Full Job Description
Leidos seeks a Mid-Level Cyber Analyst to support development and research efforts alongside a diverse team creating solutions for Cyber, EW, and PNT threats at the tactical edge. You’ll help shape detection algorithms and actionable alerts by applying practical SOC experience and forensic expertise, working closely with skilled Red Teamers to identify and counter advanced adversary techniques.
This is a full-time position with the Leidos Cyber Electromagnetic Activity (CEMA) team that is based in Lawton, OK, and will require the candidate to be able toobtain andmaintaina TS/SCI Clearance.
Primary Responsibilities:
• Perform Threat Intelligence Integration and Researchreporting on detection gaps within our problem set while staying current on TTPs, vulnerabilities, and SOC technologies
• Detection Engineering & Tuninganalyzingfalse positives/negatives and providingfeedback to developersso they can tweakdetection algorithms for accuracy and operational relevance
• Bridge the gap between defensive operations and software engineering by conducting training sessions and walkthroughs using simulated SOC scenarios
• Participate in sprint planning and product roadmap discussionsto ensure the "operator perspective" is baked into software requirements
• Provide input on UI/UX for analyst efficiencyand reduce cognitive load during high-stress alerts
Basic Qualifications:
• Bachelor’s Degree in cybersecurity or similar degree and 4- 8 years of relevant experience. Will consider experience in lieu of a degree
• Minimum 4+ years of professional experience in Cyber Security
• Minimum 2+ years of professional experience as a SOC operator
• Intermediate to Expert knowledge of Linux
• A good understanding of networking – protocols at all layers of the networking stack and network architecture accompanied with various tooling needed for network analysis such as Wireshark.
• Intermediate to Expert knowledge of host-based forensics, telemetry generation, and low-level artifacts (like memory, processes, and network packet analysis).
• Moderate ability to produce scripts for testing
• Must be a US Citizen and be able to obtain a TS/SCI security clearance.
Preferred Qualifications :
• Experience analyzing low-level system artifacts, memory forensics, or firmware/embedded system security.
• Familiarity with the MITRE ATT&CK framework and mapping telemetry to specific adversary behaviors.
• Experience working in an Agile/Scrum development environment alongside software engineers.
• GIAC Certified Detection Engineer (GCDE)
• GIAC Certified Forensic Analyst (GCFA) / GIAC Network Forensic Analyst (GNFA)
• FOR572: Advance Network Forensics
Original Posting:
August 7, 2026
Pay Range:
Pay Range $87,100.00 - $157,450.00
The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.