Senior Cybersecurity Analyst

OCH Technologies is seeking a Senior Cybersecurity Analyst to execute independent risk assessments and vulnerability assessments at FAA facilities. Candidate should be based at one of three FAA hub locations (Oklahoma City, Atlantic City, or DC) where major NAS programs and equipment reside, with travel to other FAA sites for assessment events. The candidate will own assigned systems, run assessments from kickoff through artifact collection through SAR delivery, and lead on-site test events.


This position supports a proposal effort and is contingent upon award, customer approval, and successful onboarding requirements.

Location

On site: FAA hub locations- Mike Monroney Aeronautical Center (MMAC) Oklahoma City, OK OR William J. Hughes Technical Center (WJHTC) Egg Harbor, NJ OR Air Traffic Control System Command Center (ATCSCC) Washington, DC.


This position has the potential to travel up to 40% to other FAA facilities nationwide for assessment events.


Core Responsibilities & Duties

  • Execute independent risk assessments on NAS and Mission Support systems using the three NIST 800-53A assessment methods (Examine, Interview, Test).
  • Lead on-site assessment events at FAA facilities nationwide. Coordinate with facility personnel, system owners, and ACG to execute assessments on schedule.
  • Conduct vulnerability scanning using tools including Nessus, WebInspect, AppDetective Pro, nMap, and other FAA-approved tools.
  • Develop System Security Assessment Reports (SARs) documenting findings, risk levels, and recommended mitigations.
  • Develop draft Plans of Action and Milestones (POAMs) with clear, actionable remediation steps.
  • Perform regression assessments to validate that previously identified vulnerabilities have been remediated.
  • Collect and analyze system configuration files, security documentation, and other artifacts required for assessment.
  • Conduct interviews with system administrators, system owners, and other personnel as part of the assessment methodology.
  • Support the Security Assessment Lead in maintaining the Integrated Master Test Schedule and coordinating resource assignments.
  • Maintain proficiency with current assessment tools and techniques. Participate in cross-training during periods between scheduled assessments.

Responsibilities may evolve over time to support team and organizational goals but will remain consistent with the overall scope of the role.

See also

要針對這個職缺調整履歷嗎?

目前無法檢查您與這個職缺的符合程度;請先將履歷加入個人檔案,下次即可查看。

A new version of freehire is available