Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees solve the most daunting challenges that our customers face. Visit peraton.com to learn how we’re keeping people around the world safe and secure.
Join Peraton in advancing the safety, efficiency, and modernization of the National Airspace System (NAS) through the FAA’s Brand New Air Traffic Control System (BNATCS) contract. As a trusted partner to the Federal Aviation Administration, Peraton helps deliver the systems and services that keep our nation’s skies safe and connected. We’re looking for innovative professionals who thrive in mission-critical environments and are passionate about shaping the future of air traffic management. This is your chance to make an impact on one of the world’s most vital transportation infrastructures, working alongside leaders in aviation, engineering, data science, and systems integration.
At Peraton, you won’t just support the mission — you’ll define it.
Help protect the systems that keep U.S. airspace safe, resilient, and trusted. We are seeking a Cyber Risk Analyst SME to support cybersecurity risk identification, assessment, and mitigation across modernization initiatives aligned with the Federal Aviation Administration (FAA). In this role, you will be at the center of cybersecurity decision-making—analyzing risk, advising leadership, and ensuring emerging technologies are deployed securely and responsibly. You’ll work across engineering, operations, and compliance teams to translate technical vulnerabilities into clear, actionable risk insights that shape how aviation systems are protected. This is an ideal role for a cybersecurity professional who thrives at the intersection of risk analysis, compliance, and mission impact.
Work Location:
Duties to include, but not be limited to:
Identify, analyze, and document cybersecurity risks across FAA systems and modernization initiatives.
Support Risk Management Framework (RMF) activities, including risk assessments, control validation, and mitigation planning.
Evaluate system compliance with NIST standards, FISMA, FedRAMP, and FAA cybersecurity requirements.
Conduct risk assessments, gap analyses, and threat evaluations for new and existing systems.
Translate technical findings into clear risk statements and executive-level recommendations.
Support system authorization (ATO), continuous monitoring, and audit readiness activities.
Collaborate with system owners, ISSOs, architects, and engineers to track and reduce cybersecurity risk.
Monitor remediation efforts and validate closure of cybersecurity findings.
Support development and maintenance of risk registers, POA&Ms, and compliance artifacts.
Prepare reports, dashboards, and briefings for FAA leadership and program stakeholders.
Cyber risk management is essential to maintaining trust in the National Airspace System. As a Cyber Risk Analyst, you help ensure that new technologies are introduced responsibly, vulnerabilities are addressed proactively, and leadership has the insight needed to make informed decisions. Your work directly supports the FAA’s mission to protect national infrastructure, reduce cyber risk, and maintain the safest and most reliable aviation system in the world. This role is not just about compliance—it’s about enabling secure innovation at a national scale.
Basic Qualifications:
Familiarity with aviation systems, critical infrastructure, or safety-critical environments.
Experience with FedRAMP cloud environments and shared responsibility models.
Knowledge of Zero Trust principles and risk-based security architectures.
Industry certifications such as CISSP, CISM, CRISC, or Security+.
Experience using GRC tools or risk tracking platforms.
Familiarity with NextGen FAA modernization efforts.
#BNATC
EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.