Cybersecurity Incident Response & Threat Detection Analyst

DirectViz Solutions, LLC

Columbus (OH)

On-site

USD 110,000 - 150,000

Full time

3 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

DirectViz Solutions is seeking an experienced Cybersecurity Incident Response & Threat Detection Analyst to support a 24x7 operations environment in Columbus, OH. The role monitors SIEM, investigates alerts, and responds to threats across a large enterprise network.

The candidate should have 5+ years in cybersecurity, RCA experience, and TS clearance with IT-1/SCI eligibility, plus scripting skills in SPL, Python, or PowerShell.

Qualifications

  • Five (5) years relevant experience in cybersecurity settings.
  • Two (2) years performing root cause analysis of cybersecurity events and incidents.
  • Working knowledge of at least two security tools (Firewall, IDS/IPS, etc.).
  • Understanding of Defense-in-Depth security concepts.
  • Ability to build scripts/tools to enhance threat detection (SPL, Python, PowerShell).
  • Must possess DOD Top Secret Clearance and be eligible for IT-1 and SCI access.

Responsibilities

  • Monitor SIEM, network traffic, security logs for suspicious activity.
  • Analyze alerts to identify potential attacks and compromises.
  • Investigate incidents and perform root cause analysis.
  • Monitor for APTs and advanced attack techniques.
  • Use threat intelligence and OSINT to identify threats.
  • Support incident response and defensive actions.
  • Develop scripts and automation to improve detection and response.

Tools

Firewall
IDS/IPS
Host-based antivirus
Data loss prevention
Vulnerability Management
Forensics
Malware Analysis
Device Hardening

Job description

DirectViz Solutions (DVS) is a dynamic and rapidly growing government contractor committed to delivering innovative IT solutions that address the mission-critical needs of our government clients. Through the expertise and dedication of our talented team, we provide cutting-edge technology services designed to achieve success and exceed expectations.

At DVS, we prioritize our employees as our greatest asset. We offer competitive compensation, comprehensive medical benefits, a 401(k) match, generous PTO accrual, professional development reimbursement, corporate-funded technology certifications, and robust employee recognition and appreciation programs.

Title:

Cybersecurity Incident Response & Threat Detection Analyst

Location:

Columbus, OH

Clearance:

Top Secret

Position Summary

We are seeking an experienced Cybersecurity Incident Response & Threat Detection Analyst to support a 24x7x365 cybersecurity operations environment. This position is responsible for monitoring, detecting, analyzing, and responding to cybersecurity threats and suspicious activity across a large enterprise network.

The analyst will monitor SIEM and other cybersecurity tools, investigate security alerts and logged events, identify indicators of attack or compromise, and support incident response activities. The role requires experience identifying sophisticated threats, including Advanced Persistent Threats (APT) and "low and slow" attacks.

Key Responsibilities
  • Monitor SIEM, network traffic, security logs, and cybersecurity monitoring tools for suspicious or unauthorized activity.
  • Analyze security alerts and events to identify potential attacks, compromises, and emerging threats.
  • Investigate cybersecurity incidents and perform root cause analysis.
  • Monitor for Advanced Persistent Threats (APT) and other sophisticated attack techniques.
  • Use threat intelligence and Open Source Intelligence (OSINT) to identify and investigate potential threats.
  • Support incident response activities and implementation of appropriate defensive actions.
  • Analyze trends across security events to identify patterns indicative of malicious activity.
  • Provide technical support for enterprise cybersecurity tools and applications.
  • Support Defense-in-Depth security controls, signatures, and perimeter defenses.
  • Develop scripts, tools, and automation to improve threat detection and incident response capabilities.
Minimum Requirements
  • Five (5) years relevant experience
  • Two (2) years performing root cause analysis of cybersecurity events and incidents.
  • Working knowledge of at least two types of security tools: Firewall, IDS/IPS, Host based antivirus, Data loss prevention, Vulnerability Management, Forensics, Malware Analysis, Device Hardening
  • Understanding of Defense-in-Depth
  • Ability to build scripts and tools to enhance threat detection and incident response capabilities (Preferably in SPL, Python, PowerShell)
  • Must possess a DOD TOP SECRET Clearance and be eligible for an IT-1 and be eligible for SCI access.
Physical and Mental Qualifications:
  • Maintain focus and awareness throughout scheduled working hours.
  • Perform tasks requiring prolonged periods of sitting or standing at a desk, utilizing a computer, mouse, and keyboard.
  • Lift and move objects weighing up to 15 pounds as needed.
  • Exhibit excellent verbal and written communication skills, with a strong command of the English language.
  • Demonstrate the ability to work independently while also collaborating effectively as part of a team.
  • Quickly learn and retain routine tasks and processes.
  • Possess strong organizational skills, attention to detail, business correspondence proficiency, and self-management capabilities.
  • Perform the essential functions of the role satisfactorily; reasonable accommodation will be provided for employees with disabilities upon request.
  • Accept and adapt to additional responsibilities or changes to assigned duties as determined by DirectViz Solutions (DVS).

DirectViz Solutions, LLC (DVS) is an equal opportunity employer who prohibits discrimination and harassment against any employee or applicant for employment based on race, , sex (including pregnancy), age, gender identity, creed, religion, national origin, sexual orientation, marital status, genetic information, disability, political affiliation, protected veteran status, or any other status protected by federal, state or local law.

DVS has a zero-tolerance policy for harassment, threats, coercion, discrimination, and intimidation. Employees may file a complaint or exercise any right protected by Executive Order 11246, Section 503 of the Rehabilitation Act of 1973, as amended, Section 4212 of the Vietnam Era Veterans Readjustment Assistance Act of 1974, or the Veterans Employment Opportunities Act of 1998.

Get your free, confidential resume review.

or drag and drop your file here.