Cybersecurity Incident Response & Threat Detection Analyst

Goldbelt, Inc.

Columbus (OH)

On-site

USD 87,000 - 160,000

Full time

2 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Medical Insurance
Dental Insurance
Vision Insurance
401(k) with company match
Paid time off

Job summary

Goldbelt, Inc. is seeking a Cybersecurity Incident Response & Threat Detection Analyst to monitor SIEM and related security tools 24x7 to detect and respond to threats within the Enterprise Network Environment.

The role includes analyzing logs, identifying APTs and slow-moving attacks, leveraging OSINT, and supporting defenses with defense-in-depth measures. Five years of experience and DoD TS/SCI eligibility are required, with TS/SCI preferred for proposal submission.

Qualifications

  • Five (5) years relevant experience.
  • Two (2) years performing root cause analysis of cybersecurity events and incidents.
  • Must possess IT-I Critical Sensitive security clearance or Tier 5 (T5) at time of proposal submission.
  • Must possess a DoD Top Secret Clearance and be eligible for an IT-1 and SCI access eligibility.

Responsibilities

  • Performs actions to protect, monitor, detect, analyze, and respond to unauthorized activity.
  • Employs Cybersecurity capabilities and deliberate actions to respond to alerts or emerging threats.
  • Reviews logged events for trends indicative of attack or compromise.

Skills

Security tools
Scripting (Python/PowerShell)
Defense-in-Depth
Analytical skills
Team collaboration

Education

Bachelor's degree

Tools

Firewall
IDS/IPS
HIDS
Vulnerability Mgmt

Job description

Overview

Please note that this position is contingent upon the successful award of a contract currently under bid.


Global in service but local in approach, Nisga'a Tek is committed to high-quality service to those who defend us. Nisga'a Tek ensures mission assurance and execution for customers and warfighters. Providing intelligence, IT, cyber security, training, logistics, administrative, acquisition, and background investigation services.


Summary

The Cybersecurity Incident Response & Threat Detection Analyst participates in 24x7x365 monitoring of SIEM and other cybersecurity monitoring tools to detect and respond to cybersecurity threats within the Enterprise Network Environment.


Responsibilities


  • Performs actions to protect, monitor, detect, analyze, and respond to unauthorized activity.

  • Employs Cybersecurity capabilities and deliberate actions to respond to specific alerts or emerging threats.

  • Reviews logged events for trends that are indicative of attack or compromise within the environment.

  • Actively monitors logs and traffic for Advanced Persistent Threats (APT) and \"low and slow\" attacks within the environment.

  • Maintains awareness of possible threats with the use of intelligence resources which include Open Source Intelligence (OSINT).

  • Provides technical analysis and sustainment support for the enterprise for Cybersecurity tools and applications and assists with the application of Defense-In-Depth signatures and perimeter defense controls to diminish network threats.

  • Perform other duties as needed or required.


Qualifications

Necessary Skills and Knowledge


  • Working knowledge of at least two types of security tools: Firewall, IDS/IPS, Host based antivirus, Data loss prevention, Vulnerability Management, Forensics, Malware Analysis, Device Hardening

  • Ability to build scripts and tools to enhance threat detection and incident response capabilities (Preferably in SPL, Python, PowerShell)

  • Understanding of Defense-in-Depth

  • Analytical skills to resolve issues effectively and efficiently.

  • Demonstrated ability to work well with diverse teams and individuals.


Minimum Qualifications


  • Five (5) years relevant experience

  • Two (2) years performing root cause analysis of cybersecurity events and incidents.

  • Must possess IT-I Critical Sensitive security clearance or Tier 5 (T5) at time of proposal submission.

  • Must possess a DOD TOP SECRET Clearance and be eligible for an IT-1 and be eligible for SCI access.


Preferred Qualifications


  • Bachelor’s degree in a related field.


Pay and Benefits

The annual salary range for this position is $87,000 to $160,000.


At Goldbelt, we value and reward our team's dedication and hard work. We provide a competitive base salary commensurate with your qualifications and experience. As an employee, you'll enjoy a comprehensive benefits package, including medical, dental, and vision insurance, a 401(k) plan with company matching, tax-deferred savings options, supplementary benefits, paid time off, and professional development opportunities.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity Incident Response & Threat Detection Analyst
Cybersecurity Incident Response & Threat Detection Analyst

Nisga'a TEK, LLC • Columbus (OH)

On-site
USD 87,000 - 160,000
Operational Technology Threat Intelligence Analyst
Operational Technology Threat Intelligence Analyst

Goldbelt, Inc. • Columbus (OH)

On-site
USD 96,000 - 150,000
Medical insurance
Dental insurance
Vision insurance
+3
SIEM Content Developer
SIEM Content Developer

Nisga'a TEK, LLC • Columbus (OH)

On-site
USD 99,000 - 175,000
Medical insurance
Dental insurance
Vision insurance
+3
SIEM Content Developer
SIEM Content Developer

Goldbelt, Inc. • Columbus (OH)

On-site
USD 99,000 - 175,000
Medical, Dental, Vision Insurance
401(k) with company matching
Paid time off
Defense Cyber Analyst
Defense Cyber Analyst

Goldbelt, Inc. • Honolulu (HI)

On-site
USD 115,000 - 130,000
Medical insurance
Dental insurance
Vision insurance
+3
Principal Cybersecurity Engineer
Principal Cybersecurity Engineer

Goldbelt, Inc. • Honolulu (HI)

On-site
USD 100,000 - 135,000
Medical, dental, and vision insurance
401(k) plan with company matching
Paid time off
+1
Cybersecurity Subject Matter Expert Lead
Cybersecurity Subject Matter Expert Lead

Nisga'a Tek, LLC • New Cumberland

On-site
USD 120,000 - 180,000
Medical insurance
401(k) plan
Cybersecurity Subject Matter Expert Lead
Cybersecurity Subject Matter Expert Lead

Goldbelt, Inc. • New Cumberland

On-site
USD 100,000 - 130,000
Medical insurance
Dental insurance
Vision insurance
+3
Cybersecurity Subject Matter Expert Lead
Cybersecurity Subject Matter Expert Lead

Goldbelt, Inc. • Dayton (OH)

On-site
USD 100,000 - 130,000
Medical, dental, and vision insurance
401(k) plan with company matching
Paid time off
+1
Cybersecurity Subject Matter Expert Lead
Cybersecurity Subject Matter Expert Lead

Goldbelt, Inc. • Battle Creek (MI)

On-site
USD 90,000 - 130,000
Medical insurance
Dental insurance
Vision insurance
+3