Cyber Threat Analyst
The Newberry Group
Job Description
Job Description
Job Summary - $10,000 sign-on bonus included (subject to a 12-month commitment)
Newberry Group is seeking an analytical, mission-driven Cyber Threat Analyst to join our customer’s defensive cyber operations team supporting the Joint Fires Network (JFN) Security Operations Center (SOC). Operating out of secure Sensitive Compartmented Information Facilities (SCIFs) at DISA Pacific (Ford Island, HI), this team provides specialized threat intelligence synthesis, behavioral anomaly detection, and advanced threat hunting to safeguard the JFN Impact Level 7 (IL-7) and multi-level classified enclaves supporting the Olympus Fires mission.In this role, you will analyze network telemetry, advanced sensor feeds (such as Corelight and Darktrace), and syslog audits across up to 30 active operational nodes (including SD-WAN transport fabrics tied to the DISN and GMS). You will develop novel behavioral threat hunting playbooks, formulate containment and response strategies in JIRA, support the JFN Incident Response Plan, ensure DIA-aligned TS/SCI incident escalation compliance, and translate adversary tradecraft into detection logic for the Elastic Search / Elastic Defend SIEM platform. Location
This is a full-time onsite role in Ford Island, HI. Telework is not permitted.
Relocation expenses may be eligible for reimbursement. Responsibilities and Duties
1. Advanced Threat Hunting & Novel Playbook Development
- Novel Playbook Authoring: Design, test, and operationalize novel threat hunting playbooks focused on behavioral anomalies, abnormal command and control (C2), lateral movement, and traffic pattern deviations across JFN transport nodes.
- Proactive Hypothesis Hunting: Formulate threat hypotheses based on all-source intelligence and observed indicators, interrogating the Elastic Search / Defend SIEM and raw network telemetry to uncover persistent, evasive adversary tradecraft.
- Routine Threat Containment: Leverage Atlassian JIRA to author, refine, and maintain standardized processes and playbooks for executing routine threat containment actions and defensive countermeasure coordination.
- MITRE ATT&CK Mapping: Map adversary tactics, techniques, and procedures (TTPs) targeting tactical fires and command-and-control networks to the MITRE ATT&CK® framework to identify visibility gaps and improve defensive posturing.
- SIEM Detection Tuning: Recommend and refine custom detection queries (Elastic KQL/EQL) and alert correlations within Elastic Defend to optimize detection accuracy and reduce false positives for the 24/7 watch cell.
- Incident Response Architecture: Drive the technical threat intelligence and containment sections of the JFN Incident Response Plan in alignment with enterprise standards.
- DIA-Aligned TS/SCI Incident Reporting: Strictly enforce Defense Intelligence Agency (DIA) requirements for TS/SCI incident handling, ensuring all spills, unauthorized access attempts, system compromises, and operational anomalies are reported through authorized channels within mandated reporting windows.
- CSSP Alignment & Briefings: Support the delivery and maturity of four of the seven DoD Cybersecurity Service Provider (CSSP) core functions during Phase I standup, providing actionable threat summaries, warnings, and intelligence briefings to JFN leadership, DISA, and mission stakeholders.
- Citizenship: Must be a U.S. Citizen.
- Security Clearance: Must possess an active Top Secret clearance with current SCI eligibility (adjudicated Tier 5 / SSBI) prior to start date, with the ability to maintain clearance while working in a secure SCIF environment.
- Level II (Intermediate): Bachelor’s degree in Cybersecurity, Intelligence Studies, Computer Science, Information Technology, or related discipline and 2+ years of direct experience in cyber threat intelligence, all-source cyber analysis, threat hunting, or SOC tier-2/tier-3 operations; OR an Associate degree and 4+ years ; OR 6+ years of relevant professional/military cyber intelligence experience in lieu of a degree.
- Level III (Senior): Bachelor’s degree in a technical discipline and 4+ years of relevant experience; OR an Associate degree and 6+ years ; OR 8+ years of relevant experience/military service in lieu of degree.
- Must hold a valid certification or degree meeting DoD 8140.03 / DCWF Work Role Code 531 Cyber Defense Incident Responder at the Intermediate Proficiency Level prior to hire.
- Accepted Certifications include: CySA+, GIAC GCTI, EC-C CEH or CND, Security+ CE, GIAC GSEC, or higher (e.g., CASP+ CE, CISSP, GCIA, GCIH) .
- Strong experience in threat hunting, cyber threat intelligence, or advanced incident analysis within a DoD, military, or government SOC/DCO environment.
- Proven ability to analyze and correlate network protocol telemetry, Netflow, proxy logs, and raw packet captures to reconstruct complex intrusion paths.
- Hands-on proficiency querying SIEM platforms—specifically Elasticsearch, Logstash, Kibana (ELK) / Elastic Defend —using KQL or Lucene query syntax.
- Deep knowledge of adversary TTPs, threat actor attribution, and operational mapping using the MITRE ATT&CK framework.
- Direct experience writing incident documentation, standard operating procedures, and containment playbooks in JIRA.
- Ability to work standard operational shifts with readiness for on-call surge or emergency incident escalation.
- Prior experience supporting C4ISR systems or tactical operational enclaves (e.g., PMN).
- Operational experience analyzing telemetry from Corelight (Zeek), Darktrace MDR, or Palo Alto Advanced Threat Prevention (ATP).
- Experience utilizing AI prompting tools (Gemini, Grok, ChatGPT) to automate threat hunting data collection and indicator extraction.
- Career Growth & Certification Support: Access Leidos cyber training pipelines, tuition assistance, and corporate sponsorships for premier technical credentials (SANS/GIAC, cloud security).
- Long-Term Program Backing: Solidified role on a high-priority joint program supporting strategic defense requirements across DISA.
Newberry Group is a performance-driven government services and solutions firm that provides security compliance, program governance, consulting, and customized solutions for public sector clients nationwide. The strength of our company is a direct reflection of our highly skilled and talented workforce. Benefits and Perks
In addition to competitive wages, Newberry Group offers an outstanding benefit package. This includes medical coverage with three plan options, dental and vision coverage, personal time off, paid holidays, paid parental leave, telecommuting if available, retirement savings accounts (Pre-Tax and Roth), flexible and dependent care savings accounts, life insurance, long and short-term disability coverage, tuition and training reimbursement, employee assistance program, and more.
The Newberry Group, Inc. is an Equal Opportunity Employer – EEO/AA/Disability/Veterans.
Powered by JazzHR
ot5MyWEcxg
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Cyber Threat Analyst in Hawaii vacancy
- ...security protocols, and monitor systems for potential security threats. The ideal candidate is proactive, highly organized, and has a... ...Information Security Officer, Cybersecurity Officer, Security Analyst, Information Assurance Officer, Security Architect, Security Engineer...SuggestedTemporary workFor contractorsImmediate startFlexible hours
- ...Cybersecurity Analyst LOCATION Honolulu, HI 96815 CLEARANCE TS/SCI Full Poly... ...our systems and data from potential threats. In this role, you will monitor and analyze... ...Analyst, Penetration Tester, Risk Analyst, Cyber Defense Analyst, Network Security Analyst...SuggestedTemporary workFor contractorsImmediate startFlexible hours
- ...vulnerabilities, and respond to potential threats. The ideal candidate is passionate about... ...SIMILAR CAREER TITLES Cybersecurity Analyst, Information Security Specialist, Security... ...Security Manager, Security Risk Analyst, Cyber Risk Manager, Security Architect, Cybersecurity...SuggestedTemporary workFor contractorsImmediate startFlexible hours
$110.67k - $150k
...response plan (IRP), including compliance with the NCUA 72-hour cyber incident notification rule. Direct vulnerability management,... ...protection, and third-party connectivity. Monitor cybersecurity threats, vulnerabilities, regulatory alerts, financial-sector threat...SuggestedFlexible hours- ...activities. Work with engineering teams and system owners to map cyber terrain and communicate risk mitigation strategies that support... ...and external agency cyber analysis teams to understand emerging threats and mitigation measures. Prepare clear technical documentation,...SuggestedWork from homeFlexible hours
- ...Newberry Group is seeking proactive and mission-focused Cyber Real Time Analysts to join our customer's defensive cyber operations team supporting... ...Island, HI), this 24/7/365 watch team provides front-line threat detection, continuous monitoring, and incident response for...Full timeTemporary workRemote workRelocationRelocation packageFlexible hoursNight shiftRotating shift
- ...security measures to protect networks, systems, and data from cyber threats. You'll work closely with cross-functional teams to identify vulnerabilities... ...Engineer, Network Security Specialist, Information Security Analyst, Security Operations Center (SOC) Analyst, IT Security...Temporary workFor contractorsImmediate startFlexible hours
- ...software operating across AWS, Azure, on-premises, and at multiple classification levels. - Operate in environments where the platform, threat landscape, and operational needs are continuously evolving. Qualifications: - Background in systems administration,...Full timeFlexible hours
$105.4k - $207.8k
Position Summary Cyber Security & Risk Strategy Senior Consultant Our Deloitte Cyber team understands the unique challenges and... ...powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that...Local areaVisa sponsorship$150k - $225k
Job Description Job Description Overview We are seeking a Senior Corporate Enterprise Network Engineer to join our team supporting the Defense Logistics Agency. This position is in support of Defense Logistics Agency (DLA). DLA is an agency of the Department ...Full timeContract workTemporary workLocal areaRemote workMonday to FridayNight shiftWeekend workDay shiftAfternoon shift$152.7k - $294k
...strategist will combine deep knowledge of emerging technologies and threats with strong business acumen to drive security programs that... ...Security program a step ahead of evolving business demands and cyber risks. Key Responsibilities: Strategic Program Development...Summer holidayLocal areaFlexible hoursShift work$143.25k - $179.04k
...support business continuity and protect the organization from cyber threats. Primary Responsibilities Lead the development and... ...technical leader and mentor for cybersecurity engineers and analysts, fostering a collaborative environment focused on continuous...Full timeTemporary workWork experience placementLocal areaImmediate startShift workDay shift$107.74k - $145.48k
...intelligence information sharing on current and emerging global threats to mission and coalition partners and emerging nations. With an... ...worldwide, offering leading mission‑ready capabilities in AI, cloud, cyber and software development. Join our Talent Community to stay up...Temporary workImmediate startRemote workWorldwideFlexible hours$113.15k - $135.64k
...reconnaissance (ISR), and logistics. Job Description Shape the Future of Command and Control in the Pacific! Join SOSi’s cyber and IT team at Joint Base Pearl Harbor Hickam in Honolulu, Hawaii, where innovation meets mission-critical impact. As a Senior Enterprise...Work at officeNight shift- ...MANTECH seeks a mission-driven Cybersecurity Analyst to join our team in Oahu, HI to support sensitive logistics and sustainment operations... .... This role supports secure, resilient, and mission-ready cyber environments for forward-operating logistics capabilities,...Work at officeLocal area
$134.5k - $265.1k
...Position Summary Cyber Security & Risk Strategy Manager Our Deloitte Cyber team understands the unique challenges and opportunities businesses... ...solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that...Local areaVisa sponsorship$59k - $79.6k
...The IT Configuration Analyst, Junior supports configuration management activities that keep the enterprise configuration management database (CMDB) accurate, complete, and reliable across infrastructure and application services. The role focuses on collecting, validating...Contract workWork at office$71.2k - $166.1k
Job Description We’re on a journey to advance how health happens with technologies that empower patients, support clinicians, inspire innovation, and save lives. Our mission? To create a human-centric healthcare experience powered by unified global data. It’s...Temporary workFlexible hours- ...include, but may not be limited to, the following: # Leads and/or participates in the project planning process with clients, business analysts and team members. # Assists in the development of work plan timelines. May manage workflows to meet sub-project timeframes. #...
- ...We are a passionate team of technologists, data scientists, and analysts with backgrounds in operational intelligence, law enforcement,... ...companies, governments and nonprofits protect themselves from external threats and global adversaries. Position Overview: We are...Flexible hours
- ...development, network engineering, intelligence, surveillance, and reconnaissance (ISR), and logistics. Job Description Join the Cyber Team in Paradise SOSi is looking for a seasoned Information Systems Security Officer (ISSO) ready to lead the charge in...Work at officeNight shift
$149.3k - $223.9k
...Northrop Grumman Classified Solutions team is seeking a Sr. Principal Cyber Software Engineer. The selected candidate will be required to... ...to, the following: Develop solutions to national security threats with products that may involve software engineering, messaging systems...Full timeRemote workRelocation packageFlexible hoursShift work$99k - $225k
Job Number: R0242994 ZT Enterprise Architect, Lead The Opportunity: A well-designed, secure network is critical to enabling the Department of Defense (DoD) to accomplish its mission. As a Zero Trust Enterprise Architect, you will play a key role in ensuring that...Full timeContract workPart timeWork at officeLocal areaRemote work- ...leadership, system owners, network administrators, and external partners to ensure a unified security posture. Mentor junior ISSOs, analysts, and technical staff, providing guidance on federal cybersecurity practices and NIST frameworks. Represent the Pacific Region...Full timeRemote work
$198k - $368k
...through CI/CD, infrastructure-as-code, automated testing, observability and release engineering, with measurable reduction in manual analyst effort and mean time to detect and respondLead the design, evaluation and productionization of AI and agentic capabilities across...H1bLocal area- ...Information Systems Security Manager Join SOSi at the Forefront of Cyber Defense! SOSi is on the hunt for a seasoned Information Systems Security Manager to lead cutting-edge security initiatives at Joint Base Pearl Harbor Hickam in Honolulu. In this pivotal role, you...Work at officeNight shift
- ...System eXtended (US BICES-X) is a cutting edge program supporting DoW intelligence information sharing on current and emerging global threats to mission and coalition partners and emerging nations. With an internationally dispersed team supporting each combatant command,...
$100k - $140k
Salary: $100,000 - 140,000 per year Requirements: ~ We are looking for a candidate who possesses a Bachelor’s degree and has a minimum of 10 years of experience in managing and safeguarding IT infrastructure within an ICD 705 facility. A solid understanding of network...Full timeFor contractors$95k - $110k
...Job Description Job Description Lyn Aerospace has an immediate opening for a Cyber Security Specialist. This position is available at our Waimea, HI (Kauai) office. Relocation assistance available based on qualifications. DUTIES INCLUDE: Provide support for a system...Full timeWork at officeImmediate startRelocationVisa sponsorshipRelocation packageMonday to FridayFlexible hours$86.9k - $198k
Edge Network Engineer, LeadThe Opportunity: Architect the Edge. Connect the Mission. Join us to design the backbone of tomorrow’s secure, resilient edge networks that power critical operations anywhere in the world. As an Edge Network Engineer, you’ll lead architecture...Full timeContract workPart timeLocal areaRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Threat Analyst. Be the first to apply!
Related searches




