Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

CIRT Tier 2 Analyst / Active Secret

$66k - $106k

Peraton

Program Overview

Encompasses technical, engineering, data analytics, cyber security, management, operational, logistical, and administrative support for Bureau of Diplomatic Security, Cyber and Technology Security Directorate in three key offices/functional areas: Cyber Monitoring and Operations, Cyber Threat and Investigations, and Technology Innovation and Engineering State.

About The Role

Peraton is seeking an experienced CIRT Tier 2 Analyst to join Peratons' Federal Strategic Cyber Mission program.

Location: Beltsville, MD; On-site

Work Hours: Mid Shift, 22:00– 6:00 EST, TUES-SAT.

In this role, you will:

  • Detect, classify, process, track, and report on cyber security events and incidents.
  • Perform advanced in-depth analysis of coordinated Tier 1 alert triage and requests in a 24x7x365 environment.
  • Analyze logs from multiple sources (e.g., host logs, EDR, firewalls, intrusion detection systems, servers) to identify, contain, and remediate suspicious activity.
  • Characterize and analyze network traffic to identify anomalous activity and potential threats.
  • Protect against and prevent potential cyber security threats and vulnerabilities.
  • Perform forensic analysis of hosts artifacts, network traffic, and email content.
  • Analyze malicious scripts and code to mitigate potential threats.
  • Conduct malware analysis to generate IOCs to identify and mitigate threats.
  • Collaborate with Department of State teams to analyze and respond to events and incidents.
  • Monitor and respond to the CIRT Security Orchestration and Automation Response (SOAR) platform, hotline, email in-boxes.
  • Create tickets and initiate workflows as instructed in technical SOPs.
  • Coordinate and report incident information to the Cybersecurity and Infrastructure Security Agency (CISA).
  • Collaborate with other local, national and international CIRTs as directed.
  • Submit alert tuning requests.

Qualifications

Required:

  • Bachelor's degree and 5 years of experience.
    • An additional 4 years of experience may be substituted in lieu of the degree bachelors degree requirement.
  • Must possess or be able to obtain at least one of the following certifications before start date:
    • CCNA-Security
    • CND
    • CySA+
    • GICSP
    • GSEC
    • Security+ CE
    • SSCP
    • Continued certification is required as a condition of employment.
  • Demonstrated experience in the Incident Response lifecycle.
  • Knowledge of SOAR ticketing and automated response systems (e.g. ServiceNow, Splunk SOAR, Microsoft Sentinel).
  • Demonstrated experience with using Security Information and Event Management (SIEM) platforms (e.g. Splunk, Microsoft Sentinel, Elastic, Q-Radar).
  • Demonstrated experience in using Endpoint Detection and Response systems (e.g. MDE, ElasticXDR, CarbonBlack, Crowdstrike).
  • Knowledge of cloud security monitoring and incident response.
  • Knowledge of integrating IOCs and Advanced Persistent Threat actors.
  • Ability to analyze cyber threat intelligence reporting and understanding adversary methodologies and techniques.
  • Knowledge of malware analysis techniques.
  • Knowledge of the MITRE ATT&CK and D3FEND frameworks.
  • U.S. Citizenship required.
  • Active Secret security clearance required in order to start.

Preferred:

  • Proficiency with Splunk for security monitoring, alert creation, and threat hunting.
  • Knowledge of Microsoft Azure access and identity management.
  • Proficiency with Microsoft Defender for Endpoint and Identity for security monitoring, response, and alert generations.
  • Experience in using digital forensics collection and analysis tools (e.g. Autopsy, MagnetForensics, Zimmerman Tools, KAPE, CyLR, Volatility).
  • Experience with using ServiceNow SOAR for ticketing and automated response.
  • Knowledge of Python, PowerShell and BASH scripting languages.
  • Experience with cloud security monitoring and incident response.
  • Demonstrated ability to perform static/dynamic malware analysis and reverse engineering.
  • Experience with integrating cyber threat intelligence and IOC-based hunting.
  • Technical certifications such as:
    • Security+, CySA+, Cloud+, Try Hack Me SAL1, Hack the Box CDSA, CyberDefenders, CCD, Azure SC-900, CCSP, GCIH, CCSK, GSEC, CHFI, GCLD, GCIA
  • Advanced technical certifications such as:
    • SecurityX/CASP+, PRMP, GREM, GEIR, GNFA, or GCFA

Details

Target Salary Range: $66,000 - $106,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

Benefits Statement: Peraton offers eligible employees a variety of benefits including medical, dental, vision, life, health savings account, short/long term disability, EAP, parental leave, 401(k), paid time off (PTO) for vacation, and company paid holidays. A full listing of available benefits can be viewed at 

Application Statements: The application period for the job is estimated to be 30 days from the job posting date. However, this timeline may be shortened or extended depending on business needs and the availability of qualified candidates. By applying to this job, you are expressing interest in the role and the Company. During the review of your application, you may be required to participate in an on-camera interview, as well as participate in a process to verify your identity. Use of artificial intelligence (AI) tools of any kind during Peraton interviews is strictly prohibited unless the candidate has obtained prior written authorization. All interview responses must be the candidate’s own.

EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

Vacancy posted 8 hours ago
Similar jobs that could be interesting for youBased on the CIRT Tier 2 Analyst / Active Secret in Beltsville, MD vacancy
  • $80k - $128k

    ResponsibilitiesPeraton is seeking an experienced CIRT Tier 1 Analyst to join Peratons' Federal...  .../ 06:00-14:00 (6:00 AM - 2:00 PM) / TUE-SAT In this...  ...and oversee remediation activities.Conduct shift change briefs....  ...Citizenship required.Active Secret security clearance.... 
    Suggested
    Contract work
    Local area
    Shift work

    Peraton Corporation

    Beltsville, MD
    1 day ago
  • $80k - $128k

     ...Peraton is seeking an experienced CIRT Tier 1 Analyst to join Peratons' Federal...  ...and oversee remediation activities. Conduct shift change briefs...  ...Bachelor's degree and at least 2 years of experience or a...  ...Citizenship required. Active Secret security clearance.... 
    Suggested
    Contract work
    Local area
    Shift work

    Peraton

    Beltsville, MD
    1 day ago
  • $80k - $128k

    Tier 2 Cyber Incident Response Team (CIRT) Analyst job at Peraton. Beltsville, MD. Program Overview Encompasses technical...  ..., and remediate suspicious activity. Characterize and analyze network...  ...Citizenship required. Active Interim Secret clearance in order to start.... 
    Suggested
    Interim role
    Internship
    Work at office
    Local area
    Worldwide
    Afternoon shift

    Peraton

    Beltsville, MD
    1 day ago
  • Peraton is seeking an experienced Tier 2 Cyber Incident Response Team (CIRT) Analyst to join the Department of State (DOS) Diplomatic Security Cyber Mission program in Beltsville, Maryland. The role operates on an evening shift (1400-2200 EST, Tue-Sat) and focuses on detecting... 
    Suggested
    Worldwide
    Afternoon shift

    Peraton

    Beltsville, MD
    1 day ago
  • ShorePoint, LLC is seeking a Tier 2 Analyst (Secret Clearance) in Washington, DC to support enterprise SOC operations by analyzing escalated tickets and improving incident detection. The role requires strong cybersecurity knowledge and the ability to work with both classified... 
    Suggested

    ShorePoint Inc

    Washington DC
    3 days ago
  • Overview JOB TITLE: Business Analyst - Top Secret Required GOVERNMENT AGENCY : DOJ NSD - National...  ...SCI prior to starting, which can take 2-4+ weeks BENEFITS : Health, Dental and...  ...in requirements gathering and analysis activities, plans and organizes development of required... 
    Full time
    For contractors
    Work at office
    Flexible hours

    ITC Federal

    Washington DC
    4 days ago
  •  ...Description Job Description Junior Data Analyst (Top Secret Required)SiloSmashers is seeking a...  ...university or college with two (2) year or more years of experience. Educational...  ...experience on data management activities as well as Microsoft Office Suite, SharePoint... 
    Work at office

    SiloSmashers

    Washington DC
    15 days ago
  • $80k - $128k

    ResponsibilitiesPeraton is currently seeking to hire a Watch Analyst for its' Federal Strategic Cyber group....  ...Qualifications:Bachelor’s degree and 2 years of relevant experience. An...  ....U.S. citizenship is required.An active Top Secret security clearance required.In addition,... 
    Contract work
    Currently hiring
    Work at office
    Local area
    Flexible hours
    Shift work

    Peraton Corporation

    Washington DC
    1 day ago
  • cFocus Software seeks an Incident Response Analyst (Tier 2) to join our program supporting the AOUSC. This role is Hybrid with onsite in...  ...requires a Public Trust clearance. You will perform in-depth IR activities, analyze security incidents, and coordinate with federal... 

    cFocus Software Incorporated

    Washington DC
    4 days ago
  • InDev is seeking a Quality Assurance (QA) Analyst with technical writing responsibilities that bridges the gap between software...  ...testing experience. Clearance: U.S. Citizen; Active DHS Clearance, DoD Top Secret Clearance, or Q-level Clearance. WHY INDEV Innovative... 

    Indev

    Washington DC
    3 days ago
  • Tyto Athene is searching for a Tier 2 Incident Response Analyst (IR) to support a law enforcement customer in Washington, DC. Our IR analysts form...  ...including cloud and SaaS solutions for evidence of adversarial activity Perform in-depth analysis and investigation of high-... 
    Part time
    Shift work
    Night shift
    Weekend work
    Day shift
    2 days per week

    Tyto Athene, LLC

    Washington DC
    1 day ago
  • $86k - $138k

     ...Management - Mid-level Process Assurance Analyst for its' Federal Strategic Cyber sector.Location...  ...on significant matters.Coordinate activity across organizational lines.Develop the overarching...  ....U.S. citizenship required.An active Top Secret Security Clearance w/ SCI eligibility. In... 
    Full time
    Contract work
    Shift work

    Peraton Corporation

    Washington DC
    1 day ago
  •  ...Job Description CyberLinx Solutions, LLC is seeking a SOC Analyst (Tier 2) / Security Incident Investigator to join our Security Operations...  ...validating security incidents, and coordinating containment activities. The ideal candidate has strong analytical skills, experience... 

    CyberLinx Solutions LLC

    Annapolis Junction, MD
    5 days ago
  • $81.35k - $86.25k

     ...Clearance Level Must Currently Possess: Top Secret Clearance Level Must Be Able to Obtain...  ...impact as a VEHICLE MAINTENANCE ANALYST supporting a world class maintenance program...  ...hoists Security Clearance Level : Active Top Secret with SCI Eligibility... 
    Temporary work
    Immediate start
    Remote work
    Worldwide
    Flexible hours

    General Dynamics Information Technology

    Washington DC
    2 days ago
  •  ...Intermediate Personnel Security Specialist(Active Top Secret Required)SiloSmashers is seeking a Personnel Security Specialist...  ...personnel security investigative or investigative analyst field.Bachelor's Degree with two (2) years experience or associate degree with four (4)... 
    Contract work
    Work at office
    Local area

    Silo Smashers

    Washington DC
    1 day ago
  • $80k - $128k

    Peraton is looking for an experienced CIRT Tier 1 Analyst to join its Federal Strategic Cyber Mission program in Beltsville, MD. The role...  ...and experience. This is a full-time role requiring U.S. citizenship and an active Secret security clearance. #J-18808-Ljbffr Peraton
    Full time

    Peraton

    Beltsville, MD
    1 day ago
  • ShorePoint, LLC is seeking a Tier 3 Analyst to bolster our cybersecurity operations for large-scale, high-threat environments. You will...  ...security solutions. With 7+ years of relevant experience and an active Secret Clearance, you will collaborate with cross-functional teams... 

    ShorePoint Inc

    Washington DC
    4 days ago
  •  ...Job Title: Senior Business Data Analyst Location: Washington, DC / 2 days a week onsite Job Type: 6-...  ...Coordinate and execute certification activities for new and existing vendors, including...  .... ~ Experience with multi-tier web application architecture, preferably... 
    Hourly pay
    Contract work
    Local area
    2 days per week

    Addison Group

    Washington DC
    15 days ago
  •  ...Description CyberLinx Solutions is seeking a SOC Analyst (Tier 1) / Security Monitoring Analyst to...  ...security risks. Analyze suspicious activity using logs from firewalls, endpoints, servers...  ...or high-risk security incidents to Tier 2 analysts or Incident Response teams.... 

    CyberLinx Solutions LLC

    Annapolis Junction, MD
    5 days ago
  • $58k - $74k

     ...Description Job Description Tier 1 Cyber Network Defense Analyst - Shift Schedule (w/ active TS)Location: Washington, DC Full...  ...related field AND a minimum of two (2) years professional experience...  ...Must possess an active DoD Top Secret Clearance. In addition, selected... 
    Full time
    Immediate start
    Flexible hours
    Shift work
    Night shift

    Critical Solutions

    Washington DC
    11 days ago
  • Description Data Center Operations / Desktop Engineer (Tier 2.5) Location: Washington, D.C./On-site Clearance Requirement: U.S. Citizenship...  ...such as SCCM/MECM, Intune, Azure Virtual Desktop (AVD), Active Directory, Group Policy, Zscaler, ServiceNow, SolarWinds,... 
    Full time
    Work at office
    Flexible hours
    Shift work

    ActioNet, Inc.

    Washington DC
    19 days ago
  •  ...engineer position, providing general Tier 2 monitoring, configuration,...  ...recurring maintenance activities such as device reboots and software...  ...Incident Response Team (CIRT) by implementing block requests...  ...US Citizenship. An Interim Secret clearance is required to start... 
    Full time
    Interim role
    Work at office
    Shift work

    Conceras

    Beltsville, MD
    a month ago
  •  ...Senior Intelligence Data Analyst (Top Secret)SiloSmashers is seeking a Senior Intelligence Data Analyst to assist our intelligence community...  ...experience in Government programs, projects, and/or activities.Ten (10) years or more of managing all facets of project management... 
    Contract work
    For contractors

    Silo Smashers

    Washington DC
    4 days ago
  • $105k - $115k

     ...highly qualified Senior Information Security Analyst to support a DoD client with enterprise...  ...cybersecurity stakeholders. An active Secret clearance is required. Salary range will...  ...before deployment. Coordinate with the Tier 2 Cybersecurity Service Provider to support... 

    Calibre Inc

    Washington DC
    3 hours ago
  • $89k - $110k

     ...Journeyman Information Security Analyst to support a DoD client with...  ...Management Framework (RMF) activities for Department of Defense cloud...  ...(ATOs). An active TOP Secret clearance is required for this...  ...the Incident Response Team and Tier 2 Cybersecurity Service... 

    CALIBRE Systems

    Washington DC
    4 days ago
  • $105k - $115k

     ...seeking an experienced Program Analyst with 7+ years of experience to...  ...be trusted to support all activities and efforts related to business...  ...writing  Must have an active SECRET security clearance  Preferred...  ...PTO (3 weeks to start, 4 weeks (2-5 years) and 5 weeks (5... 
    Full time
    Temporary work
    For contractors
    Work at office
    Local area
    Immediate start
    Shift work
    Afternoon shift

    Corner Alliance

    Washington DC
    2 days ago
  • $30 - $44 per hour

     ...We are seeking an Electronic Technician 2 to join our Security and Electronic Systems...  ..., executing installation and maintenance activities within planned durations. Tracks and...  ...access to classified information. Active Secret clearance is required. Education HS diploma... 
    Apprenticeship
    Work at office
    Local area
    Relocation

    M.C. Dean, Inc.

    Washington DC
    1 day ago
  • $30 - $44.15 per hour

    Electronics Technician 2 - Laurel, MD (Active Clearance Required) paid time off, tuition reimbursement, 401(k), retirement plan, company vehicle United States, Maryland, Laurel Mar 02, 2026 Overview About M.C. Dean M.C. Dean is Building Intelligence. We design, build... 
    Apprenticeship
    Work at office
    Local area
    Relocation

    M.C. Dean

    Laurel, MD
    1 day ago
  •  ...professionals to provide top-tier security solutions and...  ...'s Degree and two (2) years of experience in...  ...investigative or investigative analyst field or Federal Law...  ...field. Current Top Secret security clearance Experience...  ...veteran status. We actively support diversity in our... 
    Contract work
    For contractors
    Work at office
    Flexible hours

    Protection Strategies

    Washington DC
    3 days ago
  • $7.5k

     ...Scientists, Cryptologic Cyber Planners, Intrusion Analysts, Protocol Analysts, Signals Analysts and...  ...alter their workflows. The Level 2 Data Analyst shall possess the following...  ...demonstrated experience in cybersecurity activities in programs and contracts of similar... 
    Contract work
    Work experience placement
    Immediate start
    Flexible hours

    RealmOne

    Columbia, MD
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to CIRT Tier 2 Analyst / Active Secret. Be the first to apply!