Concept Plus Logo

Concept Plus

Cyber Analyst

Posted 15 Days Ago
Remote
Hiring Remotely in United States
Senior level
Remote
Hiring Remotely in United States
Senior level
Lead the RMF/ATO lifecycle for a DoD software modernization initiative, maintaining authorization packages, security documentation, risk assessments, POA&Ms, and continuous monitoring artifacts. Conduct vulnerability assessments and remediation using enterprise security tools, enforce NIST, DoD, cloud, and DISA STIG requirements, and support Agile/DevSecOps deployments. Provide secure architecture guidance, incident response, audit support, stakeholder reporting, and cybersecurity risk insights while collaborating with ISSMs, technical teams, government representatives, and Authorizing Officials.
The summary above was generated by AI

About Concept Plus
Concept Plus is a mission-focused technology solutions provider that transforms IT concepts into impactful solutions for federal agencies. Headquartered in Fairfax, VA, we bring the agility, responsiveness, and customer intimacy of a small business combined with the quality and infrastructure of a larger firm.


Recognized as an award-winning Oracle partner, we have delivered innovative solutions across Defense, Intelligence, Civilian, Health IT, and Tribal sectors. Our highly certified experts build systems that drive efficiency, accelerate modernization, and ensure mission outcomes with certainty.


We offer competitive pay, comprehensive health, dental, and vision insurance, paid life insurance, paid time off, 11 paid holidays, performance bonuses, tuition reimbursement, unlimited training, and the opportunity to thrive in a collaborative, flexible, and innovative environment.


For more information, visit www.conceptplus.com.


About the role

Concept Plus is seeking a highly capable, self-driven Cybersecurity Analyst to support a critical software modernization initiative for our client. This position plays a key role in analyzing mission-focused requirements, streamlining processes, and enhancing decision-making for operations. As the strategic link between operational objectives and technology solutions, the Cybersecurity Analyst will translate complex business needs into actionable insights and support the successful execution of priorities while ensuring alignment with client compliance standards. This role operates within a collaborative Agile and DevSecOps framework to ensure secure, timely, and iterative delivery of capabilities. The ideal candidate thrives in a fast-paced, evolving environment and brings a deep understanding of both business processes and technological integration.

What you'll do

  • Lead and maintain the full RMF/ATO lifecycle, managing security authorization packages and updating SSPs, POA&Ms, risk assessments, and continuous monitoring artifacts.
  • Ensure system confidentiality, integrity, and availability through compliance with NIST 800‑53, DoDI 8500.01, DoDI 8510.01, and related DoD cybersecurity policies.
  • Support Agile/DevSecOps deployments, integrating cybersecurity requirements into sprints, CI/CD pipelines, release schedules, and system design reviews.
  • Perform vulnerability scanning, assessment, and remediation—using Nessus, eMASS, SonarQube, Checkmarx, Trivy, Dependency Track—and ensure compliance with DISA STIGs.
  • Perform cloud-focused vulnerability scanning, assessment, and remediation using Nessus, eMASS, SonarQube, Checkmarx ensuring compliance with cloud security baselines.
  • Provide security engineering support, including secure architecture input, SSO/SSL integration, secure configuration guidance, and API/cloud security reinforcement.
  • Collaborate with technical teams, ISSMs, and AO representatives to support audits, inspections, security reviews, and risk mitigation activities.
  • Track, report, and respond to cybersecurity incidents, ensuring timely coordination and recovery actions.
  • Develop and maintain key cybersecurity documentation, including ISAs, MOAs, SoD matrices, architecture diagrams, and application/database security artifacts.
  • Monitor project progress and deliver clear, actionable cybersecurity reports and risk insights to leadership and government stakeholders.
  • Communicate effectively with internal teams, customers, and stakeholders in a clear, concise, and professional manner.

Required Qualifications

  • US Citizen with active DoD Secret Clearance (or ability to obtain one)
  • Bachelor’s Degree in an IT related field
  • 8+ years of experience as Cyber Analyst
  • 5+ years’ experience with ATO procurement in Cloud Environment
  • 5+ years in DoD Environment
  • 5+ Years Experience with the Risk Management Framework Process
  • 5+ Years Experience operating the Enterprise Mission Assurance Support Service Application (eMASS)

Preferred Qualifications

  • DOD/Government contracting experience, Government IT systems experience.
  • Able to work independently and report to a blended Cyber Team ISSM
  • Good documentation skills
  • Confident communicator with excellent verbal and written skills

Concept Plus is an Equal Opportunity Employer. As such, we will give your application full consideration without regard to your race, color, religion, sex, age, national origin, disability, veteran status, sexual orientation, gender identity, or any other classification protected by federal, state, or local law.


Similar Jobs

5 Hours Ago
Remote
US
115K-130K Annually
Senior level
115K-130K Annually
Senior level
Cloud • Information Technology • Cybersecurity
Monitor and investigate security events in a 24x7x365 cybersecurity operations center. Perform Tier 2 incident triage, incident response analysis, threat hunting, log and forensic analysis, remediation coordination, and investigation tracking through closure. Serve as an incident management coordinator, assign tasks, communicate with stakeholders and federal leadership, produce required reports, and guide analysts during active incidents. Maintain compliance with federal reporting procedures and develop defensive cybersecurity practices.
Top Skills: AntivirusEndpoint Detection And Response (Edr)FirewallsFismaHidsIds/IpsIsoLockheed Cyber Kill ChainMicrosoft Defender EdrMitre Att&CkNistProxySplunk SiemUnix/LinuxWafWindowsWindows DefenderXsoar
Yesterday
Remote
United States
88K-158K Annually
Senior level
88K-158K Annually
Senior level
eCommerce • Other • Retail
Conducts all-source cyber threat intelligence analysis across internal telemetry, external reporting, open-source research, and security investigations. Analyzes threat actors, indicators, malware, vulnerabilities, infrastructure, and campaigns; produces intelligence assessments and briefings; supports detection, incident response, threat hunting, and risk prioritization. Partners with security teams and external intelligence communities while improving CTI processes, tools, workflows, and dissemination methods.
Top Skills: Analyst NotebookCyber Kill ChainCyber Threat IntelligenceDiamond ModelDomaintoolsMaltegoMitre Att&CkUrlscanVirustotalVmray
Yesterday
Remote
United States
94K-141K Annually
Senior level
94K-141K Annually
Senior level
Aerospace • Logistics • Security • Software • Cybersecurity
Conduct cyber threat analysis and mitigation across enterprise networks. Responsibilities include triaging cyber events, analyzing host and network logs, correlating indicators and PCAP data, performing forensic and root-cause analysis, researching threat actors and intrusion sets, and producing intelligence reports and briefings. The role supports incident response, threat intelligence, situational awareness, and advanced warning for emerging cybersecurity risks.
Top Skills: Artificial IntelligenceBashCirtCyber Threat IntelligenceEndpoint Detection And ResponseForensic AnalysisHigh-Performance ComputingLinuxLog AnalysisNetwork AnalysisPcapPowershellPythonSocUnixWindows

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account