Cyber Security Analyst

Trilogy Federal Arlington, VA
Posted 2 days ago

Job Description

<p><span style="font-size: 16px">Trilogy Federal drives innovative solutions for complex business challenges across financial management, healthcare, and government industries. Our collaborative, client-first service approach, combined with our commitment to the rapid implementation of pragmatic solutions, has earned Trilogy an unparalleled reputation for delivering transformative results.</span></p><p><br></p><p><span data-contrast="auto">Trilogy Federal is seeking a<strong> Cyber Security Analyst</strong> to support the T4NG Consolidated Corporate Support Services (CCSS) program for the&nbsp;Department of Veterans Affairs (VA). This position&nbsp;is responsible for&nbsp;implementing and&nbsp;maintaining&nbsp;the security posture of VA enterprise systems and data, ensuring robust compliance with federal and VA security requirements, and supporting the ongoing authorization and risk management of critical VA platforms as part of a multi-disciplinary, agile technology team.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335557856&quot;:16777215,&quot;335559740&quot;:276}">&nbsp;</span></p>
<p>&nbsp;</p>
<p>
</p><p>
</p><p><strong><span data-contrast="auto">Position Description:</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335557856&quot;:16777215,&quot;335559740&quot;:276}">&nbsp;</span></strong></p>
<p></p>
<p>
</p><p><span data-contrast="auto">The Cyber Security Analyst&nbsp;is responsible for&nbsp;supporting the security posture of VA information systems and environments. This role ensures compliance with Federal, VA, and industry information security policies and standards, conducts continuous vulnerability identification and remediation, and&nbsp;participates&nbsp;in both internal and external security assessments. The position requires routine engagement with technical and program stakeholders to&nbsp;maintain&nbsp;and improve security controls and documentation, elevate incident response, and support the ongoing Authorization to Operate (ATO) for supported systems and applications. The Analyst&nbsp;operates&nbsp;within an agile,&nbsp;DevSecOps-focused environment, requiring proactive risk identification and collaboration with cross-functional teams to ensure the security and integrity of VA’s technical ecosystem.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335557856&quot;:16777215,&quot;335559740&quot;:276}">&nbsp;</span></p>
<p></p>
<p></p>\n<p></p><p><br></p><b>Primary Responsibilities: </b><div>
<ul>
<li><span data-contrast="auto">Perform ongoing vulnerability scanning, penetration testing, code review, and remediation in line with NIST SP 800-53 and related standards.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:276}">&nbsp;</span></li>
<li>
<p><span data-contrast="auto">Develop, document, review, and maintain Assessment &amp; Authorization (A&amp;A) artifacts, including security plans, risk assessments, and Plan of Action and Milestones (POA&amp;M), supporting ATO submissions and renewals.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:276}">&nbsp;</span></p>
</li>
<li>
<p><span data-contrast="auto">Respond to, analyze, and report on security events and incidents, including notification to stakeholders within strict timeframes. Remediate security vulnerabilities within specified periods according to severity.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:276}">&nbsp;</span></p>
</li>
<li>
<p><span data-contrast="auto">Ensure compliance with Federal, VA, FISMA, NIST, HIPAA, Privacy Act, and organizational security and privacy directives.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:276}">&nbsp;</span></p>
</li>
<li>
<p><span data-contrast="auto">Complete mandatory and additional annual privacy and security training as required.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:276}">&nbsp;</span></p>
</li>
<li>
<p><span data-contrast="auto">Coordinate with VA technical staff, ISSOs, and integration teams to ensure proper migration, deployment, and operational support for new or updated systems.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:276}">&nbsp;</span></p>
</li>
<li>
<p><span data-contrast="auto">Provide support for the implementation of security controls on operating systems, application code, network infrastructure, and endpoints. Participate in audits and assessments, and provide evidence of compliance as requested.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:276}">&nbsp;</span></p>
</li>
<li>
<p><span data-contrast="auto">Monitor, track, and report on key security KPIs including vulnerability remediation timeframes, incident resolution metrics, and system security posture.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:276}">&nbsp;</span></p>
</li>
<li>
<p><span data-contrast="auto">Proactively apply OS and application patches; validate and report the effect of third-party patches.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:276}">&nbsp;</span></p>
</li>
<li>
<p><span data-contrast="auto">Develop and maintain robust operational and incident response documentation, participate in after-action reviews, and contribute to lessons learned for continuous process improvement</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:276}">&nbsp;</span></p>
</li>
</ul>
</div><p><br></p><b>Minimum Requirements: </b><div>
<div>
<div>
<ul role="list" style="list-style-type: disc;">
<li aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="12" data-list-defn-props="{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;&quot;,&quot;469777815&quot;:&quot;multilevel&quot;}" data-aria-posinset="1" data-aria-level="1" role="listitem">
<p><span data-contrast="auto">Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related discipline; equivalent practical experience may be considered.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:276}">&nbsp;</span></p>
</li>
</ul>
</div>
<div>
<ul role="list" style="list-style-type: disc;">
<li aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="12" data-list-defn-props="{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;&quot;,&quot;469777815&quot;:&quot;multilevel&quot;}" data-aria-posinset="2" data-aria-level="1" role="listitem">
<p><span data-contrast="auto">Minimum of 10 years of progressive experience in cyber security operations, risk assessment, vulnerability management, or information security compliance.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:276}">&nbsp;</span></p>
</li>
</ul>
</div>
<div>
<ul role="list" style="list-style-type: disc;">
<li aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="12" data-list-defn-props="{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;&quot;,&quot;469777815&quot;:&quot;multilevel&quot;}" data-aria-posinset="3" data-aria-level="1" role="listitem">
<p><span data-contrast="auto">Demonstrated knowledge of and experience with relevant federal cybersecurity standards.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:276}">&nbsp;</span></p>
</li>
</ul>
</div>
</div>
<div>
<div>
<ul role="list" style="list-style-type: disc;">
<li aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="12" data-list-defn-props="{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;&quot;,&quot;469777815&quot;:&quot;multilevel&quot;}" data-aria-posinset="4" data-aria-level="1" role="listitem">
<p><span data-contrast="auto">Experience conducting and reporting on vulnerability assessments, penetration testing, and security control testing.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:276}">&nbsp;</span></p>
</li>
</ul>
</div>
<div>
<ul role="list" style="list-style-type: disc;">
<li aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="12" data-list-defn-props="{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;&quot;,&quot;469777815&quot;:&quot;multilevel&quot;}" data-aria-posinset="5" data-aria-level="1" role="listitem">
<p><span data-contrast="auto">Familiarity with security tools including but not limited to Static Application Security Testing (SAST) tools (e.g., Micro Focus Fortify), penetration testing suites, SIEM/monitoring platforms.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:276}">&nbsp;</span></p>
</li>
</ul>
</div>
<div>
<ul role="list" style="list-style-type: disc;">
<li aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="12" data-list-defn-props="{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;&quot;,&quot;469777815&quot;:&quot;multilevel&quot;}" data-aria-posinset="6" data-aria-level="1" role="listitem">
<p><span data-contrast="auto">Experience supporting ATO and A&amp;A&nbsp;processes, and&nbsp;maintaining compliance documentation in regulated environments.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:276}">&nbsp;</span></p>
</li>
</ul>
</div>
<div>
<ul role="list" style="list-style-type: disc;">
<li aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="12" data-list-defn-props="{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;&quot;,&quot;469777815&quot;:&quot;multilevel&quot;}" data-aria-posinset="7" data-aria-level="1" role="listitem">
<p><span data-contrast="auto">Understanding of&nbsp;DevSecOps&nbsp;practices and principles; collaborative experience with development, operations, and compliance teams.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:276}">&nbsp;</span></p>
</li>
</ul>
</div>
<div>
<ul role="list" style="list-style-type: disc;">
<li aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="12" data-list-defn-props="{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;&quot;,&quot;469777815&quot;:&quot;multilevel&quot;}" data-aria-posinset="8" data-aria-level="1" role="listitem">
<p><span data-contrast="auto">Ability to manage multiple applications.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:276}">&nbsp;</span></p>
</li>
</ul>
</div>
<div>
<ul role="list" style="list-style-type: disc;">
<li aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="12" data-list-defn-props="{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;&quot;,&quot;469777815&quot;:&quot;multilevel&quot;}" data-aria-posinset="9" data-aria-level="1" role="listitem">
<p><span data-contrast="auto">Ability to obtain&nbsp;a Public&nbsp;Trust Clearance.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:276}">&nbsp;</span></p>
</li>
</ul>
</div>
</div>
</div><p><br></p><b>Preferred Qualifications: </b><div>
<div>
<ul role="list" style="list-style-type: disc;">
<li aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="12" data-list-defn-props="{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;&quot;,&quot;469777815&quot;:&quot;multilevel&quot;}" data-aria-posinset="10" data-aria-level="1" role="listitem">
<p><span data-contrast="auto">Familiarity with VA’s Governance, Risk and Compliance (GRC) tools and associated security workflows.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:276}">&nbsp;</span></p>
</li>
</ul>
</div>
<div>
<ul role="list" style="list-style-type: disc;">
<li aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="12" data-list-defn-props="{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;&quot;,&quot;469777815&quot;:&quot;multilevel&quot;}" data-aria-posinset="11" data-aria-level="1" role="listitem">
<p><span data-contrast="auto">Experience with security assurance for cloud platforms, including compliance with FedRAMP standards (AWS, Azure, etc.).</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:276}">&nbsp;</span></p>
</li>
</ul>
</div>
<div>
<ul role="list" style="list-style-type: disc;">
<li aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="12" data-list-defn-props="{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;&quot;,&quot;469777815&quot;:&quot;multilevel&quot;}" data-aria-posinset="12" data-aria-level="1" role="listitem">
<p><span data-contrast="auto">Demonstrated&nbsp;expertise&nbsp;with application security, code quality assurance in large-scale and agile environments, and continuous delivery pipelines.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:276}">&nbsp;</span></p>
</li>
</ul>
</div>
<div>
<ul role="list" style="list-style-type: disc;">
<li aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="12" data-list-defn-props="{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;&quot;,&quot;469777815&quot;:&quot;multilevel&quot;}" data-aria-posinset="13" data-aria-level="1" role="listitem">
<p><span data-contrast="auto">Advanced knowledge of security and monitoring tools such as Jenkins, GitHub, SonarQube, AppDynamics, as well as experience with security architecture and incident response frameworks.</span><span data-ccp-props="{&quot;201341983&quot;:0,&quot;335559740&quot;:276}">&nbsp;</span></p>
</li>
</ul>
</div>
</div><p><br></p><b>Benefits (including but not limited to):</b><ul>
<li>Health, dental, and vision plans</li>
<li>Optional FSA</li>
<li>Paid parental leave</li>
<li>Safe Harbor 401(k) with employer contributions 100% vested from day 1</li>
<li>Paid time off and 11 paid holidays</li>
<li>No cost group term life/AD&amp;D plan, and optional supplemental coverage</li>
<li>Pet insurance</li>
<li>Monthly phone and internet stipend</li>
<li>Tuition and training reimbursement</li>
</ul><p><br></p><p></p>\n<div>$103,000 - $118,000 a year</div><small><div><span style="font-size: 13.3333px;">This range is not a guarantee of compensation or salary, as Trilogy Federal conducts an individual equity review for every candidate based on experience, location, education, industry experience, and comparisons to internal pay bands. In addition to salary, Trilogy offers robust benefits including medical/dental/vision insurance coverage, 401(k) match, paid holidays, paid time off, tuition reimbursement, and a very supportive work/life balance.</span></div></small>\n<p><i style="font-size: 16px">Trilogy Federal is an Equal Employment Opportunity employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.</i></p><br/><br/>Please mention the word **AMAZING** and tag RMjYwMDoxNzAyOjJlOTA6OWJjMDpmODY2OmJhMjU6ZmY4ZjphYTdm when applying to show you read the job post completely (#RMjYwMDoxNzAyOjJlOTA6OWJjMDpmODY2OmJhMjU6ZmY4ZjphYTdm). This is a beta feature to avoid spam applicants. Companies can search these words to find applicants that read this and see they're human.

Required Skills

security analyst system training technical support testing code financial cloud management operational

Requirements

Employment Type

Remote

Category

security, analyst, system, training, technical

About Trilogy Federal

Location: Arlington, VA

Industry: security, analyst, system, training, technical

Sign in to apply or see your match score

Sign In to Apply Create Account
Quick Actions
Back to Job Search