We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
New

Senior Continuous Monitoring Analyst

ANALYGENCE
United States, D.C., Washington
Oct 01, 2026

Tharros supports the Department of Homeland Security (DHS) with cybersecurity services across its Intelligence Enterprise.

In support of this mission, we have an immediate opportunity for a Senior Continuous Monitoring Analyst. In this role you will mature DHS continuous monitoring (ConMon) program toward an advanced Intelligence Community Zero Trust maturity level. You will integrate security tool data into automated dashboards and cyber heat maps, produce IC vulnerability and performance reporting, and brief leadership on enterprise risk posture. This position is on-site in a Government SCIF in Washington, DC.

Duties include but not limited to:


  • Provide continuous monitoring of DHS IE networks, systems, and users using Government-approved tools.
  • Integrate automated data feeds (GRC, Nessus, Axonius, GitLab, Splunk, SCCM) into cyber heat maps and dashboards.
  • Develop and maintain RIVET dashboards and analytics integrated with the GRC tool.
  • Produce and maintain the automated feed for monthly IC Vulnerability Alerts (ICVA) and IC Vulnerability Management (ICVM) reports.
  • Produce the CISO Scorecard and quarterly Cybersecurity Performance Evaluation Model (CPEM) submissions.
  • Conduct weekly POA&M monitoring and track system owner remediation.
  • Identify anomalies in the operational environment and report them to designated personnel.
  • Recommend ConMon improvements and update ConMon SOPs.
  • BS degree in Information Technology, Cybersecurity, Information Systems, Data Science, or Computer Science OR minimum of 10 years' experience in IT or cybersecurity.
  • Minimum of 7 years' experience in vulnerability management or continuous monitoring.
  • Active TS/SCI clearance and U.S. citizenship; willingness to undergo a DHS counterintelligence-scope polygraph.
  • Knowledge of continuous monitoring program requirements under NIST SP 800-137 and RMF.
  • Knowledge of vulnerability management metrics and reporting.
  • Knowledge of Federal or IC security performance reporting (e.g., ICVM/ICVA, CPEM, FISMA ConMon).
  • Skill in using Tenable.sc/ACAS or Nessus.
  • Skill in building dashboards in Splunk or Tableau.
  • Ability to integrate data from multiple security tools into a single view of risk.
  • Proficient in Microsoft Office Suite to include Teams or similar workplace chat and videoconferencing tools.
  • Excellent written and oral communications skills.

Desired


  • Knowledge of IC Zero Trust maturity levels.
  • Experience with RSA Archer, Axonius, Tanium, or CyberArk.
  • Proficiency with Python, PowerShell, or Splunk SPL.
  • CISSP, CySA+, GCIA, or Tenable certification.

Applied = 0

(web-9db6c7984-m8w6w)