Senior Cybersecurity Defense Analyst III

Invictus International Consulting, LLC

$110K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in a technical field or 4 years of additional experience in lieu of a degree
  • Minimum six years of relevant experience
  • Hands-on experience with cybersecurity investigations and incident response
  • Strong knowledge of network/host-based investigation practices
  • Familiarity with adversary tactics and techniques (MITRE ATT&CK)
  • Experience improving SOC procedures and creating training materials
  • Active TS/SCI clearance with ability to obtain a CI polygraph

Responsibilities

  • Lead investigations of complex security incidents across various telemetry sources
  • Perform cyber defense incident triage and determine necessary escalation
  • Support incident handling from detection to reporting following defined procedures
  • Correlate security data to identify vulnerabilities and adversary activities
  • Collect and preserve intrusive artifacts according to established practices
  • Communicate incident findings and recommendations to different stakeholders
  • Serve as an escalation point and mentor for less experienced team members
  • Conduct proactive threat hunting and analysis as needed
  • Develop and enhance runbooks, procedures, and incident responses
  • Collaborate with threat analysts to improve detection and handling processes
  • Translate lessons learned from incidents into training and procedural improvements

Benefits

  • Opportunities for professional development and certifications
  • Collaborative work environment
  • Engagement in cutting-edge cybersecurity projects
  • Support for work-life balance
  • Access to advanced security tools and technologies
Full Job Description
Title: Senior Cyber Defense Analyst III

Location: Colorado Springs, CO

Clearance: TS/SCI with the ability to obtain and maintain a CI polygraph

Job Details:
  • Perform and lead advanced investigation of complex security events and incidents across network, endpoint, identity, firewall, vulnerability, and other available telemetry
  • Perform cyber defense incident triage, including validation, enrichment, determination of scope, urgency, potential impact, and appropriate escalation
  • Support incident handling across detection, investigation, analysis, containment/remediation coordination, recovery, and reporting in accordance with established authorities and procedures
  • Correlate incident and security data across multiple sources to identify affected systems, users, vulnerabilities, adversary activity, and related events
  • Collect and preserve relevant intrusion artifacts and investigative evidence in accordance with established procedures
  • Communicate incident status, findings, risk, and recommended actions to SOC personnel, technical teams, management, and government stakeholders as appropriate
  • Serve as a senior technical escalation point to less expereinced team members and provide hands-on guidance during complex investigations
  • Lead portions of incident response activities, including scoping, evidence analysis, containment recommendations, technical coordination, and post-incident review
  • Conduct proactive analysis and threat hunting when warranted to identify related or previously undetected activity
  • Develop, maintain, and improve analyst runbooks, investigative procedures, escalation criteria, incident playbooks, and shift-turnover practices
  • Partner with threat analysts and engineering personnel to identify telemetry gaps, detection gaps, false positives, and opportunities for improved enrichment or automation
  • Mentor junior analysts, support analyst qualification and exercises, and perform quality review of investigations and case documentation
  • Translate incident lessons learned into improved detections, procedures, training, and defensive recommendations


Requirements:
  • Bachelor's degree from an accredited institute in a technical discipline applicable to the position; an additional 4 years of may be substituted in lieu of a degree
  • Minimum six (6) years of relevant experience in addition to education level
  • Significant hands-on experience conducting cybersecurity investigations and incident response in enterprise environments.
  • Strong knowledge of network and host-based investigation, common adversary tactics, techniques, and procedures, and the MITRE ATT&CK framework
  • Experience developing or improving SOC procedures, incident playbooks, runbooks, or analyst training materials
  • Experience serving as an escalation point, technical lead, or mentor for cyber defense analysts
  • Must possess current DoD 8570 IAT II or IAM II certification
  • Experience working in a DoD or IC environment
  • Current active TS/SCI clearance, with the ability to obtain and maintain a CI polygraph


Similar Jobs

More Jobs at Invictus International Consulting, LLC

More Information Technology Jobs

Find similar Senior Cybersecurity Defense Analyst III jobs: