More jobs:
Cybersecurity Analyst
Job in
Cornholme, Todmorden, West Yorkshire, OL14, England, UK
Listed on 2026-02-12
Listing for:
Trace Systems Inc.
Full Time
position Listed on 2026-02-12
Job specializations:
-
IT/Tech
Cybersecurity, Information Security
Job Description & How to Apply Below
Job Overview
Cybersecurity Analyst – Portsmouth, VA
Trace Systems is seeking a Cybersecurity Analyst to support the Norfolk Naval Shipyard CIO department (Code 109). The associated network capabilities directly support Navy Fleet readiness, including fleet logistics, maintenance, ship industrial production, engineering, supply, legal, readiness, planning, hurricane disaster preparedness, worldwide base support, readiness reporting, and homeland security.
- Support the revision of the entire end‑to‑end Assessment and Authorization (A&A) process.
- Provide support for inspections and audits conducted at NNSY.
- Review A&A package submissions to ensure that system and network architectures, technical and non‑technical operating features adequately protect against unauthorized access, ensure system availability, and meet DoD/Navy Cyber Security (CS) implementation policy requirements and data protection safeguards.
- Conduct CS compliance and A&A documentation validation assessments for legacy applications, systems and networks.
- Develop or expand existing A&A and CS documentation to ensure complete documentation exists in accordance with DoD A&A and IA/CS policy.
- Perform Cyber Compliance (CC) risk assessments, evaluate system risks and provide written risk assessment reports, including overall risk analysis reviews and recommendations to the Navy Authorizing Official (NAO) and Functional Authorizing Official (FAO).
- Respond to feedback from the NAO and FAO in the form of comments and instructions to ensure coordination of efforts and correct errors, information omissions and shortfalls in A&A documentation packages.
- Communicate feedback to customers, coordinate corrections, collect responses and validate prior to forwarding for processing.
- Develop procedures to support A&A workflow processes and criteria needed to facilitate authorization decisions and NAO/FAO authorization milestones.
- Streamline A&A package efforts based on RMF status and complexity, unless operational requirements necessitate a waiver from the NNSY Package Submission Office (PSO).
- Support Cyber Security readiness reporting, assess the cyber security posture and identify trends and processes potentially dangerous to network security.
- Verify Information Assurance (IA) and CS data for units reported via databases such as eMASS, VRAM, CMRS‑N and DADMS.
- Compile and analyze data and develop a weekly/monthly CS Dashboard for NNSY leadership review.
- Communicate feedback to the NNSY CIO about CS vulnerabilities to the DODIN and coordinate corrections, collect responses and validate reporting.
- Provide support in drafting NNSY CIO strategies, plans, policies and procedures.
- Assist with Assured Compliance Assessment System (ACAS) scans.
- Ensure audit artifacts are accurate, complete and accessible, including evidence of continuous monitoring, patch management, user account management and vulnerability remediation efforts.
- Coordinate with ISSMs, ISSOs and system owners to validate systems compliance with the Risk Management Framework (RMF) requirements and audit readiness standards.
- Track and report the status of audit findings and ensure findings are assigned to responsible stakeholders, properly documented in the Plan of Action and Milestones (POA&Ms) and resolved within designated timelines.
- Active, in‑scope US Government issued Top Secret clearance.
- US Citizenship is required.
- Minimum of four (4) years of experience in CS analysis supporting cyber metrics analysis, incident response, mitigation, risk mitigation analysis and developing contingency plans. Examples of relevant experience include:
- CS / INFOSEC concepts and requirements.
- System / network vulnerability analysis.
- Risk assessment and risk mitigation analysis.
- Security Test and Evaluation (ST&E).
- Contingency planning.
- Firewall policy.
- Ports & protocol configuration.
- Vulnerability Remediation Asset Management (VRAM) activities.
- Uploading vulnerability scans as baseline system configuration in VRAM.
- Experience with cyber applications such as ACAS, HBSS, MDE, MDI, Splunk.
- Expert and mastery levels with institutional knowledge and at least four years experience with…
Note that applications are not being accepted from your jurisdiction for this job currently via this jobsite. Candidate preferences are the decision of the Employer or Recruiting Agent, and are controlled by them alone.
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search:
Search for further Jobs Here:
×