DescriptionTier 3 Cybersecurity Analyst Location: Rockville, MD Position OverviewThe Tier 3 Cybersecurity Analyst serves as a senior technical leader within the SOC, responsible for advanced threat detection, incident response, threat hunting, and forensic analysis. This role operates at the core of the intelligence-driven SOC model, fusing multi-source data to identify, analyze, and mitigate sophisticated cyber threats impacting Agency systems.
Salary $130k-170K
Clearance: TS/ DOE Q
Key Responsibilities- Lead advanced incident detection, analysis, response, containment, eradication, and recovery activities for complex and high-severity cybersecurity incidents.
- Perform proactive threat hunting using behavioral analytics, SIEM correlation, threat intelligence, and advanced detection methodologies.
- Conduct comprehensive cyber forensic investigations, including host, network, endpoint, malware, and digital evidence analysis.
- Analyze, synthesize, evaluate, interpret, and integrate information from multiple security, intelligence, and operational data sources to identify emerging threats and attack patterns.
- Fuse computer network attack analysis with cyber threat intelligence, counterintelligence, and law enforcement information to support incident investigations, attribution, and response activities.
- Develop and maintain detection analytics, SIEM use cases, correlation rules, automation scripts, and SOAR playbooks to improve detection, response, and operational efficiency.
- Perform network traffic packet analysis, protocol analysis, log analysis, malicious software analysis, and email security analysis to identify indicators of compromise and adversary tactics.
- Support information risk management and information systems risk assessment activities by identifying cybersecurity risks, vulnerabilities, and recommended mitigation strategies.
- Support and enhance enterprise security technologies, including Intrusion Detection Systems (IDS), Intrusion Prevention Systems (IPS), Data Loss Prevention (DLP), and Advanced Threat Protection (ATP) capabilities.
- Provide technical leadership, guidance, and mentorship to Tier 1 and Tier 2 analysts in cyber threat analysis, incident response, and security operations.
- Collaborate with federal agencies, including CISA, US-CERT, law enforcement, and counterintelligence organizations, during complex cybersecurity investigations.
- Support M-21-31 logging maturity initiatives through log validation, normalization, correlation, and visibility improvements across enterprise systems.
Required Qualifications- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Information Assurance, or a related field.
- Eight (8) or more years of professional experience in cybersecurity operations, incident response, malware analysis, cyber forensics, or network security.
- Demonstrated experience in network security architecture, incident detection and response, malware analysis, and cyber forensics.
- Experience analyzing, synthesizing, evaluating, interpreting, and integrating information from multiple intelligence and security data sources.
- Experience providing technical guidance and mentorship to cybersecurity personnel.
- Experience supporting investigations involving cyber threat intelligence, counterintelligence, and law enforcement organizations.
- Demonstrated experience with information security, information risk management, and information systems risk assessment.
Full-Time Employees are eligible to participate in our ActioNet's Benefits Program:- Medical Insurance
- Vision Insurance
- Dental Insurance
- Life and AD&D Insurance
- 401(k) Savings Plan
- Education and Professional Training
- Flexible Spending Accounts (FSA)
- Employee Referral and Merit Recognition Programs
- Employee Assistance and Identity Theft Protection
- Paid Holidays: 11 per year
- Paid Time Off (PTO)
- Disability Insurance
********Direct Applicants, only. No Agencies, No third-party recruiters, please********