Cybersecurity Assessment Data Analyst
The Opportunity:
CACI is seeking a Cybersecurity Assessment Data Analyst to turn assessment, scan, asset, evidence, and remediation data into trusted operational insights. The analyst will support penetration testing, red team, and attack-surface evaluation by normalizing data, validating quality, identifying trends and risk concentrations, and producing repeatable dashboards and reporting products. This is a shared analytical capability; it does not replace the technical judgment of assessment SMEs.
This position will provide continuous technical assessment support for full‑time, proactive testing of externally and internally visible federal cyber assets. This expands federal visibility by conducting continual assessments of .gov domains, subdomains, and internet‑facing assets to uncover unknown exposures, validate vulnerabilities, and provide agencies with actionable remediation guidance. This role supports the Continuous Diagnostics and Mitigation (CDM) Program’s mission to safeguard and secure cyberspace in an environment where the threat of cyber-attack is continuously growing and evolving and is responsible for enhancing the security, resilience, and reliability of the Nation’s cyber and communications infrastructure. The CDM Program defends the United States (U.S.) Federal Information Technology (IT) networks from cybersecurity threats by providing continuous monitoring sensors (tools), diagnosis, mitigation tools, and associated services to strengthen the security posture of Government networks.
Responsibilities:
• Ingest, normalize, reconcile, and quality-check data from customer-approved assessment tools, scanners, APIs, repositories, tickets, operator evidence, and remediation workflows.
• Develop repeatable data models, queries, scripts, metrics, dashboards, and reporting packages that show asset coverage, finding trends, attack paths, severity, remediation status, and delivery performance.
• Correlate vulnerability and exposure data with CISA KEV, CVSS, EPSS, asset criticality, exploit evidence, threat context, and customer priorities.
• Investigate duplicates, conflicting identifiers, missing fields, stale records, outliers, and reconciliation issues; document source lineage and metric definitions.
• Build clear visualizations and executive summaries while preserving drill-down access to technical evidence and limitations.
• Partner with assessment SMEs, technical writers, project management, and customer stakeholders to answer recurring and ad-hoc questions accurately and quickly.
• Automate recurring extracts, transformations, validation checks, and deliverables using source-controlled code and documented procedures.
Qualifications:
Required:
• U.S. citizenship is required.
• The selected candidate must meet eligibility requirements for access to sensitive information and be able to obtain a Public Trust fitness determination (High Risk).
• Ability to work in customer-provided remote environments, use customer-approved tools, and comply with rules of engagement, data-handling requirements, evidence controls, deconfliction procedures, and stop-work criteria.
• Five or more years of data analysis, cybersecurity analytics, reporting, business intelligence, or data-engineering experience, including work with technical security data.
• Strong SQL and Python skills and practical experience with data cleaning, joins, APIs, structured files, quality validation, reproducible analysis, and version control.
• Experience building dashboards and reports in Power BI, Tableau, Splunk, Elastic, or comparable tools.
• Working knowledge of vulnerability, asset, finding, evidence, ticket, and remediation data and of concepts such as CVE, CVSS, CISA KEV, EPSS, false positives, and attack paths.
• Ability to define metrics precisely, reconcile conflicting sources, explain limitations, and communicate results to technical and executive audiences.
Desired:
• Experience with exposure-management, attack-surface, penetration-testing, red-team, SIEM, data-lake, or security-orchestration data.
• Experience with graph analytics, entity resolution, attack-path modeling, geospatial analysis, or large-scale internet asset data.
• AWS/Azure data services, Databricks, Snowflake, Elasticsearch, Splunk, or API-integration experience.
• Experience developing executive cyber-risk narratives, operational KPIs, SLA tracking, or remediation scorecards.
• Relevant data, cloud, security, Power BI/Tableau, Splunk/Elastic, or GIAC certification.
What You Can Expect:
A culture of integrity.
At CACI, we place character and innovation at the center of everything we do. As a valued team member, you’ll be part of a high-performing group dedicated to our customer’s missions and driven by a higher purpose – to ensure the safety of our nation.
An environment of trust.
CACI values the unique contributions that every employee brings to our company and our customers - every day. You’ll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.
A focus on continuous growth.
Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground — in your career and in our legacy.
Pay Range:
There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits.
Since this position can be worked in more than one location, the range shown is the national average for the position.
The proposed salary range for this position is:
$90,300-$189,600CACI is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, age, national origin, disability, status as a protected veteran, or any other protected characteristic.
Required Skills
Required Languages
🇬🇧 English