Cybersecurity Protect Analyst

SPAHR SOLUTIONS GROUP LLCFort Belvoir , VA

About The Position

We are seeking a Cybersecurity Protect Analyst to support our Defense Threat Reduction Agency (DTRA) Tier II Cybersecurity Services Provider (CSSP) Team. Spahr is a fast-growing high-tech company that understands both the pace of technology today and the need to have a comprehensive well-planned information management environment. “Integrity. Purpose. Resolve” embodies our values and is paramount to both our and our customer’s success. By relentlessly upholding our values and investing in our employees we foster a culture of integrity and selfless service, build resilient teams that are ready to solve hard problems, and deliver real impact for the client. The safety and health of our employees is of the utmost importance. By applying for a role at Spahr you are providing consent to receive text messages regarding your interview and employment status. If at any time you would like to opt out of text messaging, respond "STOP".

Requirements

  • Advanced, hands-on guidance for resolving complex security posture issues, patching delays, and system misconfigurations.
  • Primary auditor for the CSSP Data Element Dictionary (DED).
  • Coordinate with data producers and data stewards to maintain canonical field mappings and machine-readable schemas.
  • Oversee validation rules for identity-attributed, network, and object-access events to guarantee schema compliance across all DTRA subscriber tenants.
  • Actively track and analyze CISA’s Known Exploited Vulnerabilities (KEV) catalog using standardized cybersecurity frameworks, including Common Vulnerabilities and Exposures (CVE) identifiers, National Vulnerability Database (NVD) resources, Common Vulnerability Scoring System (CVSS) severity vectors, and Common Weakness Enumeration (CWE) classifications, to evaluate localized risks, prioritize mitigation efforts, and coordinate rapid remediation with system owners.
  • Execute comprehensive vulnerability assessments using the Assured Compliance Assessment Solution (ACAS) and other enterprise scanning tools, analyzing raw scan data to deliver actionable, prioritized remediation steps to stakeholders.
  • Monitor, evaluate, and digest cyber threat intelligence feeds, indicator of compromise (IOC) alerts, and open-source threat reports to anticipate emerging vectors and proactively adjust defensive postures.
  • Support CSSP Evaluator Scoring Metric (ESM) compliance assessments, gathering technical evidence, conducting internal control reviews, and maintaining organizational readiness for JFHQ-DoDIN mandated evaluations.
  • Coordinate and conduct "Blue Team" assessments under Government supervision to evaluate subscriber security postures for DoW compliance, while validating detection playbooks and signature effectiveness by emulating adversary tactics to trigger alerts and detect Red Team activities.
  • Perform technical validation of endpoint security tools, host-based security systems, and boundary defense mechanisms to ensure malware protection policies are active, correctly configured, and reporting to central CSSP consoles.
  • Track, implement, and technically validate compliance with USCYBERCOM TASKORDs, Cyber Protection Condition (CPCON) shifts, and JFHQ-DoDIN operational directives.
  • Lead compliance focused working groups with subscriber IT teams. Guide them through gathering technical evidence, conducting internal control reviews, and ensuring total readiness for rigorous DoW and agency-level cybersecurity audits (e.g., CORA, CSSP evaluations).

Responsibilities

  • Act as the technical cybersecurity liaison for subscriber organizations, providing advanced, hands-on guidance for resolving complex security posture issues, patching delays, and system misconfigurations.
  • Act as the primary auditor for the CSSP Data Element Dictionary (DED). Coordinate with data producers and data stewards to maintain canonical field mappings and machine-readable schemas. Oversee validation rules for identity-attributed, network, and object-access events to guarantee schema compliance across all DTRA subscriber tenants.
  • Actively track and analyze CISA’s Known Exploited Vulnerabilities (KEV) catalog using standardized cybersecurity frameworks, including Common Vulnerabilities and Exposures (CVE) identifiers, National Vulnerability Database (NVD) resources, Common Vulnerability Scoring System (CVSS) severity vectors, and Common Weakness Enumeration (CWE) classifications, to evaluate localized risks, prioritize mitigation efforts, and coordinate rapid remediation with system owners.
  • Execute comprehensive vulnerability assessments using the Assured Compliance Assessment Solution (ACAS) and other enterprise scanning tools, analyzing raw scan data to deliver actionable, prioritized remediation steps to stakeholders.
  • Monitor, evaluate, and digest cyber threat intelligence feeds, indicator of compromise (IOC) alerts, and open-source threat reports to anticipate emerging vectors and proactively adjust defensive postures.
  • Support CSSP Evaluator Scoring Metric (ESM) compliance assessments, gathering technical evidence, conducting internal control reviews, and maintaining organizational readiness for JFHQ-DoDIN mandated evaluations.
  • Coordinate and conduct "Blue Team" assessments under Government supervision to evaluate subscriber security postures for DoW compliance, while validating detection playbooks and signature effectiveness by emulating adversary tactics to trigger alerts and detect Red Team activities.
  • Perform technical validation of endpoint security tools, host-based security systems, and boundary defense mechanisms to ensure malware protection policies are active, correctly configured, and reporting to central CSSP consoles.
  • Track, implement, and technically validate compliance with USCYBERCOM TASKORDs, Cyber Protection Condition (CPCON) shifts, and JFHQ-DoDIN operational directives.
  • Lead compliance focused working groups with subscriber IT teams. Guide them through gathering technical evidence, conducting internal control reviews, and ensuring total readiness for rigorous DoW and agency-level cybersecurity audits (e.g., CORA, CSSP evaluations).

Benefits

  • Health insurance
  • Dental insurance
  • Vision insurance
  • 401(k)
  • Life insurance
  • Short-term and long-term disability plans
  • Vacation time
  • Holidays
  • Training & development
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service