We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
New

Cybersecurity Analyst

Metropolitan Washington Airports Authority
United States, Virginia, Arlington
2733 Crystal Drive (Show on map)
Jul 24, 2026

Compensation Grade:

S20

Salary Range:

$94,665.00-$137,265.00

Opening Date:

July 24, 2026

Closing Date:

August 8, 2026

Please Note: All job announcements close at 11:59 p.m. of the day before the posted closing date.

As a Cybersecurity Analyst, you will implement and maintain information technology security systems in support of the Airports Authority's Information Security Program. You will be responsible for protecting the Authority's data, networks, and systems by implementing security measures, managing the Security Information and Event Management (SIEM) system responding to security alerts, conducting audits, ensuring compliance, addressing security issues, maintaining cybersecurity processes, providing training, documenting procedures, advising management, and leading incident response efforts. You will assist in reducing the attack surface by using appropriate technologies and processes to prevent, detect, and manage cyber threats; identify, monitor, assess, and counter cyber threats to our information systems and assist in implementing, and maintaining information technology security systems and procedures.

Serves in the Information Security Department of the Office of Technology located at the Headquarters Office Building.

GENERAL RESPONSIBILITIES

Monitors, tests, and reports on the confidentiality, integrity, and availability of information assets in compliance with MWAA's information security policies and industry standards.

Ensures adherence to security and compliance standards, and participates in regular security audits and assessments.

Works closely with the Network Operations and Service Desk teams to address and resolve information security issues.

Provides expertise and support to various IT teams on deploying and configuring security appliances and systems.

Manages and monitors SIEM, Endpoint Detection and Response (EDR/XDR), and other enterprise security monitoring platforms to detect, analyze, and respond to cybersecurity events. Conducts vulnerability assessments and security scans; analyzes findings; and coordinates remediation activities with system owners and technical teams.

Analyzes and responds to security alerts, escalating high-risk events to the appropriate technology team for resolution.

Performs technical security reviews and cybersecurity risk assessments for systems, applications, and technology implementations.

Identifies, logs, blocks, and reports malicious activities within the Airports Authority networks and systems.

Implements and maintains cybersecurity processes and procedures to ensure threats are effectively managed and mitigated.

Monitors external third-party threat intelligence feeds and updates cybersecurity tools accordingly.

Informs and advises appropriate operations teams of threats to software, hardware, and operating systems.

Documents cybersecurity processes and procedures, ensuring clarity and consistency.

Conducts training sessions and creates user documentation to enhance awareness and adoption of cybersecurity best practices.

Works collaboratively with cyber and technical teams and business functions to promote a culture of security awareness.

Appropriately informs and advises management on security incidents and prevention strategies.

Monitors, tests, and reports user computing activities, such as failed logins and account lockouts, and reviews internal network and remote user access to ensure access management processes are working as designed.

Participates in penetration testing and Red Team, Blue Team, and Purple Team exercises and assists with validating remediation of identified findings.Participates as a core member of the incident response team, leading efforts to mitigate and resolve security incidents. Keeps abreast of security industry developments and best practices to identify and address emerging threats to protect organizational assets proactively.

Leads initiatives to improve the Airports Authority's cybersecurity posture, proposing innovative solutions to enhance overall security capabilities.

Supports business continuity and disaster recovery planning, testing, and recovery activities related to cybersecurity.

Performs other duties as assigned.

QUALIFICATIONS

Four years of progressively responsible experience in cybersecurity or Information Security. An equivalent combination of education and experience may be considered.

Knowledge of the cyber threat landscape and proficiency in managing vulnerabilities to protect organizational systems and data.

Experience with Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR/XDR), vulnerability management, endpoint protection, identity and access management, and network security technologies.

Knowledge of NIST CSF, NIST 800-53, CIS Controls, MITRE ATT&CK, and incident response processes.

Exceptional problem-solving abilities with strong research and analytical skills to identify, assess, and address complex security challenges.

Ability to use IT system detection tools and/or penetration testing tools to safeguard IT data and systems.

Ability to implement, configure, and monitor information security devices to protect organizational systems and networks from security incidents.

Strong sense of ownership and motivation, with a drive to manage tasks from initiation to completion, ensuring high-quality outcomes.

Ability to perform general analyses of data and information and make recommendations.

Strong written and verbal communication skills with the ability to effectively communicate security information to both technical and non-technical stakeholders.

Proven ability to work collaboratively with cross-functional teams, including IT, network operations, and business units, to enhance overall security posture.

PREFERRED QUALIFICATIONS

Certifications such as Security+, CySA+, GSEC, GCIH, CISSP, or CISM.

EDUCATION

Bachelor's Degree in Cybersecurity, Information Technology, or Information Security, or a related field.

CERTIFICATIONS AND LICENSES REQUIRED

CompTIA Cybersecurity Analyst (CySA+) certification within one year of hire, placement, or promotion in the job.

NECESSARY SPECIAL FACTORS

Work is typically reviewed in progress and upon completion for quantity, quality, timeliness, teamwork, customer service, and other factors.

WHAT WE OFFER

A career with the Airports Authority comes with more than just a paycheck; it offers a comprehensive benefits package designed to support you and your family's health, financial security, and professional growth. Benefits include medical, dental, and vision coverage; well-being resources; health savings and flexible spending accounts; pension and retirement plans; and ongoing training and development opportunities. Discover more about our benefits packagehere.

A background security investigation will be required for all new hires.

Metropolitan Washington Airports Authority is an Equal Opportunity Employer.| Follow us on Twitter @MWAAcareers.

Applied = 0

(web-77cf7d65c7-zgczs)