Cyber Security Fusion Analyst

Leidos

$131K — $237K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Active DOD TS/SCI Clearance with eligibility for polygraph
  • Bachelor's Degree in a related field and 8+ years of experience (additional experience may substitute for degree)
  • Security+ Certification or equivalent DOD 8570 Level II certification
  • In-depth knowledge of cyber vulnerabilities and threat methodologies
  • Proficiency with network data analysis tools and protocols
  • Experience with open-source and commercial threat identification platforms

Responsibilities

  • Leverage network monitoring tools to identify cyber adversary activity
  • Support development of Cyber Fusion SOPs and methodologies
  • Identify enterprise threats and provide mitigation strategies
  • Perform analysis using threat reporting and intelligence sharing
  • Document malicious cyber actors' tactics and provide recommendations
  • Discover anomalies in system logs and SIEMs
  • Conduct risk assessments based on technology and threat analysis

Benefits

  • Comprehensive health, dental, and vision insurance plans
  • 401(k) retirement savings plan with company match
  • Generous paid time off and holiday schedule
  • Professional development and training opportunities
  • Flexible work environment with remote work options
Full Job Description
The Leidos Digital Modernization Sector has an opening for a Cyber Security Fusion Analyst on the DISA GSM-O II program supporting Dept. of War Defense Cyber Command (DCDC) at Fort Meade.

Position Summary:

GSM-O II provides network operations and cyber defense support to the Defense Information Systems Agency (DISA) in support of DOW and COCOMs. In this role, you will provide support with incident handling, triage of events, network analysis, threat detection, trend analysis, metric development, and vulnerability information dissemination.

Primary Responsibilities:
• Leverage an array of network monitoring and detection capabilities (including netflow, custom application protocol logging, signature-based IDS, and full packet capture (PCAP) data) to identify cyber adversary activity.
• Support the development of Cyber Fusion standard operating procedures (SOPs), and Cyber Fusion Framework and Methodology based on industry best practice and Department of War instruction, guidance, and policy.
• Identify threats to the enterprise and provide mitigation strategies to improve security and reduce the attack surface.
• Perform analysis by leveraging serialized threat reporting, intelligence product sharing, OSINT, and open-source vulnerability information to ensure prioritized plans are developed.
• Analyze and document malicious cyber actors TTPs, providing recommendations and alignment to vulnerabilities and applicability to the enterprise operational environment.
• Discover adversary campaigns, anomalies and inconsistencies in sensor and system logs, SIEMs, and other data.
• Identify, investigate and rule out system compromises, with the capacity to provide written analytic summaries and attack life cycle visualizations.
• Provide risk assessments and recommendations based on analysis of technologies, threats, intelligence, and vulnerabilities.
• Offer recommendations to adjust enterprise or tactical countermeasures to for threats impacting the DOWIN.
• Collect analysis metrics and trending data, identify key trends, and provide situational awareness on these trends.

Required Qualifications:
• Active DOW TS/SCI Clearance and eligible for polygraph
• Bachelor's Degree in related discipline and 8 years of related experience. Additional experience may be accepted in lieu of degree.
• Security+ Certification (or other equivalent DOW 8570 Level II certification)
• In-depth knowledge of network and application protocols, cyber vulnerabilities and exploitation techniques and cyber threat/adversary methodologies.
• Proficiency with datasets, tools and protocols that support analysis (e.g. passive DNS, Virus Total, Recorded Future, TCP/IP, OSI, WHOIS, enumeration, threat indicators, malware analysis results, Wireshark, Splunk, Arcsight etc.).
• Experience with various open-source and commercial vendor portals, services and platforms that provide insight into how to identify and/or combat threats or vulnerabilities to the enterprise.
• Proficiency working with various types of network data (e.g. netflow, PCAP, custom application logs)

Preferred Qualifications:
• Experience with DISN and other DOW Networks.
• Skilled in building extended cyber security analytics (Trends, Dashboards, etc.).
• Demonstrated experience briefing Senior Executive Service (SES) and General Officer/Flag Officer (GO/FO) leadership.
• Experience in intelligence driven defense and/or cyber-Kill Chain methodology.
• IAT Level III and IAM Level II+III Certifications

Original Posting:
June 12, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:
Pay Range $131,300.00 - $237,350.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

Similar Jobs

More Jobs at Leidos

More Information Technology Jobs

Find similar Cyber Security Fusion Analyst jobs: