Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Tier 2 Cyber Incident Response Team (CIRT) Analyst at Peraton Beltsville, MD

$80k - $128k

Itlearn360

Program Overview Encompasses technical, engineering, data analytics, cyber security, management, operational, logistical, and administrative support for Bureau of Diplomatic Security, Cyber and Technology Security Directorate in three key offices/functional areas: Cyber Monitoring and Operations, Cyber Threat and Investigations, and Technology Innovation and Engineering State. About The Role Peraton is seeking an experienced Tier 2 Cyber Incident Response Team (CIRT) Analyst to join Peraton's Department of State (DOS) Diplomatic Security Cyber Mission (DSCM) program, which provides leading cyber and technology security expertise to enable innovative, effective, and secure business processes that protect our nation's diplomatic missions worldwide. Location: Beltsville, MD Work Hours: Evening Shift, 1400 – 2200 EST, TUE-SAT In this role, you will: Detect, classify, process, track, and report on cyber security events and incidents. Perform advanced in-depth analysis of coordinated Tier 1 alert triage and requests in a 24x7x365 environment. Analyze logs from multiple sources (e.g., host logs, EDR, firewalls, intrusion detection systems, servers) to identify, contain, and remediate suspicious activity. Characterize and analyze network traffic to identify anomalous activity and potential threats. Protect against and prevent potential cyber security threats and vulnerabilities. Perform forensic analysis of hosts artifacts, network traffic, and email content. Analyze malicious scripts and code to mitigate potential threats. Conduct malware analysis to generate IOCs to identify and mitigate threats. Collaborate with Department of State teams to analyze and respond to events and incidents. Monitor and respond to the CIRT Security Orchestration and Automation Response (SOAR) platform, hotline, email inboxes. Create tickets and initiate workflows as instructed in technical SOPs. Coordinate and report incident information to the Cybersecurity and Infrastructure Security Agency (CISA). Collab...

#DSCM

Qualifications Required Qualifications: Bachelor's degree and at least 2 years of experience or a High School diploma and 6 years of experience. Must possess one of the following certifications prior to start date: A+ CE, CCNA-Security, CND, Network+ CE, SSCP, Security+. Demonstrated experience in the Incident Response lifecycle. Knowledge of SOAR ticketing and automated response systems (e.g. ServiceNow, Splunk SOAR, Microsoft Sentinel). Demonstrated experience with using Security Information and Event Management (SIEM) platforms (e.g. Splunk, Microsoft Sentinel, Elastic, Q-Radar). Demonstrated experience in using Endpoint Detection and Response systems (e.g. MDE, ElasticXDR, CarbonBlack, Crowdstrike). Knowledge of cloud security monitoring and incident response. Knowledge of integrating IOCs and Advanced Persistent Threat actors. Ability to analyze cyber threat intelligence reporting and understanding adversary methodologies and techniques. Knowledge of malware analysis techniques. Knowledge of the MITRE ATT&CK and D3FEND frameworks. U.S. Citizenship required. Active Interim Secret clearance in order to start. Preferred Qualifications: Proficiency with Splunk for security monitoring, alert creation, and threat hunting. Knowledge of Microsoft Azure access and identity management. Proficiency with Microsoft Defender for Endpoint and Identity for security monitoring, response, and alert generations. Experience in using digital forensics collection and analysis tools (e.g. Autopsy, MagnetForensics, Zimmerman-Tools, KAPE, CyLR, Volatility). Experience with using ServiceNow SOAR for ticketing and automated response. Knowledge of Python, PowerShell and BASH scripting languages. Experience with cloud security monitoring and incident response. Demonstrated ability to perform static/dynamic malware analysis and reverse engineering. Experience with integrating cyber threat intelligence and IOC-based hunting. Technical certifications such as: Security+, CySA+, Cloud+, Try Hack Me SAL1, Hack the Box CDSA, CyberDefenders, CCD, Azure SC-900, CCSP, GCIH, CCSK, GSEC, CHFI, GCLD, GCIA. Advanced technical certifications such as: SecurityX/CASP+, PRMP, GREM, GEIR, GNFA, or GCFA. SCA / Union / Intern Rate or Range Details Target Salary Range: $80,000 - $128,000. This represents the typical salary range for this position based on experience and other factors. EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law. #J-18808-Ljbffr Itlearn360

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Tier 2 Cyber Incident Response Team (CIRT) Analyst at Peraton Beltsville, MD in Beltsville, MD vacancy
  •  ...seeking an experienced CIRT Tier 2 Analyst to work on-site in Beltsville, Maryland. This...  ...responding to cyber security incidents in a 24x7...  ...knowledge of incident response, SOAR systems, and...  ...collaborating with various teams, and performing...  ...compliance. #J-18808-Ljbffr Peraton
    Cyber

    Peraton

    Beltsville, MD
    4 days ago
  • $135k - $216k

    Responsibilities Peraton is seeking an experienced Tier 2 Cyber Incident Response Team (CIRT) Shift Lead to join Peratons' Federal Strategic Cyber Mission program. Location: Beltsville, MD; On-site Work Hours: Evening Shift, 14:00-22:00 EST (2:00 - 10:00 PM, EST), Tuesday... 
    Cyber
    Contract work
    Local area
    All shifts
    Shift work
    Afternoon shift

    Peraton

    Beltsville, MD
    4 days ago
  • $80k - $128k

    Itlearn360 is seeking an experienced Tier 2 Cyber Incident Response Team Analyst in Beltsville, MD. The role requires skills in incident response, log analysis, and cybersecurity monitoring. Candidates should have a Bachelor's degree, relevant certifications, and experience... 
    Cyber
    Shift work
    Afternoon shift

    Itlearn360

    Beltsville, MD
    3 days ago
  • $50 - $60 per hour

    Description Tyto Athene is searching for a Tier 2 Incident Response Analyst (IR) to support a law enforcement customer in Washington, DC....  ...tools, triaging alerts, and investigating potential cyber threats. As a SOC team member, you will also serve as the initial point of... 
    Cyber
    Part time
    Worldwide
    Shift work
    Night shift
    Weekend work
    Day shift
    2 days per week

    Tyto Athene

    Washington DC
    4 days ago
  • A cybersecurity firm is looking for a Tier 2 Incident Response Analyst to support law enforcement in Washington, DC. You will monitor security tools, triage alerts, and investigate cyber threats. Ideal candidates have six years in cybersecurity, preferably three in SOC... 
    Cyber

    Tyto Athene, LLC

    Washington DC
    1 day ago
  •  ...recognized members of the Cyber Elite, we work...  ...to the belief that our team members do their best...  ...We are seeking a SOC Analyst Tier 2 (Secret Clearance) to...  ...cybersecurity to improve incident detection, analyze threat...  ...support detection and response. Support incident... 
    Cyber

    ShorePoint Inc

    Washington DC
    1 day ago
  • A prominent cybersecurity firm is seeking a Tier 2 Incident Response Analyst to support law enforcement in Washington, DC. This...  ...tools, triaging alerts, and investigating cyber threats as part of a collaborative SOC team. Candidates should have extensive cybersecurity... 
    Cyber

    Tyto Athene

    Washington DC
    4 days ago
  • Tier 2/3 Cyber Security Analyst / Microsoft Sentinel/Microsoft...  ...Clearance: Top Secret Responsibilities Position: Tier...  ...Program: Peraton Federal...  ...complex security incidents, lead advanced...  ...with customer teams to investigate...  ...international CIRTs as directed. Submit... 
    Cyber
    Work at office
    Local area

    Peraton

    Washington DC
    4 days ago
  • Incident Response Analyst (Task 4 - Federal Cybersecurity Contract) Location: Remote...  ...federal cybersecurity teams. The ideal candidate has hands...  .... Required Qualifications 2-5+ years of experience in cybersecurity...  ...participation. #J-18808-Ljbffr Cyber Synergy Consulting Group
    Cyber
    Full time
    Contract work
    Remote work
    Monday to Friday

    Cyber Synergy Consulting Group

    Washington DC
    1 day ago
  •  ...are recognized members of the Cyber Elite, building meaningful...  ...looking for We are seeking a Tier 2 Analyst (Secret Clearance) to...  ...of cybersecurity to improve incident detection, analyze threat intelligence...  ...to support detection and response. Support incident detection... 
    Cyber

    ShorePoint, LLC

    Washington DC
    3 days ago
  •  ...strong foundation in SOC operations and incident response, you bring analytical thinking,...  ...What We're Looking For: We are seeking a Tier 2 Analyst to support enterprise SOC operations by...  ...from Tier 1 analysts. Analyze and apply cyber threat intelligence to support... 
    Cyber
    Remote work
    Flexible hours

    Aretec, Inc.

    Washington DC
    3 days ago
  •  ...cybersecurity consulting firm is seeking an Incident Response Analyst to support incident management for...  ...with federal cybersecurity teams. Ideal candidates will have experience...  ...duties in the Washington, D.C. area. #J-18808-Ljbffr Cyber Synergy Consulting Group
    Cyber
    Remote job

    Cyber Synergy Consulting Group

    Washington DC
    1 day ago
  •  ...Ernst & Young Oman is looking for a Cyber Triage and Forensics (CTF) Incident Analyst to be a senior member of the technical team handling security incidents. Responsibilities include performing digital forensic analysis, responding to security incidents, and developing... 
    Cyber
    Flexible hours

    Ernst & Young Oman

    Washington DC
    4 days ago
  • $105k - $120k

     ...Piper Companies is seeking a SOC Analyst II in Fulton, MD, to support cybersecurity operations. This role involves Tier 2 security monitoring and incident response, utilizing tools like Splunk and AWS while working in a hybrid environment. The position offers a comprehensive... 
    Contract work

    Piper Companies

    Fulton, MD
    4 days ago
  • $61k - $101k

     ...Job Family: IT Cyber Security Travel Required: Up to 10% Clearance...  ...Investigate potential security incidents using SIEM, endpoint, network, and other...  ...or high-risk incidents to senior analysts or incident response teams when appropriate. Support threat... 
    Cyber
    Full time
    Temporary work
    Flexible hours

    Guidehouse

    Washington DC
    3 days ago
  • $127k - $140k

    Overview Come join Deepwatch’s team of world-class cybersecurity...  ...from ever-increasing cyber threats 24/7/365. Powered by...  ...comprehensive detection and automated response to cyber threats together...  ...of Adversary Response, the Incident Response Analyst operates on the front lines... 
    Cyber
    Permanent employment
    Work experience placement
    Work at office
    Remote work
    Work from home
    Home office
    Flexible hours

    Deepwatch

    Washington DC
    3 days ago
  • Computer Security Incident Response Center (CSIRC) Tier 3/4 Analyst Tracking Code 017-142 Job Description...  ...and/or as part of a team Required Experience Bachelor...  ...Incident Response Team (CIRT)/Computer Emergency...  ...Response Center (CSIRC), or a Cyber Security Operations... 
    Cyber
    Work experience placement
    Immediate start

    Whateverittakescom

    Washington DC
    2 days ago
  • $160k - $190k

     ...is currently seeking an Incident Response (IR) Tech Lead to provide...  ...of an Incident Response team comprised of IR Tier-1, IR Tier-2, and Forensics...  ...defend against complex cyber threats. This role requires...  ...incidents and support junior analysts by providing guidance and... 
    Cyber
    Contract work

    Edgewater Federal Solutions, Inc.

    Bethesda, MD
    2 days ago
  •  ...seeking an  to serve as Tier 2 - Senior Desk Side IT...  ...across IT teams to ensure reliable and...  ...Range:  76,000-85,000 Responsibilities: ~Serve as the lead Tier...  ...management tools to document incidents, resolutions, and...  ...Engineering, Cloud Solutions, Cyber Security, and IT... 
    Cyber
    Full time
    Remote work

    ActioNet

    Washington DC
    4 days ago
  • $140k - $160k

     ...2000, is a leading cyber operations, intelligence...  ...Language Analyst - Turkish, level 2with...  .../ Poly to join our team working in Annapolis Junction, MD. In this role you will...  ...Operations. RESPONSIBILITIES Recovering essential...  ...’s degree or 2 additional yrs of... 
    Cyber
    Full time
    Contract work
    Work experience placement

    Acclaim Technical Services

    Annapolis Junction, MD
    26 days ago
  • $112k - $179k

     ...Secret Overview Peraton is currently seeking...  ...Strategic Cyber Group. Location: US-MD-Beltsville Schedule: Mon-Friday...  ...AM - 4:00 PM). Responsibilities Support Task...  ...and audit cyber incident response tickets...  ...Collaborate with Tie1, Tier 2, Security Development Team, Advanced... 
    Cyber
    Contract work
    For contractors
    Shift work

    Peraton

    Beltsville, MD
    3 days ago
  • $130k - $152.5k

     ...Associate/Cybersecurity & Incident Response (Forensic Services...  ...deploying cross-trained teams of forensic professionals...  ...on the adequacy of cyber security controls in accordance...  ...following - NIST CSF 2.0, HIPAA, ISO 27001...  ...responder, network forensic analyst or malware analyst. ~... 
    Cyber
    Work at office
    Local area
    Work from home
    3 days per week

    Charles River Associates

    Washington DC
    5 days ago
  • $30 - $48 per hour

     ...Overview Job Title: ITSM Incident Response Analyst Location: Remote Type: Independent...  ...the ITSM Service Now Incident Response team as an Analyst supporting the Incident...  ...Firewalls, internet circuits) Application tiers (web, app, database) Email relay and... 
    Contract work
    For contractors
    Work experience placement
    Local area
    Immediate start
    Remote work

    Cayuse Holdings

    Washington DC
    1 day ago
  •  ...A cybersecurity services firm in Washington, D.C. seeks an Incident Response Lead to be the subject matter expert in cybersecurity matters....  ...analytical skills. A comprehensive benefits package is offered, ensuring the well-being of our team members. #J-18808-Ljbffr... 
    Cyber

    ShorePoint Inc

    Washington DC
    4 days ago
  • $83.5k - $87.5k

     ...Overview The Cyber Incident Response Analyst role is pivotal in reinforcing the client's cybersecurity framework...  ...). Escalate cases to specialized teams (e.g., Threat Hunting, Vulnerability...  ...best practices. Additional (2) two years of experience may be substituted... 
    Cyber
    Full time
    Temporary work
    Work at office
    Local area
    Remote work
    Flexible hours
    Shift work

    Cayuse Holdings

    Washington DC
    5 days ago
  •  ...A global cybersecurity consultancy is seeking an Incident Response Engagement Lead to manage cyber incidents and lead a team of experts. The role involves project management, relationship building, and effective incident response. Ideal candidates should possess strong... 
    Cyber

    S-RM Intelligence and Risk Consulting

    Washington DC
    4 days ago
  •  ...Trust ActioNet is seeking a Tier 2 - Desk Side Support - IT...  ...Salary Range: 65,000-75,000 Responsibilities: Provide Tier 2 desk...  ...with Tier 3 and Infrastructure teams for escalation and advanced...  ...Engineering, Cloud Solutions, Cyber Security, and IT Managed Services... 
    Cyber
    Full time
    Work at office
    Remote work

    ActioNet

    Washington DC
    2 days ago
  • $83.5k - $87.5k

    Cayuse Holdings is seeking a Cyber Incident Response Analyst in Washington, DC to enhance the cybersecurity framework. This role involves case management...  ...and CompTIA Security+ certification, with between 0-2 years of experience. The Analyst will work in a professional... 
    Cyber

    Cayuse Holdings

    Washington DC
    2 days ago
  • $65.44k

     ...protective operations. Responsibilities include:...  ...including counterfeiting, cyber fraud, and other threats...  ...part of an elite team committed to...  ...Center in Laurel, MD. Failure to pass the...  ...required to serve a 2-year trial period...  ...Chemical Biological Incident Response Force (CBIRF... 
    Cyber
    Permanent employment
    Full time
    Part time
    Local area
    Immediate start
    Relocation
    Overseas
    Trial period
    Flexible hours

    US Secret Service

    Washington DC
    1 day ago
  • $90.64k - $135.96k

     ...operate, and maintain cyber-physical solutions for...  ...System Administrator 2 to join our Security...  ...you will be part of a team that designs, engineers...  ...growth markets. Responsibilities What you'll do: In...  ...The position provides Tier 1 helpdesk support.... 
    Cyber
    Work at office
    Local area
    Flexible hours
    Night shift

    M.C. Dean, Inc.

    Annapolis Junction, MD
    9 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Tier 2 Cyber Incident Response Team (CIRT) Analyst at Peraton Beltsville, MD. Be the first to apply!