Blue Team Lead / Sr Cyber Defense Analyst

Indigo IT

$125K — $150K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 7+ years of experience in leading cyber defense or threat hunting operations in a federal or DoD setting.
  • Expertise in working with SIEM platforms and endpoint detection technologies.
  • Proficient in creating detection content using YARA, Snort, Suricata, and other security frameworks.
  • Familiarity with adversary tactics and techniques, particularly MITRE ATT&CK and APT behaviors.
  • Active DoD Secret clearance required.
  • Relevant certifications such as Security+, CASP, or CISSP are preferred.

Responsibilities

  • Lead investigations and analysis of advanced cyber threats and complex security incidents.
  • Plan and conduct threat hunting to uncover undetected malicious activities.
  • Develop and maintain detection content for SIEM systems and other security tools.
  • Collaborate with Cyber Threat Intelligence teams to enhance detection capabilities.
  • Direct incident response efforts, focusing on containment and recovery.
  • Mentor Tier 1 and Tier 2 analysts to strengthen team skills and effectiveness.
  • Continuously evaluate and propose enhancements to cyber defense processes and tools.

Benefits

  • Medical, Dental, and Vision coverage options.
  • 401(k) plan with company match.
  • Group life insurance and disability coverage.
  • Flexible Spending Accounts (FSA).
  • Paid Time Off (PTO) and paid holidays.
  • Education assistance for ongoing professional development.
  • In-house training programs and recognition for innovative contributions.
Full Job Description
Blue Team Lead / Sr Cyber Defense Analyst

Fort Bragg, NC

POSITION SUMMARY:

The Blue Team Lead / Senior Cyber Defense Analyst is responsible for leading advanced cyber defense operations for an Army cyber contract. This role serves as the technical lead for threat detection, threat hunting, incident analysis, and detection engineering, with a focus on identifying and mitigating advanced persistent threats (APTs) and sophisticated cyber intrusions.

Key Responsibilities:
  • Lead the investigation and analysis of advanced cyber threats, suspected APT activity, and complex security incidents.
  • Plan and execute proactive threat hunting operations to identify malicious activity not detected by traditional security controls.
  • Develop, test, and maintain detection content, including SIEM correlation rules, YARA rules, Snort/Suricata signatures, and host-based detection policies.
  • Collaborate with Cyber Threat Intelligence (CTI) teams to validate and promote new detection signatures into the enterprise security monitoring environment.
  • Provide technical leadership during incident response activities and support containment, eradication, and recovery efforts.
  • Mentor and provide on-the-job training to Tier 1 and Tier 2 Cyber Defense Analysts, improving team capabilities and operational effectiveness.
  • Continuously refine detection strategies and recommend improvements to cyber defense processes, tools, and procedures.
  • Prepare technical reports, document findings, and communicate risks and recommendations to leadership.

Preferred Qualifications:
  • 7+ years experience leading cyber defense, threat hunting, or Security Operations Center (SOC) teams in a DoD or federal environment.
  • Strong knowledge of SIEM platforms, network and endpoint detection technologies, and threat detection methodologies.
  • Experience creating detection content using tools such as YARA, Snort, Suricata, and host-based security solutions.
  • Understanding of adversary tactics, techniques, and procedures (MITRE ATT&CK) and advanced persistent threat (APT) behaviors.
  • Active DoD Secret clearance
  • Desired certifications: Security+, CASP, CISSP


At Indigo IT, we offer an expansive benefits package for our employees, which includes: Medical, Dental, and Vision coverage options. In addition, we offer 401(k) with company match, Group life and disability, Flex Spending Accounts (FSA), Paid Time Off (PTO), Paid holidays, and Education assistance. We also have in house training programs for employees, we reward thought leadership with bonuses and recognition for publishing, speaking, and innovative thought leadership in our industry.

Pay Range: $125,000 - $150,000 per year

Similar Jobs

More Jobs at Indigo IT

More Information Technology Jobs

Find similar Blue Team Lead / Sr Cyber Defense Analyst jobs: