Mandatory Skill Set:
FedRamp Certification / FedRamp Implementation experience.
Delinea/Thycotic Secret Server, vulnerability management,
PCI Compliance, Tenable and PAM experience.
Candidate should have worked on a Federal Project.
Job Description
Core Skills:
● Detail-oriented with strong organizational abilities.
● Foundational understanding of security principles.
● Excellent communication skills.
● FedRamp:
○ Possess FedRAMP Certification.
○ Proficiency in conducting scans, analyzing findings, and collaborating with teams for timely remediation to ensure compliance.
○ Capable of working both independently and within cross-functional teams.
Job Responsibilities
Technical Expertise:
● Privileged Access Management (PAM):
○ Strong proficiency with Delinea''s Thycotic Secret Server/BeyondTrust.
○ Demonstrated knowledge of Active Directory and networking.
○ Thorough understanding of identity lifecycle management for privileged and user accounts.
● Exposure Management:
○ Extensive experience with Tenable and Wiz.
○ Proficient in executing various scans (daily, weekly, ad-hoc, monthly), including PCI Compliance, Web Application Scanning, Vulnerability Management, Attack Surface Management, and Identity Exposure.
○ Proven ability to coordinate vulnerability remediation efforts with asset owners (identified through Tenable/Wiz/Google Mandiant).
● Digital Certificates (DigiCert):
○ General understanding of digital certificate concepts.
● Access Reviews:
○ Privileged Access Reviews: Familiarity with Google Sheets and Mail Merge, along with a general understanding of Active Directory fields (e.g., nested groups, disabled/expiring accounts, Organizational Units).
○ AD Termination Reviews: Familiarity with Google Sheets and VLOOKUP commands, and a general understanding of Active Directory fields (e.g., disabled/expiring accounts, Organizational Units).
● Security Scorecard - Ground level work experience on issues like:
○ P1 Issues (Critical):
■ Ransomware infection detected.
■ Domain advertised as a ransomware victim.
■ Malware controller observed or malware infection.
■ Phishing infrastructure.
■ Alleged breach incident.
■ Anonymous open proxy.
■ Products susceptible to ransomware exploits exposed.
○ P2 Issues (High):
■ DB or RDP services exposed to the Internet.
■ Certificate revoked/expired.
■ SSH software supporting vulnerable protocols or weak ciphers/MACs.
■ SSL/TLS service supporting weak protocols or cipher suites.
■ End-of-Life (EOL) OS/Software.
■ Critical/High-Severity CVSS v3.0 Vulnerabilities.
■ Site not enforcing HTTPS.
■ FTP/Telnet/rsync/VNC/SMB/PPTP services detected.
■ Adware installation.
■ Missing SPF record.
○ P3 Issues (Medium/Low):
■ Certificate lifetime exceeding best practices or without revocation control.
■ Malformed SPF record or SPF record containing a softfail without DMARC.
■ Medium/Low-Severity CVSS v3.0 Service Vulnerabilities.
■ Missing Content Security Policy (CSP).
■ Insecure HTTPS redirect pattern or redirect chain containing HTTP.
■ Website not implementing HSTS best practices.
Department/Project Description:
As a Cybersecurity Analyst, you will play a critical role in safeguarding enterprise systems and data across a global technology environment. This position involves hands-on responsibility for managing privileged access, monitoring vulnerabilities, and driving remediation efforts to strengthen security posture. You will work closely with cross-functional teams to ensure compliance with internal policies, industry best practices, and regulatory frameworks such as FedRAMP.
Your day-to-day activities will include managing PAM solutions (Delinea/Thycotic Secret Server, BeyondTrust), conducting vulnerability scans using Tenable and Wiz, supporting identity lifecycle processes, and coordinating with asset owners to remediate findings. You will also contribute to access governance through reviews and termination checks, manage digital certificates, and address issues flagged in Security Scorecards. In addition, you will play a key role in incident detection and response for critical threats such as ransomware, phishing, and malware.
This project will provide the opportunity to directly influence the organization''s cybersecurity maturity, improve resilience against evolving threats, and ensure that critical IT assets remain secure, compliant, and continuously monitored.