Cybersecurity Incident Response & Threat Detection Analyst

Agecareers

Columbus (OH)

On-site

USD 110,000 - 130,000

Full time

11 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

26 Days Paid Leave
Performance Bonuses
401(k) with Match
Health Benefits
Parental Leave
Military Differential Pay
Professional Growth
Shared Success

Job summary

AGE Solutions seeks an experienced Cybersecurity Incident Response & Threat Detection Analyst to monitor, detect, analyze, and respond to cyber threats in the Enterprise Network Environment, including 24x7x365 SIEM monitoring and OSINT-enabled investigations.

The role requires DoD TS with SCI eligibility, IAT-II and CSSP Incident Responder certifications, plus five years of experience; and the ability to script in SPL, Python, or PowerShell to enhance defenses.

Qualifications

  • Five (5) years of relevant experience.
  • Must possess a current DoD Top Secret Clearance with IT-I, T5 for SCI access.
  • At least one IAT-II certification from the listed options.
  • At least one CSSP Incident Responder certification from the listed options.
  • Experience with security tools (firewall, IDS/IPS, antivirus, DLP, etc.) and defense-in-depth concepts.
  • Ability to build scripts/tools to enhance threat detection and incident response (SPL, Python, PowerShell).

Responsibilities

  • Monitor 24x7x365 cybersecurity operations and SIEM to detect threats.
  • Investigate events indicating attack or compromise and respond.
  • Monitor for APTs and low-and-slow attacks.
  • Provide technical analysis and sustainment for cybersecurity tools.
  • Develop scripts/tools to improve detection and response capabilities.

Skills

SIEM monitoring
OSINT use
Scripting (Python/SPL/PowerShell)
Defense-in-Depth
Threat detection & incident response

Tools

Firewall
IDS/IPS
Host-based Antivirus
DLP
Vulnerability Management
Forensics
Malware Analysis
Device Hardening

Job description

About Us

AGE Solutions is a premier technology and professional services company, providing in-depth consulting, advanced technology solutions, and essential services throughout the U.S. government, defense, and intelligence sectors. Prioritizing innovation and client-focused solutions, we assist major agencies in addressing intricate issues and ensuring a more secure future.

AGE Solutions is seeking an experienced Cybersecurity Incident Response & Threat Detection Analyst to support continuous monitoring, detection, analysis, and response to cybersecurity threats within the Enterprise Network Environment.

This position participates in 24x7x365 monitoring of SIEM and other cybersecurity monitoring tools, investigates events and activity indicative of attack or compromise, and actively monitors for Advanced Persistent Threats (APTs) and “low and slow” attacks.

The analyst leverages intelligence resources, including Open Source Intelligence (OSINT), provides technical analysis and sustainment support for cybersecurity tools and applications, and assists with Defense-in-Depth signatures and perimeter defense controls.

Responsibilities Include:

  • Participate in 24x7x365 monitoring of SIEM and other cybersecurity monitoring tools to detect and respond to cybersecurity threats within the Enterprise Network Environment.
  • Perform actions to protect, monitor, detect, analyze, and respond to unauthorized activity.
  • Employ cybersecurity capabilities and deliberate actions to respond to specific alerts and emerging threats.
  • Review logged events and identify trends indicative of attack or compromise within the environment.
  • Actively monitor logs and network traffic for Advanced Persistent Threats (APTs) and “low and slow” attacks.
  • Maintain awareness of potential threats through intelligence resources, including Open Source Intelligence (OSINT).
  • Perform root cause analysis of cybersecurity events and incidents.
  • Provide technical analysis and sustainment support for enterprise cybersecurity tools and applications.
  • Assist with the application of Defense-in-Depth signatures and perimeter defense controls to diminish network threats.
  • Utilize security tools in support of cybersecurity monitoring, detection, analysis, and incident response activities.
  • Develop scripts and tools to enhance threat detection and incident response capabilities using SPL, Python, or PowerShell.
  • Independently evaluate incident severity, business impact, and alternative containment and remediation approaches; recommend response priorities to customer cybersecurity leadership.
  • Use root cause findings to recommend changes to customer incident-response practices and security controls, evaluating security benefits and operational tradeoffs.

Required Skills, Qualifications, and Experience:

  • Experience:
    • Five (5) years of relevant experience.
    • Two (2) years of experience performing root cause analysis of cybersecurity events and incidents.
  • Clearance:
    • Must possess a current DoD Top Secret Clearance with IT-I, T5 investigation with eligibility for Sensitive Compartmented Information (SCI) access.
  • Certifications:
    • Must have at least ONE IAT-II Certification from one of the following:
      • Cisco Certified Network Associate Security (CCNA Security)
      • CompTIA Cybersecurity Analyst (CySA+)
      • Global Industrial Cyber Security Professional (GICSP)
      • GIAC Security Essentials (GSEC)
      • CompTIA Security+ Continuing Education (Security+ CE)
      • Systems Security Certified Practitioner (SSCP)
    • Must have at least one of the following CSSP Incident Responder certifications:
      • Certified Ethical Hacker (CEH)
      • CyberSec First Responder (CFR)
      • CompTIA Cybersecurity Analyst (CySA+)
      • GIAC Certified Forensic Analyst (GCFA)
      • GIAC Certified Incident Handler (GCIH)
      • Cisco Cybersecurity Specialist (SCYBER)
  • Skills and Qualifications:
    • Working knowledge of at least two types of security tools: Firewall, IDS/IPS, Host-Based Antivirus, Data Loss Prevention, Vulnerability Management, Forensics, Malware Analysis, or Device Hardening.
    • Understanding of Defense-in-Depth.
    • Ability to build scripts and tools to enhance threat detection and incident response capabilities, preferably using SPL, Python, or PowerShell.
  • Location:
    • This role is full-time onsite at our customer’s location in Columbus, OH.

Work Environment and Physical Demand:

  • Work is primarily performed in a professional office or technical environment.
  • Requires participation in 24x7x365 cybersecurity monitoring operations.
  • Requires prolonged periods of sitting and working at a computer workstation.
  • Requires frequent use of computers, keyboards, monitors, and standard office equipment.
  • Requires the ability to maintain concentration and attention to detail while continuously reviewing cybersecurity logs, network traffic, events, and alerts.
  • Requires the ability to communicate effectively with team members and stakeholders.
  • May require occasional standing, walking, bending, and reaching during the normal course of work.

The projected salary range for this position is $110,000+ annually. Final compensation will be determined based on factors including years of relevant experience, active security clearance level, certifications, technical skillset, contract requirements, and overall qualifications.

At AGE Solutions, we reward performance, invest in growth, and share success. Our benefits support the whole person, professionally, financially, and personally.

  • 26 Days Paid Leave: Includes vacation, sick, personal time, and holidays. You choose how to use it.
  • Performance Bonuses: Performance bonuses are awarded based on individual contributions and company-wide results, aligning recognition with impact.
  • 401(k) with Match: We match 3% of your contributions with immediate vesting.
  • Financial Protection: Company-paid life insurance up to $300K and options for additional coverage for you and your dependents.
  • Health Benefits: Multiple medical plans, dental, vision, FSA and HSA options to fit your needs.
  • Parental Leave: 15 days of fully paid leave for new parents, because family matters.
  • Military Differential Pay: We bridge the gap for employees on active duty, so they don’t take a financial hit while serving.
  • Professional Growth: Paid training and certifications, tuition reimbursement, and the tools and tech to get the job done right.
  • Shared Success: In the event of a company sale, our CEO has committed to returning 80% of net proceeds to employees. This ensures our team shares in the long term value they help create.

At AGE, you’ll do work that matters, supported by a company that delivers for its people.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity Threat Hunter
Cybersecurity Threat Hunter

Agecareers • Columbus (OH)

On-site
USD 99,000 - 121,000
26 Days Paid Leave
Performance Bonuses
401(k) with Match
+5
Cybersecurity Incident Response & Threat Detection Analyst
Cybersecurity Incident Response & Threat Detection Analyst

AGE Solutions • Columbus (OH)

On-site
USD 110,000 - 140,000
26 Days Paid Leave
Performance Bonuses
401(k) with Match
+5
Cybersecurity Incident Response & Threat Detection Analyst
Cybersecurity Incident Response & Threat Detection Analyst

Age-Solutions • Columbus (OH)

On-site
USD 99,000 - 121,000
26 Days Paid Leave
Performance Bonuses
401(k) with Match
+6
Operational Technology Threat Intelligence Analyst
Operational Technology Threat Intelligence Analyst

Agecareers • Columbus (OH)

On-site
USD 104,000 - 127,000
26 Days Paid Leave
Performance Bonuses
401(k) with Match
+2
Cybersecurity Policy Analyst
Cybersecurity Policy Analyst

Age Solutions • Columbus (OH)

On-site
USD 81,000 - 99,000
Paid leave 26 days
Bonuses
401(k) with match
+5
SIEM Content Developer
SIEM Content Developer

Agecareers • Columbus (OH)

On-site
USD 115,000 - 135,000
26 Days Paid Leave
Performance Bonuses
401(k) with Match
+4
Security Control Assessor Representative (SCA-R)
Security Control Assessor Representative (SCA-R)

Age Solutions • Arlington (VA)

Hybrid
USD 100,000 - 130,000
26 Days Paid Leave
Performance Bonuses
401(k) with Match
+6
Cybersecurity Threat Hunter
Cybersecurity Threat Hunter

AGE Solutions • Columbus (OH)

On-site
USD 99,000 - 121,000
26 Days Paid Leave
Performance Bonuses
401(k) with Match
+1
Cybersecurity Threat Hunter
Cybersecurity Threat Hunter

Age-Solutions • Columbus (OH)

On-site
USD 99,000 - 121,000
26 Days Paid Leave
Performance Bonuses
401(k) with Match
+2
Information System Security Engineer (ISSE)
Information System Security Engineer (ISSE)

Agecareers • Trenton (MD)

On-site
USD 117,000 - 143,000
26 Days Paid Leave
Performance Bonuses
401(k) with Match
+5