Cybersecurity Incident Response & Threat Detection Analyst

Nisga'a TEK, LLC

Columbus (OH)

On-site

USD 87,000 - 160,000

Full time

2 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

The Cybersecurity Incident Response & Threat Detection Analyst at Nisga'a Tek, LLC participates in 24x7 monitoring of SIEM and other cybersecurity tools to detect and respond to threats within the Enterprise Network Environment. Essential duties include monitoring logs, analyzing incidents, and coordinating containment and remediation while applying defense-in-depth principles and OSINT where needed.

Salary ranges from $87,000 to $160,000 annually with full benefits and applicable security

Qualifications

  • Five (5) years relevant experience.
  • Two (2) years performing root cause analysis of cybersecurity events and incidents.
  • Must possess IT-I Critical Sensitive security clearance or Tier 5 (T5) at time of proposal submission.
  • Must possess a DOD TOP SECRET Clearance and be eligible for an IT-1 and SCI access.

Responsibilities

  • Performs actions to protect, monitor, detect, analyze, and respond to unauthorized activity.
  • Employs Cybersecurity capabilities to respond to alerts or emerging threats.
  • Reviews logged events for trends indicative of attack or compromise.
  • Monitors logs and traffic for Advanced Persistent Threats (APT) and "low and slow" attacks.
  • Maintains awareness of threats using OSINT resources.
  • Provides technical analysis and sustainment support for Cybersecurity tools and applications.
  • Perform other duties as needed or required.

Skills

Firewall
IDS/IPS
Host-based antivirus
Data loss prevention
Vulnerability Management
Forensics
Malware Analysis
Device Hardening

Education

Bachelor's degree

Tools

Python
PowerShell
SPL

Job description

Overview

Please note that this position is contingent upon the successful award of a contract currently under bid.

Global in service but local in approach, Nisga'a Tek is committed to high-quality service to those who defend us. Nisga'a Tek ensures mission assurance and execution for customers and warfighters. Providing intelligence, IT, cyber security, training, logistics, administrative, acquisition, and background investigation services.

Summary

The Cybersecurity Incident Response & Threat Detection Analyst participates in 24x7x365 monitoring of SIEM and other cybersecurity monitoring tools to detect and respond to cybersecurity threats within the Enterprise Network Environment.

Responsibilities

Essential Job Functions:

  • Performs actions to protect, monitor, detect, analyze, and respond to unauthorized activity.
  • Employs Cybersecurity capabilities and deliberate actions to respond to specific alerts or emerging threats.
  • Reviews logged events for trends that are indicative of attack or compromise within the environment.
  • Actively monitors logs and traffic for Advanced Persistent Threats (APT) and "low and slow" attacks within the environment.
  • Maintains awareness of possible threats with the use of intelligence resources which include Open Source Intelligence (OSINT).
  • Provides technical analysis and sustainment support for the enterprise for Cybersecurity tools and applications and assists with the application of Defense-In-Depth signatures and perimeter defense controls to diminish network threats.
  • Perform other duties as needed or required.
Qualifications

Necessary Skills and Knowledge:

  • Working knowledge of at least two types of security tools: Firewall, IDS/IPS, Host based antivirus, Data loss prevention, Vulnerability Management, Forensics, Malware Analysis, Device Hardening
  • Ability to build scripts and tools to enhance threat detection and incident response capabilities (Preferably in SPL, Python, PowerShell)
  • Understanding of Defense-in-Depth
  • Analytical skills to resolve issues effectively and efficiently.
  • Demonstrated ability to work well with diverse teams and individuals.

Minimum Qualifications:

  • Five (5) years relevant experience
  • Two (2) years performing root cause analysis of cybersecurity events and incidents.
  • Must possess IT-I Critical Sensitive security clearance or Tier 5 (T5) at time of proposal submission.
  • Must possess a DOD TOP SECRET Clearance and be eligible for an IT-1 and be eligible for SCI access.

Preferred Qualifications:

  • Bachelor's degree in a related field.
Pay and Benefits

The annual salary range for this position is $87,000 to $160,000.

At Goldbelt, we value and reward our team's dedication and hard work. We provide a competitive base salary commensurate with your qualifications and experience. As an employee, you'll enjoy a comprehensive benefits package, including medical, dental, and vision insurance, a 401(k) plan with company matching, tax-deferred savings options, supplementary benefits, paid time off, and professional development opportunities.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity Incident Response & Threat Detection Analyst
Cybersecurity Incident Response & Threat Detection Analyst

Goldbelt, Inc. • Columbus (OH)

On-site
USD 87,000 - 160,000
Medical Insurance
Dental Insurance
Vision Insurance
+2
Defense Cyber Analyst
Defense Cyber Analyst

Goldbelt, Inc. • Honolulu (HI)

On-site
USD 115,000 - 130,000
Medical insurance
Dental insurance
Vision insurance
+3
SIEM Content Developer
SIEM Content Developer

Nisga'a TEK, LLC • Columbus (OH)

On-site
USD 99,000 - 175,000
Medical insurance
Dental insurance
Vision insurance
+3
Operational Technology Threat Intelligence Analyst
Operational Technology Threat Intelligence Analyst

Goldbelt, Inc. • Columbus (OH)

On-site
USD 96,000 - 150,000
Medical insurance
Dental insurance
Vision insurance
+3
SIEM Content Developer
SIEM Content Developer

Goldbelt, Inc. • Columbus (OH)

On-site
USD 99,000 - 175,000
Medical, Dental, Vision Insurance
401(k) with company matching
Paid time off
Cybersecurity Subject Matter Expert Lead
Cybersecurity Subject Matter Expert Lead

Nisga'a Tek, LLC • New Cumberland

On-site
USD 120,000 - 180,000
Medical insurance
401(k) plan
Cybersecurity Subject Matter Expert Lead
Cybersecurity Subject Matter Expert Lead

Goldbelt, Inc. • New Cumberland

On-site
USD 100,000 - 130,000
Medical insurance
Dental insurance
Vision insurance
+3
Cybersecurity Subject Matter Expert Lead
Cybersecurity Subject Matter Expert Lead

Goldbelt, Inc. • Ogden (UT)

On-site
USD 100,000 - 130,000
Medical insurance
Dental insurance
Vision insurance
+3
Cybersecurity Subject Matter Expert Lead
Cybersecurity Subject Matter Expert Lead

Goldbelt, Inc. • Battle Creek (MI)

On-site
USD 90,000 - 130,000
Medical insurance
Dental insurance
Vision insurance
+3
Cybersecurity Subject Matter Expert Lead
Cybersecurity Subject Matter Expert Lead

Goldbelt, Inc. • Dayton (OH)

On-site
USD 100,000 - 130,000
Medical, dental, and vision insurance
401(k) plan with company matching
Paid time off
+1