Expert Cyber Defender TS/SCI

IBM

Boston (MA)

On-site

USD 153,000 - 230,000

Full time

2 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

IBM Consulting in the United States is seeking an Expert Cyber Defender to protect client networks, analyze data from SIEM/EDR/XDR, and apply MITRE ATT&CK frameworks. You will manage incident investigations and craft actionable remediation guidance for Windows, macOS and Linux environments.

This onsite role at Fort Meade, MD emphasizes collaboration with clients, threat hunting, vulnerability management, and ongoing security posture improvements.

Qualifications

  • Experience with MITRE ATT&CK and the Cyber Kill Chain.
  • Proficiency with SIEM, SOAR, EDR, XDR tooling.
  • Ability to interpret Windows, macOS, Linux logs.
  • Certification in cybersecurity (e.g., CISSP) preferred.
  • Government cyber ops experience (OPTEMO) preferred.

Responsibilities

  • Investigate security incidents using industry tools and MITRE ATT&CK.
  • Develop and manage incident reports with actionable guidance.
  • Analyze network and endpoint events across systems.
  • Participate in vulnerability management and threat intel.
  • Provide recommendations to strengthen client security posture.

Skills

Threat analysis
Cybersecurity expertise
Threat hunting
Incident response
Regulatory compliance

Education

Bachelor's degree
Master's degree

Tools

SIEM
SOAR
EDR
XDR

Job description

A career in IBM Consulting is built on long‑term client relationships and close collaboration worldwide. You’ll work with leading companies across industries, helping them shape their hybrid cloud and AI journeys. With support from our strategic partners, robust IBM technology, and Red Hat, you’ll have the tools to drive meaningful change and accelerate client impact. At IBM Consulting, curiosity fuels success. You’ll be encouraged to challenge the norm, explore new ideas, and create innovative solutions that deliver real results. Our culture of growth and empathy focuses on your long‑term career development while valuing your unique skills and experiences.

Your role and responsibilities

As a Expert Cyber Defender you play a vital role in defending an organization’s digital infrastructure by identifying, analyzing, and mitigating cyber threats. This position involves leveraging industry frameworks and a range of cybersecurity tools to monitor, prioritize, investigate, and respond to security incidents. In this role you will analyze data collected from various cybersecurity defense tools and act to mitigate risks, supporting threat hunting and incident remediation.

Your primary responsibilities will include:
  • Conduct Event Investigations: Investigate security incidents using various cybersecurity tools, including SIEM, SOAR, EDR, and XDR platforms, to identify and analyze potential threats. Apply industry frameworks like MITRE ATT&CK and the Cyber Kill Chain to understand and counter adversary tactics effectively.
  • Manage Incident Reports: Develop and manage incident reports, providing actionable recommendations and response strategies to strengthen clients’ security posture.
  • Analyze Network and Endpoint Events: Interpret security tools and logs from Windows, MAC, and Linux systems to identify potential security threats and vulnerabilities.
  • Engage in Vulnerability Management: Participate in vulnerability management and cyber threat intelligence activities to identify and anticipate potential threats, staying ahead of emerging threats and evolving technologies.
  • Provide Actionable Recommendations: Offer expert guidance and support to clients, providing actionable recommendations to enhance their security posture and mitigate potential threats.

Onsite - Fort Meade, MD 5 days a week

Leaders are expected to spend time with their teams and clients and therefore are generally expected to be in the workplace a minimum of three days a week, subject to business needs.

Required education

Bachelor's Degree

Preferred education

Master's Degree

Required technical and professional expertise
  • Deep Expertise in Threat Analysis: Experience with industry frameworks like MITRE ATT&CK and the Cyber Kill Chain, with the ability to apply them to understand and counter adversary tactics effectively.
  • Proficiency in Cybersecurity Tools: Experience with a range of cybersecurity tools, including SIEM, SOAR, EDR, and XDR platforms, to monitor, prioritize, investigate, and respond to security incidents.
  • Advanced Understanding of Network and Endpoint Events: Ability to interpret security tools and logs from Windows, MAC, and Linux systems to identify potential security threats and vulnerabilities.
  • Experience in Vulnerability Management: Participation in vulnerability management and cyber threat intelligence activities to identify and anticipate potential threats, staying ahead of emerging threats and evolving technologies.
  • Certification in Cybersecurity: Possession of relevant certifications in cybersecurity, such as CISSP, demonstrating expertise in threat detection, response, and intelligence.
  • Prior Government Cyber Operational Experience - Experience working in a high OPTEMO environment within the government with demonstrated expertise in threat detection, response and intelligence.
Preferred technical and professional experience
  • Deep Understanding of Emerging Threats: Experience with identifying and analyzing emerging threats and technologies, staying ahead of the evolving threat landscape. Ability to adapt and apply this knowledge to improve threat detection and response strategies.
  • Familiarity with Multiple Operating Systems: Exposure to various operating systems, including Windows, MAC, and Linux, with the ability to interpret security tools and logs to identify potential security threats and vulnerabilities.
  • Knowledge of Cyber Threat Intelligence: Experience with cyber threat intelligence activities, including identifying and anticipating potential threats, and providing actionable recommendations to enhance security posture.
ABOUT BUSINESS UNIT

IBM Consulting is IBM’s consulting and global professional services business, with market leading capabilities in business and technology transformation. With deep expertise in many industries, we offer strategy, experience, technology, and operations services to many of the most innovative and valuable companies in the world. Our people are focused on accelerating our clients’ businesses through the power of collaboration. We believe in the power of technology responsibly used to help people, partners and the planet.

YOUR LIFE @ IBM

In a world where technology never stands still, we understand that, dedication to our clients success, innovation that matters, and trust and personal responsibility in all our relationships, lives in what we do as IBMers as we strive to be the catalyst that makes the world work better.

Being an IBMer means you’ll be able to learn and develop yourself and your career, you’ll be encouraged to be courageous and experiment everyday, all whilst having continuous trust and support in an environment where everyone can thrive whatever their personal or professional background.

Our IBMers are growth minded, always staying curious, open to feedback and learning new information and skills to constantly transform themselves and our company. They are trusted to provide on‑going feedback to help other IBMers grow, as well as collaborate with colleagues keeping in mind a team focused approach to include different perspectives to drive exceptional outcomes for our customers. The courage our IBMers have to make critical decisions everyday is essential to IBM becoming the catalyst for progress, always embracing challenges with resources they have to hand, a can‑do attitude and always striving for an outcome focused approach within everything that they do.

Are you ready to be an IBMer?

ABOUT IBM

IBM’s greatest invention is the IBMer. We believe that through the application of intelligence, reason and science, we can improve business, society and the human condition, bringing the power of an open hybrid cloud and AI strategy to life for our clients and partners around the world.

Restlessly reinventing since 1911, we are not only one of the largest corporate organizations in the world, we’re also one of the biggest technology and consulting employers, with many of the Fortune 500 companies relying on the IBM Cloud to run their business.

At IBM, we pride ourselves on being an early adopter of artificial intelligence, quantum computing and blockchain. Now it’s time for you to join us on our journey to being a responsible technology innovator and a force for good in the world.

IBM is proud to be an equal‑opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, genetics, pregnancy, disability, neurodivergence, age, or other characteristics protected by the applicable law. IBM is also committed to compliance with all fair employment practices regarding citizenship and immigration status.

OTHER RELEVANT JOB DETAILS

IBM offers a competitive and comprehensive benefits program. Eligible employees may have access to:

  • Healthcare benefits including medical & prescription drug coverage, dental, vision, and mental health & well being
  • Financial programs such as 401(k), cash balance pension plan, the IBM Employee Stock Purchase Plan, financial counseling, life insurance, short & long- term disability coverage, and opportunities for performance based salary incentive programs
  • Generous paid time off including 12 holidays, minimum 56 hours sick time, 120 hours vacation, 12 weeks parental bonding leave in accordance with IBM Policy, and other Paid Care Leave programs. IBM also offers paid family leave benefits to eligible employees where required by applicable law
  • Training and educational resources on our personalized, AI‑driven learning platform where IBMers can grow skills and obtain industry‑recognized certifications to achieve their career goals
  • Diverse and inclusive employee resource groups, giving & volunteer opportunities, and discounts on retail products, services & experiences

We consider qualified applicants with criminal histories, consistent with applicable law.

This position was posted on the date cited in the key job details section and is anticipated to remain posted for 21 days from this date or less if not needed to fill the role.

The compensation range and benefits for this position are based on a full‑time schedule for a full calendar year. The salary will vary depending on your job‑related skills, experience and location. Pay increment and frequency of pay will be in accordance with employment classification and applicable laws. For part time roles, your compensation and benefits will be adjusted to reflect your hours. Benefits may be pro‑rated for those who start working during the calendar year.

Job Title

Date posted

31-Aug-2026

Job ID

130453

City / Township / Village

Annapolis Junction, WASHINGTON, McLean, Bethesda

State / Province

Virginia, Maryland, District of Columbia

Country

United States

Work arrangement

Onsite

Area of work

Consulting

Employment type

Regular

Contract type

Regular

Projected Minimum Salary per year

153,440.00

Projected Maximum Salary per year

230,160.00

Position type

Professional

Up to 20% or 1 day a week

Company

(0147) International Business Machines Corporation

Shift

General (daytime)

Is this role a commissionable/sales incentive based position?

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Network Engineer (TS/SCI)
Senior Network Engineer (TS/SCI)

IBM • Maryland

On-site
USD 119,000 - 178,000
Senior Cyber Defender
Senior Cyber Defender

IBM • Maryland

On-site
USD 121,000 - 181,000
Senior System Engineer/Architect TS/SCI
Senior System Engineer/Architect TS/SCI

IBM • Boston (MA)

On-site
USD 130,000 - 196,000
Liaison Officer Cyber National Mission Forces - Cyber Planner TS/SCI
Liaison Officer Cyber National Mission Forces - Cyber Planner TS/SCI

IBM • Boston (MA)

On-site
USD 121,000 - 225,000
.NET Senior System Developer TS/SCI
.NET Senior System Developer TS/SCI

IBM • Boston (MA)

On-site
USD 130,000 - 196,000
Comprehensive benefits
Career development
Onsite work arrangement
Task Lead and Cyber Planner (TS/SCI)
Task Lead and Cyber Planner (TS/SCI)

IBM • Maryland

On-site
USD 155,000 - 267,000
Cyber Threat Management GTM Leader
Cyber Threat Management GTM Leader

IBM • Boston (MA)

Hybrid
USD 151,000 - 281,000
Healthcare benefits
401(k) and pension plan
Paid time off
Technical Operations Analyst (TS/SCI)
Technical Operations Analyst (TS/SCI)

IBM • Maryland

On-site
USD 69,000 - 119,000
Task Lead and Systems Security Manager (TS/SCI)
Task Lead and Systems Security Manager (TS/SCI)

IBM • Maryland

On-site
USD 118,000 - 203,000
Healthcare benefits
401(k) plan
Paid time off
+1
Cyberspace Planner TS/SCI
Cyberspace Planner TS/SCI

IBM • Boston (MA)

On-site
USD 82,000 - 123,000
Healthcare benefits
401(k) & Pension
Generous paid time off