Cyber Threat Analyst 2

Reposted Yesterday
Be an Early Applicant
Fairfax, VA, USA
In-Office
Mid level
Artificial Intelligence • Cloud • Information Technology • Security • Software
The Role
The Cyber Threat Analyst 2 leads incident response, mentors junior analysts, develops detections, conducts threat hunting, and analyzes logs to enhance security measures.
Summary Generated by Built In
Job Summary & Responsibilities

Everforth ECS is seeking a Cyber Threat Analyst 2 to work in our Fairfax, VA office.  


Everforth ECS is a leading managed cybersecurity services provider, ECS delivers a highly tailored and customized offering to each customer. Our team is responsible for protecting the ECS corporate and customer networks. Our mission is broad, and our team is agile. We will leverage your unique skills to help solve customers’ challenges, such as engineering a system to address a technical hurdle, protecting customer data, or consulting on a wide range security topics. You are empowered to engage and lead across multiple groups and must have the self-sufficiency and focus to work well without constant oversight.


Our Tier 2 SOC Analysts are responsible for investigating threats targeting ECS’ internal network and commercial customers. They support the commercial cybersecurity program during core and non-core business hours.


Responsibilities:

  • Lead incident response efforts, including forensic triage and detailed technical reporting.
  • Mentor and act as an escalation point for junior SOC analysts.
  • Develop and implement custom detections aligned with the MITRE ATT&CK Framework.
  • Conduct threat hunting and perform data analytics to identify and mitigate unseen threats.
  • Tune and configure security tools to minimize false positives.
  • Analyze and correlate logs from various sources to create comprehensive incident timelines.
  • Facilitate threat remediation efforts by collaborating with IT teams and end users.
  • Serve as a subject matter expert for security tools, applications, and processes.
  • Support the investigation of large- and small-scale cyber breaches.
  • Communicate cyber events to internal and external stakeholders.
  • Provide customers with incident response support, including mitigating actions to contain activity and facilitate forensics analysis when necessary. Document formal, technical incident reports.
Preferred Qualifications
  • 3+ years of SOC or cybersecurity-related experience, with at least 2+ years of experience with a SIEM tool.
  • U.S. citizenship and ability to obtain a SECRET Government Security Clearance.
  • Bachelor’s degree; preferably in Computer Science, Information Security, or a related field. Will consider experience in lieu of a degree.
  • Deep technical understanding of modern cybersecurity threats and the ability to quickly learn new cybersecurity concepts.
  • Prior experience working as an analyst in a Security Operations Center (SOC).
  • Extensive experience with EDR, SIEM, SOAR, and ticketing technologies, particularly Elastic, Splunk, Trellix, MS Sentinel/Defender, and Crowdstrike Falcon.
  • Knowledge of threat actor tactics, techniques, and procedures (TTPs).
  • Proficient in analyzing logs such as firewall, network traffic, IIS, Antivirus, and DNS.
  • Deep understanding of incident response processes, including forensic triage, determining scope, urgency, and potential impact of incidents.
  • Ability to support ad hoc scripting in any language, with experience using Python or PowerShell.
  • Ability to correlate events from multiple sources to create a timeline analysis.
  • Strong ability to organize case notes and communicate verbally and in writing to clients. Capable of preparing detailed technical reports.
  • Experience creating custom detections aligned with the MITRE ATT&CK Framework.
  • Experience in hunting for new threats and performing data analytics to identify unseen activities within the environment.
  • Ability to facilitate remediation of threats by collaborating with other IT teams or end users.
  • Acts as a mentor and escalation point for SOC Analysts.
  • Skill in tuning security tool configurations to minimize false positives.
  • Serve as a subject matter expert for security tools, applications, and processes.

Skills Required

  • 3+ years of SOC or cybersecurity-related experience
  • 2+ years of experience with a SIEM tool
  • U.S. citizenship and ability to obtain a SECRET Government Security Clearance
  • Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent experience
  • Deep technical understanding of modern cybersecurity threats
  • Prior experience working as an analyst in a Security Operations Center (SOC)
  • Extensive experience with security technologies, especially SIEM tools
  • Knowledge of threat actor tactics, techniques, and procedures (TTPs)
  • Experience with incident response processes, including forensic triage
  • Ability to support ad hoc scripting, especially Python or PowerShell
  • Strong communication skills for client reporting
  • Experience creating custom detections aligned with the MITRE ATT&CK Framework

ECS Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about ECS and has not been reviewed or approved by ECS.

  • Healthcare Strength ECS advertises multiple national-network medical plan options with HSA eligibility alongside dental and vision coverage. Coverage generally begins quickly and is paired with company-paid short- and long-term disability, adding stability to the health package.
  • Retirement Support A 401(k) with Safe Harbor and immediate vesting on employer contributions is emphasized, with an employer match available. Access to an employee stock purchase plan via the parent company provides an additional savings avenue.
  • Parental & Family Support Paid parental leave up to 30 days, adoption assistance, and other family-oriented leaves are highlighted. Feedback suggests these offerings add meaningful value beyond base pay for many roles.

ECS Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Fairfax, VA
2,129 Employees
Year Founded: 1993

What We Do

ECS, a segment of ASGN (NYSE: ASGN), delivers advanced solutions and services in cloud, cybersecurity, artificial intelligence (AI), machine learning (ML), application and IT modernization, and science and engineering. The company solves critical, complex challenges for customers across the U.S. public sector, defense, intelligence and commercial industries. ECS maintains partnerships with leading cloud, cybersecurity, and AI/ML providers and holds specialized certifications in their technologies. Headquartered in Fairfax, Virginia, ECS has more than 3,400 employees throughout the U.S. and has been recognized as a Top Workplace by The Washington Post for the last five years.

Similar Jobs

Dynatrace Logo Dynatrace

Artificial Intelligence Engineer

Artificial Intelligence • Big Data • Cloud • Information Technology • Software • Big Data Analytics • Automation
Remote or Hybrid
United States
5600 Employees
146K-220K Annually

Hometap Logo Hometap

National Escrow Assistant

Fintech • Real Estate • Software • Financial Services • PropTech
Easy Apply
Remote or Hybrid
USA
314 Employees
60K-65K Annually

Boeing Logo Boeing

Systems Engineer

Aerospace • Information Technology • Software • Cybersecurity • Design • Defense • Manufacturing
In-Office
Springfield, VA, USA
170000 Employees
99K-133K Annually

Boeing Logo Boeing

Devops Engineer

Aerospace • Information Technology • Software • Cybersecurity • Design • Defense • Manufacturing
In-Office
Herndon, VA, USA
170000 Employees
120K-239K Annually

Similar Companies Hiring

Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees
Kepler  Thumbnail
Fintech • Software
New York, New York
6 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account