Cyber Defense Analyst (3rd Shift)

Leidos

Suitland (MD)

On-site

USD 87,000 - 157,000

Full time

5 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Leidos is seeking a Cyber Defense Analyst to join the Navy ONI HGCC in Suitland, MD, on the 3rd shift (2330–0730). You will monitor TS/SCI networks, investigate alerts, and perform threat hunting to protect critical systems.

Required are CND discipline experience, TS/SCI clearance, and strong skills with SIEMs (Splunk, Elastic), NIDPS (FirePower, Palo Alto), and scripting (Python, PowerShell, C/C++, Java)..

Qualifications

  • Bachelor's degree in Cybersecurity, Information Technology, Information Assurance, or related field with 4+ years of experience (or Master's with 2+ years).
  • Active TS/SCI security clearance.
  • Concentrated experience in the CND discipline.
  • Experience monitoring and investigating alerts from cybersecurity tools.
  • Experience with SIEM systems such as Splunk and Elastic.
  • Experience with NIDPS and host-based tools (e.g., Cisco FirePower, Palo Alto NGFW, Trellix ePO, Defender, Tanium).
  • Knowledge of scripting and coding languages (Python, Perl, Ruby, JavaScript, PowerShell, C, C++, Java).
  • Knowledge of penetration testing tools (Kali, SamuraiWTF, Nmap, Burp Suite, sqlmap, Metasploit).
  • Knowledge of ticketing systems, reporting, and intelligence gathering.

Responsibilities

  • Perform first-line monitoring of security tools and initial analysis of alerts for TS/SCI networks.
  • Monitor cybersecurity tools for alerts, anomalies, and indicators of compromise.
  • Investigate and perform initial technical analysis of alerts; escalate to Tier 2 as needed.
  • Create, update, and manage incident and event tickets in the ticketing system.
  • Conduct proactive threat hunting to identify malicious activity and emerging threats.
  • Perform wireless security scans and document findings.
  • Correlate alerts across platforms to identify patterns and threats.
  • Prepare and deliver operational and situational awareness briefings.
  • Support annual cyber defense exercises.

Skills

Analytical skills
Conceptual thinking
Problem solving

Education

Bachelor's degree in Cybersecurity or related field
Master's degree in related field

Tools

Splunk
Elastic
Cisco FirePower
Palo Alto NGFW
Trellix ePO
Microsoft Defender
Tanium
Python
PowerShell
Java
Nmap
Burp Suite
Kali
sqlmap
Metasploit

Job description

Description

Cyber Defense Analyst (3rd Shift)

Location: Suitland, MD
Clearance: Active TS/SCI

3rd Shift Work Hours: 2330 – 0730

Leidos is seeking a Cyber Defense Analyst (3rd Shift) to join a mission focused team supporting the Navy's cybersecurity environment at the Office of Naval Intelligence (ONI) Hopper Global Communications Center (HGCC) in Suitland, MD.

In this role, you will serve on the front line of cyber defense, helping protect critical TS/SCI networks by monitoring and investigating cybersecurity alerts, identifying potential threats, and supporting proactive threat hunting activities. You will apply your experience in the Certified Network Defender (CND) discipline and knowledge of IT systems and networks to analyze security events, manage incident tickets, support intelligence gathering and analysis, and communicate findings to key stakeholders.

Work Schedule: This is a 3rd shift position with regular work hours of 2330 – 0730. Occasional floater shifts or coverage outside of these hours may be required based on program and staffing needs.

Primary Responsibilities
  • Perform first line monitoring of security tools and conduct initial analysis of alerts for TS/SCI networks, including JWICS, ATLAS, and other networks for which HGCC is responsible.
  • Monitor organizational cybersecurity tools for alerts, anomalies, and indicators of compromise.
  • Investigate and perform initial technical analysis of cybersecurity alerts and events, escalating potential incidents to Tier 2 as appropriate.
  • Create, update, and manage incident and event tickets within the approved ticketing system.
  • Conduct proactive threat hunting activities to identify potential malicious activity and emerging threats.
  • Perform wireless security scans of facilities and document and report findings.
  • Correlate alerts and security events across multiple platforms to identify patterns, trends, and potential threats.
  • Prepare and deliver operational and situational awareness briefings.
  • Support annual cyber defense exercises.
Required Qualifications
  • Bachelor's degree in Cybersecurity, Information Technology, Information Assurance, or a related area of study desired with 4+ years of experience or Master's degree with 2+ years of experience. Additional experience may be considered in lieu of a degree.
  • Active TS/SCI security clearance.
  • Concentrated experience in the CND discipline, regardless of degree.
  • Experience monitoring and investigating alerts from cybersecurity tools.
  • Experience with Security Information and Event Management (SIEM) systems such as Splunk and Elastic.
  • Experience with Network Intrusion Detection/Prevention Systems (NIDPS), such as Cisco FirePower and Palo Alto NGFW, as well as host-based tools such as Trellix ePO, Microsoft Defender, and Tanium.
  • Knowledge of scripting and coding languages such as Python, Perl, Ruby, JavaScript, PowerShell, C, C++, and Java.
  • Knowledge of penetration testing and red team tactics, techniques, and procedures, as well as tools such as Kali, SamuraiWTF, Nmap, Burp Suite, sqlmap, and Metasploit.
  • Knowledge of ticketing systems, report writing, and intelligence gathering, analysis, and dissemination techniques specific to cybersecurity.
  • Strong analytical, conceptual, and problem-solving skills.
Required Certifications
  • Must possess one of the following certifications or obtain one within 30 days of accepting an offer: CompTIA CySA+, CompTIA PenTest+, CompTIA Cloud+, EC Council CEH, GIAC GCIA, GIAC GCIH, GICSP, or Cisco CyberOps.
About Leidos

Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com.

Pay and Benefits

Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits.

Original Posting:

September 15, 2026

For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:

Pay Range $87,100.00 - $157,450.00

The Leidos pay range for this job level is a general guideline onlyand not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

Commitment to Non-Discrimination

All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Defense Analyst (3rd Shift)
Cyber Defense Analyst (3rd Shift)

Via Logic LLC • Suitland (MD)

On-site
USD 87,000 - 157,000
Cyber Defense Analyst (3rd Shift)
Cyber Defense Analyst (3rd Shift)

Leidos Inc • Suitland (MD)

On-site
USD 87,000 - 157,000
Cyber Defense Analyst (2nd Shift)
Cyber Defense Analyst (2nd Shift)

Via Logic LLC • Suitland (MD)

On-site
USD 87,000 - 157,000
Cyber Defense Analyst (2nd Shift)
Cyber Defense Analyst (2nd Shift)

Leidos Inc • Suitland (MD)

On-site
USD 87,000 - 157,000
Cyber Defense Analyst (2nd Shift)
Cyber Defense Analyst (2nd Shift)

Leidos • Suitland (MD)

On-site
USD 87,000 - 157,000
Cyber Defense Analyst (Weekend Night Shift)
Cyber Defense Analyst (Weekend Night Shift)

Leidos Inc • Suitland (MD)

On-site
USD 87,000 - 157,000
Cyber Defense Analyst (Weekend Night Shift)
Cyber Defense Analyst (Weekend Night Shift)

Leidos • Suitland (MD)

On-site
USD 87,000 - 157,000
Cyber Defense Analyst (Weekend Day Shift)
Cyber Defense Analyst (Weekend Day Shift)

Leidos • Suitland (MD)

On-site
USD 90,000 - 157,000
Cyber Defense Analyst
Cyber Defense Analyst

Leidos • Suitland (MD)

On-site
USD 87,000 - 157,000
Incident Responder (3rd Shift)
Incident Responder (3rd Shift)

Via Logic LLC • Suitland (MD)

On-site
USD 108,000 - 195,000