Cybersecurity Analyst

thenewberrygroup

O'Fallon (IL)

On-site

USD 95,000 - 125,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Medical coverage
Paid time off
Retirement plan

Job summary

Newberry Group's Public Sector Division seeks Cybersecurity Analysts for a 24/7 Cyber Network Defense (CND) operation at Scott Air Force Base in Illinois. You will analyze real-time threat intel, correlate events, and conduct network traffic analysis to uncover and mitigate threats.

Candidates must hold an active DoD Secret clearance; Top Secret is preferred. On-site work with three shifts (7am–3pm, 3pm–11pm, 11pm–7am) is required in this role.

Qualifications

  • Active DoD Secret clearance or above.
  • DoD 8140 IAT level II or higher certification (e.g., Security+ CE, CySA+, SSCP, SANS GSEC) prior to starting.
  • DoD 8140 CSSP-A level Certification (CEH, CySA+, GCIA, or similar) required within 180 days of hire.
  • Strong networking foundation, packet analysis, OSI model, and defense-in-depth security.
  • Bachelor's degree with 1+ years (Level I) or 3+ years (Level II) experience, or equivalent.

Responsibilities

  • Investigate alerts from endpoints, IDS/IPS, NetFlow, and sensors to detect compromises.
  • Analyze logs, pivot datasets, and generate detailed technical incident reports.
  • Triaged security alerts to identify malicious actors among customer networks.
  • Monitor DoD/open-source intelligence feeds to identify IOCs for sensors and SIEMs.
  • Report incidents to customers and USCYBERCOM with timely coordinated response.

Skills

DoD 8140 IAT II
Network packet analysis
Threat detection
Incident response collaboration
Shift work flexibility

Education

Bachelor's degree
1+ years relevant experience
Equivalent experience/military service

Tools

SIEM/SOAR platforms
NetFlow analysis
Packet capture tools
IDS/IPS

Job description

Job Summary

Newberry Group's Public SectorDivision is seeking Cybersecurity Analystswith the expertise to support a 24/7 Cyber Network Defense (CND) Operationfor Department of Defense networks at Scott Air Force Base in Illinois. This includes analyzing real-time cyber threat intelligence to stay ahead of emerging threats, correlating security events to identify and prioritize potential incidents, conducting network traffic analysis using raw packet data to uncover malicious activity and collaborating with incident response teams to contain and eradicate threats.

Candidates must hold an active DoD Secret clearance, though Top Secret is preferred.

Location

Work is to be performed on-site and must have willingness and ability to perform shift work (shifts may not be static).

There are three available shifts: 7am-3pm, 3pm-11pm, and 11pm-7am.

Salary

$95,000 to $125,000

Primary Responsibilities
  • Investigate alerts generated from endpoints, IDS/IPS, NetFlow data, and custom sensors to detect compromises on customer networks.
  • Analyze extensive log files, pivot between diverse datasets, and correlate evidence to support incident investigations, creating detailed technical reports outlining your findings.
  • Triage security alerts to rapidly identify malicious actors targeting customer networks.
  • Monitor and analyze DoD and open-source intelligence feeds to identify Indicators of Compromise (IOCs) and integrate them into security sensors and SIEMs.
  • Report security incidents to customers and USCYBERCOM, ensuring timely communication and coordinated response.
Required Qualifications
  • Active DoD Secret clearance or above.
  • DoD 8140IAT level II or higher certification, such as CompTIA Security+ CE, CySA+, ISC2 SSCP, SANS GSEC prior to starting.
  • DoD 8140 CSSP-A level Certification, such as CEH, CySA+, GCIA, or other certification, is required within 180 days of hire.
  • Strong foundation in networking, including packet analysis, common ports and protocols, and traffic flow. Knowledge of the OSI model, defense-in-depth security principles, and common security elements for effective threat detection, analysis, and mitigation as a SOC Security Analyst.
  • Education and experience requirements:
    • Level I: Bachelor's degree and 1+ years of relevant experience; equivalent work experience and/or military service may be considered in lieu of a degree.
    • Level II: Bachelor's degree and 3+ years of relevant experience; equivalent work experience and/or military service may be considered in lieu of a degree.
  • Proven ability to work effectively both independently and as a collaborative team member, demonstrating initiative and a strong work ethic in both settings.
  • Committed to continuous learning and self-improvement in the cybersecurity domain, as evidenced by ongoing pursuit of certifications, active participation in industry forums, and dedication to staying ahead of emerging threats and technologies.
  • Excellent problem-solving skills, including the ability to collaborate effectively with cross-functional teams to address complex security challenges in real-world scenarios. This includes the ability to communicate technical information clearly and concisely, build consensus, and drive solutions to completion.
  • Reliable and flexible, with a demonstrated willingness to work assigned shifts to support operational requirements and team objectives.
  • Located within a commutable distance toScott AFB, IL.
Preferred Qualifications
  • Hands-on experience analyzing large volumes of logs, network data (e.g., Netflow, Full Packet Capture), and other attack artifacts during incident investigations.
  • In-depth experience using a SIEM/SOAR platform to analyze multiple log types and events across various data points, applying techniques such as behavioral analysis, statistical analysis, and machine learning to detect and respond to advanced threats.
  • Comprehensive understanding of the network threat lifecycle, attack vectors, and methods of exploitation, including intrusion set tactics, techniques, and procedures (TTPs).
  • Experience with Anti-Virus, HIPS/HBSS, IDS/IPS, Full Packet Capture, and Network Forensics tools.
  • Experience or knowledge in monitoring, defending, or administering cloud networks (e.g., AWS, Azure, GCP), including cloud-native security tools and strategies for protecting data in cloud environments. Experience identifying and mitigating cloud-specific attacks.
  • Experience managing, defending, administering, or deploying mobile devices (iOS, Android) for enterprise, including mobile device management (MDM), mobile application management (MAM), and mobile threat defense (MTD). A strong understanding of mobile security best practices and mobile threat landscape is highly desired.
  • Scripting and programming skills.
Who We Are

Newberry Group is a performance-driven government services and solutions firm that provides security compliance, program governance, consulting, and customized solutions for public sector clients nationwide. The strength of our company is a direct reflection of our highly skilled and talented workforce.

Benefits and Perks

In addition to competitive wages, Newberry Group offers an outstanding benefits package. This includes medical coverage with two plan options (HDHP or PPO), dental and vision coverage, personal time off, paid holidays, parental leave program, telecommuting if available, retirement savings accounts (Pre Tax and Roth), flexible and dependent care savings accounts, life insurance, long and short-term disability coverage, tuition and training reimbursement, and employee assistance program.

The Newberry Group, Inc. is an Equal Opportunity Employer – EEO/AA/Disability/Veterans.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Junior Security Control Assessor
Junior Security Control Assessor

thenewberrygroup • Fort Meade (MD)

Hybrid
USD 50,000 - 60,000
Medical, dental, vision coverage
Paid time off
Paid holidays
+6
24/7 DoD Cyber Threat Analyst (On-Site)
24/7 DoD Cyber Threat Analyst (On-Site)

thenewberrygroup • O'Fallon (IL)

On-site
USD 95,000 - 125,000
Medical coverage
Paid time off
Retirement plan
NOSC Cyber Analyst
NOSC Cyber Analyst

Dobbs Defense Solutions • Washington

On-site
USD 97,000 - 137,000
Networking Security Analyst
Networking Security Analyst

Beyond SOF • Fort Belvoir (VA)

On-site
USD 90,000 - 130,000
Computer Network Defense Analyst
Computer Network Defense Analyst

Agecareers • Columbus (OH)

On-site
USD 85,000 - 98,000
26 Days Paid Leave
Performance Bonuses
401(k) with Match
+6
Cyber Analyst
Cyber Analyst

JAAW™ Group • Hill Air Force Base (UT)

On-site
USD 85,000 - 115,000
Medical, dental, and vision insurance
401(k) retirement plan with employer"s
ME00600-Cyber Threat Analyst (Multiple Positions)
ME00600-Cyber Threat Analyst (Multiple Positions)

Momentum Engineering, Inc. • Maryland

On-site
USD 80,000 - 130,000
11 paid holidays
Minimum of 3 weeks PTO
Company sponsored group medical plan
+2
Cyber Threat Analyst (TS/SCI with Polygraph)
Cyber Threat Analyst (TS/SCI with Polygraph)

Red Alpha • Maryland

On-site
USD 165,000 - 225,000
401k contributions up to 10%
5 weeks of leave and 11 paid holidays
100% health, dental, and vision insurance premiums
+3
Cybersecurity Engineer 3 with Security Clearance
Cybersecurity Engineer 3 with Security Clearance

Base-2 Solutions • Reston (VA)

On-site
USD 150,000 - 185,000
Health insurance
401(k) plan with company match
Paid time off
Defensive Cybersecurity Analyst
Defensive Cybersecurity Analyst

Leidos Inc • Illinois

On-site
USD 70,000 - 126,000
Health insurance