Defensive Cyber Operations Analyst

Leidos

Deutschland

Vor Ort

EUR 75.000 - 136.000

Vollzeit

Vor 11 Tagen

Erhalte mehr Antworten von Arbeitgebern

Versende in nur wenigen Minuten einen passgenauen Lebenslauf.

Zusammenfassung

Leidos is seeking Defensive Cyber Operations Analysts to support a 24/7 DCO team protecting federal networked systems. The role is hybrid with up to 20% telework and requires DoD 8570 IAT/CSSP certifications and a TS/SCI clearance.

Responsibilities include incident detection, continuous security monitoring, and technical leadership. You will prepare senior-level briefings and maintain detailed documentation for audit and action.

Qualifikationen

  • Bachelor's degree in a related discipline; experience varies by level (II: 2+ years, III: 4+ years, IV: 8+ years).
  • DoD 8570 IAT Level II/III certification (or within 180 days).
  • DoD 8570 CSSP Analyst certification (or within 180 days).
  • DoD 8570 CSSP Infrastructure Support certification (or within 180 days).
  • Strong networking knowledge and experience with security tools (IDS/IPS, firewalls).
  • Experience evaluating PCAPs and logs to verify security events.

Aufgaben

  • Perform incident detection, investigation, and characterization of enterprise threats.
  • Monitor security tools and develop mitigation strategies and actions.
  • Follow SOPs with detailed documentation and timely checks.
  • Develop and present technical briefings to senior management.
  • Maintain high-quality technical writing in the ticketing system.
  • Coordinate with team in a collocated environment.
  • Support adaptive defense by monitoring security devices.

Kenntnisse

IAT Level II/III cert
CSSP Analyst cert
Networking knowledge
PCAP/Logs analysis
Security clearance TS/SCI

Ausbildung

Bachelor's Degree in related discipline

Tools

SIEM (Splunk/Elastic)
IDS/IPS
Firewalls

Jobbeschreibung

Description

The Leidos Digital Modernization sector is seeking Defensive Cyber Operations Analysts to support a Defensive Cyber Operations (DCO) team in Washington, DC. Our team provides mission critical, 24/7 operational support to the customer's mission of protecting federal networked systems and services from cyber threats impacting national security.

We hire for these roles on an ongoing basis and our recruiting team will contact applicants as positions become available.

This is a hybrid position with the potential for up to 20% Telework.

Shifts include Days, Swings and Mids. Shift availability will vary based on program needs and staffing levels. All new hires' initial 4-6 weeks will be spent on weekday Day Shift to complete onboarding, training and familiarization.

Applicants must remain flexible to potential shift modifications to assist in meeting minimum staffing requirements.

PRIMARY RESPONSIBILITIES
  • Incident Detection & Characterization: Perform computer network incident detection and response activities to detect, correlate, identify, and characterize anomalous activity indicative of enterprise threats.
  • Continuous Security Monitoring: Monitor various security tools and applications for malicious activities, investigate associated alerts or indicators, and develop mitigation strategies and courses of action.
  • Operational Rigor: Follow Standard Operating Procedures (SOPs) with strong attention to detail, ensuring all system checks are performed timely and all documentation is complete and accurate.
  • Technical Leadership & Influence: Work to influence project/team leaders regarding solution design and process approaches; review investigations and reports of peers to ensure accuracy and clarity.
  • Senior-Level Briefing: Develop and conduct technical briefings to senior management, translating complex security events into actionable business or mission intelligence.
  • Detailed Documentation: Maintain high-quality technical writing standards, documenting every event and associated analysis within the ticketing system for audit and follow‑on action.
  • Collaborative Coordination: Exercise excellent communication skills for regular face-to-face customer interaction and high‑tempo coordination between team members in a collocated environment.
  • Adaptive Defense: Support the CSSP in providing detect, response, mitigation, and recovery capabilities by monitoring network/host/application security devices.
BASIC QUALIFICATIONS
  • All positions require a Bachelor's Degree in a related discipline as well as professional, directly relevant experience depending on job level (Level II: 2+ years of experience, Level III: 4+ years of experience, Level IV: 8+ years of experience). Additional years of professional and/or military experience may be substituted in lieu of degree.
  • DoD 8570 IAT Level II/III: Must hold an IAT Level II or higher certification (or obtain within 180 days). (e.g., CompTIA Security+, CySA+, GSEC, SSCP) or (CASP+ CE, CCNP Security, CISA, GCED, and GCIH).
  • DoD 8570 CSSP Analyst: Must hold a CSSP Analyst certification (or obtain within 180 days). (e.g., CompTIA CySA+, Cloud+, GIAC GCIA).
  • DoD 8570 CSSP Infrastructure Support: Must hold a CSSP Infrastructure Support certification (or obtain within 180 days). (e.g., CompTIA CySA+, Cloud+, EC-Council CEH, CND, CHFI, GIAC GICSP, and ISC2 SSCP).
  • Technical Proficiency: Strong computing system knowledge, particularly networking, including communication protocols and familiarity with common security elements such as IDS/IPS and firewalls.
  • Data Analysis: Direct experience evaluating packet captures (PCAP) and logs to identify malicious traffic and verify security events.
  • Security Clearance: Current DoD TS/SCI security clearance and ability to pass additional customer suitability screenings prior to start and maintain throughout employment.
PREFERRED SKILLS
  • SOC Excellence: Prior experience working in a Cyber Network Defense (CND) or Security Operations Center (SOC) environment.
  • Framework Expertise: Demonstrated familiarity with security frameworks such as the Lockheed Martin Cyber Kill Chain and MITRE ATT&CK.
  • Intrusion Analysis: Specialized experience in the monitoring of intrusion detection appliances and the analysis of complex, multi‑stage alerts.
  • Response Recommendation: Proven track record of documenting technical analysis and providing defensive response recommendations to senior stakeholders.
  • Platform Familiarity: Experience working with SIEM platforms (Splunk, Elastic, or similar) to perform data correlation and search queries.

Pay Range $87,100.00 - $157,450.00

Pay and Benefits

Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits.

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.

About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com.

Hol dir deinen kostenlosen, vertraulichen Lebenslauf-Check.
oder ziehe deine Datei hierhin.
Similar jobs

Ähnliche Jobs, die dir auch gefallen könnten

DCO Counter-Measures Engineer
DCO Counter-Measures Engineer

Leidos • Deutschland

Hybrid
EUR 94.000 - 171.000
Health and Wellness programs
Paid Leave
Retirement benefits
AI & Security Infrastructure Integration Engineer
AI & Security Infrastructure Integration Engineer

Leidos • Deutschland

Hybrid
EUR 93.000 - 169.000
Cloud/SecDevOps Engineer
Cloud/SecDevOps Engineer

Leidos • Deutschland

Hybrid
EUR 60.000 - 111.000
Information Systems Security Officer
Information Systems Security Officer

Leidos • Deutschland

Hybrid
EUR 60.000 - 109.000
Cyber Joint Operational Planner
Cyber Joint Operational Planner

Leidos • Stuttgart

Vor Ort
EUR 114.000 - 205.000
Site Reliability Engineer
Site Reliability Engineer

Leidos • Deutschland

Hybrid
EUR 80.000 - 145.000
ASI Manager
ASI Manager

Leidos • Stuttgart

Vor Ort
EUR 51.000 - 92.000
Principal Network Engineer
Principal Network Engineer

Leidos • Deutschland

Hybrid
EUR 120.000 - 217.000
DevOps Engineer
DevOps Engineer

Jobtailor • Deutschland

Vor Ort
EUR 60.117 - 108.674
Senior System Engineer
Senior System Engineer

Jobtailor • Deutschland

Remote
EUR 93.000 - 169.000
Health and Wellness programs
Income Protection
Paid Leave
+1