Lynker Corporation is seeking a high-performing IT Security Analyst to safeguard mission-critical infrastructure for the National Data Buoy Center (NDBC). Working directly with the federal Information System Security Officer (ISSO) and contractor technical staff, you will ensure NDBC systems maintain a robust security posture, maintain continuous Authority to Operate (ATO), and adhere to federal cybersecurity standards while supporting operational mission requirements. The ideal IT Security Analyst selected will be able to work onsite at the Stennis facility.
Duties of the IT Security Analyst will include the following:
- Support the ISSO in maintaining all Risk Management Framework (RMF) artifacts, including System Security Plans (SSPs), Risk Assessment Reports (RARs), and Plans of Action and Milestones (POA&Ms).
- Lead technical teams through internal and external security audits (e.g., DOC, GAO, OIG) and the annual Assessment and Authorization (A&A) process. Gather evidence, document audit paths, and drive remediation actions to ensure continuous ATO.
- Execute routine vulnerability scans using enterprise tools (e.g., Tenable Nessus/ACAS) and guide technical teams in hardening operating systems, databases, and network devices according to DISA STIGs and CIS Benchmarks.
- Perform Security Impact Analyses (SIA) for proposed hardware, software, and configuration changes to evaluate risk and ensure compliance with NIST SP 800-53 controls.
- Monitor system logs to identify, isolate, and mitigate potential threats across hybrid infrastructure.
- Translate complex security controls into actionable requirements for IT personnel, while effectively communicating risk and compliance status to non-technical stakeholders and leadership.
- Ensure related documentation is kept current.
The IT Security Analyst selected should have the following:
Education Requirements: Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or equivalent.
Certificate Requirements: Minimum of Security+ certification; CISSP certification is preferred.
- 5+ years of progressive experience in cybersecurity, with a heavy focus on federal Information Assurance (IA) and the Risk Management Framework (RMF).
- Proven track record working within federal agency guidelines (e.g., NOAA, DOC, GAO, OIG) and navigating complex internal/external audit cycles.
- Deep, practical understanding of NIST SP 800-53 (Revision 4/5) security controls and the 7-step RMF process.
- Demonstrated ability to author and defend highly technical artifacts, including System Security Plans (SSPs), Risk Assessment Reports (RARs), and Plan of Action and Milestones (POA&Ms).
- Proficiency in translating DISA STIGs and CIS Benchmarks into actionable technical requirements for operating systems, databases, and network devices.
- Advanced experience operating and analyzing data from enterprise scanning tools, specifically Tenable Nessus, SecurityCenter, or ACAS.
- Experience navigating SIEM platforms and security dashboards to monitor system logs, correlate events, and isolate anomalies.
- Ability to conduct technical Security Impact Analyses (SIA) to determine how proposed system, hardware, or software changes will affect the overall security baseline.
- Strong technical background and able to liaison between technical IT personnel and stakeholders.
- Extensive knowledge of implementing security controls on Windows and Linux systems, both onsite and in a cloud environment (Amazon Web Services (AWS) and Microsoft Azure environments).
- Excellent communication skills with an ability to translate technical concepts for diverse stakeholders.
- Well organized, with an attention to detail.
Other:
- Must be able to successfully complete a NOAA (Stennis Space Center)/NASA background investigation for site/system access.
- Must be able to obtain and maintain facility credentials/authorization. Must be able to obtain and maintain a Public Trust clearance. Note: US Citizenship or a valid Green Card is required for facility credentials/authorization at this work location.
About Lynker
Lynker is a growing, employee owned business, specializing in professional, scientific and technical services. Our continually expanding team combines scientific expertise with mature, results-driven processes and tools to achieve technically sound, cost effective solutions in hydrology/water sciences, geospatial analysis, information technology, resource management, conservation, and management and business process improvement.
We focus on putting the right people in the right place to be effective. And having the right people is critical for success. Our streamlined organization enables and empowers our talented professionals to tackle our customers' scientific and technical priorities – creatively and effectively.
Lynker offers a team-oriented work environment, and the opportunity to work in a culture of exceptionally skilled professionals who embrace sound science and creative solutions. Lynker's benefits include the following:
Lynker is an E-Verify employer.
Lynker is an equal opportunity employer and makes all employment decisions based on merit, qualifications, and business needs. We do not discriminate on the basis of race, color, religion, sex (including pregnancy, sexual orientation, or gender identity), national origin, age, disability, genetic information, marital status, veteran status, or any other legally protected status under federal, state, or local laws.
Software Powered by ICIMS
www.icims.com