SAIC

Cybersecurity Analyst

SAIC • $88K — $105K *
Aerospace & Defense
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • DoD 8570 IAT II certifications AND CSSP Analyst OR CSSP Incident Responder
  • Strong understanding of cybersecurity concepts including threat detection, malware analysis, and network security
  • Proficiency with SIEM platforms, IDS/IPS, endpoint protection solutions, and forensic analysis tools
  • Advanced analytical and problem-solving skills
  • Effective communication skills for creating detailed reports and briefing stakeholders
  • Ability to work independently and lead initiatives in a fast-paced team-oriented environment
  • Must be DoD 8140 compliant under Work Role Code 531 - Cyber Defense Incident Responder - Intermediate level

Responsibilities

  • Identify and analyze sophisticated threats using various cybersecurity tools
  • Correlate data from multiple sources to uncover advanced persistent threats (APTs)
  • Refine detection rules to enhance threat identification capabilities
  • Lead high-priority security incident management and coordinate recovery strategies
  • Create detailed post-incident reports for organizational strategy
  • Lead audits and assessments to enhance compliance and streamline processes
  • Mentor junior analysts and foster their technical growth

Benefits

  • Opportunity for advanced responsibilities in a strategic military setting
  • Engagement in continuous professional development
  • Involvement in cutting-edge cybersecurity work supporting national defense
  • Opportunity to mentor and develop junior team members
  • Potential to work closely with industry-leading technologies and practices
Full Job Description
Job Description

SAIC is seeking a Cybersecurity Analysts to support the Special Operation Command Information Technology Enterprise Contract (SITEC) - 3 EOM. This position is located at Fort Bragg, NC.

The purpose of the Special Operations Forces Information Technology Enterprise Contract (SITEC) 3 Enterprise Operations and Maintenance (EOM) Task Order (TO) is to provide USSOCOM, its Component Commands, its Theater Special Operations Commands (TSOCs), and its deployed forces with Operations and Maintenance (O&M) services to maintain Network Operations (NetOps); maintain systems and network infrastructure; provide end user and common device support; provide configuration, change, license, and asset management; conduct training, and perform Install, Move, Add, Change (IMACs) services. The responsibilities and tasks associated with each requirement play a pivotal role to USSOCOM, the CIO/J6 organization, and ultimately the end-user who operate around the globe 24x7x365.

This position offers an opportunity for experienced cybersecurity professionals to take on advanced responsibilities in defending USSOCOM's global operations. The Cybersecurity Analyst will play a pivotal role in enhancing SOC capabilities, mentoring junior team members, and ensuring the security and resilience of systems critical to USSOCOM's mission success.
  • Expertise in identifying and analyzing sophisticated threats using SIEM platforms, intrusion detection systems (IDS), and other advanced tools.
  • Strategic ability to correlate data from multiple sources to uncover advanced persistent threats (APTs) and complex attack patterns.
  • Proficiency in refining detection rules and alerts to enhance threat identification capabilities. Leadership in managing high-priority security incidents, including coordinating containment, eradication, and recovery strategies.
  • Advanced skills in root cause analysis and delivering actionable recommendations for future mitigation.
  • Ability to create detailed post-incident reports to inform organizational strategy and resilience.
  • Ability to lead audits and assessments, providing recommendations to enhance compliance and streamline processes.
  • Advanced skills in securing NetOps and systems/network infrastructure against evolving threats.
  • Leadership in mentoring junior analysts, fostering their growth and technical expertise.
  • Strategic collaboration with SOC team members, IT staff, and stakeholders to develop coordinated threat responses.
  • Ability to contribute to cross-functional discussions and drive improvements in SOC operations.
  • Continuous Improvement and Research:
  • Commitment to staying informed on emerging threats, technologies, and best practices to enhance SOC capabilities.
  • Strategic mindset to research and recommend tools, techniques, and strategies for improved operations.
  • Ability to deliver training sessions to elevate team knowledge and preparedness.
  • Operate within a 24/7 SOC environment, which may require shift work, including nights, weekends, and holidays.
  • Handle sensitive and classified information in compliance with DoD and USSOCOM requirements.
  • Actively perform Cyber, correlate logs, report findings, and coordinate with cyber analysts to contain users/systems and initiate formal CSSP documentation.
  • Analyze network traffic logs and encrypted patterns to identify ongoing threats, anomalous behavior, command-and-control (C2) channels, active exploitation, or data exfiltration attempts.
  • Monitor NSA Pulse investigations related to USASOC assets and brief branch chiefs to coordinate mitigation while preventing duplication of effort with Cyber Analysts.
  • Coordinate with Cyber Operators for threat intelligence sharing, escalation criteria, and remediation plans.
  • Develop threat hunt playbooks based on industry findings, historical trends, or G639 requirements to systematically search for indicators of compromise.
  • Contextualize and aggregate logs between Splunk, MDE environments, and other SIE native tools for data generation.
  • Develop and refine advanced detection logic (e.g., Sigma, YARA, or Splunk SPL signatures) based on emerging TTPs to automate the identification of malicious activity.
  • Map all hunt findings and defensive gaps to the MITRE ATT&CK Framework to prioritize mission focus areas based on adversary trends.
  • Engage in "Purple Team" operations alongside adversary emulation cells to verify that security controls are effectively detecting and blocking known exploit techniques."


Qualifications

Qualifications:
  • DoD 8570 IAT II certifications AND CSSP Analyst OR CSSP Incident Responder
  • Strong understanding of cybersecurity concepts, including threat detection, malware analysis, and network security.
  • Proficiency with one or more tools such as SIEM platforms, IDS/IPS, endpoint protection solutions, and forensic analysis tools.
  • Advanced analytical and problem-solving skills with the ability to handle complex incidents and scenarios.
  • Effective communication skills, including the ability to create detailed reports and brief stakeholders.
  • Ability to work independently and lead initiatives in a fast-paced, team-oriented environment.
  • Must be DoW 8140 compliant under the Work Role Code 531 - Cyber Defense Incident Responder - Intermediate level.


Highly Desired Qualifications:
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field (or equivalent experience).
  • Advanced certifications such as CISSP, GIAC (e.g., GCIA, GCIH), or OSCP.
  • Experience with scripting or automation tools (e.g., Python, PowerShell) and threat hunting techniques.
  • Knowledge of advanced threat intelligence platforms and methodologies.


Education/Years of Experience:
  • Min 12 years with HS Diploma, 10 years with AS/AA degree, or 8 years with BS/BA.


Clearance Requirement:
  • A DoD security clearance at the TS/SCI level is required.


About SAIC

Science Applications International Corporation (SAIC) is a technology integrator in the technical, engineering, intelligence, and enterprise information technology markets. SAIC has approximately 26,000 employees and operates in more than 70 countries. The company was founded in 1969 and is headquartered in Reston, Virginia. SAIC provides services to the U.S. government, including the Department of Defense, the intelligence community, and civilian agencies. The company also serves commercial customers in the healthcare, energy, and financial services sectors.
Learn more about SAIC
Size
26,000 employees
Market Cap
$6 billion
Industry
Net Income
$206 million
Founded
1969
5 Year Trend
+10.7%
Revenue
$6.8 billion
NASDAQ

Similar Jobs

More Jobs at SAIC

  • SAIC
    Cybersecurity Analyst
    $95K — $115K *
    Fort Liberty, NC 28307 (Cumberland County)
    Aerospace & Defense
    In-Person
  • SAIC
    Cybersecurity Analyst
    $88K — $105K *
    Fayetteville, NC 28314 (Cumberland County)
    Aerospace & Defense
    In-Person
  • SAIC
    Systems Engineer
    $160K — $200K *
    Chantilly, VA 20152 (Loudoun County)
    Aerospace & Defense
    In-Person
  • SAIC
    Infrastructure Operations Manager
    $160K — $200K *
    Washington, DC 20011 (District Of Columbia County)
    Education, Government & Non-Profit
    In-Person
  • SAIC
    CBRN Defense Scientist
    $160K — $200K *
    Fort Washington, MD 20744 (Prince Georges County)
    Aerospace & Defense
    In-Person

More Aerospace & Defense Jobs

Find similar Cybersecurity Analyst jobs: