Cybersecurity Incident Response & Threat Detection Analyst

electro soft

Columbus (OH)

On-site

USD 130,000 - 140,000

Full time

2 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Electrosoft Services, LLC is seeking a Cybersecurity Incident Response & Threat Detection Analyst in Columbus, OH. The role focuses on 24x7 monitoring of SIEM tools to detect and respond to cybersecurity threats within the enterprise network.

You will review events, analyze data, and apply defense-in-depth strategies to mitigate risks. The candidate should have five years of relevant experience, knowledge of multiple security tools, and the ability to script with Python/PowerShell/SPL.

Qualifications

  • Five years of relevant cybersecurity experience.
  • Experience with root cause analysis of security events.
  • Knowledge of at least two security tools (Firewall, IDS/IPS, etc.).
  • Ability to build scripts (Python, PowerShell, SPL).
  • Must possess IT-I Critical Sensitive clearance or Tier 5; eligible for DoD Top Secret and SCI access.

Responsibilities

  • Monitor SIEM and other security tools 24x7 to detect threats.
  • Analyze logs for trends indicating attacks or compromises.
  • Develop scripts to enhance detection and incident response capabilities.
  • Maintain awareness of threats using OSINT and threat intelligence.

Skills

Threat detection
Incident response
Root cause analysis
Python scripting

Tools

SIEM
Firewall
IDS/IPS
Forensics
Vulnerability Mgmt

Job description

Electrosoft Services, LLC is an award-winning company that provides comprehensive technology-based solutions and services to federal customers. While cybersecurity is our specialty, we also focus on ICAM, Zero Trust, digital engineering and transformation, and enterprise AI and intelligent automation.We always seek to delight our customers, so we retain highly qualified employees and offer them meaningful work, growth opportunities, and work-life balance. What sets us apart from all other contractors is the sense of teamworkour employees feel – and the knowledge that outstanding effort is recognized and rewarded.The camaraderie we share emanates from Lunch & Learn sessions where we explore new ideas together, fun group activities ranging from escape rooms to miniature golf, and much, much more. If we’ve described you and your dream workplace, please apply and share in the many benefits and opportunities we offer.

Cybersecurity Incident Response & Threat Detection Analyst

Participates in 24x7x365 monitoring of SIEM and other cybersecurity monitoring tools to detect and respond to cybersecurity threats within the Enterprise Network Environment. Performs actions to protect, monitor, detect, analyze, and respond to unauthorized activity. Employs Cybersecurity capabilities and deliberate actions to respond to specific alerts or emerging threats. Reviews logged events for trends that are indicative of attack or compromise within the environment. Actively monitors logs and traffic for Advanced Persistent Threats (APT) and "low and slow" attacks within the environment. Maintains awareness of possible threats with the use of intelligence resources which include Open-Source Intelligence (OSINT). Provides technical analysis and sustainment support for the enterprise for Cybersecurity tools and applications and assists with the application of Defense-In-Depth signatures and perimeter defense controls to diminish network threats.

Minimum Requirements:

  • Five (5) years relevant experience
  • Two (2) years performing root cause analysis of cybersecurity events and incidents.
  • Working knowledge of at least two types of security tools: Firewall, IDS/IPS, Host based antivirus, Data loss prevention, Vulnerability Management, Forensics, Malware Analysis, Device Hardening
  • Understanding of Defense-in-Depth
  • Ability to build scripts and tools to enhance threat detection and incident response capabilities (Preferably in SPL, Python, PowerShell)
  • Must possess IT-I Critical Sensitive security clearance or Tier 5 (T5) at time of proposal submission.
  • Must possess a DOD TOP SECRET Clearance and be eligible for an IT-1 and be eligible for SCI access

The actual base salary offered will be determined based on a variety of factors, including, but not limited to, the candidate’s relevant years and depth of experience, skills and qualifications, education, certifications, internal equity, and the specific requirements of the position. Candidates should not assume they will be offered the top of the posted range, as compensation is based on the individual qualifications and overall fit for the role.

Salary Range

$130,000—$140,000 USD

Electrosoft is an Equal Opportunity Employer/Veterans/Disabled
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity Threat Hunter
Cybersecurity Threat Hunter

electro soft • Columbus (OH)

On-site
USD 150,000 - 160,000
Cybersecurity Incident Response & Threat Detection Analyst New Columbus, OH
Cybersecurity Incident Response & Threat Detection Analyst New Columbus, OH

Electrosoft • Columbus (OH)

Hybrid
USD 90,000 - 130,000
Operational Technology Threat Intelligence Analyst
Operational Technology Threat Intelligence Analyst

electro soft • Columbus (OH)

On-site
USD 145,000 - 165,000
SIEM Content Developer
SIEM Content Developer

Electrosoft • Columbus (OH)

On-site
USD 145,000 - 155,000
Cybersecurity Policy Analyst
Cybersecurity Policy Analyst

electro soft • Columbus (OH)

On-site
USD 140,000 - 150,000
Cybersecurity Engineer - Insider Threat
Cybersecurity Engineer - Insider Threat

electro soft • Richmond (OH)

On-site
USD 120,000 - 125,000
Cybersecurity Engineer - Insider Threat
Cybersecurity Engineer - Insider Threat

Electrosoft • North Carolina

On-site
USD 120,000 - 125,000
SIEM Content Developer
SIEM Content Developer

electro soft • Columbus (OH)

On-site
USD 145,000 - 155,000
Cybersecurity Engineer - Intrusion Detection / Prevention
Cybersecurity Engineer - Intrusion Detection / Prevention

Electrosoft • Columbus (OH)

On-site
USD 120,000 - 130,000
Equal Opportunity Employer
Cybersecurity Engineer - Intrusion Detection / Prevention
Cybersecurity Engineer - Intrusion Detection / Prevention

Electrosoft • Richmond (VA)

On-site
USD 150,000 - 160,000