Cybersecurity Incident Response & Threat Detection Analyst

Electrosoft

• $95K — $115K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5 years of relevant cybersecurity experience
  • 2 years in root cause analysis of cybersecurity incidents
  • Knowledge of security tools like Firewall, IDS/IPS, and Malware Analysis
  • Understanding of Defense-in-Depth strategies
  • Ability to script in SPL, Python, or PowerShell
  • Must hold IT-I Critical Sensitive security clearance
  • Eligible for DOD TOP SECRET Clearance with SCI access

Responsibilities

  • Monitor SIEM and other cybersecurity tools 24/7
  • Detect and respond to unauthorized activities within the network
  • Analyze logged events for attack trends and compromises
  • Employ responses to alerts and emerging threats
  • Monitor for Advanced Persistent Threats (APTs)
  • Conduct technical analysis and support for cybersecurity tools
  • Assist in applying Defense-In-Depth measures to reduce network threats

Benefits

  • Comprehensive health benefits
  • Flexible work schedules
  • Opportunities for professional development
  • Support for obtaining security certifications
  • Collaborative and innovative work environment
Full Job Description
Cybersecurity Incident Response & Threat Detection Analyst

Participates in 24x7x365 monitoring of SIEM and other cybersecurity monitoring tools to detect and respond to cybersecurity threats within the Enterprise Network Environment. Performs actions to protect, monitor, detect, analyze, and respond to unauthorized activity. Employs Cybersecurity capabilities and deliberate actions to respond to specific alerts or emerging threats. Reviews logged events for trends that are indicative of attack or compromise within the environment. Actively monitors logs and traffic for Advanced Persistent Threats (APT) and "low and slow" attacks within the environment. Maintains awareness of possible threats with the use of intelligence resources which include Open-Source Intelligence (OSINT). Provides technical analysis and sustainment support for the enterprise for Cybersecurity tools and applications and assists with the application of Defense-In-Depth signatures and perimeter defense controls to diminish network threats.

Minimum Requirements:
  • Five (5) years relevant experience
  • Two (2) years performing root cause analysis of cybersecurity events and incidents.
  • Working knowledge of at least two types of security tools: Firewall, IDS/IPS, Host based antivirus, Data loss prevention, Vulnerability Management, Forensics, Malware Analysis, Device Hardening
  • Understanding of Defense-in-Depth
  • Ability to build scripts and tools to enhance threat detection and incident response capabilities (Preferably in SPL, Python, PowerShell)
  • Must possess IT-I Critical Sensitive security clearance or Tier 5 (T5) at time of proposal submission.
  • Must possess a DOD TOP SECRET Clearance and be eligible for an IT-1 and be eligible for SCI access

Similar Jobs

More Jobs at Electrosoft

More Information Technology Jobs

Find similar Cybersecurity Incident Response & Threat Detection Analyst jobs: