Cyber Vulnerability Analyst
Koniag Government Services
About the role
About
Koniag IT Systems, LLC, a Koniag Government Services company, is seeking a Cyber Vulnerability Analyst (Encryptor Specialist) with a TS/SCI security clearance to support KPS and our government customer in Falls Church, VA.
Koniag Government Services (KGS) is an Alaska Native Owned corporation supporting the values and traditions of our native communities through an agile employee and corporate culture that delivers Enterprise Solutions, Professional Services and Operational Management to Federal Government Agencies. As a wholly owned subsidiary of Koniag, we apply our proven commercial solutions to a
Benefits
- Competitive compensation
- Health, dental, and vision insurance
- 401K with company matching
- Flexible spending accounts
- Paid holidays
- Three weeks paid time off
- More
Key Responsibilities
- Conduct comprehensive vulnerability assessments of systems and networks to identify deviations from security policies and standards.
- Utilize industry-standard scanning tools (e.g., Nessus, Qualys, Rapid7) to identify and analyze security risks.
- Configure, manage, and troubleshoot encryption devices to ensure secure and reliable operation.
- Analyze and respond to digital evidence and threat intelligence to mitigate system and network vulnerabilities effectively.
- Assess and vet findings from vulnerability disclosure programs (VDP) to prioritize and remediate security risks.
- Ensure all network components and configurations are in compliance with Department of Defense (DoD) security standards and organizational policies.
- Develop and maintain cybersecurity indicators to provide awareness of the current threat landscape and the status of the operating environment.
- Collaborate with network engineers and system administrators to implement remediation plans and strengthen security posture.
Required Qualifications
Security Clearance
- Must possess an active Secret or Top Secret/SCI security clearance.
Education & Experience
- Bachelor’s degree in Cybersecurity, Information Technology, or a related field with 3+ years of relevant experience, OR
- Associate's degree with 5+ years of relevant experience.
Certifications
- Minimum of CompTIA Security+ or an equivalent DoD 8570 baseline certification.
Technical Expertise
- Demonstrated experience with the configuration and maintenance of TACLANE devices or similar NSA‑certified Type 1 encryption hardware.
- Strong understanding of IP networking protocols, VPNs, and network security architecture.
- Experience with GEM One encryptor management tools.
- Current understanding of industry best‑practices for network architectures and security.
Preferred Skills and Knowledge
Frameworks
- In‑depth knowledge of cybersecurity frameworks such as NIST, CVSS, and MITRE ATT&CK.
Vendor Hardware
- Familiarity with commercial (e.g., Cisco, Juniper, etc.) routers, switches, and security appliances.
Threat Analysis
- Experience in collecting, analyzing, and disseminating cybersecurity threat assessments.
Environment
- Prior experience working within a Department of Defense (DoD) or government contracting environment.
- Familiarity with DoD Instruction 8523.01 and related guidance, preferably with prior experience within the Communications Security (COMSEC) subject area.
Office Location and Travel
- Falls Church, VA (partial Telework eligible)
- Some travel (<25%)
Equal Employment Opportunity Policy
The company is an equal opportunity employer. The company shall not discriminate against any employee or applicant because of race, color, religion, creed, ethnicity, sex, sexual orientation, gender or gender identity (except where gender is a bona fide occupational qualification), national origin or ancestry, age, disability, citizenship, military/veteran status, marital status, genetic information or any other characteristic protected by applicable federal, state, or local law. We are committed to equal employment opportunity in all decisions related to employment, promotion, wages, benefits, and all other privileges, terms, and conditions of employment.
The company is dedicated to seeking all qualified applicants. If you require an accommodation to navigate or apply for a position on our website, please get in touch with Heaven Wood via e‑mail at accommodations@koniag-gs.com or by calling 703-488-9377 to request accommodations.
Requirements
- Must possess an active Secret or Top Secret/SCI security clearance
- Bachelor’s degree in Cybersecurity, Information Technology, or a related field with 3+ years of relevant experience, OR
- Associate's degree with 5+ years of relevant experience
- Minimum of CompTIA Security+ or an equivalent DoD 8570 baseline certification
- Demonstrated experience with the configuration and maintenance of TACLANE devices or similar NSA-certified Type 1 encryption hardware
- Strong understanding of IP networking protocols, VPNs, and network security architecture
- Experience with GEM One encryptor management tools
- Current understanding of industry best-practices for network architectures and security
- In-depth knowledge of cybersecurity frameworks such as NIST, CVSS, and MITRE ATT&CK
- Familiarity with commercial (e.g. Cisco, Juniper, etc) routers, switches, and security appliances
- Experience in collecting, analyzing, and disseminating cybersecurity threat assessments
- Prior experience working within a Department of Defense (DoD) or government contracting environment
- Familiarity with DoD Instruction 8523.01 and related guidance, preferably with prior experience within the Communications Security (COMSEC) subject area
Responsibilities
- This role is responsible for implementing protections of government network infrastructure, with a specialized focus on identifying, analyzing, and mitigating vulnerabilities associated with various HAIPE (High Assurance Internet Protocol Encryptor) hardware and other network systems
- The ideal candidate will assess systems against established policies, measure the effectiveness of our defense-in-depth architecture, and help ensure the integrity of data networks
- Conduct comprehensive vulnerability assessments of systems and networks to identify deviations from security policies and standards
- Utilize industry-standard scanning tools (e.g., Nessus, Qualys, Rapid7) to identify and analyze security risks
- Configure, manage, and troubleshoot encryption devices to ensure secure and reliable operation
- Analyze and respond to digital evidence and threat intelligence to mitigate system and network vulnerabilities effectively
- Assess and vet findings from vulnerability disclosure programs (VDP) to prioritize and remediate security risks
- Ensure all network components and configurations are in compliance with Department of Defense (DoD) security standards and organizational policies
- Develop and maintain cybersecurity indicators to provide awareness of the current threat landscape and the status of the operating environment
- Collaborate with network engineers and system administrators to implement remediation plans and strengthen security posture
Benefits
Skills
Don't send a generic resume
Paste this job description into Mimi and get a resume tailored to exactly what the hiring team is looking for.
Get started free