Summary
Technomics, Inc. is a growing employee-owned decision analytics company that specializes in cost and economic analysis. They are seeking a Junior Cyber Risk Data Engineer/Analyst to focus on the data side of cyber risk management, helping to organize and manage risk assessment data while building data-driven capabilities for proactive risk identification.
Responsibilities
- Support senior SMEs by collecting, organizing, and structuring cyber risk assessment outputs into usable datasets and knowledge repositories
- Implement data tagging, metadata standards, and knowledge capture practices to enable traceability and lessons-learned reuse across assessments
- Connect assessment data with external threat and vulnerability databases (e.g., MITRE ATT&CK, CVE/NVD, vendor advisories) to enrich analysis and support proactive risk identification
- Develop and maintain structured datasets, dashboards, or knowledge management tools that allow for trend analysis and predictive insights
- Assist in building data-driven capabilities to shift risk management from reactive reporting toward proactive detection and trend anticipation
- Work closely with senior cyber SMEs to ensure data accurately reflects risk findings, mitigation considerations, and enterprise impacts
- Support the development of data visualization products, analytic reports, and briefing materials for leadership
- Contribute to the maturation of the clients risk knowledge base by aligning historical assessment data with new findings
Skills
- 1–3 years of experience in cybersecurity, data analysis, or IT risk management
- Familiarity with cybersecurity frameworks such as NIST SP 800-30, RMF, or MITRE ATT&CK (coursework, internships, or entry-level experience acceptable)
- Demonstrated experience with data analysis, organization, and visualization (Excel, Power BI, Tableau, or similar)
- Ability to work with structured and unstructured data, including tagging, metadata, and relational mapping
- Strong written and verbal communication skills to document findings and support SME deliverables
- Active DOE Q or higher (or ability to obtain)
- Experience supporting national security organizations
- Familiarity with cyber threat and vulnerability databases (CVE, NVD, CISA KEV catalog, vendor advisories)
- Coursework or hands-on exposure to Python, SQL, or other scripting tools for data handling
- Technical certifications such as Security+
- Understanding of knowledge management or data governance practices
- Ability to work in a team-oriented, high-paced environment and interact with both technical and non-technical stakeholders
Qualifications
Must Haves
- 1–3 years of experience in cybersecurity, data analysis, or IT risk management
- Familiarity with cybersecurity frameworks such as NIST SP 800-30, RMF, or MITRE ATT&CK (coursework, internships, or entry-level experience acceptable)
- Demonstrated experience with data analysis, organization, and visualization (Excel, Power BI, Tableau, or similar)
- Ability to work with structured and unstructured data, including tagging, metadata, and relational mapping
- Strong written and verbal communication skills to document findings and support SME deliverables
- Active DOE Q or higher (or ability to obtain)
Nice to Haves
- Experience supporting national security organizations
- Familiarity with cyber threat and vulnerability databases (CVE, NVD, CISA KEV catalog, vendor advisories)
- Coursework or hands-on exposure to Python, SQL, or other scripting tools for data handling
- Technical certifications such as Security+
- Understanding of knowledge management or data governance practices
- Ability to work in a team-oriented, high-paced environment and interact with both technical and non-technical stakeholders