Expert Cyber Defender TS/SCI

IBM Computing

McLean (VA)

On-site

USD 120,000 - 150,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

IBM Consulting is seeking an Expert Cyber Defender to protect complex digital infrastructures. You will investigate threats, apply MITRE ATT&CK and Cyber Kill Chain, and lead incident responses across Windows, macOS, and Linux environments.

Based onsite at Fort Meade, MD, you will coordinate vulnerability management and threat intelligence efforts while delivering actionable recommendations to strengthen clients’ security posture.

Qualifications

  • Expertise with MITRE ATT&CK and Cyber Kill Chain concepts.
  • Experience using SIEM, SOAR, EDR, and XDR to manage incidents.
  • Ability to interpret Windows, macOS and Linux telemetry.
  • Experience in vulnerability management and threat intel activities.
  • CISSP or equivalent cybersecurity certifications.

Responsibilities

  • Investigate security incidents using advanced cybersecurity tools.
  • Develop and manage incident reports with actionable guidance.
  • Analyze network and endpoint events to identify threats.
  • Participate in vulnerability management and threat intelligence.
  • Provide recommendations to strengthen client security posture.

Skills

Threat analysis
Cybersecurity tools
Network & endpoints
Vulnerability management
Threat intelligence

Education

CISSP certification

Tools

SIEM
SOAR
EDR
XDR

Job description

Introduction

A career in IBM Consulting is built on long-term client relationships and close collaboration worldwide. You’ll work with leading companies across industries, helping them shape their hybrid cloud and AI journeys. With support from our strategic partners, robust IBM technology, and Red Hat, you’ll have the tools to drive meaningful change and accelerate client impact. At IBM Consulting, curiosity fuels success. You’ll be encouraged to challenge the norm, explore new ideas, and create innovative solutions that deliver real results. Our culture of growth and empathy focuses on your long-term career development while valuing your unique skills and experiences.

Your role and responsibilities

As a Expert Cyber Defender you play a vital role in defending an organization’s digital infrastructure by identifying, analyzing, and mitigating cyber threats. This position involves leveraging industry frameworks and a range of cybersecurity tools to monitor, prioritize, investigate, and respond to security incidents. In this role you will analyze data collected from various cybersecurity defense tools and act to mitigate risks, supporting threat hunting and incident remediation.

Your primary responsibilities will include:
  • Conduct Event Investigations: Investigate security incidents using various cybersecurity tools, including SIEM, SOAR, EDR, and XDR platforms, to identify and analyze potential threats. Apply industry frameworks like MITRE ATT<strong>CK</strong> and the Cyber Kill Chain to understand and counter adversary tactics effectively.
  • Manage Incident Reports: Develop and manage incident reports, providing actionable recommendations and response strategies to strengthen clients' security posture.
  • Analyze Network and Endpoint Events: Interpret security tools and logs from Windows, MAC, and Linux systems to identify potential security threats and vulnerabilities.
  • Engage in Vulnerability Management: Participate in vulnerability management and cyber threat intelligence activities to identify and anticipate potential threats, staying ahead of emerging threats and evolving technologies.
  • Provide Actionable Recommendations: Offer expert guidance and support to clients, providing actionable recommendations to enhance their security posture and mitigate potential threats.

Onsite - Fort Meade, MD 5 days a week

Required technical and professional expertise
  • Deep Expertise in Threat Analysis: Experience with industry frameworks like MITRE ATT<strong>CK</strong> and the Cyber Kill Chain, with the ability to apply them to understand and counter adversary tactics effectively.
  • Proficiency in Cybersecurity Tools: Experience with a range of cybersecurity tools, including SIEM, SOAR, EDR, and XDR platforms, to monitor, prioritize, investigate, and respond to security incidents.
  • Advanced Understanding of Network and Endpoint Events: Ability to interpret security tools and logs from Windows, MAC, and Linux systems to identify potential security threats and vulnerabilities.
  • Experience in Vulnerability Management: Participation in vulnerability management and cyber threat intelligence activities to identify and anticipate potential threats, staying ahead of emerging threats and evolving technologies.
  • Certification in Cybersecurity: Possession of relevant certifications in cybersecurity, such as CISSP, demonstrating expertise in threat detection, response, and intelligence.
  • Prior Government Cyber Operational Experience- Experience working in a high OPTEMO environment within the government with demonstrated expertise in threat detection, response and intelligence.
Preferred technical and professional experience
  • Deep Understanding of Emerging Threats: Experience with identifying and analyzing emerging threats and technologies, staying ahead of the evolving threat landscape. Ability to adapt and apply this knowledge to improve threat detection and response strategies.
  • Familiarity with Multiple Operating Systems: Exposure to various operating systems, including Windows, MAC, and Linux, with the ability to interpret security tools and logs to identify potential security threats and vulnerabilities.
  • Knowledge of Cyber Threat Intelligence: Experience with cyber threat intelligence activities, including identifying and anticipating potential threats, and providing actionable recommendations to enhance security posture.

IBM is committed to creating a diverse environment and is proud to be an equal-opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, caste, genetics, pregnancy, disability, neurodivergence, age, veteran status, or other characteristics. IBM is also committed to compliance with all fair employment practices regarding citizenship and immigration status.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Cyberspace Planner TS/SCI
Senior Cyberspace Planner TS/SCI

IBM Computing • McLean (VA)

On-site
USD 110,000 - 145,000
Associate Cybersecurity Specialist – 2027
Associate Cybersecurity Specialist – 2027

IBM • Lansing (MI)

Hybrid
USD 60,000 - 90,000
Project Deputy Director
Project Deputy Director

IBM • Raleigh (NC)

On-site
USD 120,000 - 180,000
Cyberspace Planner TS/SCI
Cyberspace Planner TS/SCI

IBM Computing • McLean (VA)

On-site
USD 120,000 - 170,000
Project Deputy Director
Project Deputy Director

IBM • Durham (NC)

On-site
USD 90,000 - 130,000
Associate Security Consultant - Cyber Strategy & Risk 2027
Associate Security Consultant - Cyber Strategy & Risk 2027

IBM • Dallas (TX)

On-site
USD 70,000 - 110,000
Health insurance
TS/SCI Cyber Defender — Incident Response Lead
TS/SCI Cyber Defender — Incident Response Lead

IBM • Boston (MA)

On-site
USD 153,000 - 230,000
Intern Security Consultant - Cyber Strategy & Risk 2027
Intern Security Consultant - Cyber Strategy & Risk 2027

IBM • Chicago (IL)

On-site
USD 20,000 - 33,000
Associate Cybersecurity Specialist – 2027
Associate Cybersecurity Specialist – 2027

IBM • Baton Rouge (LA)

On-site
USD 65,000 - 90,000
Security Consultant Intern 2027
Security Consultant Intern 2027

IBM • New York (NY)

On-site
USD 28,000 - 34,000