Threat Detection and Response Analyst

Posted 2 Days Ago
Be an Early Applicant
Hiring Remotely in USA
Remote
115K-131K Annually
Senior level
Information Technology
The Role
Perform threat hunting, monitor security tools, triage and investigate alerts across endpoints, networks, cloud, and apps. Map adversary behavior to MITRE ATT&CK, conduct forensics, support incident response, RMF activities, risk assessments, POA&Ms, and audit readiness for NIH environments.
Summary Generated by Built In

Copper River Cyber Solutions is seeking a highly motivated Threat Detection & Response Analyst to support the NIH cybersecurity program by monitoring enterprise systems for malicious activity, investigating security events, and responding to cybersecurity incidents. The Analyst leverages security monitoring tools, threat intelligence, and incident response procedures to identify and mitigate threats impacting NIH information systems, networks, cloud environments, and applications.

This position works closely with Incident Response personnel, Vulnerability Management Analysts, Security Engineers, RMF teams, and system owners to strengthen cybersecurity defenses and protect mission-critical systems and sensitive research data. The role contributes to continuous monitoring, threat hunting, incident investigation, and security operations activities.

Responsibilities (include but are not limited to):

  • Conduct proactive threat hunting activities using intelligence-driven and hypothesis-based methodologies.
  • Analyze threat actor tactics, techniques, and procedures (TTPs) to identify potential compromise within NIH environments.
  • Map observed adversary behaviors, indicators, and attack patterns to the MITRE ATT&CK framework to support detection engineering, threat hunting, and risk analysis.
  • Provide threat findings, indicators, and investigations supporting RMF activities, risk assessments, POA&M development, continuous monitoring, and cybersecurity governance processes.
  • Monitor security tools, dashboards, and alerts to identify potential cybersecurity threats and suspicious activity.
  • Analyze events from endpoint, network, cloud, and security monitoring platforms.
  • Perform triage of security alerts to determine validity, severity, and potential impact.
  • Identify indicators of compromise (IOCs), attack patterns, and emerging threats.
  • Escalate significant security events in accordance with established procedures.
  • Investigate cybersecurity incidents, security events, and anomalous activity.
  • Conduct forensic review of logs, alerts, and system data to determine root cause and scope.
  • Correlate information from multiple security tools and data sources.
  • Document findings, recommendations, and lessons learned from investigations.
  • Support post-incident reviews and corrective action planning.
  • Provide threat and incident-related information supporting risk assessments and POA&M management activities.
  • Assist with audit readiness and security assessment activities when requested.

Essential Job Qualifications and Requirements:

Education:

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related field

Required Qualifications:

  • Ability to obtain and maintain an NIH Public Trust
  • Minimum 5 years of experience in cybersecurity operations, threat detection, security monitoring, incident response, or Security Operations Center (SOC) environments.
  • Experience applying MITRE ATT&CK techniques and adversary behaviors during investigations, threat hunting, or detection activities.
  • Experience investigating cybersecurity incidents and analyzing security events.
  • Knowledge of:
    • Cyber threat tactics, techniques, and procedures (TTPs)
    • Security Operations Center (SOC) processes
    • Incident Response methodologies
    • Network security concepts
    • Endpoint security technologies
  • Familiarity with:
    • NIST RMF (SP 800-37)
    • NIST SP 800-53 Rev. 5
    • FISMA
    • Federal cybersecurity requirements
  • Strong analytical, troubleshooting, and communication skills.

Preferred Qualifications:

  • One or more of the following certifications:
    • Security+
    • CySA+
    • GCIH (GIAC Certified Incident Handler)
    • GCIA (GIAC Certified Intrusion Analyst)
    • CISSP
    • CEH (Certified Ethical Hacker)
    • GSEC
    • CASP+
    • CISM
  • Experience supporting NIH, HHS, or other Federal civilian agencies.
  • Experience working in a Security Operations Center (SOC) environment.
  • Knowledge of MITRE ATT&CK Framework methodologies.
  • Experience supporting cloud security operations within Azure, AWS, or Google Cloud environments.
  • Familiarity with Continuous Diagnostics and Mitigation (CDM) initiatives.
  • Experience protecting healthcare, biomedical, or research-focused environments.
Position Pay Range
$115,000$131,000 USD

About Copper River & The Native Village of Eyak:

Owned by the Native Village of Eyak (NVE), a federally recognized Alaska Native Tribe, the Copper River Family of Companies are a collection of entities that deliver a complementary set of solutions and services to support the diverse missions and requirements of our clients. Proud participants of the Small Business Administration’s (SBA) 8(a) Business Development Program since 2006, our companies consist of both current and graduation SBA 8(a) entities. It is our collective purpose to support the Tribe and diversify the NVE’s ability to facilitate economic advancement.

The income generated from our companies helps the Native Village of Eyak fund health and social services, economic development, natural resource/environmental education, jobs, job training, and other benefits to the NVE in a manner that is consistent with Alaskan Native cultural values and traditions.

Copper River’s Culture

The Copper River Family of Companies has a positive, supportive, and thriving culture. At the foundation of our culture is a focus on collaboration. No matter your role or which operating company you work for, we are ONE TEAM working toward the same goals for our customers and for our collective owner- The Native Village of Eyak. How we treat each other is just as important as the work we deliver.

Benefits

  • Comprehensive medical, dental, and vision coverage
  • Flexible Spending Account - healthcare and dependent care
  • Health Savings Account - high deductible medical plan
  • Retirement 401(k) with employer match
  • Open leave policy and paid holidays
  • Additional benefits including tuition reimbursement, transportation expense account, employee assistance program, and more! 

Note: Benefits are offered based on employment classification and applicable contract requirements. Eligibility may vary by position.

Disclaimer:

The Copper River Family of Companies provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state, or local laws.

Skills Required

  • Bachelor's degree in Cybersecurity, Computer Science, IT, Engineering, or related field
  • Minimum 5 years experience in cybersecurity operations, threat detection, security monitoring, incident response, or SOC environments
  • Experience applying MITRE ATT&CK techniques and adversary behaviors during investigations or threat hunting
  • Experience investigating cybersecurity incidents and analyzing security events
  • Knowledge of cyber threat TTPs, SOC processes, and incident response methodologies
  • Knowledge of network security concepts and endpoint security technologies
  • Familiarity with NIST RMF (SP 800-37), NIST SP 800-53 Rev. 5, FISMA, and federal cybersecurity requirements
  • Strong analytical, troubleshooting, and communication skills
  • Ability to obtain and maintain an NIH Public Trust
  • Certifications such as Security+, CySA+, GCIH, GCIA, CISSP, CEH, GSEC, CASP+, or CISM
  • Experience supporting NIH, HHS, or other Federal civilian agencies
  • Experience working in a Security Operations Center (SOC) environment
  • Experience supporting cloud security operations (Azure, AWS, or Google Cloud)
  • Familiarity with Continuous Diagnostics and Mitigation (CDM) initiatives
  • Experience protecting healthcare, biomedical, or research-focused environments
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Chantilly, VA
201 Employees

What We Do

Welcome to Copper River Shared Services! The Shared Services Division of the Copper River Family of Companies provides long-term strategic business planning, new company startup and acquisition strategies, complete back office support services, regulatory training, compliance, and governance oversight to ensure the continued growth and prosperity of the Copper River Family of Companies. We are proud to be owned by the Native Village of Eyak, a Federally recognized Alaska Native Tribe located in Cordova, Alaska. With over 500 professional industry leading experts, the Copper River Family of Companies are driven to support the needs of our clients and their missions both at home and abroad. We stand ready. Our mission is to Diversify the Native Village of Eyak’s Ability to Facilitate Economic Advancement; it’s what binds us now and into the future. We accomplish this through the work of our strategic alliance of agile Operating Companies, guided by our core values of Collaboration, Integrity, and Empathy.

Similar Jobs

Remote
Texas, USA
129974 Employees
100K-160K Annually

Achieve Logo Achieve

Inside Sales Representative

Fintech • Professional Services • Sales • Financial Services
Remote or Hybrid
Tempe, AZ, USA
2231 Employees
75K-100K Annually

Wipfli Logo Wipfli

Senior Accountant

Cloud • Fintech • Software • Business Intelligence • Consulting • Financial Services
Remote or Hybrid
Milwaukee, WI, USA
2900 Employees
77K-122K Annually

Wipfli Logo Wipfli

Senior Consultant

Cloud • Fintech • Software • Business Intelligence • Consulting • Financial Services
Remote or Hybrid
United States
2900 Employees
88K-118K Annually

Similar Companies Hiring

Standard Template Labs Thumbnail
Artificial Intelligence • Information Technology • Software
New York, NY
25 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account