Cyber Defense Analyst

Reposted Yesterday
Be an Early Applicant
Suitland, MD, USA
In-Office
Senior level
Information Technology • Consulting
The Role
Monitor and investigate cybersecurity alerts across TS/SCI networks, correlate events, manage incident tickets, conduct threat hunting and wireless security scans, escalate incidents, deliver situational awareness briefings, and support cyber defense exercises. The role requires substantial CND experience, SIEM and security tool expertise, threat analysis capabilities, an approved cybersecurity certification, and an active TS/SCI clearance.
Summary Generated by Built In

We are seeking a Cyber Defense Analyst to join a mission focused team supporting the Navy's cybersecurity environment at the Office of Naval Intelligence (ONI) Hopper Global Communications Center (HGCC) in Suitland, MD.

In this role, you will serve on the front line of cyber defense, helping protect critical TS/SCI networks by monitoring and investigating cybersecurity alerts, identifying potential threats, and supporting proactive threat hunting activities. You will apply your experience in the Certified Network Defender (CND) discipline and knowledge of IT systems and networks to analyze security events, manage incident tickets, support intelligence gathering and analysis, and communicate findings to key stakeholders.

Primary Responsibilities

  • Perform first line monitoring of security tools and conduct initial analysis of alerts for TS/SCI networks, including JWICS, ATLAS, and other networks for which HGCC is responsible.
  • Monitor organizational cybersecurity tools for alerts, anomalies, and indicators of compromise.
  • Investigate and perform initial technical analysis of cybersecurity alerts and events, escalating potential incidents to Tier 2 as appropriate.
  • Create, update, and manage incident and event tickets within the approved ticketing system.
  • Conduct proactive threat hunting activities to identify potential malicious activity and emerging threats.
  • Perform wireless security scans of facilities and document and report findings.
  • Correlate alerts and security events across multiple platforms to identify patterns, trends, and potential threats.
  • Prepare and deliver operational and situational awareness briefings.
  • Support annual cyber defense exercises.

Required Qualifications

  • Bachelor's degree in Cybersecurity, Information Technology, Information Assurance, or a related area of study desired, with 5+ years of experience.
  • 8+ years of relevant professional experience in lieu of a degree.
  • Active TS/SCI security clearance.
  • 5+ years of concentrated experience in the CND discipline, regardless of degree.
  • 3+ years of professional experience monitoring and investigating alerts from cybersecurity tools.
  • Experience with Security Information and Event Management (SIEM) systems such as Splunk and Elastic.
  • Experience with Network Intrusion Detection/Prevention Systems (NIDPS), such as Cisco FirePower and Palo Alto NGFW, as well as host based tools such as Trellix ePO, Microsoft Defender, and Tanium.
  • Knowledge of scripting and coding languages such as Python, Perl, Ruby, JavaScript, PowerShell, C, C++, and Java.
  • Knowledge of penetration testing and red team tactics, techniques, and procedures, as well as tools such as Kali, SamuraiWTF, Nmap, Burp Suite, sqlmap, and Metasploit.
  • Knowledge of ticketing systems, report writing, and intelligence gathering, analysis, and dissemination techniques specific to cybersecurity.
  • Strong analytical, conceptual, and problem solving skills.

Required Certifications

  • Must possess one of the following certifications: CompTIA CySA+, CompTIA PenTest+, CompTIA Cloud+, EC Council CEH, GIAC GCIA, GIAC GCIH, GICSP, or Cisco CyberOps.

Skills Required

  • Bachelor's degree in Cybersecurity, Information Technology, Information Assurance, or a related field
  • 5+ years of relevant professional experience with a bachelor's degree
  • 8+ years of relevant professional experience in lieu of a degree
  • Active TS/SCI security clearance
  • 5+ years of concentrated experience in the Certified Network Defender discipline
  • 3+ years of professional experience monitoring and investigating cybersecurity tool alerts
  • Experience with SIEM systems such as Splunk and Elastic
  • Experience with NIDPS, Cisco Firepower, Palo Alto NGFW, Trellix ePO, Microsoft Defender, and Tanium
  • Knowledge of Python, Perl, Ruby, JavaScript, PowerShell, C, C++, and Java
  • Knowledge of penetration testing, red team tactics, techniques, procedures, and tools including Kali, SamuraiWTF, Nmap, Burp Suite, sqlmap, and Metasploit
  • Knowledge of ticketing systems, report writing, and cybersecurity intelligence gathering, analysis, and dissemination
  • Strong analytical, conceptual, and problem-solving skills
  • One of CompTIA CySA+, CompTIA PenTest+, CompTIA Cloud+, EC Council CEH, GIAC GCIA, GIAC GCIH, GICSP, or Cisco CyberOps certifications
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
Annapolis, , Maryland
27 Employees
Year Founded: 2014

What We Do

G2IT, LLC is a Woman Owned Small Business (WOSB) and an Economically Disadvantaged Woman-Owned Small Business (EDWOSB) headquartered in Annapolis, Maryland. As a value-added reseller (VAR) and BMC partner, G2IT LLC. provides comprehensive information technology and systems engineering solutions that are secure, state of the art and aligned with your organization’s needs. Through G2IT’s partnerships with leading technology vendors we deliver best-in-class products and services supported by one of the most experienced professional services team in the industry. Our solutions ensures your investment in technology provides maximum performance, with minimum complexity and cost. G2IT supports all levels of the Public Sector, from the Department of Defense and Civilian agencies to State and Local government and higher education providing cost effective solutions for managing an organizations information, datacenters, and endpoints. G2IT has especially strong experience helping DoD clients address the specific challenges they face in a resource constrained environment

Similar Jobs

Leidos Logo Leidos

Cyber Defense Analyst

Information Technology • Software
In-Office
Suitland, MD, USA
27104 Employees
87K-157K Annually

Strategic Analytix Logo Strategic Analytix

Cyber Network Defense Analyst (Skill Level 1-4)

Information Technology • Consulting • Cybersecurity
In-Office
2 Locations
16 Employees

Omniscius Logo Omniscius

Cyber Defense Analyst

Business Intelligence • Consulting
In-Office
Fort Meade, MD, USA
2 Employees

The Swift Group, LLC Logo The Swift Group, LLC

Cyber Defense Analyst 2

Information Technology • Business Intelligence • Consulting • Defense
In-Office
Annapolis Junction, MD, USA
104 Employees
50K-290K Annually

Similar Companies Hiring

Standard Template Labs Thumbnail
Artificial Intelligence • Information Technology • Software
New York, NY
25 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account