Cyber Defense Operations Analyst, TS/SCI (Onsite)

IBM

Maryland

On-site

USD 69,000 - 119,000

Full time

9 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

IBM Consulting is seeking a Technical Operations Analyst to safeguard client digital infrastructure. The role focuses on identifying and mitigating cyber threats, with responsibilities to investigate incidents using SIEM/SOAR/EDR/XDR and apply MITRE ATT&CK and Cyber Kill Chain.

Responsibilities include prioritizing incident reports, analyzing Windows, macOS and Linux logs, and contributing to vulnerability management and threat intelligence efforts to strengthen client security resilience.

Qualifications

  • Experience with cybersecurity tools and incident response processes.
  • Familiarity with MITRE ATT&CK and the Cyber Kill Chain framework.
  • Ability to analyze logs from Windows, macOS and Linux systems.
  • Knowledge of vulnerability management and threat intelligence activities.
  • Active TS/SCI clearance and IAT Level II certification are required.

Responsibilities

  • Investigate security incidents using SIEM, SOAR, EDR and XDR platforms.
  • Prioritize incident reports and provide actionable remediation recommendations.
  • Analyze network and endpoint events to identify potential threats.
  • Participate in vulnerability management and threat intelligence activities.
  • Deliver security recommendations to enhance client security posture.

Skills

Cybersecurity Tools
MITRE ATT&CK
Cyber Kill Chain
Network Analysis
Vulnerability Management
Security Clearance TS/SCI
IAT Level II

Education

High School Diploma
Bachelor's Degree

Tools

SIEM
SOAR
EDR
XDR

Job description

IBM Consulting is seeking a Technical Operations Analyst to safeguard client digital infrastructure. The role focuses on identifying and mitigating cyber threats, with responsibilities to investigate incidents using SIEM/SOAR/EDR/XDR and apply MITRE ATT&CK and Cyber Kill Chain.

Responsibilities include prioritizing incident reports, analyzing Windows, macOS and Linux logs, and contributing to vulnerability management and threat intelligence efforts to strengthen client security resilience.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

TS/SCI Cyber Defense & IR Analyst
TS/SCI Cyber Defense & IR Analyst

IBM • Jasper (AL)

On-site
USD 85,000 - 125,000
Healthcare benefits
401(k) plan
Paid time off
+2
Onsite Cyber Operations & Threat Analysis Engineer
Onsite Cyber Operations & Threat Analysis Engineer

IBM • Maryland

On-site
USD 82,000 - 125,000
Healthcare benefits
401(k) plan
Paid time off
TS/SCI Cyber Defender — Incident Response Lead
TS/SCI Cyber Defender — Incident Response Lead

IBM • Boston (MA)

On-site
USD 153,000 - 230,000
Senior Cyber Threat & Incident Response (TS/SCI)
Senior Cyber Threat & Incident Response (TS/SCI)

IBM • Boston (MA)

On-site
USD 121,000 - 181,000
Healthcare benefits
Paid time off
Training resources
Senior Cyber Defender - Incident Response Lead
Senior Cyber Defender - Incident Response Lead

IBM • Maryland

On-site
USD 121,000 - 181,000
Cyber Operations Lead – TS/SCI (Onsite)
Cyber Operations Lead – TS/SCI (Onsite)

IBM • Maryland

On-site
USD 155,000 - 267,000
Senior Cyber Ops & Incident Response Lead
Senior Cyber Ops & Incident Response Lead

IBM • Maryland

On-site
USD 125,000 - 188,000
Healthcare benefits
401(k) plan and pension
Paid time off
+1
Cyber Security Service Delivery Lead
Cyber Security Service Delivery Lead

IBM • Jasper (AL)

On-site
USD 110,000 - 140,000
Healthcare benefits
401(k) plan
Paid time off
+1
Cyber Management Analyst (TS/SCI) – Onsite at Fort Meade
Cyber Management Analyst (TS/SCI) – Onsite at Fort Meade

IBM • Maryland

On-site
USD 67,000 - 102,000
Healthcare benefits
Paid time off
Training resources
Security Intelligence & Operations Lead
Security Intelligence & Operations Lead

IBM • Raleigh (NC)

On-site
USD 120,000 - 180,000