Cybersecurity Defense Analyst II

Invictus International Consulting, LLC.

Alexandria (VA)

On-site

USD 95,000 - 140,000

Full time

5 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Invictus International Consulting, LLC is seeking a Cyber Defense Analyst II in Alexandria, VA to monitor, triage, and investigate security alerts within a DoD/IC environment. You will analyze telemetry from SIEM, endpoints, firewalls, and networks to determine impact and escalate where needed.

The role requires 4+ years of relevant experience, a BS in a technical field, and a current TS/SCI clearance with CI polygraph eligibility. Strong communication with government stakeholders is essential.

Qualifications

  • Bachelor's degree in a technical discipline; four years may substitute for degree
  • Minimum four years of relevant experience beyond education
  • Working knowledge of TCP/IP, DNS, HTTP/S, authentication, enterprise networking
  • Hands-on experience using SIEM and security technologies (network, endpoint, firewall, IDS/IPS)
  • Ability to investigate security activity and communicate evidence-based conclusions
  • Current DoD 8570 IAT II or IAM II certification
  • Experience in a DoD or IC environment
  • Active TS/SCI clearance with CI polygraph eligibility

Responsibilities

  • Independently monitor, triage, and investigate routine and moderately complex security alerts and suspected incidents
  • Perform cyber defense monitoring and analysis using telemetry from SIEM, networks, security sensors, firewalls, and endpoints
  • Analyze logs and network activity to identify anomalous or malicious behavior and document findings
  • Support incident handling across detection, investigation, analysis, containment, remediation, and reporting
  • Correlate incident data across sources to identify affected systems, vulnerabilities, and adversary activity
  • Collect and preserve relevant intrusion artifacts and evidence
  • Communicate incident status, findings, risk, and actions to SOC, technical teams, and government stakeholders
  • Develop hypotheses by correlating network, host, identity, firewall, vulnerability, and threat data

Skills

TCP/IP
DNS
HTTP/S
Authentication
Enterprise networking
Windows security events
Linux security events
Adversary techniques

Education

Bachelor's degree in technical discipline

Tools

SIEM
IDS/IPS
Firewall
Endpoint security tools
Network analysis tools

Job description

Title: Cyber Defense Analyst II

Location: Alexandria, VA

Clearance: TS/SCI with the ability to obtain and maintain a CI polygraph

Job Details:
  • Independently monitor, triage, and investigate routine and moderately complex security alerts and suspected incidents.
  • Perform cyber defense monitoring and analysis using security information from enterprise systems, networks, security sensors, firewalls, intrusion detection/prevention technologies, endpoint sources, and other available telemetry.
  • Analyze log files and network activity to identify anomalous or malicious behavior, determine potential security impact, and document investigative findings in the authorized case or ticketing system
  • Perform cyber defense incident triage, including validation, enrichment, determination of scope, urgency, potential impact, and appropriate escalation
  • Support incident handling across detection, investigation, analysis, containment/remediation coordination, recovery, and reporting in accordance with established authorities and procedures
  • Correlate incident and security data across multiple sources to identify affected systems, users, vulnerabilities, adversary activity, and related events
  • Collect and preserve relevant intrusion artifacts and investigative evidence in accordance with established procedures
  • Communicate incident status, findings, risk, and recommended actions to SOC personnel, technical teams, management, and government stakeholders as appropriate
  • Develop and test investigative hypotheses by correlating network, host, identity, firewall, vulnerability, and threat data
  • Identify related activity beyond the initially alerted system and appropriately expand investigative scope
  • Execute established incident response and escalation procedures and coordinate with technical teams when containment or remediation action is required
  • Identify recurring alert-quality, telemetry, or process issues and recommend improvements to senior analysts
Requirements:
  • Bachelor's degree from an accredited institute in a technical discipline applicable to the position; an additional 4 years of may be substituted in lieu of a degree
  • Minimum four (4) years of relevant experience in addition to education level
  • Working knowledge of TCP/IP, DNS, HTTP/S, authentication, enterprise networking, Windows/Linux security events, and common adversary techniques
  • Hands-on experience using SIEM and one or more network, endpoint, firewall, IDS/IPS, or security-analysis technologies
  • Ability to independently investigate security activity, distinguish facts from assumptions, and communicate evidence-based conclusions
  • Must possess current DoD 8570 IAT II or IAM II certification
  • Experience working in a DoD or IC environment
  • Current active TS/SCI clearance, with the ability to obtain and maintain a CI polygraph

Equal Opportunity Employer/Veteran/Disabled

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Defense Analyst
Cybersecurity Defense Analyst

Invictus International Consulting, LLC. • Alexandria (VA)

On-site
USD 80,000 - 105,000
Senior Cybersecurity Defense Analyst III
Senior Cybersecurity Defense Analyst III

Invictus International Consulting, LLC. • Alexandria (VA)

On-site
USD 130,000 - 170,000
Cybersecurity Threat Analyst
Cybersecurity Threat Analyst

Invictus International Consulting, LLC. • Alexandria (VA)

On-site
USD 75,000 - 105,000
Cybersecurity Defense Analyst
Cybersecurity Defense Analyst

Invictus International Consulting, LLC. • Colorado Springs (CO)

On-site
USD 90,000 - 120,000
Senior Cybersecurity Defense Analyst III
Senior Cybersecurity Defense Analyst III

Invictus International Consulting, LLC. • Colorado Springs (CO)

On-site
USD 140,000 - 180,000
Cyber Defense Analyst II — TS/SCI with CI Poly
Cyber Defense Analyst II — TS/SCI with CI Poly

Invictus International Consulting, LLC. • Alexandria (VA)

On-site
USD 95,000 - 140,000
Cybersecurity Risk & Exposure Analyst III
Cybersecurity Risk & Exposure Analyst III

Invictus International Consulting, LLC. • Alexandria (VA)

On-site
USD 150,000 - 190,000
Cybersecurity Threat Analyst Subject Matter Expert IV
Cybersecurity Threat Analyst Subject Matter Expert IV

Invictus International Consulting, LLC. • Alexandria (VA)

On-site
USD 140,000 - 190,000
Network Based Systems Analyst II
Network Based Systems Analyst II

Solutions³ LLC • Arlington (VA)

On-site
USD 95,000 - 130,000
Security Operations Analyst – Senior
Security Operations Analyst – Senior

C3EL • Washington

On-site
USD 95,000 - 125,000