Business Analyst / Cyber Analyst

Digital Global Connectors

McLean, UShybridPosted Jul 28, 2026
Posting intelligenceActively listed

Skills

confluenceexceljira

About the role

Business Analyst / Cyber Analyst

Location: Bethesda, MD (Hybrid; On-site as Required)

Clearance: Tier 2 Public Trust (Required)

Employment Type: Full-Time

Position Summary

Digital Global Connectors (DGC) is seeking an experienced Business Analyst / Cyber Analyst to support a Federal information security program. This position serves as a liaison between business stakeholders, cybersecurity personnel, technical teams, and program leadership to identify requirements, analyze operational needs, document processes, and support the delivery of effective cybersecurity services.

The Business Analyst / Cyber Analyst supports information security intake, requirements analysis, project coordination, Risk Management Framework activities, process improvement, reporting, and stakeholder communications. The position translates business and mission needs into clear, actionable technical and cybersecurity requirements while helping ensure that security initiatives are properly planned, documented, tracked, and implemented.

The successful candidate will possess strong analytical, communication, documentation, and organizational skills, along with experience supporting cybersecurity or information technology programs within a Federal environment.

Essential Duties and Responsibilities:

Business and Requirements Analysis

Gather, analyze, validate, and document business, operational, technical, and cybersecurity requirements.

Conduct stakeholder interviews, working sessions, and requirements-gathering meetings.

Translate business needs into clear functional and technical requirements.

Identify gaps, dependencies, assumptions, constraints, and risks affecting cybersecurity initiatives.

Develop requirements traceability matrices and other documentation supporting project execution.

Validate requirements with stakeholders before implementation.

Support prioritization of business and cybersecurity requirements based on mission needs and risk.

Information Security Intake and Front Door Support

Serve as an initial point of coordination for cybersecurity requests, questions, and service needs.

Review incoming requests to determine scope, urgency, ownership, and required cybersecurity support.

Route requests to the appropriate cybersecurity team or subject matter expert.

Track requests from intake through resolution.

Maintain accurate intake records, status information, and supporting documentation.

Identify recurring request types and recommend improvements to intake and routing processes.

Assist stakeholders in understanding cybersecurity service requirements and submission procedures.

Cybersecurity Program Support

Support cybersecurity initiatives involving governance, risk management, compliance, security operations, vulnerability management, cloud security, and system authorization.

Assist technical teams in documenting cybersecurity requirements and implementation activities.

Support coordination among Security Engineers, ISSOs, Security Assessors, System Owners, Project Managers, and other stakeholders.

Monitor assigned cybersecurity actions and follow up on outstanding items.

Assist with preparation for cybersecurity meetings, reviews, assessments, and briefings.

Support implementation of program policies, procedures, standards, and guidance.

Risk Management Framework Support

Assist with activities supporting the Risk Management Framework.

Review and organize system security documentation.

Support development and maintenance of System Security Plans, Plans of Action and Milestones, risk assessments, and continuous monitoring documentation.

Track security control implementation and remediation activities.

Assist ISSOs and System Owners in gathering evidence supporting security authorization activities.

Support coordination of Security Control Assessments and authorization reviews.

Maintain status trackers for authorization milestones, findings, and corrective actions.

Process Analysis and Improvement

Analyze existing cybersecurity and business processes to identify inefficiencies, gaps, and improvement opportunities.

Document current-state and future-state workflows.

Develop process maps, standard operating procedures, job aids, and workflow documentation.

Recommend process improvements that increase efficiency, consistency, accountability, and transparency.

Support implementation of approved process changes.

Measure the effectiveness of revised processes and recommend further refinements.

Promote standardization across cybersecurity service delivery activities.

Data Analysis and Reporting

Collect, analyze, and summarize cybersecurity program data.

Develop recurring and ad hoc reports for program leadership and Government stakeholders.

Track performance indicators, service metrics, milestones, risks, and action items.

Create dashboards and status reports that clearly communicate program performance.

Identify trends, anomalies, and recurring issues within cybersecurity data.

Validate data accuracy before inclusion in reports or executive briefings.

Support development of recommendations based on quantitative and qualitative analysis.

Project and Task Coordination

Support planning and coordination of cybersecurity projects, initiatives, and operational tasks.

Maintain project schedules, action registers, risk logs, decision logs, and status trackers.

Monitor milestones, deliverables, dependencies, and due dates.

Coordinate meetings and document decisions, assignments, and follow-up actions.

Escalate schedule risks, unresolved issues, and resource constraints to program leadership.

Support Agile, traditional, or hybrid project delivery methods as required.

Assist Project Managers and technical leads with administrative and analytical support.

Documentation Development

Develop, maintain, and update:

Business Requirements Documents

Functional Requirements Documents

Requirements Traceability Matrices

Process Maps and Workflow Diagrams

Standard Operating Procedures

Meeting Minutes and Action Logs

Risk and Issue Registers

Project Status Reports

Cybersecurity Metrics Reports

Executive Briefings

Decision Documents

Gap Analyses

Stakeholder Communications

Training and Reference Materials

Ensure documentation is clear, accurate, current, and appropriate for its intended audience.

Stakeholder Engagement

Collaborate with technical and non-technical stakeholders across the organization.

Facilitate meetings, workshops, interviews, and requirements-review sessions.

Communicate complex cybersecurity topics in clear business language.

Maintain productive working relationships with Government personnel, contractors, technical teams, and program leadership.

Assist stakeholders in resolving requirements, process, and documentation issues.

Present findings, recommendations, and status information to leadership as required.

Promote effective communication across cybersecurity service areas.

Quality Assurance

Review deliverables for completeness, consistency, accuracy, and compliance with established standards.

Verify that documented requirements align with stakeholder needs.

Perform quality checks on reports, process documentation, trackers, and briefing materials.

Identify documentation gaps and coordinate corrective actions.

Support internal reviews before deliverables are submitted to Government stakeholders.

Maintain document version control and records-management practices.

Continuous Improvement

Monitor changes in Federal cybersecurity policies, standards, and industry practices.

Recommend improvements to business analysis, reporting, and cybersecurity support processes.

Identify opportunities to automate manual workflows and reporting activities.

Support lessons-learned sessions and after-action reviews.

Maintain professional knowledge of cybersecurity governance, business analysis, and project management practices.

Pursue relevant training and professional certifications.

Minimum Qualifications

Bachelor’s degree in Business Administration, Cybersecurity, Information Technology, Information Systems, Management, or a related discipline.

Minimum three (3) years of experience performing business analysis, cyber analysis, requirements analysis, or program support.

Experience gathering and documenting business, functional, or technical requirements.

Experience supporting cybersecurity, information technology, or Federal programs.

Experience developing process documentation, reports, presentations, and status trackers.

Familiarity with the Risk Management Framework and NIST cybersecurity guidance.

Strong analytical, organizational, writing, facilitation, and communication skills.

Proficiency with Microsoft Office applications, including Word, Excel, PowerPoint, Visio, and SharePoint.

U.S. Citizenship required.

Ability to obtain and maintain a Tier 2 Public Trust.

Preferred Qualifications

Master’s degree in Business Administration, Cybersecurity, Information Systems, or a related discipline.

Experience supporting a Federal civilian agency.

Experience supporting system authorization, governance, risk, and compliance activities.

Experience with Agile project delivery or Scrum environments.

Experience using ServiceNow, Jira, Confluence, Microsoft Power BI, or comparable workflow and reporting tools.

Experience developing executive dashboards and cybersecurity metrics.

Certified Business Analysis Professional (CBAP)

PMI Professional in Business Analysis (PMI-PBA)

CompTIA Security+

Certified ScrumMaster (CSM)

Project Management Professional (PMP) or Certified Associate in Project Management (CAPM), preferred

Knowledge, Skills, and Abilities

Business Analysis

Cybersecurity Program Analysis

Requirements Gathering

Requirements Documentation

Requirements Traceability

Process Analysis

Process Mapping

Workflow Development

Gap Analysis

Risk and Issue Tracking

Risk Management Framework

NIST SP 800-37

NIST SP 800-53

Security Authorization Support

Continuous Monitoring Support

Governance, Risk, and Compliance

Project Coordination

Agile and Scrum Methodologies

Data Analysis

Cybersecurity Metrics

Executive Reporting

Technical Writing

Stakeholder Facilitation

Microsoft Word

Microsoft Excel

Microsoft PowerPoint

Microsoft Visio

Microsoft SharePoint

Microsoft Power BI

ServiceNow

Jira

Confluence

Security Requirements

Ability to successfully obtain and maintain a Tier 2 Public Trust investigation.

Compliance with all applicable Federal security, privacy, ethics, and information assurance training requirements before receiving system access.

Ability to support cybersecurity assessments, authorization activities, audits, continuity of operations, and surge requirements as needed.

Must maintain strict confidentiality while handling sensitive cybersecurity information, system documentation, vulnerability data, and Federal information.

Ability to work collaboratively with Government stakeholders, technical teams, and program leadership while ensuring requirements, processes, and deliverables support mission and cybersecurity objectives.

Questions about this role

Click "Apply with AI Applyd" above and you are done. Your resume is rewritten for this advert, the screening questions are answered, and it is submitted on Digital Global Connectors's own hiring system. No retyping your history, no fourteen tabs, no evening lost.

Compensation for Other roles in United States varies widely by seniority, employer size, and remote vs onsite arrangement. Check the salary range on this listing when published, or browse our Other hub for United States medians across recent openings.

You never touch the form - the application is filled and submitted for you on Digital Global Connectors's own hiring system. It is not marked sent when we press submit. It is marked sent when a confirmation from their system arrives at the address we apply with, and your dashboard shows which stage each application is at until then.

Twelve applicant tracking systems have a real apply path: Workday, Greenhouse, Lever, Ashby, Workable, iCIMS, Personio, Recruitee, Teamtailor, Rippling, Breezy and SmartRecruiters. Your application goes in on the employer's own hiring system, never into an aggregator queue.

Want AI Applyd to auto-apply to roles like this?

We tailor your resume per posting, fill the forms, and track replies for you.