CIRT Tier 1 Analyst / Active Secret

Peraton

Beltsville (MD)

On-site

USD 80,000 - 128,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Peraton is looking for an experienced CIRT Tier 1 Analyst to join its Federal Strategic Cyber Mission program in Beltsville, MD. The role involves tracking cybersecurity events, managing incidents, and coordinating with various teams. Candidates should have a Bachelor's degree or equivalent experience, relevant certifications, and strong critical thinking skills.

The position offers a target salary range of $80,000 to $128,000, depending on qualifications and experience. This is a full-time role requiring U.S. citizenship and an active Secret security clearance.

Qualifications

  • U.S. Citizenship required.
  • Active Secret security clearance required.

Responsibilities

  • Detect, classify, process, track, and report on cybersecurity events.
  • Monitor and triage the CIRT hotline and email inboxes.
  • Create tickets and initiate workflows as per SOPs.
  • Coordinate with Department teams to analyze and respond to incidents.

Skills

Knowledge of cybersecurity principles
Critical thinking skills
Knowledge of ticketing systems
Ability to follow established procedures
Knowledge of computer networking protocols

Education

Bachelor's degree or High School diploma with 6 years experience

Tools

Splunk
Microsoft Defender for Endpoint
ServiceNow

Job description

Responsibilities

Peraton is seeking an experienced CIRT Tier 1 Analyst to join Peratons' Federal Strategic Cyber Mission program.

Location: Beltsville, MD and Rosslyn, VA

Work Hours: 0600 – 1400 EST, SUN-THU

In this role, you will:

  • Detect, classify, process, track, and report on cyber security events and incidents.
  • Perform triage of incoming alerts and requests in a 24x7x365 environment.
  • Monitor and triage the CIRT hotline, email inboxes, and fax.
  • Create tickets and initiate workflows as instructed in SOPs.
  • Triage Splunk Enterprise Security (ES) Alerts and Microsoft Defender for Endpoint (MDE) Alerts.
  • Identify and triage benign, spam, exercise, and malicious phishing email.
  • Perform binary artifact triage to understand malware behavior.
  • Coordinate and collaborate with Department teams as needed to analyze and respond to events and incidents.
  • Report incident information to the Cybersecurity and Infrastructure Security Agency (CISA).
  • Collaborate with other local, national and international CIRTs as directed.
  • Deliver and oversee remediation activities.
  • Conduct shift change briefs.
Qualifications

Required:

  • Bachelor's degree and at least 2 years of experience or a High School diploma and 6 years of experience.
  • Must possess or be able to obtain at least one of the following certifications before start date. Continued certification required as a condition of employment:
    • CCNA-SecurityCNDCySA+ GICSPGSECSecurity+ CESSCP
  • Knowledge of ticketing systems (i.e. ServiceNow, Remedy).
  • Knowledge of computer networking protocols and principles.
  • Knowledge of cybersecurity principles, practices, threats, and vulnerabilities.
  • Knowledge of incident response principles and practices.
  • Skill in critical thinking by evaluating information and making independent decisions.
  • Demonstrated ability to work autonomously while taking initiative on assigned responsibilities.
  • Ability to follow established procedures and written guidance with precision and attention to detail.
  • Skill in taking ownership of problems and seeing them through to completion.
  • U.S. Citizenship required.
  • Active Secret security clearance.

Preferred Qualifications

  • Experience with Splunk for security monitoring and alert triage.
  • Knowledge of Microsoft Defender for Endpoint for security monitoring and response.
  • Experience with ServiceNow for ticketing and workflow management.
  • Knowledge of cloud security monitoring fundamentals.
  • Experience with email security and phishing analysis.
  • Knowledge of the MITRE ATT&CK framework.
  • Familiarity with PowerShell and basic scripting concepts.
Target Salary Range

$80,000 - $128,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual’s experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.

EEO

EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Tier 2 Cyber Incident Response Team (CIRT) Analyst at Peraton Beltsville, MD
Tier 2 Cyber Incident Response Team (CIRT) Analyst at Peraton Beltsville, MD

Peraton • Beltsville (MD)

On-site
USD 80,000 - 128,000
CIRT Tier 2 Analyst / Active Secret
CIRT Tier 2 Analyst / Active Secret

Peraton • Beltsville (MD)

On-site
USD 66,000 - 106,000
Tier 2 Shift Lead / Secret
Tier 2 Shift Lead / Secret

Peraton • Beltsville (MD)

On-site
USD 104,000 - 166,000
Tier 2 Cyber Incident Responder (Shift Lead)
Tier 2 Cyber Incident Responder (Shift Lead)

Twenty8 Technology, LLC • Beltsville (MD)

On-site
USD 130,000 - 170,000
Cyber Incident Response Analyst – Tier 1 (24/7 Triage)
Cyber Incident Response Analyst – Tier 1 (24/7 Triage)

Peraton • Beltsville (MD)

On-site
USD 80,000 - 128,000
Tier 2 Cyber Incident Response (Shift Lead)
Tier 2 Cyber Incident Response (Shift Lead)

AGR, LLC • Beltsville (MD)

On-site
USD 120,000 - 180,000
Cyber Case Management/Service Desk Agent / Active Top Secret
Cyber Case Management/Service Desk Agent / Active Top Secret

Peraton • Washington

On-site
USD 66,000 - 106,000
NOSC Cyber Analyst Junior
NOSC Cyber Analyst Junior

Peraton • Arlington (VA)

On-site
USD 66,000 - 106,000
External Job Posting Title Cyber Case Management/Service Desk Agent / Active Top Secret
External Job Posting Title Cyber Case Management/Service Desk Agent / Active Top Secret

Peraton • Washington

On-site
USD 66,000 - 106,000
Tier 2 Shift Lead- Secret Clearance
Tier 2 Shift Lead- Secret Clearance

Veterans Enterprise Technology Solutions Inc • Beltsville (MD)

On-site
USD 100,000 - 124,000
ON-SITE WORK ONLY