Concept Plus Logo

Concept Plus

Cyber Analyst

Posted 15 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in United States
Senior level
Remote
Hiring Remotely in United States
Senior level
Lead RMF/ATO lifecycle and cloud ATO activities, perform vulnerability scanning and remediation, integrate security into Agile/DevSecOps, support audits and incident response, and produce cybersecurity documentation and risk reporting to stakeholders.
The summary above was generated by AI

About Concept Plus
Concept Plus is a mission-focused technology solutions provider that transforms IT concepts into impactful solutions for federal agencies. Headquartered in Fairfax, VA, we bring the agility, responsiveness, and customer intimacy of a small business combined with the quality and infrastructure of a larger firm.


Recognized as an award-winning Oracle partner, we have delivered innovative solutions across Defense, Intelligence, Civilian, Health IT, and Tribal sectors. Our highly certified experts build systems that drive efficiency, accelerate modernization, and ensure mission outcomes with certainty.


We offer competitive pay, comprehensive health, dental, and vision insurance, paid life insurance, paid time off, 11 paid holidays, performance bonuses, tuition reimbursement, unlimited training, and the opportunity to thrive in a collaborative, flexible, and innovative environment.


For more information, visit www.conceptplus.com.


About the role

Concept Plus is seeking a highly capable, self-driven Cyber Analyst to support a critical software modernization initiative for our client. This position plays a key role in analyzing mission-focused requirements, streamlining processes, and enhancing decision-making for operations.

As the strategic link between operational objectives and technology solutions, the Cyber Analyst will translate complex business needs into actionable insights and support the successful execution of priorities while ensuring alignment with client compliance standards.

This role operates within a collaborative Agile and DevSecOps framework to ensure secure, timely, and iterative delivery of capabilities. The ideal candidate thrives in a fast-paced, evolving environment and brings a deep understanding of both business processes and technological integration.


What you'll do

  • Lead and maintain the full RMF/ATO lifecycle, managing security authorization packages and updating SSPs, POA&Ms, risk assessments, and continuous monitoring artifacts.
  • Ensure system confidentiality, integrity, and availability through compliance with NIST 800‑53, DoDI 8500.01, DoDI 8510.01, and related DoD cybersecurity policies.
  • Support Agile/DevSecOps deployments, integrating cybersecurity requirements into sprints, CI/CD pipelines, release schedules, and system design reviews.
  • Perform vulnerability scanning, assessment, and remediation—using Nessus, eMASS, SonarQube, Checkmarx, Trivy, Dependency Track—and ensure compliance with DISA STIGs.
  • Perform cloud focused vulnerability scanning, assessment, and remediation using Nessus, eMASS, SonarQube, Checkmarx ensuring compliance with cloud security baselines.
  • Provide security engineering support, including secure architecture input, SSO/SSL integration, secure configuration guidance, and API/cloud security reinforcement.
  • Collaborate with technical teams, ISSMs, and AO representatives to support audits, inspections, security reviews, and risk mitigation activities.
  • Track, report, and respond to cybersecurity incidents, ensuring timely coordination and recovery actions.
  • Develop and maintain key cybersecurity documentation, including ISAs, MOAs, SoD matrices, architecture diagrams, and application/database security artifacts.
  • Monitor project progress and deliver clear, actionable cybersecurity reports and risk insights to leadership and government stakeholders.
  • Communicate effectively with internal teams, customers, and stakeholders in a clear, concise, and professional manner.


Required Qualifications

  • US Citizen
  • Ability to obtain and/or maintain a government clearance.
  • Bachelor’s Degree in an IT related field
  • CISSP Certification (IAT Level 3 Certification)
  • 8+ years of experience as Cyber Analyst
  • 5+ years’ experience with ATO procurement in Cloud Environment
  • 5+ years in DoD Environment
  • 5+ Years Experience with the Risk Management Framework Process
  • 5+ Years Experience operating the Enterprise Mission Assurance Support Service Application (eMASS)


Preferred Qualifications

  • DOD/Government contracting experience, Government IT systems experience.
  • Able to work independently and report to a blended Cyber Team ISSM
  • Good documentation skills
  • Confident communicator with excellent verbal and written skills


Concept Plus is an Equal Opportunity Employer. As such, we will give your application full consideration without regard to your race, color, religion, sex, age, national origin, disability, veteran status, sexual orientation, gender identity, or any other classification protected by federal, state, or local law.


Similar Jobs

Yesterday
Easy Apply
In-Office or Remote
Easy Apply
Mid level
Mid level
Cloud • Information Technology • Consulting • Cybersecurity • Data Privacy
The Federal Cyber Security Analyst will architect and implement solutions for security metrics and compliance, work with clients on cybersecurity programs, and enhance security posture. Responsibilities include compliance monitoring, risk assessments, and client communication.
Top Skills: AWSAzureDatadogGCPHexnodeJAMFJumpcloudMicrosoft Endpoint Manager
4 Hours Ago
Remote
IL, USA
91K-154K Annually
Mid level
91K-154K Annually
Mid level
Insurance
Lead and conduct complex cyber and technology risk assessments, model attack paths using MITRE ATT&CK, evaluate control effectiveness, and deliver clear remediation recommendations. Advise stakeholders and senior leadership, monitor emerging threats and regulations, support risk framework design and continuous improvement, and collaborate cross-functionally to strengthen technology risk posture.
Top Skills: Adversary SimulationCloud PlatformsContainerizationGrc PlatformsIdentity And Access Management (Iam)Mitre Att&CkNetworksOperating SystemsRed TeamingSecurity ArchitectureStorageZero Trust
Yesterday
In-Office or Remote
123K-164K Annually
Senior level
123K-164K Annually
Senior level
Insurance
Operate and mature the CTI program by ingesting and analyzing intelligence from TIPs and OSINT, managing IOCs, integrating intelligence into SIEM/SOAR/EDR, supporting investigations and threat hunting, analyzing vulnerability/exploit trends, producing reports and briefings, and improving intelligence workflows to drive detection, blocking, and mitigation.
Top Skills: EdrFlashpointIntel 471IocsKevMitre Att&CkOsintRecorded FutureSIEMSoarThreat Intelligence Platform (Tip)Zerofox

What you need to know about the Austin Tech Scene

Austin has a diverse and thriving tech ecosystem thanks to home-grown companies like Dell and major campuses for IBM, AMD and Apple. The state’s flagship university, the University of Texas at Austin, is known for its engineering school, and the city is known for its annual South by Southwest tech and media conference. Austin’s tech scene spans many verticals, but it’s particularly known for hardware, including semiconductors, as well as AI, biotechnology and cloud computing. And its food and music scene, low taxes and favorable climate has made the city a destination for tech workers from across the country.

Key Facts About Austin Tech

  • Number of Tech Workers: 180,500; 13.7% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Dell, IBM, AMD, Apple, Alphabet
  • Key Industries: Artificial intelligence, hardware, cloud computing, software, healthtech
  • Funding Landscape: $4.5 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Live Oak Ventures, Austin Ventures, Hinge Capital, Gigafund, KdT Ventures, Next Coast Ventures, Silverton Partners
  • Research Centers and Universities: University of Texas, Southwestern University, Texas State University, Center for Complex Quantum Systems, Oden Institute for Computational Engineering and Sciences, Texas Advanced Computing Center

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account