Cyber Security Operations Incident Responder/DayShift Lead Analyst
$120k - $170kTekSynap
Responsibilities & Qualifications
RESPONSIBILITIES
Collect and analyze network and/or host artifacts from a variety of sources to include logs, system images and packet captures to characterize activity, determine root cause, operational impact, and to enable rapid remediation and/or mitigation of cyber threats within the Enterprise Network through the investigation process. Perform cyber incident triage; to include determining scope, urgency, and potential impact; identifying the specific vulnerability; and making recommendations that enable expeditious remediation. Must have working knowledge of the DoDI 8530.01 (Cybersecurity Activities Support to DoD Information Network Operations). Must be proficient with Splunk SIEM or similar tools. Provide expert technical support and perform real-time cyber defense incident handling (e.g., forensic collections, intrusion correlation and tracking, threat analysis, and direct system remediation) tasks to support subordinate organizations and system owners. Manage and document cyber defense incidents from initial detection through final resolution methods. Provide technical guidance to Tier I analysts and QA alert closures for the shift. Maintain an average of at least two new detection use cases per month during each year of contract execution. Detection use cases shall be based on current threats, the MITRE ATT&CK framework, or Government direction. Maintain metadata for all detection use cases to include use case, owner, number of false positives identified, number of true positives identified, and average time to execute (based on incident detection monitoring analyst feedback). Analyze all completed incident records and make improvements to related detection use cases. Make recommendations to correlation rules, filters, signatures, or plays to enhance overall effectiveness by lowering false/benign-positive rates. Track and validate refinement requests and provide metrics for these activities monthly. Assist with developing methods for automating the execution of incident detection use cases that result in false-positive rates below 10%. Provide monthly reports on new automation actions and their results. At the direction and under the supervision of Government personnel, validate the effectiveness of any plays created by emulating adversary tactics to trigger the necessary alerts (blue team). Demonstrate effectiveness by creating detection use cases that successfully detect Red Team (penetration testing) activity. Utilize the MITRE ATT&CK matrix and other threat frameworks to develop detection use cases. Continually refine these processes with the goal of automating their execution. Provide subject matter expertise in creation, editing, and management of signatures, rules and filters for specialized network defense systems including but not limited to network and ESS IDS, IPS, firewall, web application firewall, proxy and SIEM systems. Perform duties as the alternate of the D&R technical lead when needed and effectively disseminate taskings among the team under the guidance of the technical lead.REQUIRED QUALIFICATIONS
Minimum of a Top-Secret Clearance with SCI eligibility DOD 8570 IAT II and CSSP Analyst Certifications (DoD 8140) BS 5-7 Years, MS 3-5, PhD 0-2 Experience with cyber security architecture principles that achieve cybersecurity framework goals Overview We are seeking a Cyber Security Operations Incident Responder/Day Shift Lead Analyst to support our Prime Contract with the Defense Threat Reduction Agency at Fort Belvoir. This position requires an active Top-Secret Clearance and a DOD IAT level II and CSSP Analyst Support certification. Additional Job Information Work Environment and Physical Demands Location: Fort Belvoir, VA Type of environment: Office Noise level: Low Work schedule: 0600 – 1400 Tuesday – Saturday. May be requested to work evenings and weekends to meet program and contract needs. Amount of Travel: 10% Physical Demands The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. While performing the duties of this job, the employee is regularly required to use hands to handle, feel, touch; reach with hands and arms; talk and hear. The employee is regularly required to stand; walk; sit; climb or balance; and stoop, kneel, crouch, or crawl. The employee is regularly required to lift up to 10 pounds. The employee is frequently required to lift up to 25 pounds; and up to 50 pounds. The vision requirements include close vision, distance vision, peripheral vision, depth perception, and ability to adjust focus. Work Authorization/Security Clearance U.S. Citizenship Required Top Secret Clearance with SCI Eligibility requiredWAGE INFORMATION
Target salary range: $120,000.00 - $170,000.00. The salary range displayed is an estimate only and is not a guarantee of compensation or salary, and will be determined on several factors regarding the individual’s particular combination of education, knowledge, skills, competencies and experience, as well as contract parameters and organizational requirements. The displayed salary is one component of the total compensation package for employees.OTHER DUTIES
Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice.EQUAL EMPLOYMENT OPPORTUNITY
In order to provide equal employment and advancement opportunities to all individuals, employment decisions will be based on merit, qualifications, and abilities. TekSynap does not discriminate against any person because of race, color, creed, religion, sex, sexual orientation, gender identity, protected veteran status, national origin, disability, age, genetic information or any other characteristic protected by law (referred to as “protected status”). This nondiscrimination policy extends to all terms, conditions, and privileges of employment as well as the use of all company facilities, participation in all company-sponsored activities, and all employment actions such as promotions, compensation, benefits, and termination of employment. TekSynap is committed to ensuring that our online application process provides an equal employment opportunity to all job seekers, including individuals with disabilities. If you believe you need a reasonable accommodation in order to search for a job opening or to submit an application, please contact View email address on click.appcast.io for assistance. #J-18808-Ljbffr TekSynapVacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Cyber Security Operations Incident Responder/DayShift Lead Analyst in Fort Belvoir, VA vacancy
$120k - $170k
...Job Description Job Description Overview We are seeking a Cyber Security Operations Incident Responder/Swing- Shift Lead Analyst to support our Prime Contract with the Defense Threat Reduction Agency at Fort Belvoir. This position requires an active Top-Secret...OperationsFull timeContract workTemporary workWork at officeLocal areaShift workWeekend workAfternoon shift$120k - $170k
...Overview We are seeking a Cyber Security Protect Analyst Lead to support our Prime... ...opt out of text messaging, respond "STOP". As part of the... ...and ensures all defensive operations strictly align with DoD 8... ...documenting security threats, incident trends, risk mitigation...OperationsFull timeContract workTemporary workWork at officeLocal areaMonday to FridayWeekend workAfternoon shift$138k - $209k
...alongside industry-leading experts, in an... ...join AIS as a Security Architect. Core... ...our client as a Incident Management Lead.... ...managing advanced cyber defense operations, and guiding teams... ...analyzing, and responding to cybersecurity... ...responders, analysts, and penetration...OperationsContract workTemporary work- ...Description RiVidium is seeking an Incident Response Lead to support our planned... ..., Cybersecurity, and Data Operations - Core Operations and helps... ...Responsibilities Lead cyber incident response coordination... ...Government personnel security requirements for the assigned...OperationsFull timeContract workPart timeShift workNight shift
- ...The Cybersecurity Lead will serve as a “Dual... ...for the team, operating with a 70% technical... ...for the entire incident response lifecycle... ...correlation within SIEM (Security Information and... ...and future cyber threats. Individual... ...systems and networks. Respond to requests for information...OperationsLocal area
- ...is seeking a highly motivated Security Operations Center (SOC) Analyst to support a mission-critical... ..., investigating, and responding to cybersecurity events and incidents across enterprise networks and... ...experience in incident response, cyber defense operations, threat detection...Day shiftOperationsContract workLocal areaShift work
$500 per month
...Award Enterprise Horizon Consulting Group is seeking a Lead Business Systems Analyst to serve as a top‑level technical contributor with deep... ...infrastructure. This role is responsible for evaluating current operations, identifying gaps against industry best practices, and...OperationsFull timeContract workTemporary workLocal area$86.8k - $198k
...Risk Management Analyst, Lead The Opportunity: Manage the application... ..., preventing, mitigating, responding to and recovering from... ...highly innovative solutions. Operate with substantial latitude for... ...will be subject to a security investigation and may need to...Full timeContract workPart timeWork at officeLocal areaRemote work$87.1k - $157.45k
...opportunities for SOC Analysts to join our team... ...evidence for incident investigations. Pass... ...certification (e.g., CompTIA Security+ CE, ISC2 SSCP,... ...(Protect, Detect, Respond and Sustain)... ...engineering, and operations of at least one enterprise... ...Driven Defense, Cyber Kill Chain...OperationsWork experience placementAll shiftsShift work- ...staffing for a Senior Pro gram Analyst, supporting the Army's... ...Information Develops/Updates/Responds to Program Management Reports... ...Work collectively with other operations or project managers across... ...Management certification. Security Clearance Secret...OperationsContract workWork at officeLocal areaFlexible hours
- ...Catering Lead At Panera, our people come first. If you’re looking for a place where you... ...you play a crucial role in our catering operations. You help guests plan and choose delicious... ...fantastic Panera dishes for their events, respond to their inquiries and requirements, and...OperationsFull timeLocal areaFlexible hoursShift workNight shift
- ...Clinical Workflow Analyst IV to support our... ...managing MHS GENESIS incident tickets, directing... ...manages as site lead and serves as the... ...application data, security controls, and the... ...MTF teams. ~ DoD Cyber Workforce Framework... ...Management, Operations & Maintenance, Cybersecurity...OperationsContract workTemporary workLocal areaMonday to Friday
- ...Problem Resolution (APR) Lead Full Time Alexandria,... ...Tier 2 IT support operations within a large federal... ...GovernmentPublic Trust security clearance. Duties & Responsibilities... ...under the contract. Respond to administrative and... ...for recurring incidents. Support migration...OperationsFull timeContract workWork at office
- ...Tetrad Digital Integrity (TDI) is a leading-edge cybersecurity firm with a mission to safeguard... ...support large-scale migration and operations on a large, high-profile DOD contract... ...QUALIFICATIONS Possess an active DoD Top Secret Security Clearance BS or equivalent and 8-12...OperationsContract work
- ...Hawaiian Organization (NHO) and veteran-operated company providing advanced Military Intelligence... ...The Dissemination Specialist - Team Lead leads a team of dissemination specialists... ...process intelligence products between security domains. Verify appropriate clearances and...OperationsFull timeLocal area
- ...Dissemination Specialist Team Lead Ft. Belvoir, VA IPTA's... ...intelligence products between security domains Manages the... ...potential inadvertent security incidents and utilizing and maintaining... ...dissemination, or cross-domain operations ~ Demonstrated ability to deliver...OperationsContract work
- ...and customer-oriented GEOINT Deployment Analyst to join our team in Springfield,... ...This role supports critical expeditionary operations requiring strategic planning, policy development... ...strategic deployment opportunities, and respond to internal and external customer...OperationsFull timeOverseas
- ...Description: The Team Lead will provide overall supervision... ...personnel, and monitor operation performance taking direction... ...environments to include firewall and security hardware/software. * Must... ...understanding of how to use Incident Ticket Tracking systems for...OperationsFull timeTemporary workFlexible hoursNight shift
$39.25 - $64.71 per hour
...practice and protocols. Schedule: Full-time Dayshift (0700-1930). Weekdays&weekends.... ...including but not limited to: application operation monitoring and management of all equipment... ...orders throughout work shift. Responds performs and participates in cardiopulmonary...Day shiftOperationsFull timeShift workWeekend workWeekday work$90.3k - $189.6k
...Job Title: Senior Cyber Incident Responder Job Category: Information Technology... ...activities required during cyber security incident response, to... ...tickets worked by more junior analysts to ensure proper analysis,... ...applies to defensive cyber operations. Strong understanding of...OperationsFull timeContract workWork experience placementLocal areaFlexible hours$18 per hour
...Guest Experience Shift Lead LEGO Discovery Center Washington, D.C. Do you love creating unforgettable experiences and spreading... ...Lead, you'll be the go-to leader on the floor, ensuring smooth operations, top-notch guest service, and a happy, motivated team. From managing...Day shiftOperationsFlexible hoursShift workAfternoon shiftWeekday work$118.59k - $169.41k
...Range: $118,590.00 - $169,413.00 Security Clearance: Top Secret Level... .... Warfare Systems comprises cyber and mission IT, electronic... ...nation’s intelligence and cyber operations communities to defend our... ...experienced Network Engineer Lead to join our team in Fort Belvoir...OperationsFull timeWork experience placementLocal areaRemote work- ...Strategic OIE Initiatives Analyst Amyx is seeking to hire a Strategic OIE Initiatives Analyst. This role will provide day-to-day... ...Bachelors Degree and a TS/SCI. Must have 10 years of experience Operations in the Information Environment and minimum of five (5) to...OperationsTemporary workFor contractorsFlexible hours
$110k - $140k
...mission is to empower analysts and decision-makers through... ...Integrator (Team Lead) to support the Data Capabilities... ...the Army Intelligence Security Enterprise (AISE). As... ...specified theaters of operation. An active TS/SCI... ...GSEC), GIAC Certified Incident Handler (GCIH), Cisco...OperationsFull timeContract workFor contractors- ...A leading healthcare provider in Virginia is seeking a dedicated Laboratory Supervisor for their Blood Bank team. This full-time position involves overseeing laboratory operations, ensuring quality control, and managing team performance. Candidates must have a Bachelor...Day shiftOperationsFull timeBank staff
$85k
...Services, servers, storage, backup, IT security, productivity software, remote monitoring... ...SMB and m... $90,000.00 yearly Full-time Analyst III: Health Program Analyst. Nakupuna... ...motivated Cybersecurity Analyst to work on our Operations team in a fast-paced pro... Full-time...OperationsHourly payFull timeWork at officeRemote work- ...Supervisory position primarily responsible for leading a shift and people and processes for... ...standards Ensures effective safety and security programs according to company policy and... ...in supervising Team Member performance Operates with a high degree of Professionalism,...Day shiftOperationsHourly payCasual workWork at officeImmediate startFlexible hoursShift workWeekend workAfternoon shift
- ...Minimum Required Qualifications Education: Associates Degree OR four years of relevant experience in Geospatial Intelligence Operations OR equivalent experience. Experience: At least four years of current GEOINT, Remote Sensing, Cartography, Geography, or related field...OperationsRemote work
- ...STO Analyst (Special Technical Operations) page is loaded## STO Analyst (Special Technical Operations)locations: Springfield, Virginiatime type: Full... ...)**Belong. Connect. Grow. with KBR!**KBR’s National Security Solutions team provides high-end engineering and advanced...OperationsFull timeContract workTemporary workLocal areaRelocation package
- ...Intermediate Orbit Analyst page is loaded## Intermediate Orbit Analystlocations... .... with KBR!**KBR’s National Security Solutions team provides high-... ...of engineering, logistics, operations, science, program management,... ...risks. The analyst will lead routine orbital calculations,...OperationsFull timeContract workTemporary workLocal areaRelocation packageShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Security Operations Incident Responder/DayShift Lead Analyst. Be the first to apply!
Related searches
- operations leader Fort Belvoir, VA
- operations lead Fort Belvoir, VA
- law enforcement response team analyst Fort Belvoir, VA
- command center analyst Fort Belvoir, VA
- senior analyst Fort Belvoir, VA
- health analyst Fort Belvoir, VA
- agriculture analyst Fort Belvoir, VA
- online analyst Fort Belvoir, VA
- disability analyst Fort Belvoir, VA
- mental health analyst Fort Belvoir, VA

