provide Cybersecurity, Cloud Computing, and DevOps consulting services that help businesses manage their business risk more effectively. Job Description Multiple Cybersecurity Analyst and Engineer Positions are available. Entry Level to Mid & Senior Level Internship, Part-Time, Full-Time We are seeking to hire multiple Cybersecurity Analysts and Engineers to work with our customers in various security testing, architecture, implementation, support, and compliance projects.  As part PurpleBox Security Services team, you will be working on challenging projects. Responsibilities: As a Subject Matter Expert in specific cybersecurity technologies and domains, you will provide engineering, architecture design, assessment, and technical support for projects As part of managed security services, you will run daily processes and tools for managing cybersecurity : Vulnerability Management, End Point Protection, Security Logging, Monitoring, and Incident Response, Security Compliance, Privacy, Security Awareness Training, and more... As part of security testing services, performing penetration testing, ethical hacking, and security assessments against Networks, Web Applications, API, Mobile Applications, IoT Devices, and Public Cloud Infrastructure Collaborate in the creation of technical collateral (blog posts, whitepapers, etc...) and provide training in your area of expertise. Give back to the community by volunteering at technical events, speaking at technical conferences, organizing local meetups, and participating in case studies. Write, review, and edit reports, use cases, and system documentation. Qualifications

Georgia