Principal Cybersecurity Analyst (SME)

Analytic Services IncArlington, VA
10d

About The Position

ANSER enhances national and homeland security by strengthening public institutions. We provide thought leadership for complex issues through independent analysis, and we deliver practical, useful solutions. ANSER values collaboration, integrity, and initiative and we are client focused in all that we do. Because we were established for the purpose of public service and not for profit, we measure our success in the impact of our service. ANSER is seeking a Principal Cybersecurity Analyst (Subject Matter Expert) to support the Department of Defense (DoD) in the design and implementation of information system security throughout the systems development lifecycle to ensure compliance with organizational and federal cybersecurity standards.

Requirements

  • Active Secret security clearance
  • Master’s degree in a relevant technical field such as computer science, software engineering, cybersecurity, or cloud computing
  • AWS Certified DevOps Engineer – Professional or AWS Certified Solutions Architect – Professional
  • AWS Certified Security – Specialty
  • (ISC)² Certified Information Systems Security Professional (CISSP), preferably with an engineering or architecture concentration (ISSEP/ISSAP)
  • 12 years of demonstrated experience in systems engineering and cybersecurity, with at least seven of those years focused on security automation, cloud engineering, and architecture
  • Five years of demonstrated experience serving as a lead technical authority on enterprise-level projects, responsible for designing and implementing security solutions
  • Five years of demonstrated experience translating complex regulatory requirements (RMF, NIST, DISA STIGs) and architectural diagrams into functional, automated, and operational code

Responsibilities

  • Design, develop, and implement secure system and network architectures aligned with Risk Management Framework (RMF), the Federal Information System Controls Audit Manual (FISCAM), and Zero Trust Architecture principles, ensuring compliance across the system lifecycle
  • Translate cybersecurity policies and controls (e.g., NIST SP 800-53) into automated, machine-readable Policy-as-Code and Compliance-as-Code solutions integrated into continuous integration/continuous delivery (CI/CD) pipelines and agile development sprints
  • Build and maintain automated security frameworks, including Infrastructure-as-Code (IaC), configuration management, compliance validation, and orchestration layers to enable continuous monitoring and self-healing security operations
  • Lead technical integration of AWS-native security services (e.g., AWS Security Hub, AWS Config, AWS CloudTrail) to support automated evidence collection, centralized logging, and real-time compliance validation
  • Conduct solution analysis and architectural reviews to assess system designs, data flows, and integrations for cybersecurity risks, ensuring alignment with DoD policies and enterprise security requirements
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service