Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Tier 2 Cyber Threat Analyst: AI-Driven Defense

慨正橡扯

Nightwing provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers’ most demanding challenges. Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical surveillance, data intelligence, lifecycle mission enablement, and software modernization. Nightwing brings disruptive technologies, agility, and competitive offerings to customers in the intelligence community, defense, civil, and commercial markets. Nightwing is seeking to hire a Cyber Threat Management Specialist. The Tier 2 Analysts perform deep-dive incident analysis by correlating data from various sources and determines if a critical system or data set affected. Handle incidents as defined in Playbooks and SOPs. They also advise on remediation actions and provide input and analysis on how to leverage Artificial Intelligence, Machine Learning, and SOAR capabilities to improve CSOC efficiency and accuracy. Key Responsibilities Identification of Cybersecurity problems which may require mitigating controls Analyze network traffic to identify exploit or intrusion related attempts Recommend detection mechanisms for exploit and or intrusion related attempts Provide subject matter expertise on network-based attacks, network traffic analysis, and intrusion methodologies Escalate items which require further investigation to other members of the Threat Management team Execute operational processes in support of response efforts to identified security incidents Utilize AI/ML-based tools and techniques to detect anomalies, automate incident triage, and improve threat intelligence Performing and analyzing threat intelligence to assess risk and adapt defenses using ML enhance tools Manage email security using ProofPoint, monitor for threats, and promptly respond to attacks Configure Splunk for log analysis, create alerts, and investigate security incidents diligently Set up FirePower for network monitoring, analyze traffic patterns, and enforce robust security measures Deploy Sentinel 1 agents efficiently, monitor alerts closely, and conduct thorough security assessments Monitoring, reviewing, and responding to security alerts and incidents across multiple platforms including Microsoft Defender for Cloud Apps, Defender for Endpoint, Defender XDR, Defender for Office 365, Azure Entra ID, and Google Cloud Security Command Center (SCC) Performing threat detection and analysis, investigating suspicious activity, coordinating incident response efforts, and implementing remediation actions Tuning security policies, maintaining visibility into cloud and endpoint environments, and supporting continuous improvement of the organization’s security posture Stay current on the latest cybersecurity trends, threat actors, and AI/ML research relevant to the field Identify and support automation use cases, including the use of AI/ML to enhance SOC capabilities. Collaborate across Operations to provide SOC enhancement capabilities through the use of automation and AI. Language Skills English Educational Requirements BA or BS in Computer Science, Information Technology or related field One or more relevant certifications such as GIAC Certified Enterprise Defender (GCED), GIAC Certified Security Essentials (GSEC), CISSP, or SSCP desired Qualification Requirements 3+ years IT security experience with at least some exposure to AI/ML projects 2+ years’ experience in network traffic analysis Strong working knowledge of: Boolean Logic TCP/IP Fundamentals Network Level Exploits Threat Management Knowledge of Control Frameworks and Risk Management techniques Excellent oral, written communication skills and excellent interpersonal and organizational skills Strong understanding of IDS/IPS technologies, trends, vendors, processes and methodologies Strong understanding of common IDS/IPS architectures and implementations Strong understanding of IDS/IPS signatures, content creation and signature characteristics including both signature and anomaly-based analysis and detection Experience with cloud security (AWS, Azure, GCP) Hands-on experience with cybersecurity automation (e.g., SOAR platforms). Proficiency in using machine learning frameworks to develop, train, and deploy models for anomaly detection, threat intelligence, and behavioral analysis in cybersecurity contexts. Skills in data analysis and feature engineering, with the ability to preprocess and transform large datasets from various sources (e.g., logs, network traffic) to extract relevant features for machine learning models aimed at identifying security incidents and vulnerabilities. Familiarity with the application of AI/ML techniques in cybersecurity, including but not limited to automated threat detection, incident response automation, and predictive analytics. Experience in evaluating the effectiveness of AI/ML solutions in a SOC environment is a plus. Understanding and experience identifying and implementing automation use cases. Equal Opportunity Statement Nightwing is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age or any other federally protected class. #J-18808-Ljbffr 慨正橡扯

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Tier 2 Cyber Threat Analyst: AI-Driven Defense in Falls Church, VA vacancy
  •  ...About Agile Defense At Agile Defense we...  ...7 Job Title: Cyber Threat Intelligence Analyst Location: Hybrid...  ...in Arlington, VA 2 days a week. Our Core...  .... Hustle - Be Driven. Hustle is reflected...  ...artificial intelligence (AI) tools to support... 
    Suggested
    2 days per week

    Agile Defense

    Arlington, VA
    1 day ago
  •  ...About Agile Defense At Agile...  ...1437 Job Title: Cyber Threat Intelligence Lead...  ...experience as a Tier III senior cyber security analyst performing intelligence...  ...the last two (2) years that...  ...Hustle - Be Driven. Hustle is reflected...  ...intelligence (AI) tools to support... 
    Suggested

    Agile Defense

    Reston, VA
    4 days ago
  •  ...in support of the Department of Defense (DoD), Intelligence Community, and...  ...enforcement. Our mission is to empower analysts and decision-makers through data-driven insights, enabling faster and...  ...seeking a highly skilled Senior Cyber Threat Analyst to join our team. This... 
    Suggested
    Full time
    Local area

    Praescient Analytics

    Arlington, VA
    3 days ago
  •  ...proactively hunting for malicious cyber activity. They are seeking Cyber Network Defense Analysts (CNDA) to support this...  ..., and networks from threats....  ...investigations experience ~2+ years of direct relevant...  ...artificial intelligence (AI) to fight terror, aided... 
    Suggested
    Immediate start
    Remote work

    New Gen

    Arlington, VA
    5 days ago
  • $80k - $128k

     ...Responsibilities Position: Tier 2/3 Cyber Security Analyst - Microsoft Sentinel and Microsoft Defender Program: Peraton Federal Strategic...  ...point for complex security incidents, lead advanced threat-hunting operations, and drive the maturation of detection... 
    Suggested
    Contract work
    Work at office
    Local area
    Shift work

    Peraton

    Washington DC
    2 days ago
  •  ...Cyber Threat Analyst 2 Everforth ECS is seeking a Cyber Threat Analyst 2 to work in our Fairfax, VA office. Everforth ECS is a leading...  ...sufficiency and focus to work well without constant oversight. Our Tier 2 SOC Analysts are responsible for investigating threats... 
    Work at office

    ECS

    Fairfax, VA
    1 day ago
  • Aretec, Inc. is seeking a Tier 2 Analyst in Washington, DC. This role involves supporting enterprise SOC operations, reviewing escalated...  ...and applying cybersecurity principles to detect and respond to threats. Candidates must have a Bachelor's degree or equivalent... 
    Remote job
    Flexible hours

    Aretec, Inc.

    Washington DC
    3 days ago
  •  ...Cyber Threat Intelligence Analyst Nightwing provides technically advanced full-spectrum cyber, data operations...  ...cyber space operations, cyber defense and resiliency, vulnerability research...  ...be able to obtain DHS Suitability ~2+ years of directly relevant experience... 

    Navstar

    Arlington, VA
    5 days ago
  •  ...management platforms. Support Tier 2/3 SOC analysts by developing advanced correlation...  .... Understanding of advanced threat detection techniques and AI-driven security solutions. Company...  ...transformation company supporting national defense, federal civilian agencies, and... 
    Contract work

    Evolver

    Washington DC
    2 days ago
  • $110k - $115k

     ...Join Our Team as a CSOC Tier 3 Cybersecurity...  ...critical systems from cyber threats? As a CSOC Tier 3 Cybersecurity...  ...be key in ensuring our defenses remain strong and...  ...simulations. If you're driven, detail-oriented, and have...  ...Collaborate with Tier 1 and 2 teams to remediate... 
    Work at office

    D2 Technical Services

    Springfield, VA
    2 days ago
  • $87.7k - $164k

     ...strategy, digital identity, cyber defense, application security...  ...(CTF) Incident Analyst will work as a senior member...  ...on perceived security threats  Maintain, manage, improve...  ...Enabled by data, AI and advanced technology...  ...EY-HELP3, select Option 2 for candidate related... 
    Summer holiday
    Local area
    Flexible hours

    EY

    Washington DC
    2 days ago
  •  ...Senior Cyber Incident Analyst Everforth ECS is seeking a Senior Cyber Incident...  ...Agency's (CISA) Joint Cyber Defense Collaborative (JCDC). The...  ...proactively defend against cyber threats. Our ECS team is at the...  ...solutions. ~ Familiarity with AI/ML concepts and applications... 
    Work at office
    3 days per week

    ECS Limited

    Arlington, VA
    4 days ago
  • $166k - $253k

     ...Anduril Industries is a defense technology company with...  ...powered by Lattice OS, an AI-powered operating system...  ...on the latest security threats and technologies. Required...  ...Qualifications ~2+ years of software...  ...Additionally, Anduril offers top-tier benefits for full-time... 
    Full time
    Work experience placement
    Immediate start

    anduril

    Washington DC
    5 days ago
  • $159.3k - $202.4k

     ...Ecosystems (ACES) team, part of Amazon Cyber Threat Intelligence (ACTI), is...  ...performing question-driven analysis is required. As a Security...  ...oriented language experience ~2+ years of troubleshooting systems...  ...cloud computing and security, AI security, threat intelligence,... 
    Work experience placement
    Internship
    Flexible hours

    Amazon

    Arlington, VA
    5 days ago
  • $99k - $225k

     ...Job Number: R0240968 Cyber Machine Learning Engineer...  ...the pace of cyber defense and threat hunting with machine learning...  ...want to be part of a driven, mission-oriented team?...  .... You Have: ~2+ years of experience...  ...prevent fraud. Candidate AI Usage Policy AI is... 
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Arlington, VA
    4 days ago
  •  ...high level responsibilities for the Network Analyst position are to monitor for, troubleshoot...  ...Operations Center providing advanced tier 2 technical support of WAN/LAN networks for...  ...work with customers in a fast-paced SLA driven environment. The expectation is that the... 
    Local area
    Flexible hours
    Shift work
    Night shift
    Weekend work

    TriOptus LLC

    Vienna, VA
    3 days ago
  • $40 per hour

     ...professionals to join our team to help train AI models. In this role, you will evaluate...  ...how AI systems reason about real-world threats and defenses. Cybersecurity platforms are...  ...generation of AI security models Qualifications 2+ years of hands‑on experience in cybersecurity... 
    Hourly pay
    Full time
    Part time
    Remote work

    DataAnnotation

    Washington DC
    4 days ago
  • A leading cybersecurity firm in Arlington, Virginia is seeking Cyber Network Defense Analysts to support critical missions by analyzing network traffic and identifying threats. The ideal candidate requires U.S. Citizenship, active TS/SCI Clearance, and 5+ years of experience... 

    NewGen Technologies

    Arlington, VA
    11 hours ago
  •  ...Evolver Federal is seeking a Lead Cyber Threat Analyst to fulfil a requirement for a potential government client. The Lead Cyber Threat...  ...into SOC workflows and detection platforms. Leverage AI-driven threat detection techniques to enhance predictive and adaptive... 
    Flexible hours

    Evolver

    Washington DC
    1 day ago
  • $68k - $119.83k

     ...related to computer network defense, incident response, insider threat, and computer forensics....  ..., mitigate, and report cyber security threats. Provides...  ...Martin's Intelligence Driven Defense and Cyber Kill Chain...  ...and hundreds of skilled analysts that Lockheed Martin remains... 
    Full time
    Temporary work
    For contractors
    Work experience placement
    Work at office
    Flexible hours

    Lockheed Martin Corporation

    Bethesda, MD
    4 days ago
  • $58k - $74k

     ...Tier 1 Cyber Network Defense Analyst - Shift Schedule (w/ active TS) Location: Washington, DC Full-time...  ...detection. Proactively searching for threats. Inspect traffic for anomalies and new...  ...related field AND a minimum of two (2) years professional experience in the... 
    Full time
    Immediate start
    Flexible hours
    Shift work
    Day shift

    Critical Solutions

    Washington DC
    1 day ago
  •  ...Cyber Network Defense Analyst (CNDA) - Cloud Forensics Location: Remote / Onsite (as required) Clearance...  ...delivers advanced cybersecurity and threat-hunting capabilities to safeguard...  ...At Argo, you'll be part of a mission-driven, veteran-founded cybersecurity team... 
    Remote work

    Argo Cyber Systems

    Arlington, VA
    11 hours ago
  •  ...Response Team (HIRT) secures the Nation's cyber and communications infrastructure. HIRT...  ...Systems is seeking a Cyber Network Defense Analyst (CNDA) to support this critical customer...  ...information systems, and networks from threats. CNDAs review data collected to analyze... 
    Full time
    Contract work
    Work at office
    Local area
    Immediate start
    Remote work

    Castalia Systems

    Arlington, VA
    6 days ago
  • Agile Defense is looking for a Cyber Threat Intelligence Analyst in Arlington, VA. The role involves analyzing advanced cyber threats and producing intelligence reports to inform security decisions. Candidates should have a minimum of a Bachelor’s degree with 5+ years... 
    2 days per week

    Agile Defense

    Arlington, VA
    4 days ago
  • A technology consulting firm in Arlington seeks a Cyber Threat Intelligence Analyst to support operational decision-making by providing timely intelligence on cyber threats. This role requires U.S. Citizenship and an active TS/SCI clearance, with a minimum of two years... 

    Limelight Health

    Arlington, VA
    4 days ago
  • $112k - $179k

    Cyber Network Security Analyst job at Peraton. Arlington, VA. Program Overview About The Role Peraton is...  ...across the intelligence, space, cyber, defense, civilian, health, and state and...  ...closed source information on related threats & vulnerabilities, diagnose observed... 
    Internship
    Local area

    Payfuture Technologies

    Arlington, VA
    1 day ago
  • $103.54k - $147.92k

     ...Systems comprises cyber and mission IT;...  ...emerging threats. Our capabilities...  ...evolution of national defense – the data...  ...range from C5ISR, AI and Big Data, cyber...  ...Vulernability Management Analyst to work out of...  ...or have it! • 2 years relevant...  ...and ethics driven organization that... 
    Full time
    Contract work
    For contractors
    Work at office
    Local area
    Worldwide

    HII Mission Technologies Division

    Fairfax, VA
    12 hours ago
  • A technology company supporting government clients is seeking a Cyber Network Defense Analyst to monitor and analyze network activity for signs of suspicious behavior. The position involves characterizing network traffic, coordinating with cyber defense teams, and documenting... 

    ARSIEM

    Arlington, VA
    11 hours ago
  • $93k - $125k

     ...Cybersecurity Program Analyst LMI is seeking an Operational...  ...and mission-ready AI to federal agencies at...  ..., LMI serves the defense, space, healthcare, and...  ...the risk from potential cyber security gaps for energy...  ...cybersecurity issues, threat identification and tools... 
    Contract work
    Work at office

    LMI

    Arlington, VA
    2 days ago
  •  ...hiring a Jr Industrial Control System Cyber Threat Intelligence Analyst for its Federal Strategic Cyber...  ...Qualifications: LU Bachelor’s degree and 2 years of experience, or Associate’s...  ...enhance information sharing and cyber defenses. U.S. citizenship is required. Active... 
    Currently hiring

    Peraton

    Arlington, VA
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Tier 2 Cyber Threat Analyst: AI-Driven Defense. Be the first to apply!