Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Threat Analyst (I&W) with Splunk

$120k - $132k

SkyePoint Decisions, Inc.

SkyePoint Decisions is a leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations, and Applications Development and Maintenance IT service provider headquartered in Dulles, Virginia with operations across the U.S. We provide innovative enterprise-wide solutions as well as targeted services addressing the complex challenges faced by our federal government clients. Our focus is on enabling our clients to deliver their mission most efficiently and effectively - anytime, anywhere, securely. We combine technical expertise, mission awareness, and an empowered workforce to produce meaningful results. This is a contingent position based upon customer approval. SkyePoint Decisions is seeking a Threat Analyst to support the Diplomatic Security Cyber Mission (DSCM) program providing leading cyber and technology security experience to enable innovative, effective, and secure business processes. This position is located in Arlington, VA and will be onsite 5 days a week. No hybrid/telework allowed. For this role, you must be able to travel up to two weeks at a time, both foreign and domestically. Responsibilities Be a key part of the Indications and Warnings team. Leverage open-source, proprietary/vendor, and classified reporting to closely track advanced persistent threat actor activity. Perform pattern, trend, and behavior analysis, as well as other specialized analysis techniques to identify malicious cyber threat activity targeting DOS information, systems and personnel. Maintain records to catalog and track malicious cyber threat activity targeting DOS information, systems and personnel. Identify Indicators of Compromise (IOCs) present on an Enterprise network through the use of a SIEM and other security tools and logs. Liaise with members of the Intelligence Community (IC). Acts as the fusion analysis cell within Cyber Threat Analysis Division (CTAD). Monitor geopolitical developments, emerging technologies and threats to assess their impact on the cyber threat landscape. Author and present on short notice cyber threat-focused analyses to technical and non-technical audiences including but not limited to policymakers and security practitioners. Correlate threat intelligence with internal security events to identify patterns and potential vulnerabilities. Travel as required by the role (up to 10% travel to foreign or domestic locations). Required Qualifications: A Bachelor's degree and 9 years of relevant experience. An additional 4 years of experience may be substituted in lieu of the degree requirement. Must either possess and maintain one of the following professional certifications: CCNA-Security, CND, CySA+, GICSP, GSEC, Security+ CE, SSCP. Experience with Splunk SIEM and Analyst1 threat intelligence platform. Experience leveraging the MITRE ATT&CK matrix or other threat models (e.g. Lockheed Martin Kill Chain, Diamond Model). Knowledge or experience tracking advanced persistent threats (APTs). Knowledge or experience pivoting from IOCs to identify related infrastructure. Familiarity with threat detection tools. Knowledge of cloud security and threats targeting cloud environments and an understanding of network protocols and systems. Experience developing predictive models to anticipate future cyber threats and recommending preemptive measures. Experience working in a fast-paced classified environment with government, military or Intelligence Community environments. Experience providing intelligence support prior to, or during cyber incidents; this may include attribution analysis, adversary profiling based on known tactics, techniques and procedures or the ability to correlate disparate events using industry, academic or government methodologies or best practices. Experience assisting in post-incident reviews to identify lessons learned and improve threat detection capabilities. Demonstrably excellent written communication skills with the ability to convey highly technical topics in an analytic fashion; familiarity or experience with ICD-203 Intelligence Community tradecraft standards and finished intelligence product lines is desirable. Ability to work independently as well as with a team of other analysts. Active U.S. Passport and the ability to travel up to two weeks at a time, both foreign and domestically. U.S citizenship required. An active Top Secret security clearance with SCI eligibility. Compensation and Benefits Compensation: Salary Range: $120,000-$132,000 The SkyePoint Decisions salary range for this position is a general guideline only. It represents an estimated range for this position and is just one piece of our total compensation package. Salary at SkyePoint is determined by various factors, including but not limited to location, work schedule, the candidate's combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability, market data and business considerations. In addition to a competitive salary, SkyePoint offers benefits including a certification incentive program, PTO, floating federal holiday options, several insurance options including HMO and High Deductible plans with Health Savings Accounts [HSAs], Flex Spending Accounts [FSAs], Full Dental Plans, Vision, ST/LT Disability, Life Insurance, and 401k matched. What We Can Offer You At SkyePoint, we go B.I.G. (beginning in GRATITUDE) by recognizing all we have and giving back to our employees, families, and communities. It instills a positive mindset that permeates all we do. By beginning in gratitude, SkyePoint can continue to spread living in gratitude each day. Great Benefits: Several insurance options including HMO and High Deductible plans with Health Savings Accounts [HSAs], Flex Spending Accounts [FSAs], Full Dental Plans, ST/LT Disability, Life Insurance, floating federal holiday options, and 401k matched. Certificate Incentive Program: To promote professional development, we recognize and reward employees who obtain new certifications aligned with business needs. Flexible Work Environment SkyePoint Decisions is an established ISO 9001:2015 and ISO/IEC 27001:2013 certified small business and appraised at CMMI Level 3 for Services and Development. We possess a common vision of excellence and foster a collaborative team culture built upon individual performance and accountability. We invest in our people and systems to create value for our clients. It is the SkyePoint Way. We are grateful for the opportunity to work with exceptional people and give back to the communities we serve. Our employees value the flexibility at SkyePoint that allows them to balance quality work and their personal lives. SkyePoint Decisions is a participating E-Verify Employer. U.S. Citizenship is required for most positions. Equal Opportunity Employer/Veterans/Disabled. CCPA Disclosure Notice Here #J-18808-Ljbffr SkyePoint Decisions, Inc.

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Threat Analyst (I&W) with Splunk in Arlington, VA vacancy
  • $104k - $166k

     ...the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace,...  ...Technology Innovation and Engineering State. About The Role Threat Analyst (I&W) with Splunk SIEM and Analyst1 threat intelligence platform Location:... 
    Splunk
    Full time
    Temporary work
    Work at office

    Peraton

    Arlington, VA
    1 day ago
  •  ...Insider Threat Analyst Lead We are looking for an Insider Threat Analyst Lead for potential...  ...analytics ~2 years of experience using Splunk SIEM to correlate cybersecurity alerts...  ...solved our clients' toughest IT challenges with integrity, security, and outstanding... 
    Splunk

    NewGen Technologies (Maryland)

    Washington DC
    4 days ago
  •  ..., GICSP, SSCP. Must have experience with Splunk SIEM and Analyst1 threat intelligence platform. Experience leveraging...  ...as well as with a team of other analysts. Active U.S. Passport and the...  ...experienced Cyber Threat Analyst (I&W) with Splunk SIEM and Analyst1 threat... 
    Splunk
    Full time

    Peraton

    Arlington, VA
    3 days ago
  • $55.2k - $126k

     ...seeking a Security Operations Center Analyst to monitor and mitigate cyber threats for a federal regulatory agency....  ...in real time, using tools such as Splunk and Microsoft Sentinel. A Bachelor'...  ...from $55,200 to $126,000 annually, with a comprehensive benefits package including... 
    Splunk

    Booz Allen Hamilton

    Washington DC
    3 days ago
  • $120k - $132k

    SkyePoint Decisions, Inc. seeks a Threat Analyst to join their team in Arlington, VA. This onsite position requires expertise in cybersecurity, ability to analyze threats, and maintain communication with intelligence communities. Candidates must have at least a Bachelor... 
    Splunk

    SkyePoint Decisions, Inc.

    Arlington, VA
    3 days ago
  • $83.85k - $107.95k

     ...Threat Analyst Chicago, IL, USKansas City, MO, USHouston, TX, USAtlanta, GA, USWashington DC...  ...hunting activities. The analyst collaborates with internal teams to enhance security...  ...Demonstrated experience with SIEM platforms (e.g., Splunk, Microsoft Sentinel, Elastic): data... 
    Splunk
    Temporary work
    Local area

    Dentons US LLP

    Washington DC
    2 days ago
  • Threat Hunt Analyst - Mid Position Title: Threat Hunt Analyst Program: SBA Enterprise Cybersecurity...  .... Correlate cyber threat intelligence with operational event data to identify emerging...  ...such as PowerShell, Python, KQL, Splunk SPL, or SQL. Experience supporting federal... 
    Splunk

    cFocus Software Incorporated

    Washington DC
    1 day ago
  • Core4ce is seeking a talented Insider Threat Analyst to join our team in Alexandria, VA. The ideal...  ...position is designed to be flexible, with responsibilities evolving to meet business...  ...of insider threats Familiarity with Splunk Benefits We offer: 401(k) with 100% company... 
    Splunk
    Work at office
    Immediate start
    Flexible hours

    Core4ce Careers

    Alexandria, VA
    3 days ago
  • cFocus Software seeks a Insider Threat Analyst Lead to join our program supporting the Administrative...  ...Courts (AOUSC). This position is Hybrid with the onsite location being in Washington,...  ...analytics 2+ years of experience using Splunk SIEM to correlate cybersecurity alerts.... 
    Splunk
    Work at office

    cFocus Software Incorporated

    Washington DC
    1 day ago
  • $104k - $166k

    Peraton is seeking a Threat Analyst in Arlington, VA, to join their Cyber Threat Analysis Division. The role involves monitoring advanced persistent...  ...'s degree and 9 years of experience, or equivalent, along with certifications such as CCNA-Security or Security+. The... 
    Splunk

    Peraton

    Arlington, VA
    1 day ago
  •  ...talent who desire to work with industry leading...  ...We are seeking SOC Analyst for multiple opportunities...  ...100% Onsite w/situation telework...  ...perform basic-intermediate Splunk searches in Splunk Enterprise...  ...perform basic-intermediate threat hunting in Splunk for various... 
    Splunk
    Remote work
    Trial period
    Monday to Friday
    Shift work
    Night shift
    Day shift
    Afternoon shift

    ClearFocus Technologies

    Washington DC
    3 days ago
  • $81.85k - $110k

     ...shift (0700 am to 330PM) Security Analyst to support the US Courts in...  ...Correlates threat data from various sources to establish...  ...threat. Provides the customer with assessments and reports facilitating...  ...experience) Certification required: Splunk Fundamentals I & II... 
    Splunk
    Currently hiring
    Remote work
    Day shift

    Govcio LLC

    Washington DC
    2 days ago
  •  ...cybersecurity firm in Washington is seeking a SOC Analyst to support 24/7 Cyber Watch operations...  ...an active Top-Secret clearance along with a bachelor's degree and DOD IAT II...  ...evaluating cyber events, performing threat hunting in Splunk, and using security tools for log... 
    Splunk

    ClearFocus Technologies

    Washington DC
    3 days ago
  •  ...Incident Response Analyst (Task 4 – Federal Cybersecurity Contract) Location: Remote with occasional on-site (Washington, D.C. Metro...  ...CrowdStrike , FireEye (Trellix) , Splunk , NetWitness , and Magnet...  .... Experience performing threat hunting across EDR, SIEM, and... 
    Splunk
    Full time
    Contract work
    Remote work
    Monday to Friday

    Cyber Synergy

    Washington DC
    6 days ago
  •  ...Description SAIC is seeking a SOC Analyst to join our team. The SOC Analyst...  ...as required. Leverage cyber threat intelligence feeds to adapt detection...  ...Required Skills: Hands-on experience with SIEM platforms such as Splunk, QRadar, LogRhythm, or ArcSight.... 
    Splunk

    SAIC

    Arlington, VA
    6 days ago
  • $80k - $120k

     ...SOC Analyst Tier 3 Cybersecurity Blu Omega is seeking...  ...responding to advanced security threats in a federal government...  ...using tools such as Splunk, Tanium, Trellix,...  ...practices. Collaborate with team members to enhance...  ...Health Insurance, 401K w/ match, Paid Time Off and... 
    Splunk
    Work experience placement
    Shift work
    Night shift

    Blu Omega

    Fairfax, VA
    1 day ago
  • All-Source Threats / Data Analyst - UAS / RCIED Position Type: Full-Time, Exempt Work Location: Herndon, VA Clearance: TS/SCI W Poly Shift: Day Travel: 10% Patriot Group International Inc. (PGI...  ...of security and risk management with an unequalled special operations and... 
    Full time
    Shift work

    The Patriot Group

    Washington DC
    21 hours ago
  •  ...SOC Analyst We are looking for a SOC Analyst to support a contract...  ...extensive experience working with various security methodologies...  ...Encryption, Web-filtering, Advanced Threat Protection. Candidates...  ...proxies DLP and web security Splunk Nessus and Tennable Extensive... 
    Splunk
    Contract work

    Marathon TS

    Washington DC
    3 days ago
  • $150k - $165k

     ...Security Operations Center (SOC) Analyst to support a mission-critical...  ..., cyber defense operations, threat detection, and security monitoring...  ...skills, experience working with enterprise security tools, and...  ...SIEM platforms such as: Splunk, ArcSight, QRadar, McAfee Enterprise... 
    Splunk
    Contract work
    Local area
    Shift work
    Day shift

    Northern Technologies Group

    Alexandria, VA
    4 hours ago
  • As an MSSP SOC Analyst, you will be the first line of defense for our...  ...security events, analyzing threats, and responding to incidents in...  ...detailed case notes • Collaborate with client security teams to...  ...Experience with SIEM platforms (Splunk, Sentinel, QRadar, or similar)... 
    Splunk
    Remote work

    Districttechgroup

    Washington DC
    3 days ago
  • $81.85k - $110k

     ...shift (0700 am to 330PM) Security Analyst to support the US Courts in...  ...Correlates threat data from various sources to establish...  ...threat. Provides the customer with assessments and reports facilitating...  ...experience) Certification required: Splunk Fundamentals I & II... 
    Splunk
    Full time
    Currently hiring
    Remote work
    Flexible hours
    Day shift

    GovCIO

    Washington DC
    4 days ago
  • $107.9k - $195.05k

     ...Modernization sector is seeking a SOC Analyst to join our team in Alexandria...  ...have a minimum Top Secret with ability to obtain SCI and at...  ...of the life cycle of network threats, attacks, attack vectors and...  ...SIEM platform (e.g. ArcSight, Splunk, Nitro/McAfee Enterprise Security... 
    Splunk
    Work experience placement
    Local area
    Immediate start
    Shift work
    Day shift

    Leidos

    Alexandria, VA
    22 hours ago
  •  ...SOC Analyst Hybrid 2 Days Onsite/3 Days Remote in Washington, DC...  ...modern enterprise leveraging Splunk, Microsoft Sentinel, Microsoft...  ...a 24x7 SOC model and partners with infrastructure, cloud, and application...  ...positives versus legitimate threats using defined use cases and... 
    Splunk
    Hourly pay
    Local area
    Remote work

    Eliassen Group

    Washington DC
    3 hours ago
  •  ...Response Center (CSIRC) Tier 3/4 Analyst Tracking Code 017-142 Job...  ...determination of false alarms, insider threat and advanced persistent threat...  ...required to stay up-to-date with current vulnerability...  ...security monitoring tools such as Splunk, RSA Netwitness (security analytics... 
    Splunk
    Work experience placement
    Immediate start

    Whateverittakescom

    Washington DC
    1 day ago
  •  ...oversee SOC functions and manage a team of Analysts and Engineers in Washington, DC. The...  ...have 8+ years of cybersecurity experience with specific expertise in incident response, threat hunting, and SIEM technologies like Splunk and ExtraHop. Responsibilities include leading... 
    Splunk

    Accenture

    Washington DC
    4 days ago
  •  ...make a personal impact as a SOC Analyst to support a DOD customer. Our...  ...an Impact: Interacts with the team daily to deliver on the...  ...requirements. Provide Cyber Security Threat Hunting expertise and deep...  ...as well as experience writing Splunk queries in Splunk Programming... 
    Splunk
    Work at office

    Apex Systems

    Alexandria, VA
    2 days ago
  • cFocus Software Incorporated seeks a skilled Insider Threat Analyst Lead to support the AOUSC's Insider Threat Program in Washington, DC. This...  ...in behavioral analytics, and proficiency in using tools like Splunk SIEM. Join a team dedicated to enhancing organizational... 
    Splunk

    cFocus Software Incorporated

    Washington DC
    21 hours ago
  • $104k - $166k

     ...Data Analyst - Cyber Analytics / Active Top Secret Job Locations...  ...In this role, you'll work with large-scale cybersecurity and...  ...uncover trends, identify emerging threats, and deliver insights that drive...  ...Experience working with Splunk, Microsoft Defender, Palo Alto... 
    Splunk
    Contract work
    Shift work

    Peraton

    Arlington, VA
    2 days ago
  •  ...Supply Chain Risk Management Analyst Tyto Athene is searching for...  ...environment. Professionalism in dealing with senior leaders within the...  ...systems: ArcSight SIEM; Splunk; Novetta Cyber Analytics; FireEye...  ...; Microsoft Advanced Threat Analytics; Counterattack Active... 
    Splunk
    Work experience placement
    Worldwide

    Tyto Athene, LLC

    Washington DC
    2 days ago
  •  ...Cyber Data Analyst Staffing Pros, a division of VETS Inc., is recruiting...  ...logs, authentication data, threat intelligence) to identify...  ...data analysis Collaborate with cybersecurity analysts to translate...  ...security telemetry (e.g., Splunk, Microsoft Defender, Palo Alto... 
    Splunk
    Full time
    For contractors
    Remote work

    Veterans Enterprise Technology Solutions (VETS) Inc.

    Arlington, VA
    21 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Threat Analyst (I&W) with Splunk. Be the first to apply!