The Cyber Security Analyst I is a growth-track role for someone early in their cybersecurity career who wants to work in a real DIB environment, learn CMMC and NIST 800-171 from the inside, and gain hands-on experience with the full Microsoft security stack. The analyst works alongside a senior analyst and the Information & Cyber Security Manager, supporting day-to-day security operations, evidence collection, user lifecycle management, and program documentation.ResponsibilitiesEssential functions — job duties to include but are not limited to; other duties as assigned.Job duties to include but are not limited to;Security Operations Support: Triage Defender alerts, monitor phishing simulation results, review Entra ID sign-in risk events, and escalate anomalies to the senior analyst.Vulnerability Tracking: Pull weekly vulnerability reports from Defender and Nessus, update the tracker, and follow up with remediation owners on overdue items.Documentation and Evidence: Keep evidence folders current for NIST 800-171 and CMMC controls. Update procedures, screenshots, and checklists as systems change.Policy Support: Assist the senior analyst in drafting and updating policies and procedures; own version control, review cycle, and distribution.Training and Awareness: Support the monthly phishing simulation program, track completion of annual security training, and follow up with incomplete users.Tickets and Access Requests: Own the security-ticket queue for access requests, exceptions, and general security questions from the business.Program Development: Shadow the senior analyst and manager on incident response, audits, and policy work; work toward CMMC RP / Security+ / SC-200 within the first year.Other Duties: Other duties as assigned.