Evening Tier 2 CIRT Analyst: Incident Response & Forensics

Peraton

Beltsville (MD)

On-site

USD 80,000 - 128,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Peraton is seeking an experienced Tier 2 Cyber Incident Response Team (CIRT) Analyst to join the Department of State (DOS) Diplomatic Security Cyber Mission program in Beltsville, Maryland. The role operates on an evening shift (1400–2200 EST, Tue–Sat) and focuses on detecting, analyzing, and responding to cyber threats in a 24/7 environment.

You will work with SIEM/EDR tools, perform malware analysis, coordinate with CISA, and collaborate with CIRTs worldwide to mitigate incidents. U.S.

Qualifications

  • Bachelor’s degree with 2+ years of experience or a high school diploma with 6+ years of experience.
  • Must have one of the listed certifications before start date (A+ CE, CCNA-Security, CND, Network+ CE, SSCP, Security+).
  • Experience in the Incident Response lifecycle.
  • Knowledge of SOAR ticketing and automated response systems (e.g., ServiceNow, Splunk SOAR, Microsoft Sentinel).
  • Experience with SIEM platforms (e.g., Splunk, Microsoft Sentinel, Elastic, Q-Radar).
  • Experience with Endpoint Detection and Response systems (e.g., MDE, ElasticXDR, CarbonBlack, Crowdstrike).
  • Knowledge of cloud security monitoring and incident response.
  • Knowledge of integrating IOCs and Advanced Persistent Threat actors.
  • Ability to analyze cyber threat intelligence reporting and adversary methodologies and techniques.
  • Knowledge of malware analysis techniques.
  • Knowledge of MITRE ATT&CK and D3FEND frameworks.
  • U.S. Citizenship required.
  • Active Interim Secret clearance to start.

Responsibilities

  • Detect, classify, process, track, and report cyber security events and incidents.
  • Analyze logs from multiple sources to identify, contain, and remediate suspicious activity.
  • Characterize and analyze network traffic to identify anomalous activity and threats.
  • Protect against and prevent cyber security threats and vulnerabilities.
  • Perform forensic analysis of hosts, network traffic, and emails.
  • Analyze malicious scripts and code to mitigate threats.
  • Conduct malware analysis to generate IOCs for threat mitigation.
  • Collaborate with DOS and other teams to respond to events and incidents.
  • Monitor and respond to SOAR platform, hotline, and email inboxes.
  • Create tickets and initiate workflows per SOPs.
  • Coordinate incident information with CISA.
  • Collaborate with local, national, international CIRTs as directed.
  • Submit alert tuning requests.

Skills

Incident Response
SOAR
SIEM
EDR
Threat Intelligence
Malware Analysis
Cloud Security
Python
PowerShell
BASH

Education

Bachelor's degree
High School diploma + 6 years experience

Tools

Splunk
ServiceNow SOAR
Microsoft Defender for Endpoint
Microsoft Sentinel
Elastic
QRadar
MDE
ElasticXDR
CarbonBlack
CrowdStrike
Autopsy
MagnetForensics
KAPE
CyLR
Volatility

Job description

Peraton is seeking an experienced Tier 2 Cyber Incident Response Team (CIRT) Analyst to join the Department of State (DOS) Diplomatic Security Cyber Mission program in Beltsville, Maryland. The role operates on an evening shift (1400–2200 EST, Tue–Sat) and focuses on detecting, analyzing, and responding to cyber threats in a 24/7 environment.

You will work with SIEM/EDR tools, perform malware analysis, coordinate with CISA, and collaborate with CIRTs worldwide to mitigate incidents. U.S.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Onsite CIRT Tier 2 Analyst – Incident Response Pro
Onsite CIRT Tier 2 Analyst – Incident Response Pro

SkyePoint Decisions • Laurel (MD)

On-site
USD 90,000 - 107,000
PTO
Floating federal holidays
Health insurance
+1
Night Shift: CIRT Tier 2 Analyst — Active Secret
Night Shift: CIRT Tier 2 Analyst — Active Secret

Peraton • Beltsville (MD)

On-site
USD 66,000 - 106,000
Tier 2 Cyber Incident Response Team (CIRT) Analyst at Peraton Beltsville, MD
Tier 2 Cyber Incident Response Team (CIRT) Analyst at Peraton Beltsville, MD

Peraton • Beltsville (MD)

On-site
USD 80,000 - 128,000
Cyber Incident Response Analyst – Tier 1 (24/7 Triage)
Cyber Incident Response Analyst – Tier 1 (24/7 Triage)

Peraton • Beltsville (MD)

On-site
USD 80,000 - 128,000
24/7 Cyber Incident Response Lead (Tier 2)
24/7 Cyber Incident Response Lead (Tier 2)

AGR LLC • Beltsville (MD)

On-site
USD 120,000 - 180,000
Cyber Incident Response: Tier 2 Shift Lead
Cyber Incident Response: Tier 2 Shift Lead

AGR, LLC • Beltsville (MD)

On-site
USD 120,000 - 180,000
Tier 2 Cyber Incident Response (Shift Lead)
Tier 2 Cyber Incident Response (Shift Lead)

AGR, LLC • Beltsville (MD)

On-site
USD 120,000 - 180,000
Tier 2 Cyber Incident Responder (Shift Lead)
Tier 2 Cyber Incident Responder (Shift Lead)

Twenty8 Technology, LLC • Beltsville (MD)

On-site
USD 130,000 - 170,000
Tier 2 Cybersecurity Shift Lead – Day Onsite, Beltsville
Tier 2 Cybersecurity Shift Lead – Day Onsite, Beltsville

SkyePoint Decisions • Laurel (MS)

On-site
USD 100,000 - 124,000
Certification incentive program
PTO
Floating federal holidays
+2
Tier 2 Cyber Incident Response Lead
Tier 2 Cyber Incident Response Lead

Peraton • Beltsville (MD)

On-site
USD 104,000 - 166,000