Tier 2 Cyber Incident Response Team (CIRT) Analyst at Peraton Beltsville, MD
$80k - $128kPeraton
Tier 2 Cyber Incident Response Team (CIRT) Analyst job at Peraton. Beltsville, MD. Program Overview Encompasses technical, engineering, data analytics, cyber security, management, operational, logistical, and administrative support for Bureau of Diplomatic Security, Cyber and Technology Security Directorate in three key offices/functional areas: Cyber Monitoring and Operations, Cyber Threat and Investigations, and Technology Innovation and Engineering State. About The Role Peraton is seeking an experienced Tier 2 Cyber Incident Response Team (CIRT) Analyst to join Peraton's Department of State (DOS) Diplomatic Security Cyber Mission (DSCM) program, which provides leading cyber and technology security expertise to enable innovative, effective, and secure business processes that protect our nation's diplomatic missions worldwide. Location: Beltsville, MD Work Hours: Evening Shift, 1400 – 2200 EST, TUE-SAT In this role, you will: Detect, classify, process, track, and report on cyber security events and incidents. Perform advanced in-depth analysis of coordinated Tier 1 alert triage and requests in a 24x7x365 environment. Analyze logs from multiple sources (e.g., host logs, EDR, firewalls, intrusion detection systems, servers) to identify, contain, and remediate suspicious activity. Characterize and analyze network traffic to identify anomalous activity and potential threats. Protect against and prevent potential cyber security threats and vulnerabilities. Perform forensic analysis of hosts artifacts, network traffic, and email content. Analyze malicious scripts and code to mitigate potential threats. Conduct malware analysis to generate IOCs to identify and mitigate threats. Collaborate with Department of State teams to analyze and respond to events and incidents. Monitor and respond to the CIRT Security Orchestration and Automation Response (SOAR) platform, hotline, email inboxes. Create tickets and initiate workflows as instructed in technical SOPs. Coordinate and report incident information to the Cybersecurity and Infrastructure Security Agency (CISA). Collaborate with other local, national and international CIRTs as directed. Submit alert tuning requests.
#DSCM
Qualifications Required Qualifications: Bachelor's degree and at least 2 years of experience or a High School diploma and 6 years of experience. Must possess one of the following certifications prior to start date: A+ CE, CCNA-Security, CND, Network+ CE, SSCP, Security+. Demonstrated experience in the Incident Response lifecycle. Knowledge of SOAR ticketing and automated response systems (e.g. ServiceNow, Splunk SOAR, Microsoft Sentinel). Demonstrated experience with using Security Information and Event Management (SIEM) platforms (e.g. Splunk, Microsoft Sentinel, Elastic, Q-Radar). Demonstrated experience in using Endpoint Detection and Response systems (e.g. MDE, ElasticXDR, CarbonBlack, Crowdstrike). Knowledge of cloud security monitoring and incident response. Knowledge of integrating IOCs and Advanced Persistent Threat actors. Ability to analyze cyber threat intelligence reporting and understanding adversary methodologies and techniques. Knowledge of malware analysis techniques. Knowledge of the MITRE ATT&CK and D3FEND frameworks. U.S. Citizenship required. Active Interim Secret clearance in order to start. Preferred Qualifications: Proficiency with Splunk for security monitoring, alert creation, and threat hunting. Knowledge of Microsoft Azure access and identity management. Proficiency with Microsoft Defender for Endpoint and Identity for security monitoring, response, and alert generations. Experience in using digital forensics collection and analysis tools (e.g. Autopsy, MagnetForensics, Zimmerman-Tools, KAPE, CyLR, Volatility). Experience with using ServiceNow SOAR for ticketing and automated response. Knowledge of Python, PowerShell and BASH scripting languages. Experience with cloud security monitoring and incident response. Demonstrated ability to perform static/dynamic malware analysis and reverse engineering. Experience with integrating cyber threat intelligence and IOC-based hunting. Technical certifications such as: Security+, CySA+, Cloud+, Try Hack Me SAL1, Hack the Box CDSA, CyberDefenders, CCD, Azure SC-900, CCSP, GCIH, CCSK, GSEC, CHFI, GCLD, GCIA. Advanced technical certifications such as: SecurityX/CASP+, PRMP, GREM, GEIR, GNFA, or GCFA. SCA / Union / Intern Rate or Range Details Target Salary Range: $80,000 - $128,000. This represents the typical salary range for this position based on experience and other factors. EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law. #J-18808-Ljbffr Peraton- AGR LLC in Beltsville, MD seeks a Tier 2 Cyber Incident Response Team (CIRT) Shift Lead to join the Federal Strategic Cyber Mission program. You will detect, classify, and report on cyber events in a 24x7 environment, analyzing logs from multiple sources and coordinating...CyberShift work
- ICS (a REDHAWK company) seeks an experienced Tier 2 Cyber Incident Response Team Shift Lead in Beltsville, MD to join the Federal Strategic Cyber Mission program. You... ...review tickets for accuracy, and coordinate with CIRT Watch Officers and government leadership on remediation...CyberShift work
- Peraton is seeking an experienced CIRT Tier 2 Analyst to support its Federal Strategic Cyber Mission program in Beltsville, MD. The role requires on-site work with a mid shift (22:00-6:00 EST,... ...and responding to cyber security incidents in a 24x7 environment. You will analyze...CyberShift workNight shift
$80k - $128k
Responsibilities Peraton is seeking an experienced CIRT Tier 1 Analyst to join Peratons' Federal Strategic Cyber Mission program. Location: Beltsville, MD and Rosslyn, VA Work Hours... ...events and incidents. Perform... ...Department teams as needed to... ...and at least 2 years of experience...CyberContract workLocal areaShift work$80k - $128k
...experienced CIRT Tier 1 Analyst to join Peratons... ...Strategic Cyber Mission... ...program.Location: Beltsville, MD and Rosslyn,... ...(6:00 AM - 2:00 PM) /... ...events and incidents. Perform triage... ...Department teams as needed to... ...of incident response principles and... ...concepts.Peraton OverviewPeraton...CyberContract workLocal areaShift work$80k - $128k
Peraton is looking for an experienced CIRT Tier 1 Analyst to join its Federal Strategic Cyber Mission program in Beltsville, MD. The role involves tracking cybersecurity events, managing incidents, and coordinating with various teams. Candidates should have a Bachelor's...CyberFull time- Peraton is seeking a Cyber IT Specialist for 2nd shift in Beltsville, MD. The role requires IT operations experience, ServiceNow and... ...the ability to coordinate incident response while ensuring data integrity... ...ticketing in ServiceNow, and cross-team collaboration to resolve...CyberShift workAfternoon shift
- ...recognized members of the Cyber Elite, we work... ...to the belief that our team members do their best... ...We are seeking a Tier 2 Analyst for a potential opportunity... ...cybersecurity to improve incident detection, analyze threat... ...support detection and response. Support incident...CyberContract work
- ...CyberLinx Solutions, LLC is seeking a SOC Analyst (Tier 2) / Security Incident Investigator to join our Security... ...Center(SOC). This role is responsible for conducting in-depth investigations... ...infrastructure, network, and endpoint teams to contain and remediate security...
$132.48k - $336.96k
Responsibilities About the Team The TikTok USDS JV Security Operations Center (SOC)... ...efforts to enterprise-wide incidents, including post-incident root... ...incidents. As an IR Analyst, you will belong to a team... ...including the Hunt team, Cyber Threat Intelligence, Digital...CyberTemporary workShift work- Peraton is seeking a Cyber IT Specialist, 2nd Shift, to join the Federal Strategic Cyber Group in Beltsville, MD. Workdays are Tuesday through Saturday, from 2:00 PM to 10:00 PM, with a focus on incident response, ServiceNow ticket management, and cross-functional coordination...CyberAfternoon shift
$7.5k
...with a RESILIENT team at RealmOne? RealmOne... ...a team of Target Analyst Reporters,... ...reporting vehicles, in response to mission requirements... ...Reporter Level 2 shall possess the... ...(e.g. collection, cyber and intelligence analysis... ...in Columbia, MD., RealmOne supplies...CyberContract workWork experience placementImmediate startFlexible hours- ...Operations / Desktop Engineer (Tier 2.5) Location:... ...2 Deskside Support team, resolving complex endpoint... ...desirable. Key Responsibilities ~Serve as a Tier 2.5... ...maintenance support, incident response, and coordination... ..., Cloud Solutions, Cyber Security, and IT Managed...CyberFull timeWork at officeFlexible hoursShift work
- ...and Impact: Amentum is seeking SOC / Incident Response Analyst to support our U.S. Department of Energy... ...: Provide a wide range of Cyber Intelligence (CI) services to deliver... ...Operations Centers or Incident Response teams.Experience with SIEM platforms, EDR tools...CyberContract workFor contractors
$130k - $152.5k
...Associate/Cybersecurity & Incident Response (Forensic Services... ...deploying cross-trained teams of forensic professionals... ...on the adequacy of cyber security controls in accordance... ...following - NIST CSF 2.0, HIPAA, ISO 27001... ...responder, network forensic analyst or malware analyst. ~...CyberWork at officeLocal areaWork from home3 days per week$107.9k - $195.05k
...success. We empower our teams, contribute to our... ...Leidos is seeking an Incident Response Lead to join our team on a highly visible cyber security single-award IDIQ... ...mentorship to improve analyst skill sets and ensure delivery... ...Response Team (CIRT) and/or Security Operations...CyberLocal areaImmediate start- ...Title: Mid-Level Cybersecurity Incident Response Analyst Location: Bethesda,... ...Compromise (IOCs). Support Cyber Threat Intelligence (CTI) activities... ...across technical teams. Commitment to continuous... ..., state, or local law. #M-2 #LI-CK1 Ref: #856-Baltimore...CyberLocal area
- ...digital world to life. Our teams empower organizations... ...Engineer III - Incident ResponseOrganization: F... ...of our Global Incident Response team. In this role, you... ...workstream lead during active cyber events, partnering... ...800-61, ISO 27001, SOC 2, FedRAMP, PCI-DSS).Success...CyberFull timeWork at officeLocal area
$140k - $150k
...DescriptionEverforth ECS is seeking an Incident Response Leadto work in... ...security operations team which is a specialized... ...enterprise. This is a Tier 3 position, meaning... ...familiarity with the Cyber Kill Chain, MITRE ATT&... ...at a senior or Tier 3 analyst level. Candidates who...CyberRemote work$66k - $106k
Responsibilities Peraton is looking for a Cyber IT Specialist, 2nd Shift to become part... ...Group. Location: Beltsville, MD. Days: Tuesday - Saturday; Hours: 2:00 PM - 10:00 PM... ...shift activities, incidents, and operational events... ...to appropriate teams (e.g., System Administration...CyberContract workInterim roleAll shiftsShift workAfternoon shift- ...Description Job Description Overview The Cyber Incident Response Analyst role is pivotal in reinforcing the... ...). Escalate cases to specialized teams (e.g., Threat Hunting, Vulnerability... ...best practices. Additional (2) two years of experience may be substituted...CyberTemporary workWork at officeLocal areaFlexible hoursShift work
$132.23k - $176.31k
...amazingly smart team that you can be... ...approximately 2 times per month. The Main Responsibilities Research latest... .... Work with cyber operators, when... ...RFIs on incidents and emerging threats... ...that combine analyst expertise, automation... ...CT DC DE IL MA MD NJ NY TX VA WA...CyberFull timeTemporary workWork experience placementWork at officeRemote work- ...Description ActioNet is seeking a Tier 2 – Mid Desk Side Support - IT... .... Salary: 65-75K Responsibilities: Provide Tier 2 desk... ...Tier 3 and other Infrastructure teams for escalation and advanced... ...Engineering, Cloud Solutions, Cyber Security, and IT Managed...CyberFull timeWork at officeRemote work
- cFocus Software seeks a Incident Response Analyst (Tier 2) to join our program supporting the Administrative Office of the United States Courts (AOUSC). This position is Hybrid with the onsite location being in Washington, DC. This position requires a Public Trust clearance...Work at office
- ...Job Description Job Description Incident Response Analyst (Task 4 – Federal Cybersecurity Contract)... ...across multiple federal cybersecurity teams. The ideal candidate has hands-on experience... .... Required Qualifications ~2–5+ years of experience in cybersecurity...Full timeContract workRemote workMonday to Friday
- Booz Allen Hamilton is seeking an experienced information security risk specialist to join a 24x7 SOC and Incident Response team. You will monitor, detect, investigate, and respond to cybersecurity threats across enterprise networks, endpoints, and applications, leveraging...Cyber
- ...Incident Response Lead ShorePoint is a fast-growing, industry recognized and award-winning cybersecurity... ...The Perks: As recognized members of the Cyber Elite, we work together in partnership... ...We are committed to the belief that our team members do their best work when they are...CyberContract work
- ...seeking a security professional to advance cyber defense programs for federal missions.... ..., lead improvements, and design incident response playbooks within an agile framework. The... ...analytics, and secure reporting across multiple teams. The position requires a TS/SCI...CyberRemote job
- ...Job Description Provides Tier 2 desktop support (telephone, deskside... ..., resolves, and reports on incidents and requests using ServiceNow.... ...Escalates incident to the appropriate team when the incident cannot be... ..., with the focus on Cloud, Cyber, Enterprise IT, Systems...CyberWork at officeRemote work
- Cayuse is hiring a Cyber Incident Response Analyst in Washington, DC. This role is critical for reinforcing the client’s cybersecurity framework, managing... ...incidents, and collaborate closely with various teams while maintaining high-quality customer service. Candidates...Cyber
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Tier 2 Cyber Incident Response Team (CIRT) Analyst at Peraton Beltsville, MD. Be the first to apply!




