SOC Architect
Openkyber
OpenKyber Data Solutions, LLC, a OpenKyber Government Services company , is seeking a Cyber Defense Analysts - Senior to support OpenKyber and our government customer in Washington, DC. This position requires the candidate to be able to obtain a Public Trust. We offer competitive compensation and an extraordinary benefits package including health, dental and vision insurance, 401K with company matching, flexible spending accounts, paid holidays, three weeks paid time off, and more. OpenKyber Data Solutions, a OpenKyber Government Services company, is seeking an experienced Senior Cyber Defense Analyst to support the U.S. Small Business Administration (SBA). The ideal candidate is a skilled cybersecurity professional with a strong background in cyber defense operations, advanced threat analysis, and incident response within a federal government environment. This individual will play a critical role in protecting SBA's systems, networks, and data by performing advanced security monitoring, conducting in-depth threat analysis, and leading incident response activities in alignment with federal cybersecurity policies and SBA security requirements.
The Senior Cyber Defense Analyst will serve as a senior-level cybersecurity operations professional responsible for performing advanced monitoring, detection, analysis, and response to cybersecurity threats targeting SBA's enterprise IT environment. This individual will bring deep technical expertise and operational experience to the SOC team, taking ownership of complex security investigations, leading incident response activities, and contributing to the continuous improvement of SBA's cyber defense capabilities.
Principal responsibilities will include but are not limited to:
- Perform advanced, continuous monitoring of SBA networks, systems, endpoints, and cloud environments using SIEM platforms, IDS/IPS tools, EDR solutions, and other security technologies to detect, identify, and respond to potential threats, anomalies, and indicators of compromise targeting SBA's enterprise IT environment.
- Conduct advanced analysis and in-depth triage of security events, alerts, and incidents, determining the validity, scope, severity, and potential impact of identified threats, and escalating confirmed or suspected incidents to the Cybersecurity Operations Technical Lead in accordance with established SBA incident response procedures and SLAs.
- Lead and coordinate incident response activities for significant and complex cybersecurity incidents, including containment, eradication, recovery, and post-incident review, in strict accordance with SBA's incident response policies, NIST SP 800-61 guidelines, and applicable federal requirements.
- Perform advanced threat hunting activities, proactively searching SBA's enterprise environment for indicators of compromise (IOCs), hidden adversary activity, and sophisticated threats that have evaded automated detection, leveraging the MITRE ATT&CK framework, threat intelligence, and advanced analytical techniques.
- Conduct detailed analysis of network traffic, system logs, endpoint telemetry, and other relevant data sources to reconstruct attack timelines, characterize adversary TTPs, identify root causes, and determine the full scope and impact of security incidents affecting SBA systems and data.
- Develop and recommend enhancements to SIEM detection rules, correlation logic, behavioral analytics, and alerting thresholds based on threat hunting findings, incident analysis results, and emerging threat intelligence, working with the Technical Lead to implement approved improvements.
- Analyze and operationalize threat intelligence from government and commercial sources, including US-CERT, CISA, ISACs, and commercial threat intelligence platforms, applying intelligence to ongoing monitoring, incident investigations, and threat hunting activities to enhance SBA's cyber defense posture.
- Prepare detailed, high-quality incident reports, after-action reviews (AARs), and technical documentation for significant security incidents, capturing incident timelines, root cause analysis, evidence, response actions, and actionable recommendations for SBA leadership and stakeholders.
- Collaborate with SBA IT teams, system owners, the Cybersecurity Architect, and other stakeholders to communicate security findings, coordinate remediation activities, and provide expert technical guidance on the resolution of identified vulnerabilities and security gaps.
- Support and contribute to the development and maintenance of SOC Standard Operating Procedures (SOPs), incident response playbooks, and runbooks, ensuring documentation reflects current threats, operational procedures, and lessons learned from past incidents.
- Provide mentorship and technical guidance to mid-level and junior SOC analysts, contributing to their professional development and the continuous improvement of the SOC team's overall analytical capabilities and operational effectiveness.
- Support vulnerability management activities by providing advanced analysis of vulnerability scan results, assessing the exploitability and real-world risk of identified vulnerabilities in the context of SBA's threat landscape, and advising on remediation prioritization strategies.
- Participate in tabletop exercises, red team/blue team activities, and purple team engagements, contributing senior-level analytical expertise to validate and strengthen SBA's detection and response capabilities against realistic attack scenarios.
- Monitor and analyze changes to the federal cybersecurity policy landscape, emerging threat trends, and new vulnerability disclosures, applying new knowledge to continuously improve SBA's cyber defense monitoring and response capabilities.
- Ensure all cyber defense activities comply with applicable federal cybersecurity frameworks, policies, and regulations, including NIST, FISMA, and DHS/CISA directives and guidance.
Required: Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field from an accredited college or university. 6+ years of progressive experience in cybersecurity operations, threat analysis, or cyber defense, with at least 2 years performing senior analyst functions within a SOC or cyber defense environment. Demonstrated experience supporting federal government cybersecurity programs and SOC operations. One or more of the following certifications: GIAC Certified Incident Handler (GCIH) GIAC Security Operations Certified (GSOC) GIAC Certified Enterprise Defender (GCED) Certified SOC Analyst (CSA) CompTIA Cybersecurity Analyst (CySA+) Certified Information Systems Security Professional (CISSP)
Desired: Master's degree in Cybersecurity, Information Assurance, or a related field. 8+ years of cybersecurity operations experience within a federal government or defense contracting environment, with a demonstrated focus on advanced threat analysis, threat hunting, and incident response.
Required Skills and Competencies:Exceptional communication skills in English - both written and oral - with the ability to clearly convey complex technical security findings, incident details, and analytical recommendations to both technical and non-technical audiences, including senior SBA leadership and government stakeholders. Advanced proficiency in security event monitoring, alert triage, threat detection, and incident response operations within a SOC environment, with demonstrated experience handling complex, high-priority security incidents from detection through resolution. Extensive hands-on experience with SIEM platforms (e.g., Splunk, Microsoft Sentinel, ArcSight, or similar), including the ability to develop and tune detection rules, build advanced queries and dashboards, and conduct in-depth log analysis and event correlation to support complex incident investigations. Strong knowledge of network security concepts and protocols, including TCP/IP, DNS, firewalls, IDS/IPS, and demonstrated ability to analyze network traffic captures and flow data using tools such as Wireshark or Zeek to identify malicious activity during incident investigations. Advanced proficiency with endpoint detection and response (EDR) tools and the ability to conduct thorough host-based investigations, including the analysis of endpoint telemetry, process trees, registry artifacts, and memory data to identify and characterize threats on SBA endpoints. Demonstrated expertise in applying the MITRE ATT&CK framework to threat detection, threat hunting, and incident response activities, including the ability to map observed adversary behaviors to ATT&CK tactics and techniques to inform analytical findings and detection improvements. Advanced experience conducting log analysis across diverse data sources, including Windows Event Logs, Syslog, cloud platform logs, application logs, and network flow data, to reconstruct attack timelines and support thorough incident investigations. Experience leveraging threat intelligence platforms and operationalizing threat intelligence from multiple government and commercial sources to drive threat hunting priorities, enhance detection capabilities, and inform incident response activities. Knowledge of federal cybersecurity frameworks and compliance requirements, including NIST SP 800-53, NIST SP 800-61, FISMA, and CISA guidance and directives, and their application to senior-level cyber defense operations within a federal civilian agency environment. Demonstrated experience developing high-quality incident reports, after-action reviews, SOC SOPs, and incident response playbooks that accurately capture incident details, analytical findings, and actionable remediation recommendations. Ability to serve as a technical mentor and resource for mid-level and junior SOC analysts, providing guidance, knowledge transfer, and professional development support to elevate team capabilities. Strong analytical and problem-solving skills with the ability to manage multiple complex investigations simultaneously, prioritize effectively under pressure, and drive incidents through to resolution in a timely and thorough manner. Ability to obtain and maintain a Public Trust Clearance.
Desired Skills and Competencies:Prior experience supporting SBA or other federal civilian agency SOC operations or cyber defense programs, with demonstrated knowledge of SBA's IT environment, threat landscape, and cybersecurity program requirements. Experience with cloud security monitoring and incident investigation in AWS, Azure, or Google Cloud Platform environments, including familiarity with cloud-native logging, monitoring, and security services such as AWS GuardDuty, Microsoft Defender for Cloud, or Google Security Command Center. Familiarity with Security Orchestration, Automation, and Response (SOAR) platforms and experience using scripting languages such as Python or PowerShell to develop automated detection, investigation, and response workflows that improve SOC efficiency and analytical capability. Experience with digital forensics concepts and techniques, including basic disk forensics, memory forensics, and network forensics, to support advanced incident response investigations and evidence collection activities. Knowledge of Zero Trust Architecture (ZTA) principles and their implications for advanced threat detection, cyber defense monitoring, and incident response within a federal IT environment. Familiarity with the CDM (Continuous Diagnostics and Mitigation) program tools, data requirements, and their application in supporting senior-level SOC operations and cyber defense activities within federal civilian agencies. GIAC Certified Forensic Analyst (GCFA) or GIAC Network Forensic Analyst (GNFA) certification. Experience supporting or participating in purple team exercises, collaborating with offensive security and SOC teams to validate and improve detection and response capabilities against real-world attack scenarios. Familiarity with cyber deception technologies, including honeypots and deception platforms, and their application in enhancing threat detection and adversary identification capabilities within SBA's environment. Experience working within FedRAMP authorized cloud environments and familiarity with FedRAMP security requirements as they relate to senior-level SOC monitoring, incident response, and cyber defense activities.
Our Equal Employment Opportunity Policy The company is an equal opportunity employer. The company shall not discriminate against any employee or applicant because of race, color, religion, creed, ethnicity, sex, sexual orientation, gender or gender identity (except where gender is a bona fide occupational qualification), national origin or ancestry, age, disability, citizenship, military/veteran status, marital status, genetic information or any other characteristic protected by applicable federal, state, or local law. We are committed to equal employment opportunity in all decisions related to employment, promotion, wages, benefits, and all other privileges, terms, and conditions of employment. The company is dedicated to seeking all qualified applicants. If you require an accommodation to navigate or apply for a position on our website, please get in touch with OpenKyber via e-mail at or by calling to request accommodations. OpenKyber Government Services (OpenKyber) is an Alaska Native Owned corporation supporting the values and traditions of our native communities through an agile employee and corporate culture that delivers Enterprise Solutions, Professional Services and Operational Management to Federal Government Agencies. As a wholly owned subsidiary of OpenKyber, we apply our proven commercial solutions to a deep knowledge of Defense and Civilian missions to provide forward leaning technical, professional, and operational solutions. OpenKyber enables successful mission outcomes for our customers through solution-oriented business partnerships and a commitment to exceptional service delivery. We ensure long-term success with a continuous improvement approach while balancing the collective interests of our customers, employees, and native communities.
For more information, please visit ;br/> Equal Opportunity Employer/Veterans/Disabled. Shareholder Preference in accordance with Public Law 88-352
For applications and inquiries, contact:View email address on us.fitly.work
- ...OpenKyber Data Solutions, LLC, a OpenKyber Government Services company , is seeking a Cybersecurity Operations Technical Lead (SOC Engineer/SME) to support KDS and our government customer in Washington, DC. This position requires the candidate to be able to obtain a Public...SuggestedLocal areaFlexible hours
- ...opportunities. Learn more at . Overview of Job Function: Verint's Architect is responsible for driving the technical roadmap and direction... ...standards, and alignment with compliance frameworks (e.g., SOC 2, GDPR). Own technical debt strategy, identifying,...SuggestedLocal areaShift work
- Job ID: 25845357Reference Number: 25-00744Title: Sitecore ArchitectPosted Date: 2025-07-07Contact: Lisa MinentContact Email: ****@*****.*** Phone: (***) ***-****Company: HAN Staffing Title : Sitecore Sr Full stack ArchitectLocation : Philadelphia, PA ...Suggested
$145k - $217.5k
Who You’ll Work WithYou’ll join a growing area within Slalom’s Microsoft practice, working closely with our Finance Transformation and Organizational Change teams to help customers modernize ERP with Dynamics 365 Finance and Operations (F&O). This is a delivery-led role...SuggestedTemporary workLocal area- Company DescriptionSonSoft Inc. is a USA based corporation duly organized under the laws of the Commonwealth of Georgia. SonSoft Inc is growing at a steady pace specializing in the fields of Software Development, Software Consultancy and Information Technology Enabled Services...SuggestedPermanent employmentFull timeH1b
- OverviewColliers Engineering & Design is seeking a creative Architect to join our Architecture team in Philadelphia! You’ll collaborate with a talented group of designers to bring client visions to life, from planning and feasibility studies through final design and construction...Temporary workWork experience placementInternshipSummer internship
$116.2k - $229.1k
...clients, combining strategic thinking with deep industry knowledge to solve complex business problems in a team-based environment. We architect operating models and processes that enable growth, optimize capital, and maximize operational efficiency. We implement innovative...Visa sponsorship- ...Date: 2025-06-13Company: HAN Staffing Title: Sailpoint ArchitectLocation: Philly PA (Hybrid role)JD:Experienced SailPoint Solutions Architect to design, implement, and optimize Identity & Access Management (IAM) solutions using SailPoint IdentityIQ. The ideal candidate...
- What success looks like in this role: • Provides consulting / advice across a range of medium- to large-size clients.• Identifies and qualifies consulting opportunities in collaboration with Sales & Sales Excellence and through other means.• Leverages personal relationships...Remote work
- SummaryWe are seeking a Mobile Architect with deep expertise in React Native to lead front-end mobile architecture across our digital platforms. This role blends hands-on development with architectural leadership, focusing on building scalable, high-quality cross-platform...Full timeWork experience placement
- ...work.What You’ll DoThe Snowflake CoE is comprised of passionate technologists committed to refining and mastering their craft. As an Architect for the Snowflake CoE you will be expected to:* Lead a small to medium size agile program pod to deliver cutting-edge solutions...Temporary workLocal area
$110.6k - $185k
Job ID: 40973Location: Conshohocken, Pennsylvania, United StatesCapabilities: Architecture and InteriorsOffice Setup: HybridSalary: $110,600.00 - $185,000.00Company: JacobsAt Jacobs, we're challenging today to reinvent tomorrow by solving the world's most critical problems...Full timeRemote work2 days per week$90k - $150k
...committed to creating an environment that enables you to realize your own success and fulfillment.When you join Design Group as an Architect R.A., you are joining a team that will challenge you and position you for growth. In this role, you will work with a team of...Full timeWork at officeLocal areaFlexible hours$178.69k - $293.56k
...while improving accountability, speed, and delivery alignment. The architect remains connected to the central EA core through enterprise... ...security, privacy, and resiliency requirements (e.g., NAIC, SOX, SOC, data privacy).Promote cloud‑native, API‑first, data‑centric, and...Full timeH1bWork at officeVisa sponsorshipWork visaFlexible hours3 days per week$104.4k - $119.32k
STV, Inc. currently is seeking a Project Architect with 10 + years of experience, for our Building Group based out of our Douglassville or Philadelphia PA offices. STV, Inc. specializes in the planning, organization, design and development of architectural buildings and...Full timeWork at officeFlexible hours$92.9k - $134.6k
Stantec’s Buildings team is on a mission to become the world’s leading integrated design practice. Our architects, engineers, interior designers, consultants, sustainability specialists, and technologists are passionate about the power of design. Our collaborative culture...Full timeContract workTemporary workPart timeCasual workWork at officeLocal areaFlexible hours- Stantec’s Buildings team is on a mission to become the world’s leading integrated design practice. Our architects, engineers, interior designers, consultants, sustainability specialists, and technologists are passionate about the power of design. Our collaborative culture...Full timeContract workTemporary workPart timeFor contractorsFor subcontractorCasual workWork at officeLocal areaRemote workWork from homeFlexible hours2 days per week
- ...Ownership Plan (ESOP) all designed to support your growth, both professionally and personally.Your Opportunity + ImpactThe Senior Architect leads teams, partners closely with clients and developers, and ensures project deliverables meet design intent, operational needs,...For contractorsWork at officeLocal areaFlexible hours
- ....Partner with product owners and operations teams to define requirements, technical designs, testing plans, and defect resolution.Architect and maintain integrations between WMS, ERP/OMS systems, microservices, and IBM MQ messaging.Design and support real‑time and batch...Immediate startWorldwideShift work
$224k - $308k
...baseExperience in selling, designing, implementing or managing one or more of the following solutions: Network Security, SASE, SaaS, CNAPP and/or SOC Transformation TechnologiesPartnering with Customer Support functions to ensure successful implementation and adoption of sold...Full timeRemote workVisa sponsorshipWork visaFlexible hours$105k - $161.6k
...Global Operations, Application Development, Information Security, Data & Analytics, and Infrastructure. MetLife is seeking a Lead Architect to enable AI‑powered development platforms for Citizen Developers across the enterprise. This role focuses on making AI tools and...Temporary workWork at officeLocal areaWorldwide3 days per week- ...expanding its Manufacturing Infrastructure Services (MIS) to better serve the industrial and manufacturing markets. CEC is seeking an Architect experienced in preparing construction documents using Building Information Modeling (BIM) and seeing projects throughout all...Temporary workWork at officeLocal area
- ...produce solution designs that anchor to IT portfolio standards and ensure long-term operational and administrative efficiencies. The architect is detail-oriented and thorough with the analysis and direction provided to development teams. Ensures delivery teams are equipped...
- ...Architect / Architectural Designer II We are an architectural practice grounded in thoughtful, purpose-driven design, and a collaborative studio culture — creating spaces that serve communities, especially Christian organizations, ministries, and educational institutions...Remote workFlexible hours
- ...Description We are seeking an experienced Enterprise Applications Architect Consultant to lead the architecture, modernization, and... ...enterprise observability. * Knowledge of Zero Trust security, SOC 2, ISO 27001, or similar compliance frameworks. * Experience with...
- Job Title: AR1 A4 SC2 Location: Harrisburg PA Duration: 12+ Months Job Description The selected resource must be capable of and willing to telework and travel to the official work location as needed. The contractor work location will primarily be located at ...Contract workFor contractorsWork at officeRemote work
$71.8k - $104.1k
...and Experience ~ Bachelor's Degree and/or Master's Degree in Architecture. ~5 to 7 years of similar experience. ~ Registered Architect (RA/AIA/NCARB) Licensure is REQUIRED for consideration ~ LEED Green Associate or LEED AP is preferred. This description is...Full timeContract workTemporary workPart timeFor contractorsFor subcontractorCasual workSecond jobLocal areaFlexible hours- ...integration scripts and designing automated. Advanced Download Configurator (Client): Handling the configuration for data extraction. Architect design and Implementation and who can lead full deployments lifecycle: Training, Mapping and Hypercare. Experience in OMP and...Local areaRemote work
$75.4k - $94.3k
...that will define the future of our profession and drive solutions to the most complex design problems. We are seeking to hire an Architect to join our Mission Critical practice within our Buildings Team for our Chicago, IL, New York, NY, Pittsburgh and/or Miami, FL offices...Work at officeFlexible hours$75.5k - $85k
...Architect Position at Perkins Eastman Perkins Eastman is a global architectural design practice with expertise in all aspects of the built environment, working at all scales, and at every level of detail. With studios in 26 locations worldwide, we design for people,...For contractorsWork at officeWorldwide
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to SOC Architect. Be the first to apply!


