Innovation at the Pace of Need™
Cybersecurity And IOT Research Analyst
Location
Virginia
Posted
40 days ago
Salary
$69.3K - $118.4K / year
Seniority
Senior
Job Description
Cybersecurity And IOT Research Analyst
LMI
Title: Cybersecurity And IoT Research Analyst Location: Tysons Corner United States Job Description: LMI is a new breed of digital solutions provider dedicated to accelerating government impact with innovation and speed. Investing in technology and prototypes ahead of need, LMI brings commercial-grade platforms and mission-ready AI to federal agencies at commercial speed. Leveraging our mission-ready technology and solutions, proven expertise in federal deployment, and strategic relationships, we enhance outcomes for the government efficiently and effectively. With a focus on agility and collaboration, LMI serves the defense, space, healthcare, and energy sectors-helping agencies navigate complexity and outpace change. The Opportunity We're hiring a Cybersecurity & IoT Research Analyst to support ongoing R&D efforts while contributing directly to production-bound DoD systems. This is a hybrid R&D + implementation role. You'll take hands-on research-like IoT protocol vulnerability testing, wireless security analysis, and device-level exploitation-and translate it into actionable security improvements, RMF artifacts, and deployable solutions. You'll work across the full lifecycle: from lab-based vulnerability testing (e.g., replay attacks, packet injection, device compromise) to supporting accreditation (RMF/ATO) and hardening real-world systems. Responsibilities Cybersecurity & RMF Support - Support Risk Management Framework (RMF) activities including control implementation, documentation, POA&Ms, and ATO readiness. - Assist in system security architecture development, aligning IoT/embedded systems with DoD cybersecurity requirements. - Conduct security assessments and support vulnerability management processes across hardware and software systems. - Collaborate with ISSOs, ISSMs, and engineering teams to ensure compliance with NIST and DoD standards. Vulnerability Testing & Security Research - Design and execute vulnerability testing across IoT and RF protocols (e.g., ZigBee, LoRaWAN, NB-IoT, Mist). - Perform packet analysis, traffic inspection, and exploitation testing using tools like Wireshark, Kali Linux, and SDR frameworks. - Simulate real-world attack vectors such as replay attacks, packet injection, device cloning, and resource exhaustion. - Analyze protocol weaknesses such as centralized trust models, insecure key exchange, and lack of rate limiting. R&D and Innovation - Support ongoing R&D efforts focused on IoT protocol security, wireless communications, and system resilience. - Contribute to development of testbeds and experimental environments to simulate real-world deployments. - Evaluate emerging technologies and security approaches to improve system architecture and defense-in-depth strategies. - Document findings and translate research into engineering recommendations and product improvements. Secure System Development - Support development of secure update mechanisms, device authentication workflows, and trust validation systems. - Contribute to secure software and firmware design, including integrity validation and access control mechanisms. - Assist in implementing protections against unauthorized access, tampering, and compromised device participation. - Collaborate with DevSecOps and platform teams to integrate security into CI/CD pipelines and deployment workflows. Data Analysis & Reporting - Analyze quantitative and qualitative security data to assess system resilience and risk posture. - Develop technical reports, briefings, and executive summaries to communicate findings and recommendations. - Support customer-facing deliverables and contribute to proposal or R&D documentation efforts. Qualifications What We're Looking For - Bachelor's degree in Cybersecurity, Computer Engineering, Computer Science, or related field (or equivalent experience). - Strong foundation in cybersecurity principles, including network security, cryptography, and secure system design. - Experience or coursework in wireless communications, RF systems, or IoT protocols. - Hands-on experience with tools such as Wireshark, Kali Linux, Metasploit, or similar security testing frameworks. - Familiarity with programming/scripting (Python, C/C++, or Java). - Understanding of networking fundamentals and packet-level analysis. - U.S. Citizenship required; ability to obtain a Secret clearance. Bonus Points For - Experience with RMF, ATO processes, or NIST 800-53 controls. - Exposure to IoT security testing, embedded systems, or RF communications. - Experience building or working with testbeds (e.g., Raspberry Pi, wireless mesh networks). - Familiarity with cloud platforms (GCP, AWS) and containerization (Docker). - Participation in cybersecurity competitions, research programs, or technical R&D initiatives. - Experience analyzing attack vectors like replay attacks, packet injection, or unauthorized access in IoT systems. Why This Role Matters Modern IoT systems are expanding the attack surface across critical defense infrastructure. Research has shown that protocols can be vulnerable to attacks like replay, injection, and unauthorized access depending on implementation and architecture . In this role, you won't just study those vulnerabilities-you'll help eliminate them. Your work will directly influence how secure, resilient, and mission-ready next-generation DoD systems become. Target salary range: $69265.76 - $118424.66 Disclaimer: The salary range displayed represents the typical salary range for this position and is not a guarantee of compensation. Individual salaries are determined by various factors including, but not limited to location, internal equity, business considerations, client contract requirements, and candidate qualifications, such as education, experience, skills, and security clearances. #LI-SH1
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Title: Lead Security Engineer Location: Amsterdam NL Hybrid Technology Job Description: At bunq, we're not just building a banking app; we're reshaping how people around the world experience financial freedom. As our Lead Security Engineer, you are the digital guardian of our bank. You'll lead the charge in protecting our users and our data from an ever-evolving landscape of cyber threats, ensuring our platform remains a fortress of trust. Up for this? Kick off your application by taking our assessment and find out if bunq is your perfect match! Take Ownership As our Security Engineering Lead, you will play a critical role in strengthening and defending our digital environment. You will lead a team of highly skilled security professionals, making bunq safer for users and employees globally. You'll: - Lead the SecOps team responsible for detecting, investigating, and resolving security events, owning the end-to-end security posture of bunq. - Work together with our CISO to define our security roadmap by identifying gaps and risks, then drive the implementation of new tools and measures to mitigate those threats. - Manage and harden our core corporate infrastructure, including G-suite, AWS, Okta, and our fleet of Apple endpoints. This challenge is perfect for you if - You have experience leading a small, hands-on team of Security Engineers, and you aren't afraid to get your hands dirty. - You have extensive, practical experience with SOC processes, incident response, and SIEM software. - You possess a deep knowledge of security best practices for both cloud and corporate IT environments. - You have hands-on experience managing and securing G-suite, Okta, AWS, Apple endpoints, and device management software (preferably Kandji). - You are fluent in English - able to communicate effectively in a global team, ensuring collaboration and clarity across all project stages. All new hires are subject to Pre-employment Screening (PES), which includes checks conducted by our third-party partner, DISA. This is part of our commitment to a secure and trustworthy workplace Curious to see how we make life easy? - try the bunq app, it only takes 5 minutes to sign up. Your space to perform We give you the space and the tools you need to succeed Great, international colleagues who share your mindset Hybrid setup: after 3 months in-office, work 2 days remote, 3 days in-office weekly. Digital Nomad Program: After your first year, enjoy up to 20 days per year to work while traveling, combining flexibility with strong team collaboration We reward tenure with a dedicated travel budget: €1.5k after 2 years and €3k after 4 years to visit another core office. We support growth with bunq Academy and €1500 annual learning budget Massive discount with Urban Sports Club Travel expenses are covered whether you come walking or by bike, bus or car (though we prefer green choices) A MacBook so you can Get Shit Done with us Delicious lunches from our fabulous in-house chefs with vegan and vegetarian options An optional pension plan with monthly contribution from bunq Monthly contribution to your phone and internet bills Friday drinks and other celebrations - bunq style
IT SAP Basis Administrator
Davey Tree Expert CompanyDavey Tree Expert Company is the largest employee-owned company in Ohio and provides a full range of forestry consulting, tree care, grounds maintenance, and utility line clearing
Title: IT SAP Basis Administrator Job Description: Company: The Davey Tree Expert Company Locations: Kent, OH Additional Locations: Hybrid Work Site: Hybrid Req ID: 223562 Position Overview The IT SAP Basis Administrator is responsible for the management, maintenance, and support of the SAP system landscape. This includes installing, configuring, monitoring, tuning, and troubleshooting all SAP environments to ensure high levels of availability, performance, and security. The SAP Basis Administrator works closely with IT teams, developers, and business stakeholders to support ongoing projects and daily operations. This is a hybrid position, but the first month would be onsite for training purposes. Job Duties - Install, configure, and maintain the organization's SAP system landscape - Perform daily system monitoring, verifying the integrity and availability of all SAP systems, server resources, and key processes. - Manage the Transport Management and change management using Revtrac to ensure all configuration and development objects are promoted properly. - Manage and support integrations (e.g. SAC, CRM, Revtrac, BTP, etc.) - Manage data backup processes and ensure the ability to recover data in case of system failures. - Apply system patches, kernel upgrades, and support packages (stacks) in a timely manner. - Execute system copies, client copies, and system refreshes to support project and testing requirements. - Perform regular system backups and conduct disaster recovery tests to ensure business continuity. - Analyze and troubleshoot system performance issues, providing resolutions to optimize performance. - Maintain comprehensive documentation of the SAP system landscape, configurations, and procedures. - Provide technical support and guidance to project teams and end-users. - Perform other related duties as assigned. - Follow all company policies, procedures, and work rules. Qualifications - A minimum of three years of experience in SAP Basis administration. - Demonstrated leadership abilities, with a proven track record of effective mentoring and leading technical teams. - In-depth knowledge of SAP architecture, including systems such as S/4HANA, ECC, ECP, BTP, Solution Manager, etc. - Advanced technical troubleshooting, performance tuning, and problem-solving skills for complex SAP issues. - Experience with database administration (e.g., HANA, SQL Server, Oracle) and operating systems (e.g., Windows, Linux). - Self-motivated and collaborative team player, with the ability to work effectively in diverse environments. Additional Information What We Offer: * - Paid time off and paid holidays - Opportunities for advancement - All job specific equipment and safety gear provided - 401(k) retirement savings plan with a company match - Employee-owned company & discounted stock purchase options - Group Health Plan - Employee referral bonus program - Locations throughout US in major cities and desirable areas - Career Development Program supported by Industry Expert Safety Specialists & Skills Trainers - Scholarship Program for Children of Employees - Charitable matching gift program *all listed benefits available to eligible employees Divisional Overview The Davey Tree Expert Company is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to protected class, including race, color, religion, sex, pregnancy, sexual orientation, gender identity or expression, national or ethnic origin, marital or familial status, disability, status as a protected veteran, status as an Aboriginal or Indigenous person, or other classification protected by law. The Davey Tree Expert Company provides research-driven tree services, grounds maintenance and environmental consulting for residential, utility, commercial and environmental partners in the U.S. and Canada. We care about our clients, each other and the world around us. We offer the resources, size and stability of a big company while maintaining the culture, entrepreneurial spirit and feel of a small one. We invest in our employees by offering industry-leading training, technology and benefits that lead to a rewarding and safe work experience at all levels. Wherever you want to grow your career, there’s a place for you at Davey. To learn more, visit Davey.com. Accommodations: If requested by employee or otherwise as required by law, reasonable accommodations will be made to enable employees with disabilities to perform essential job functions. Employment Type: Permanent Job Type: Full Time Travel Expectations: None
Network Security Administrator
IDEXX LaboratoriesIDEXX Laboratories is a leading, publicly-traded biotechnology company founded in 1983. Specializing in pet healthcare, the company provides a range of IT-based
Title: Network Security Administrator Location: Westbrook United States Full time Job Description: At IDEXX, our work helps create clarity in a complex and evolving world through diagnostic and software products and services. That clarity depends on secure, resilient connectivity and trusted access, especially across global teams, cloud services, and third-party vendor ecosystems. We're looking for a Network Security Engineer to provide hands-on engineering across our IPAM and DNS Security, Zero Trust Platform, and Secure Vendor Remote Access, strengthening IDEXX's security posture while enabling the business at global scale. Location: We are looking for someone within driving distance to Westbrook, Maine, with the flexibility of working on a hybrid basis, a minimum of 8 days per month on-site. Alternatively, we are open to someone in Massachusetts or New Hampshire that could potentially also come on-site, but open to less times per month. In this role, you will… - Manage DNS security and IP address management platforms across the enterprise using our (IPAM, DNS/DHCP, DNS Security), ensuring reliability, security controls, and operational excellence. - Optimize & Expand Zero Trust access by partnering with network, endpoint, and security teams to deliver secure user/app connectivity. - Run secure third-party access through our SVRA platform, enforcing least privilege access, strong auditing, and vendor lifecycle controls. - Translate risk into engineering outcomes: improve segmentation, policy, logging, and security automation that reduce exposure without slowing the business. - Build clarity through standards and documentation: create runbooks, patterns, and reference architectures that make secure operations repeatable and scalable. - Serve as an escalation point for complex issues and mentor other engineers through design reviews, troubleshooting, and best practice adoption. What You Will Need To Succeed… - 3-5+ years of hands-on experience in enterprise network security engineering. - 3-5+ years of strong experience in IPAM and DNS/DHCP, plus DNS Security administration and operational troubleshooting. - 3-5+ years implementing Zero Trust in production enterprise environments. - 3-5+ years managing Secure Vendor Remote Access (or closely equivalent) with security controls and auditability. - Strong foundational skills in TCP/IP, DNS, routing, firewall concepts, authentication/authorization, and security logging/monitoring. - Ability to communicate clearly with both technical and nontechnical partners-turning complex systems into actionable decisions (and keeping the message customer focused ). It would be a plus if you any of this experience… - Automation or infrastructure as code experience (APIs, scripting, policy automation, CI/CD integration). - Experience integrating DNS and Zero Trust telemetry into SIEM/SOC workflows. - Cloud networking/security exposure (Azure/AWS/GCP), plus enterprise identity integrations. - Relevant certifications (e.g., Zscaler certs, CCNP Security, CISSP, GIAC). Why IDEXX? We're proud of the work we do, because our work matters. An innovation leader in every industry we serve, we follow our Purpose and Guiding Principles to help pet owners worldwide keep their companion animals healthy and happy, to ensure safe drinking water for billions, and to help farmers protect livestock and poultry from diseases. We have customers in over 175 countries and a global workforce of over 10,000 talented people. So, what does that mean for you? We enrich the livelihoods of our employees with a positive and respectful work culture that embraces challenges and encourages learning and discovery. At IDEXX, you will be supported by competitive compensation, incentives, and benefits while enjoying purposeful work that drives improvement. Let's pursue what matters together. IDEXX values a diverse workforce and workplace and strongly encourages women, people of color, LGBTQ+ individuals, people with disabilities, members of ethnic minorities, foreign-born residents, and veterans to apply. IDEXX is an equal opportunity employer. Applicants will not be discriminated against because of race, color, creed, sex, sexual orientation, gender identity or expression, age, religion, national origin, citizenship status, disability, ancestry, marital status, veteran status, medical condition, or any protected category prohibited by local, state, or federal laws. #LI-EV1
Forescout Cybersecurity Engineer
Booz Allen HamiltonBooz Allen Hamilton is an award-winning provider of strategic innovation, management consulting, technology, and engineering services. Founded in 1914, the comp
Forescout Cybersecurity Engineer Location: Reston, VA Washington, DC Riverdale, MD Norfolk, VA Full time Job Description: The Opportunity: As a member of our team, you will engineer solutions to complex challenges for customers using your knowledge of network engineering, system administration, and Active Directory. You'll work with an expert team focused on implementing and operating next generation security solutions for government and commercial clients. You'll perform hands-on evaluation, implementation, and operation of leading security cyber defense tools and technologies. You'll apply in-depth defense strategies to large and complex networks to rapidly identify vulnerabilities and threats, prioritize response actions, and develop effective countermeasures. You'll also apply thought leadership in a highly collaborative and innovative work environment to solve complex security challenges. In this role, you'll closely impact mission success, protecting data and networks from malicious payloads and actors. With mentoring, challenging hands-on problem-solving, and opportunities to learn new tools and skills, we focus on growing as a team to make the best solutions for our customers. Work with us as we secure and protect our nation's most sensitive capabilities. What You'll Work On: - Develop relationships quickly and easily with other teams, communicating the complexities of security with a wide variety of audiences, including senior management. - Manage infrastructure and cybersecurity controls, including enhanced detection and vulnerability capabilities and improved event correlation in large enterprises. - Contribute to risk and vulnerability assessments in network, system, and application areas. - Leverage big data analytics and traditional security event types to identify advanced threats or indicators of compromise. Join us. The world can't wait. You Have: - 5+ years of experience performing systems administration for Windows or Linux, including performing basic troubleshooting and installation or configuration, monitoring system performance or availability, and performing security upgrades - Experience architecting and designing IP networks, including developing and documenting network topologies - Knowledge of multi-domain architectures, including data center, WAN, and LAN in virtualized architectures - Active TS/SCI clearance; willingness to take a polygraph exam - HS diploma or GED and 7+ years of experience supporting IT projects and activities, Associate's degree and 5+ years of experience supporting IT projects and activities, Bachelor's degree and 3+ years of experience supporting IT projects and activities, or Master's degree and 1+ years of experience supporting IT projects and activities - DoD 8570 IAT Level II Certification such as Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND Certification - Ability to obtain a DoD 8570 Cybersecurity Service Provider - Infrastructure Support (CSSP-IS) Certification such as CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND Certification, prior to start date Nice If You Have: - Experience with deployment or daily maintenance of Forescout CounterACT appliances - Knowledge of federal information security policies, standards, procedures, directives, frameworks, federal security authorizations, assessment, and risk management processes for enterprise systems - Ability to install and deploy Forescout in a customer environment - Ability to integrate cybersecurity data using enterprise or custom tools data aggregation and analysis tools, including Splunk - Ability to provide support in a Tier II IT operations and maintenance role, including ticket work information updates, issue responses, and remediation - Ability to be a self-starter, work without considerable direction, and work with a team - Possession of excellent verbal and written communication skills, to coordinate efforts and establish customer relations Clearance: Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; TS/SCI clearance is required. Compensation At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen's benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page. Salary at Booz Allen is determined by various factors, including but not limited to location, the individual's particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $99,000.00 to $225,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen's total compensation package for employees. Identity Statement As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud. Candidate AI Usage Policy AI is a part of our daily work at Booz Allen, and we are committed to the responsible and ethical use of AI tools. However, we want to ensure a fair candidate process based on your own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) or other tools to assist with responses during interviews (whether in-person or virtual) is prohibited unless permission is explicitly provided. Work Model Our people-first culture prioritizes the benefits of collaboration, whether it occurs in person or virtually. To support engagement and effective communication, employees working virtually are generally expected to have their cameras on during meetings. - Remote: If this position is listed as remote, there may still be occasions when you are required to work in person at a Booz Allen or customer facility. - Hybrid: If this position is listed as hybrid, you will be expected to work from a Booz Allen facility frequently, in alignment with leadership expectations and the needs of the role. You may also be required to work from or visit a customer facility. - Onsite: If this position is listed as onsite, work will primarily be performed at a Booz Allen office or customer facility, where employees will collaborate directly with colleagues and customers as required by the role. Commitment to Non-Discrimination All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.


