Expert Cyber Defender TS/SCI

IBM

Bethesda (MD)

On-site

USD 120,000 - 150,000

Full time

2 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

IBM Consulting seeks an Expert Cyber Defender to protect client digital infrastructures and lead investigations of security incidents at Fort Meade, MD. You will leverage SIEM, SOAR, EDR, and XDR tools, applying MITRE ATT&CK and Cyber Kill Chain frameworks to detect, prioritize, and mitigate threats.

The role emphasizes vulnerability management, threat intelligence, and delivering actionable recommendations to strengthen clients' security postures in a high-stakes environment.

Qualifications

  • Must have strong threat analysis capabilities and ability to apply MITRE ATT&CK and Cyber Kill Chain frameworks.

Responsibilities

  • Conduct Event Investigations using SIEM, SOAR, EDR, and XDR platforms to identify threats.
  • Develop and manage incident reports with actionable recommendations.
  • Analyze network and endpoint events on Windows, macOS, and Linux systems for threats.
  • Engage in vulnerability management and threat intelligence activities to anticipate threats.
  • Provide expert guidance to enhance client security posture and response strategies.

Skills

Threat analysis
Windows
macOS
Linux
Cyber threat intelligence
Vulnerability management
Threat hunting
Security incident response
Incident reporting

Education

Master's Degree
CISSP certification

Tools

MITRE ATT&CK
Cyber Kill Chain
SIEM
SOAR
EDR
XDR

Job description

Introduction

A career in IBM Consulting is built on long-term client relationships and close collaboration worldwide. You’ll work with leading companies across industries, helping them shape their hybrid cloud and AI journeys. With support from our strategic partners, robust IBM technology, and Red Head, you’ll have the tools to drive meaningful change and accelerate client impact. At IBM Consulting, curiosity fuels success. You’ll be encouraged to challenge the norm, explore new ideas, and create innovative solutions that deliver real results. Our culture of growth and empathy focuses on your long-term career development while valuing your unique skills and experiences.


A career in IBM Consulting is built on long-term client relationships and close collaboration worldwide. You’ll work with leading companies across industries, helping them shape their hybrid cloud and AI journeys. With support from our strategic partners, robust IBM technology, and Red Head, you’ll have the tools to drive meaningful change and accelerate client impact. At IBM Consulting, curiosity fuels success. You’ll be encouraged to challenge the norm, explore new ideas, and create innovative solutions that deliver real results. Our culture of growth and empathy focuses on your long-term career development while valuing your unique skills and experiences.


Your Role And Responsibilities

As a Expert Cyber Defender you play a vital role in defending an organization's digital infrastructure by identifying, analyzing, and mitigating cyber threats. This position involves leveraging industry frameworks and a range of cybersecurity tools to monitor, prioritize, investigate, and respond to security incidents. In this role you will analyze data collected from various cybersecurity defense tools and act to mitigate risks, supporting threat hunting and incident remediation.


Your Primary Responsibilities Will Include


  • Conduct Event Investigations: Investigate security incidents using various cybersecurity tools, including SIEM, SOAR, EDR, and XDR platforms, to identify and analyze potential threats. Apply industry frameworks like MITRE ATT&CK and the Cyber Kill Chain to understand and counter adversary tactics effectively.

  • Manage Incident Reports: Develop and manage incident reports, providing actionable recommendations and response strategies to strengthen clients' security posture.

  • Analyze Network and Endpoint Events: Interpret security tools and logs from Windows, MAC, and Linux systems to identify potential security threats and vulnerabilities.

  • Engage in Vulnerability Management: Participate in vulnerability management and cyber threat intelligence activities to identify and anticipate potential threats, staying ahead of emerging threats and evolving technologies.

  • Provide Actionable Recommendations: Offer expert guidance and support to clients, providing actionable recommendations to enhance their security posture and mitigate potential threats.


Onsite - Fort Meade, MD 5 days a week

Preferred Education

Master's Degree


Required Technical And Professional Expertise


  • Deep Expertise in Threat Analysis: Experience with industry frameworks like MITRE ATT&CK and the Cyber Kill Chain, with the ability to apply them to understand and counter adversary tactics effectively.

  • Proficiency in Cybersecurity Tools: Experience with a range of cybersecurity tools, including SIEM, SOAR, EDR, and XDR platforms, to monitor, prioritize, investigate, and respond to security incidents.

  • Advanced Understanding of Network and Endpoint Events: Ability to interpret security tools and logs from Windows, MAC, and Linux systems to identify potential security threats and vulnerabilities.

  • Experience in Vulnerability Management: Participation in vulnerability management and cyber threat intelligence activities to identify and anticipate potential threats, staying ahead of emerging threats and evolving technologies.

  • Certification in Cybersecurity: Possession of relevant certifications in cybersecurity, such as CISSP, demonstrating expertise in threat detection, response, and intelligence.

  • Prior Government Cyber Operational Experience- Experience working in a high OPTEMO environment within the government with demonstrated expertise in threat detection and intelligence.


Preferred Technical And Professional Experience


  • Deep Understanding of Emerging Threats: Experience with identifying and analyzing emerging threats and technologies, staying ahead of the evolving threat landscape. Ability to adapt and apply this knowledge to improve threat detection and response strategies.

  • Familiarity with Multiple Operating Systems: Exposure to various operating systems, including Windows, MAC, and Linux, with the ability to interpret security tools and logs to identify potential security threats and vulnerabilities.

  • Knowledge of Cyber Threat Intelligence: Experience with cyber threat intelligence activities, including identifying and anticipating potential threats, and providing actionable recommendations to enhance security posture.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Junior Technical Operations Analyst (TS/SCI)
Junior Technical Operations Analyst (TS/SCI)

IBM • Maryland

On-site
USD 70,000 - 95,000
Junior Technical Operations Analyst (TS/SCI)
Junior Technical Operations Analyst (TS/SCI)

IBM • Bethesda (MD)

On-site
USD 70,000 - 95,000
Associate Cybersecurity Specialist – 2027
Associate Cybersecurity Specialist – 2027

IBM • Baton Rouge (LA)

On-site
USD 65,000 - 90,000
Intern Security Consultant - Cyber Strategy & Risk 2027
Intern Security Consultant - Cyber Strategy & Risk 2027

IBM • Chicago (IL)

On-site
USD 20,000 - 33,000
Cyberspace Planner TS/SCI
Cyberspace Planner TS/SCI

IBM • Washington

On-site
USD 110,000 - 170,000
Cyberspace Planner TS/SCI
Cyberspace Planner TS/SCI

IBM • Maryland

On-site
USD 90,000 - 150,000
Associate Cybersecurity Specialist – 2027
Associate Cybersecurity Specialist – 2027

Socket.dev • Baton Rouge (LA)

Hybrid
USD 55,000 - 75,000
Cyberspace Planner TS/SCI
Cyberspace Planner TS/SCI

IBM • Bethesda (MD)

Hybrid
USD 110,000 - 170,000
Cyberspace Planner TS/SCI
Cyberspace Planner TS/SCI

IBM • McLean (VA)

On-site
USD 120,000 - 150,000
Associate Cybersecurity Specialist – 2027
Associate Cybersecurity Specialist – 2027

IBM • Lansing (MI)

Hybrid
USD 60,000 - 90,000