Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

CIRT Tier 2 Analyst / Active Secret

$66k - $106k

Peraton

CIRT Tier 2 Analyst / Active Secret

Job Locations


US-MD-Beltsville

Requisition ID


View phone number on click.appcast.io

Position Category


Information Technology

Clearance


Secret

Responsibilities

Peraton is seeking an experienced CIRT Tier 2 Analyst to join Peratons' Federal Strategic Cyber Mission program.

Location: Beltsville, MD; On-site

Work Hours: Evening Shift, 14:00- 22:00 EST, TUESDAY - SATURDAY.

In this role, you will:

    Detect, classify, process, track, and report on cyber security events and incidents.
  • Perform advanced in-depth analysis of coordinated Tier 1 alert triage and requests in a 24x7x365 environment.
  • Analyze logs from multiple sources (e.g., host logs, EDR, firewalls, intrusion detection systems, servers) to identify, contain, and remediate suspicious activity.
  • Characterize and analyze network traffic to identify anomalous activity and potential threats.
  • Protect against and prevent potential cyber security threats and vulnerabilities.
  • Perform forensic analysis of hosts artifacts, network traffic, and email content.
  • Analyze malicious scripts and code to mitigate potential threats.
  • Conduct malware analysis to generate IOCs to identify and mitigate threats.
  • Collaborate with Department of State teams to analyze and respond to events and incidents.
  • Monitor and respond to the CIRT Security Orchestration and Automation Response (SOAR) platform, hotline, email in-boxes.
  • Create tickets and initiate workflows as instructed in technical SOPs.
  • Coordinate and report incident information to the Cybersecurity and Infrastructure Security Agency (CISA).
  • Collaborate with other local, national and international CIRTs as directed.
  • Submit alert tuning requests.

Qualifications

Required:

  • Bachelor's degree and at least 2 years of experience or a High School diploma and 6 years of experience.
  • Must possess or be able to obtain at least one of the following certifications before start date (Continued certification required as a condition of employment):
    • A+ CE; CCNA-Security; CND; Network+ CE; SSCP
  • Demonstrated experience in the Incident Response lifecycle.
  • Knowledge of SOAR ticketing and automated response systems (e.g. ServiceNow, Splunk SOAR, Microsoft Sentinel).
  • Demonstrated experience with using Security Information and Event Management (SIEM) platforms (e.g. Splunk, Microsoft Sentinel, Elastic, Q-Radar).
  • Demonstrated experience in using Endpoint Detection and Response systems (e.g. MDE, ElasticXDR, CarbonBlack, Crowdstrike).
  • Knowledge of cloud security monitoring and incident response.
  • Knowledge of integrating IOCs and Advanced Persistent Threat actors.
  • Ability to analyze cyber threat intelligence reporting and understanding adversary methodologies and techniques.
  • Knowledge of malware analysis techniques.
  • Knowledge of the MITRE ATT&CK and D3FEND frameworks.
  • U.S. Citizenship required.
  • Active Secret security clearance.

Preferred:

  • Proficiency with Splunk for security monitoring, alert creation, and threat hunting.
  • Knowledge of Microsoft Azure access and identity management.
  • Proficiency with Microsoft Defender for Endpoint and Identity for security monitoring, response, and alert generations.
  • Experience in using digital forensics collection and analysis tools (e.g. Autopsy, MagnetForensics, ZimmermanTools, KAPE, CyLR, Volatility).
  • Experience with using ServiceNow SOAR for ticketing and automated response.
  • Knowledge of Python, PowerShell and BASH scripting languages.
  • Experience with cloud security monitoring and incident response.
  • Demonstrated ability to perform static/dynamic malware analysis and reverse engineering.
  • Experience with integrating cyber threat intelligence and IOC-based hunting.
  • Technical certifications such as: Security+, CySA+, Cloud+, Try Hack Me SAL1, Hack the Box CDSA, CyberDefenders, CCD, Azure SC-900, CCSP, GCIH, CCSK, GSEC, CHFI, GCLD, GCIA.
  • Advanced technical certifications such as: SecurityX/CASP+, PRMP, GREM, GEIR, GNFA, or GCFA.

Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.

Target Salary Range

$66,000 - $106,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

EEO

EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the CIRT Tier 2 Analyst / Active Secret in Beltsville, MD vacancy
  •  ...federal cybersecurity organization is seeking an experienced CIRT Tier 2 Analyst to work on-site in Beltsville, Maryland. This role focuses...  ...of incident response, SOAR systems, and SIEM platforms. An active Secret security clearance is required. The position involves... 
    Suggested

    Peraton

    Beltsville, MD
    4 days ago
  • $80k - $128k

     ...Peraton is seeking an experienced Tier 2 Cyber Incident Response Team (CIRT) Analyst to join Peraton's Department of...  ...contain, and remediate suspicious activity. Characterize and analyze network...  ...required. Active Interim Secret clearance in order to start. Preferred... 
    Suggested
    Interim role
    Internship
    Work at office
    Worldwide
    Afternoon shift

    Itlearn360

    Beltsville, MD
    4 days ago
  • $80k - $128k

    Itlearn360 is seeking an experienced Tier 2 Cyber Incident Response Team Analyst in Beltsville, MD. The role requires skills in incident response, log analysis, and cybersecurity monitoring. Candidates should have a Bachelor's degree, relevant certifications, and experience... 
    Suggested
    Shift work
    Afternoon shift

    Itlearn360

    Beltsville, MD
    3 days ago
  • $80k - $128k

     ...Responsibilities Position: Tier 2/3 Cyber Security Analyst - Microsoft Sentinel and...  ..., and remediate suspicious activity. • Characterize and...  ...national, and international CIRTs as directed. • Submit alert...  ...• Ability to obtain a Top Secret security clearance. Preferred... 
    Suggested
    Contract work
    Work at office
    Local area
    Shift work

    Peraton

    Washington DC
    3 days ago
  •  ...and more. Who were looking for: We are seeking a Tier 2 Analyst (Secret Clearance) to support enterprise SOC operations by reviewing...  ...thinking. ~ Applicants must currently hold and maintain an active Secret clearance. Beneficial to have the following:... 
    Suggested

    ShorePoint

    Washington DC
    6 days ago
  •  ...class SOC operation. What We're Looking For: We are seeking a Tier 2 Analyst to support enterprise SOC operations by reviewing and...  ...critical thinking. Applicants must currently hold and maintain an active Secret clearance. Remote position. Additional Notes: At Aretec,... 
    Remote work
    Flexible hours

    Aretec, Inc.

    Washington DC
    3 days ago
  • $55k - $76k

     .... Clear Creek Federal is seeking a Tier 2 Operations Engineer who will support enterprise...  ...tuning, and incident response activities. Support user account management, permissions...  ...communication skills. Active Top-Secret Clearance. Well qualified candidates will... 
    Full time
    Contract work
    Flexible hours

    Seneca Holdings

    Washington DC
    6 days ago
  •  ...our newest clients is seeking Senior SOC Analysts to work with a federal agency for roles...  ..., DC. The ideal candidate will have an active Top Secret Clearance and 8+ years of experience in...  ...is considered to work on second-tier escalation. The analyst must be able to... 
    Immediate start
    Monday to Friday
    Shift work

    Macpower Digital Assets Edge

    Washington DC
    4 days ago
  • $50 - $60 per hour

    Description Tyto Athene is searching for a Tier 2 Incident Response Analyst (IR) to support a law enforcement customer in Washington, DC. Our IR analysts...  ...cloud and SaaS solutions for evidence of adversarial activity Perform in‑depth analysis and investigation of high-... 
    Part time
    Worldwide
    Shift work
    Night shift
    Weekend work
    Day shift
    2 days per week

    Tyto Athene

    Washington DC
    4 days ago
  • Aretec, Inc. is seeking a Tier 2 Analyst in Washington, DC. This role involves supporting enterprise SOC operations, reviewing escalated...  ...experience, 3+ years in the field, and must hold an active Secret clearance. The position includes flexible work arrangements... 
    Remote job
    Flexible hours

    Aretec, Inc.

    Washington DC
    4 days ago
  • $42.8k - $46k

     ...Business Operations Analyst 2 All Native Group is in search of a Business Operations...  ...ideas by means of the spoken word. Those activities in which they must convey detailed or important...  ...~ Must be a US Citizen with an active Secret clearance Drug Free Workplace... 
    Hourly pay
    Full time
    Contract work
    Work experience placement
    Work at office
    Local area
    Monday to Friday
    Weekend work
    Afternoon shift

    All Native Group, The Federal Services Division of Ho-Chunk ...

    Washington DC
    4 days ago
  •  ...first day on the contract. U.S. citizenship is required. An active Top Secret security clearance required. In addition, selected candidate...  ...(RFIs). Experience as an All-Source Intelligence Analyst in Joint Operations Center and/or Fusion Center. Experience... 
    Contract work
    Currently hiring
    Work at office
    Local area
    Flexible hours
    Shift work

    Peraton

    Washington DC
    2 days ago
  • A cybersecurity firm is looking for a Tier 2 Incident Response Analyst to support law enforcement in Washington, DC. You will monitor security tools, triage alerts, and investigate cyber threats. Ideal candidates have six years in cybersecurity, preferably three in SOC... 

    Tyto Athene, LLC

    Washington DC
    1 day ago
  • Tyto-Athene is seeking a Part-Time Tier 2 Incident Response Analyst to support law enforcement in Washington, DC. You will monitor cybersecurity tools, triage alerts, and respond to incidents. Ideal candidates have significant cybersecurity experience and a Bachelor's... 
    Part time

    Tyto-Athene

    Washington DC
    2 days ago
  • $58k - $74k

     ...Tier 1 Cyber Network Defense Analyst - Shift Schedule (w/ active TS) Location: Washington, DC Full-time, Hybrid Clearance...  ...field AND a minimum of two (2) years professional experience...  ...Must possess an active DoD Top Secret Clearance . In addition, selected... 
    Full time
    Immediate start
    Flexible hours
    Shift work
    Day shift

    Critical Solutions

    Washington DC
    1 day ago
  •  ...Description Management Consultant-II (MC-II) - Sensitive Activities Analyst - Hybrid Location: Pentagon or Mark Center, Washington, DC area (onsite 2-3 times per week) Clearance Required: Top Secret Employment Type: Full-time, Hybrid BizFirst is... 
    Permanent employment
    Full time
    Contract work
    Monday to Friday
    Flexible hours

    Biz First

    Washington DC
    1 day ago
  • THIS POSITION REQUIRES A  CURRENT   Top Secret / SCI w/ Poly . Core One seeks an experienced Information Analyst - Level 2 to support the Classification Management Branch...  ...information sharing and safeguarding activities to facilitate and enhance the discovery, dissemination... 
    For contractors
    Work at office

    Core One

    Bethesda, MD
    3 days ago
  •  ...ServiceNow Business Analyst Location: Remote Clearance Required: Active Secret Clearance Company: Improvix Technologies Empower Mission-Driven IT Innovation...  ...years of Business Analyst experience , including 2+ years working directly with ServiceNow. ~... 
    Remote work

    Improvix Technologies, Inc.

    Washington DC
    6 hours ago
  •  ...Job Title Management Analyst 2, Cost of Service Model (CoSM) Job Description Management Analyst 2, Cost of Service Model...  ...and policy decisions effectively. This position requires an Active Secret Security Clearance. Core Duties: Provide Subject Matter... 
    Work at office
    Overseas

    Cape Fox Shared Services

    Washington DC
    1 day ago
  •  ...Jr. Business Analyst/Tester At B&A, we foster and embrace a distinct set of values...  ...Security Clearance ~ Active Top-Secret Clearance More About B&A: Notable...  ...Savings Account (HSA) option as well as two tiers of dental coverage, vision, life & AD&D... 
    Full time
    Work experience placement
    Work at office
    Local area

    Bart and Associates Inc

    Washington DC
    4 days ago
  •  ...Consulting Group, Inc. is looking for a ServiceNow Business Analyst to support federal clients in Washington, DC. In this...  ...and manage Agile processes. The ideal candidate holds an Active Secret Clearance, has 0-2 years of experience with ServiceNow, and is adept in communication... 

    Blue Rose Consulting Group, Inc.

    Washington DC
    3 days ago
  • $176k - $282k

     ...Data Scientist Engineer Level 2 - AI/ML Project TS/SCI w/Poly...  ...Analysis Clearance Top Secret/SCI w/Poly Responsibilities...  ...for integration into analyst workflows. MPOJobs #AJCM...  ...analytic development process An Active TS/SCI clearance with... 
    Contract work
    Shift work

    Peraton

    Laurel, MD
    2 days ago
  •  ...Senior Intelligence Data Analyst (Top Secret) SiloSmashers is seeking a Senior Intelligence Data Analyst to assist our intelligence community...  ...experience in Government programs, projects, and/or activities. Ten (10) years or more of managing all facets of project... 
    Contract work
    For contractors

    Silo Smashers

    Washington DC
    1 day ago
  • $30 - $44.15 per hour

     ...cybersecurity industries. We are seeking an Electronics Technician 2 to join our Security and Electronic Systems (SES) business unit...  ...timesheets on projects, executing installation and maintenance activities within planned durations. Tracks and inventories tools,... 
    Apprenticeship
    Work at office
    Local area
    Relocation

    M.c.-Dean,-Inc.

    Laurel, MD
    5 days ago
  •  ...Consulting is seeking a Quality Assurance & Knowledge Management Analyst in Washington D.C. This hybrid position requires someone who...  ...in quality assurance and 3 years in knowledge management. Active SECRET Clearance is required. Ideal for those looking to drive operational... 

    Omniscius Consulting

    Washington DC
    5 days ago
  • $115k - $155k

     ...We are seeking a Sr. Business Systems Analyst to join our team supporting the FBI's National...  ...degree. Clearance ~ Top Secret Security w/ SCI Eligibility RESPONSIBILITIES...  ...or contain a comprehensive listing of activities, duties or responsibilities that are... 
    Full time
    Contract work
    Temporary work
    Work at office
    Local area
    Remote work
    Monday to Friday
    Weekend work
    Day shift
    Afternoon shift

    TekSynap

    Washington DC
    2 days ago
  •  ...Business System Analyst Location: Washington, DC 20005 Duration: 6 Months Contract Client: USAC Work Mode: Hybrid (2 days/Week) Interview Rounds: 2 (Phone Screen & In-person...  ...design reviews, and change control activities; Defines and implements standards... 
    Contract work
    2 days per week

    InteliX Systems

    Washington DC
    1 day ago
  •  ...CItyWide Information Security Team at OCTO is looking for 2 Tier 1 SOC Analysts to work onsite at 200 I ST, SE 4 days a week with 1 day of...  ...notification, communications and providing incident response activities such as tracking the incident, communication with stakeholders... 
    Contract work
    Work at office
    Remote work

    InstantServe LLC

    Washington DC
    5 days ago
  •  ...Program Analyst 2 MELE Associates, Inc. is seeking to add an experienced Program Analyst...  ...its Subcontractor Team), presentations, activities, etc. Preparing technical reports,...  ...Current, active DOE Q Clearance/Top Secret Clearance with ability to acquire SCI.... 
    Full time
    Contract work
    For contractors
    For subcontractor

    MELE Associates

    Washington DC
    4 days ago
  •  ...Tier 1 IAM Analyst The Tier 1 IAM Analyst supports identity and access management (IAM) operations...  ...analysis, monitoring, and compliance activities. The analyst works under established...  ...Escalation Work closely with Tier 2/Tier 3 teams on escalations, audits,... 
    Contract work
    Work at office
    2 days per week
    1 day per week

    ASM Research

    Washington DC
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to CIRT Tier 2 Analyst / Active Secret. Be the first to apply!