We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
New

Senior Analyst, Secure Configuration Management

Edgewater Federal Solutions
medical insurance, dental insurance, life insurance, vision insurance, paid time off, 401(k)
United States, Maryland, Bethesda
May 16, 2025

Senior Analyst, Secure Configuration Management
Job Locations

US-MD-Bethesda


ID
2025-3753

Category
Information Technology

Type
Full Time



Overview

**Due to the contract and nature of the work US Citizenship is required**

Edgewater Federal Solutions is seeking a highly skilled Secure Configuration Management (SCM) Senior Analyst to join our Attack Surface Reduction team in support the continued development, enforcement, and automation of our Secure Configuration Management (SCM) program for a large Federal agency in the health sciences sector. This role will support technical initiatives to ensure configuration compliance across all endpoints and infrastructure, enabling risk-informed decision-making through automation and analytics.



Responsibilities

Program development:

    Support the design and continuous evolution of the company's Secure Configuration Management program.
  • Maintain and expand security configuration baselines aligned with CIS, NIST, and internal policies.
  • Collaborate with security architects, IT, and compliance to align SCM efforts with enterprise risk goals.
  • Maintain Secure Configuration knowledge base and Wiki as needed.

Configuration Assessment & Automation:

  • Operationalize configuration scanning across multiple business units, ensuring comprehensive asset coverage.
  • Create and maintain data ingestion pipelines for configuration data.
  • Automate misconfiguration detection, remediation, and exception workflows.

Analytics & Reporting:

  • Design actionable dashboards and queries in PowerBI to visualize misconfigurations, trends, and remediation progress.
  • Translate technical findings into risk-based insights for both engineering teams and executive leadership.

Security Integration:

  • Integrate SCM data and alerts into SIEM/SOAR platforms for real-time detection and incident response.
  • Support automated remediation via ITSM tools (e.g., ServiceNow, Jira) and scripting (e.g., Python, PowerShell).


Qualifications

  • 3+ years working in Secure Configuration Management.
  • U.S. Citizenship is required.
  • General knowledge of operating system security hardening across:
  • Windows (Group Policy Objects, PowerShell DSC, SCCM)
  • macOS (Jamf, Apple Configurator, CIS macOS Benchmarks)
  • Linux (SELinux, AppArmor, Ansible, Puppet, Chef)
  • Strong experience with SCAP compliant scanning tools (Nessus, Qualys, OpenSCAP, etc.) including API-based data extraction.
  • Deep understanding of secure configuration benchmarks (CIS, NIST, DISA STIGs, etc.).
  • Experience with scripting languages (XML, RegEx, etc.)
  • Strong problem-solving and troubleshooting skills.
  • Communication and collaboration skills.

Preferred Qualifications:

  • BA/BS degree from an accredited university in a related field or equivalent work experience. * Experience with major Cloud Service Providers (AWS, Azure, GCP).
  • Familiarity with infrastructure-as-code and cloud-native remediation tools (e.g., AWS Systems Manager, Terraform).

Additional benefits include:

  • Paid Time Off & Holiday Pay
  • Medical Insurance
  • Dental Insurance
  • Vision Insurance
  • Disability, Life Insurance, and AD&D
  • Flexible Spending Accounts
  • Pre-Tax 401K and/or After-Tax Roth IRA (with employer matching contribution)
  • Tuition and Technical Training Reimbursement
  • Exercise Reimbursement
  • Computer Reimbursement
  • Employee Assistance Program

About Us:

Edgewater Federal Solutions is a privately held government contracting firm located near Frederick, MD. The company was founded in 2002 with the vision of being highly recognized and admired for supporting customer missions through employee empowerment, exceptional services, and timely delivery. Edgewater is ISO 9001, 20000-1, 27001 certified, appraised at CMMI Level 3 Maturity for Development and Services, and has been named in the Top Workplaces in the Greater Washington Area Small Companies for 2018 through 2024.

It has been and continues to be the policy of Edgewater Federal Solutions to provide equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, national origin, age, disability, marital status, veteran status, and/or other status protected by applicable law.

Applied = 0

(web-7fb47cbfc5-6j2jx)