Cyber Response Analyst / Active TS/SCI

Peraton

Wiesbaden

Hybrid

EUR 70.000 - 100.000

Vollzeit

14 Tage+
Bewerbungsgenerator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Schaffe es an den ATS-Filtern vorbei

Zusammenfassung

Peraton is seeking an experienced Cyber Response Analyst for its Regional Cyber Center-Europe, onsite in Wiesbaden, Germany. You will monitor IDS/SIEM platforms, triage alerts, and perform malware analysis to define threat scope and impact.

Responsibilities include documenting incidents, supporting containment, and coordinating with mission partners. U.S. citizenship and a DoD TS/SCI clearance are required, with active certifications as listed.

Qualifikationen

  • Bachelor's degree (STEM/Business Admin) with 5+ years cybersecurity experience, or associate degree with 7+ years in lieu of bachelor
  • Active DoD TS/SCI clearance or higher
  • DoD 8140 Cybersecurity Advanced
  • U.S. citizenship required
  • TESA Qualification required

Aufgaben

  • Monitor IDS/SIEM platforms (Elastic, Splunk, ArcSight) for security events across DoD networks
  • Triage, analyze, and elevate security alerts per CSSP SOPs
  • Conduct initial malware analysis of suspicious files/URLs to determine threat scope
  • Document incidents from detection to containment with evidence in ticketing system
  • Support incident response actions including host isolation and coordination with network operations
  • Produce shift reports and incident tickets with timelines and follow-on steps

Kenntnisse

Cybersecurity incident response
Threat intelligence
Network forensics
Malware analysis
Scripting (Python or Bash)

Ausbildung

Bachelor's degree in STEM or Business Administration

Tools

Elastic Stack
Splunk
Wireshark
MITRE ATT&CK
Cuckoo Sandbox
TheHive

Jobbeschreibung

Required:
  • Bachelor's degree (STEM/Business Admin) and a minimum of 5 years of cybersecurity experience, or an associates degree and minimum of 7 years of relevant experience, or 11 total years of relevant experience in lieu of the bachelors degree requirement
  • Must meet TESA Qualification
  • DoD 8140 - Cybersecurity (Cyber Defense Incident Responder) - Advanced
  • Certifications — must hold active certifications (one of the following):
  • Cisco CyberOps Professional; OR
  • SANS (any GIAC certification); OR
  • Blue Team Level 1; OR
  • Microsoft Certified: Security Operations Analyst Associate
  • U.S. citizenship required
  • Active DoD TS/SCI clearance or higher
Preferred:
  • Hands-on experience with Elastic Stack (Elasticsearch, Kibana, Logstash) or Splunk for security event monitoring
  • Proficiency with Wireshark or similar packet analysis tools for network traffic inspection
  • Familiarity with MITRE ATT&CK framework for mapping adversary TTPs to observed activity
  • Experience with malware analysis tools (e.g., Cuckoo Sandbox, Any.Run, VirusTotal)
  • Working knowledge of TheHive or similar incident case management platforms
  • Experience with network forensics and log analysis across firewall, DNS, and proxy sources
  • Familiarity with NIST SP 800-61 incident response lifecycle
  • Exposure to scripting (Python or Bash) for alert triage automation

Peraton is seeking to hire an experienced Cyber Response Analyst for its' Regional Cyber Center-Europe

Location: On-site, Wiesbaden, Germany

Responsibilities:
  • Monitor IDS/SIEM platforms (Elastic, Splunk, ArcSight) for security events, anomalies, and indicators of compromise across DoD networks in the USAREUR-AF AOR
  • Triage, analyze, and elevate security alerts in accordance with CSSP standard operating procedures, ensuring timely notification to senior analysts and mission partners
  • Conduct initial malware analysis and static/dynamic examination of suspicious files, URLs, and artifacts to determine threat scope and impact
  • Document security incidents from initial detection through containment, recording all actions, findings, and evidence in the incident tracking system
  • Support incident response actions including host isolation, evidence collection, and coordination with network operations and mission owners
  • Produce accurate and timely shift reports, end-of-day summaries, and incident tickets that capture event timelines, analyst actions, and recommended follow-on steps

#RCC-E

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.

oder ziehe deine Datei hierhin.

Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

Cyber Software Engineering, Lead Associate
Cyber Software Engineering, Lead Associate

Peraton • Wiesbaden

Hybrid
EUR 90.000 - 120.000
External Job Posting Title Senior Cyber Response Analyst / Active TS/SCI
External Job Posting Title Senior Cyber Response Analyst / Active TS/SCI

Peraton • Wiesbaden

Vor Ort
EUR 90.000 - 143.000
Cyber Incident Handling Analyst
Cyber Incident Handling Analyst

Strategic Resilience Group • Deutschland

Remote
EUR 70.000 - 95.000
Senior Network Service Engineering Support / Active Secret
Senior Network Service Engineering Support / Active Secret

Peraton • Wiesbaden

Hybrid
EUR 90.000 - 120.000
Cyber Security Analyst
Cyber Security Analyst

Trace Systems • Deutschland

Vor Ort
EUR 60.000 - 80.000
Senior Security Analyst
Senior Security Analyst

Base Cyber Security • Münster

Vor Ort
EUR 70.000 - 110.000
Cyber Systems Engineering, Lead Associate
Cyber Systems Engineering, Lead Associate

Peraton • Wiesbaden

Vor Ort
EUR 90.000 - 144.000
Cyber Security Analyst
Cyber Security Analyst

Trace Systems Inc. • Stuttgart

Vor Ort
EUR 90.000 - 120.000
External Job Posting Title Cyber Software Engineering, Lead Associate
External Job Posting Title Cyber Software Engineering, Lead Associate

Peraton • Wiesbaden

Vor Ort
EUR 74.000 - 119.000
Offensive Security Analyst
Offensive Security Analyst

Sonoco • Hub

Vor Ort
EUR 60.000 - 85.000