
Jr. Cyber Security Analyst
Role summary
We are seeking a Jr. Cyber Security Analyst to support the U.S. Air Force Cloud One Architecture and Common Shared Services contract. This remote role requires candidates to be near Huntsville, AL or Boston, MA, and hold US citizenship with a preferred Active DoD Secret Clearance. The analyst will provide incident response and security operations support for a cloud environment (AWS, Azure, Oracle, GCP) across DoD Impact Levels 2-6. Key responsibilities include supporting ISSO/ISSM functions, ATO sustainment, continuous monitoring, vulnerability management, and ensuring compliance with various DoD and NIST standards. A Bachelor's Degree and 2+ years of experience in cloud security, SIEM, and incident response are required, along with CompTIA Security+ certification.
Job ID: 5640
City: Boston
State: MA or Huntsville
Job Type: Full-time
Compensation: $0 to $0
We are hiring a Jr. Cyber Security Analyst for our federal government client. This role is remote, but we need people near Huntsville, AL or Boston, MA. This is open to US Citizens who hold at least an Active DoD Secret Clearance (Preferred).
Jr. Cyber Security Analyst
Education and Years of Experience: Bachelor’s Degree and 2+ years or more of experience; additional years of experience may be accepted in lieu of degree.
Program Description: This role supports the U.S. Air Force Cloud One Architecture and Common Shared Services contract and currently has an opening for a Cyber Security Analyst.
Location: This position will be hybrid remote. Candidates will be required to work onsite as needed. Preferred candidates will be located near Hanscom AFB (Boston, MA).
Responsibilities:
The Cyber Operations Engineer will provide Incident Response (IR) and security operations support for the USAF Cloud One (C1) enterprise cloud environment supporting AWS, Azure, Oracle, and GCP at DoD Impact Levels (IL) 2–6. The position directly supports ISSO/ISSM functions, ATO sustainment, continuous monitoring, vulnerability management, and cybersecurity compliance activities in accordance with DoDI 8500.01, DoDI 8510.01 (RMF), AFI 17-101 (RMF), DoD Cloud Computing SRG, and NIST SP 800-53
This role will work closely with Government ISSOs, ISSMs, Authorizing Officials (AOs), Cybersecurity Service Providers (CSSPs), and Cloud One engineering teams to ensure continued ATO compliance, security posture improvement and monitoring, and rapid remediation of vulnerabilities within the C1 environment.
- Maintain audit log configuration, monitoring, and retention compliance.
- Support incident reporting and documentation in accordance with DFARS 252.204-7012 and 252.239-7010.
- Ensure compliance with SCCA and Cloud SRG requirements.
- Support secure configuration of AWS, Azure, Oracle, and GCP cloud environments.
- Support the development, updates, and maintenance of RMF authorization artifacts in accordance with DoDI 8510.01 and NIST SP 800-53.
- Support Continuous Authorization to Operate (cATO) within a DevSecOps or cloud-based environment, including implementation of automated control validation, continuous monitoring integration, and real-time POA&M management.
- Support ATO maintenance and sustainment activities for C1 and DPaaS environments.
- Support Authority to Use (ATU) conditions and remediation tracking as directed by the AO.
- Assist Government ISSO/ISSM with maintaining compliance with:
- DoDI 8500.01 (Cybersecurity)
- DoDI 8510.01 (RMF)
- AFI 17-101 (RMF)
- DoD Cloud Computing SRG
- DISA STIG/SRG
- CNSSI 1253
- Support security control assessments, audit readiness, and third-party cybersecurity inspections.
Required Skills:
- Bachelors and 2+ years or more of experience
- Additional experience may be accepted in lieu of degree.
- Sufficient Cloud Experience
- CSSP experience
- SIEM experience
- Incident Response
- Active Secret clearance required
- US citizenship required
- CompTIA Security+ (IAT Level II) or equivalent required
Preferred Qualifications
- Experience with USAF Cloud One or Platform 1
- Experience with Zero Trust Architecture
- Cloud certifications in AWS, Azure, Google, or Oracle clouds
- Automation experience
- Certifications: CISSP (IAT Level III) or equivalent
Similar roles
- Cyber Security AnalystBrooksource · Charlotte, North Carolina, United States · Hybrid
Cyber Security AnalystNiterra North America, Inc. · Wixom, Michigan, United States · Onsite- Cyber Security AnalystCyber Focus AI · United States · Onsite
- Cyber Security AnalystRandstad Digital Americas · Arizona, United States · Hybrid
Sr Cyber Security AnalystOptimum · New York, United States · Onsite