Cybersecurity Incident Response & Threat Detection Analyst

DirectViz Solutions, LLC

• $92K — $110K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5+ years of relevant cybersecurity experience
  • 2+ years in root cause analysis of cybersecurity incidents
  • Proficient with at least two security tools (e.g., Firewall, IDS/IPS)
  • Strong understanding of Defense-in-Depth principles
  • Ability to develop scripts in SPL, Python, or PowerShell
  • Must hold a DOD TOP SECRET Clearance and be eligible for IT-1 and SCI access

Responsibilities

  • Monitor SIEM and cybersecurity tools for unauthorized activity
  • Analyze security alerts to identify potential attacks
  • Investigate incidents and perform root cause analysis
  • Monitor for Advanced Persistent Threats (APT)
  • Utilize threat intelligence and OSINT for threat investigation
  • Support incident response and implement defensive actions
  • Analyze security event trends to identify malicious patterns

Benefits

  • Opportunity to work in a 24x7x365 cybersecurity operations environment
  • Engagement with advanced cybersecurity tools and technologies
  • Collaboration with a skilled team of cybersecurity professionals
  • Potential for professional growth and skill enhancement
  • Supportive work environment with reasonable accommodations available
Full Job Description
Title: Cybersecurity Incident Response & Threat Detection Analyst

Location: Columbus, OH

Clearance: Top Secret

Position Summary

We are seeking an experienced Cybersecurity Incident Response & Threat Detection Analyst to support a 24x7x365 cybersecurity operations environment. This position is responsible for monitoring, detecting, analyzing, and responding to cybersecurity threats and suspicious activity across a large enterprise network.

The analyst will monitor SIEM and other cybersecurity tools, investigate security alerts and logged events, identify indicators of attack or compromise, and support incident response activities. The role requires experience identifying sophisticated threats, including Advanced Persistent Threats (APT) and "low and slow" attacks.

Key Responsibilities
  • Monitor SIEM, network traffic, security logs, and cybersecurity monitoring tools for suspicious or unauthorized activity.
  • Analyze security alerts and events to identify potential attacks, compromises, and emerging threats.
  • Investigate cybersecurity incidents and perform root cause analysis.
  • Monitor for Advanced Persistent Threats (APT) and other sophisticated attack techniques.
  • Use threat intelligence and Open Source Intelligence (OSINT) to identify and investigate potential threats.
  • Support incident response activities and implementation of appropriate defensive actions.
  • Analyze trends across security events to identify patterns indicative of malicious activity.
  • Provide technical support for enterprise cybersecurity tools and applications.
  • Support Defense-in-Depth security controls, signatures, and perimeter defenses.
  • Develop scripts, tools, and automation to improve threat detection and incident response capabilities.

Minimum Requirements
  • Five (5) years relevant experience • Two (2) years performing root cause analysis of cybersecurity events and incidents. • Working knowledge of at least two types of security tools: Firewall, IDS/IPS, Host based antivirus, Data loss prevention, Vulnerability Management, Forensics, Malware Analysis, Device Hardening • Understanding of Defense-in-Depth • Ability to build scripts and tools to enhance threat detection and incident response capabilities (Preferably in SPL, Python, PowerShell) • Must possess a DOD TOP SECRET Clearance and be eligible for an IT-1 and be eligible for SCI access.

If you thrive on solving complex problems and building meaningful connections, we'd love to hear from you. Join our team and make an impact today!

Physical and Mental Qualifications:
  • Maintain focus and awareness throughout scheduled working hours.
  • Perform tasks requiring prolonged periods of sitting or standing at a desk, utilizing a computer, mouse, and keyboard.
  • Lift and move objects weighing up to 15 pounds as needed.
  • Exhibit excellent verbal and written communication skills, with a strong command of the English language.
  • Demonstrate the ability to work independently while also collaborating effectively as part of a team.
  • Quickly learn and retain routine tasks and processes.
  • Possess strong organizational skills, attention to detail, business correspondence proficiency, and self-management capabilities.
  • Perform the essential functions of the role satisfactorily; reasonable accommodation will be provided for employees with disabilities upon request.
  • Accept and adapt to additional responsibilities or changes to assigned duties as determined by DirectViz Solutions (DVS).

Similar Jobs

More Jobs at DirectViz Solutions, LLC

More Information Technology Jobs

Find similar Cybersecurity Incident Response & Threat Detection Analyst jobs: