Cybersecurity Defense Analyst

Invictus International

Colorado Springs (CO)

On-site

USD 90,000 - 130,000

Full time

3 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Invictus International is seeking a Cyber Defense Analyst to monitor and triage security events in a DoD/IC environment. You will analyze logs, perform incident triage, and document investigations in the ticketing system.

The role requires an active TS/SCI clearance with CI polygraph, a technical degree, and at least two years of relevant experience. Collaboration in a fast-paced SOC with established runbooks is essential.

Qualifications

  • Bachelor's degree or equivalent with substitution possible
  • Minimum two years of relevant experience beyond degree
  • Foundational knowledge of TCP/IP, DNS, HTTP/S, authentication, OS and common enterprise security concepts
  • Experience with SIEM, security monitoring, network analysis, endpoint security or similar tools
  • Ability to follow procedures, document findings clearly, and communicate in high-tempo environments
  • Must possess TS/SCI clearance with CI polygraph
  • Experience in a DoD or IC environment is desirable

Responsibilities

  • Perform continuous monitoring and initial alert triage under SOC procedures
  • Analyze logs and network activity to identify anomalies and document findings
  • Conduct cyber defense incident triage including scope, urgency, impact, and escalation
  • Enrich alerts with asset and threat information before escalation
  • Document actions, evidence, and escalation rationale; manage shift turnover
  • Escalate activities that exceed procedures or indicate higher risk
  • Participate in training, exercises, and qualification activities to build proficiency across SOC tools

Skills

TCP/IP knowledge
SIEM experience
Network analysis
Documentation skills

Education

Bachelor's degree in a technical discipline
DoD 8570 IAT II or IAM II certification

Tools

SIEM
EDR / endpoint security
Ticketing systems

Job description

Clearance: TS/SCI with the ability to obtain and maintain a CI polygraph

  • Perform continuous monitoring and initial alert triage under established SOC procedures and analyst runbooks
  • Perform cyber defense monitoring and analysis using security information from enterprise systems, networks, security sensors, firewalls, intrusion detection/prevention technologies, endpoint sources, and other available telemetry
  • Analyze log files and network activity to identify anomalous or malicious behavior, determine potential security impact, and document investigative findings in the authorized case or ticketing system
  • Perform cyber defense incident triage, including validation, enrichment, determination of scope, urgency, potential impact, and appropriate escalation
  • Conduct basic enrichment of alerts using available asset, user, network, vulnerability, and threat information before escalation
  • Accurately document actions, evidence, findings, and escalation rationale; maintain awareness of open cases and shift-turnover requirements
  • Escalate activity that exceeds established procedures or indicates increased risk, broader scope, or potential incident impact
  • Participate in training, exercises, and qualification activities to build proficiency across SOC tools and investigative methods

Requirements:

  • Bachelor's degree from an accredited institute in a technical discipline applicable to the position; an additional 4 years of may be substituted in lieu of a degree
  • Minimum two (2) years of relevant experience in addition to education level
  • Foundational knowledge of TCP/IP, DNS, HTTP/S, authentication, operating systems, and common enterprise security concepts
  • Experience with SIEM, security monitoring, network analysis, endpoint security, or comparable cyber defense tools is desired
  • Ability to follow technical procedures, document findings clearly, and communicate effectively in a high-tempo operational environment
  • Must possess current DoD 8570 IAT II or IAM II certification
  • Experience working in a DoD or IC environment desired
  • Current active TS/SCI clearance, with the ability to obtain and maintain a CI polygraph

Equal Opportunity Employer/Veteran/Disabled

Helping all candidates find great careers is our goal. The information you provide here is secure and confidential.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Defense Analyst
Cybersecurity Defense Analyst

Invictus International • Alexandria (VA)

On-site
USD 110,000 - 140,000
Cybersecurity Defense Analyst II
Cybersecurity Defense Analyst II

Invictus International • Alexandria (VA)

On-site
USD 90,000 - 140,000
Cybersecurity Defense Analyst II
Cybersecurity Defense Analyst II

Invictus International • Colorado Springs (CO)

On-site
USD 120,000 - 160,000
Cybersecurity Threat Analyst
Cybersecurity Threat Analyst

Invictus International • Alexandria (VA)

On-site
USD 110,000 - 170,000
Cybersecurity Threat Analyst
Cybersecurity Threat Analyst

Invictus International • Colorado Springs (CO)

On-site
USD 90,000 - 140,000
Senior Cybersecurity Defense Analyst III
Senior Cybersecurity Defense Analyst III

Invictus International Consulting, LLC. • Alexandria (VA)

On-site
USD 130,000 - 170,000
Senior Cybersecurity Defense Analyst III
Senior Cybersecurity Defense Analyst III

Invictus International Consulting, LLC. • Colorado Springs (CO)

On-site
USD 140,000 - 180,000
Cybersecurity Risk & Exposure Analyst
Cybersecurity Risk & Exposure Analyst

Invictus International • Colorado Springs (CO)

On-site
USD 90,000 - 130,000
Cybersecurity Risk & Exposure Analyst
Cybersecurity Risk & Exposure Analyst

Invictus International • Alexandria (VA)

On-site
USD 90,000 - 120,000
Senior Cybersecurity Defense Analyst III
Senior Cybersecurity Defense Analyst III

Invictus International • Alexandria (VA)

On-site
USD 130,000 - 190,000