Sr. Defensive Cyber Analyst
- Active TS/SCI clearance needed for consideration, as well as willingness to sit for a CI Polygraph*
Key Responsibilities:
- Provide holistic enterprise defensive strategies for cybersecurity capabilities implemented within the DoDIN infrastructure, including cloud environments, network boundaries, cross-domain solutions, and endpoint technologies.
- Analyze architectures, technologies, policies, information, and analytical data to determine effective prevention, detection, and mitigation strategies for anomalous activity, vulnerabilities, and operational inefficiencies.
- Prepare and deliver executive-level briefings and cybersecurity assessments for senior leadership, including General Officers and Flag Officers.
- Perform cyber situational awareness activities and provide recommendations to enhance enterprise visibility and defensive capabilities.
- Provide enterprise-wide cybersecurity analysis, threat assessments, countermeasures, and defensive strategies across complex, multi-tiered environments.
- Lead complex security incident responses, from post-breach analysis to threat actor identification, leveraging netflow, PCAP analysis, and security event logs to identify and mitigate lateral movement and escalation activity.
- Demonstrate proficiency in writing and understanding detection rules and utilizing SIEM technologies, including Splunk, for detailed incident analysis and resolution.
- Engage in proactive threat hunting efforts utilizing network traffic analysis, log correlation, netflows, endpoint telemetry, and packet captures.
- Communicate effectively with internal teams, stakeholders, and operational centers to secure on-premises and cloud environments.
- Support mission-focused operations in a fast-paced, high-visibility environment with elevated customer expectations.
- Develop and review technical documentation, Concept of Operations (CONOPS), policies, implementation plans, and training materials.
- Provide strategic recommendations regarding system architectures, operational design, integration planning, and implementation approaches supporting DCDC leadership objectives.
- Bachelor's degree or higher in Information Technology Management, Cybersecurity, Computer Science, or a related technical field.
- Minimum of 8 years of experience supporting cybersecurity, network operations, cyber defense, or related technical environments.
- Active TS/SCI Clearance.
- Current DoD 8570 IAT Level II certification, including Security+ CE or equivalent.
- One additional industry certification such as:
- Microsoft Certifications (Azure, Data & AI, Modern Workplace, Dynamics 365, etc.)
- AWS Certification
- Google Cloud Certification
- VMware Certification
- Oracle Certification
- Cisco Certification
- ITIL 4 Foundation
- PMP
- Agile/Scrum Certification
- CISSP or equivalent
- Strong understanding of LAN, CAN, WAN, cloud computing, data center technologies, servers, and enterprise communication systems.
- Experience supporting multiple large-scale IT systems and enterprise cybersecurity initiatives.
- Knowledge of Continuous Process Improvement methodologies.
- Experience with Infrastructure as a Service (IaaS) and Platform as a Service (PaaS) technologies.
- Ability to communicate effectively with both technical and non-technical audiences.
- Experience developing, reviewing, and editing technical documentation and operational plans.
- Working knowledge of SAFe and ITIL 4 frameworks.
- Experience operating in Joint Commands, Operations Centers, or similar mission environments.
- Strong understanding of military orders, operational planning, and mission execution processes.
- Proficiency with Microsoft Office Suite, including Word, Excel, Access, and Outlook.
- Demonstrated ability to work independently with minimal supervision.
- Knowledge of policy development and governance processes.
- Experience supporting DISA and Department of Defense network environments.
- Experience briefing and engaging with senior executive leadership and military leadership.
- Experience with technical writing and military operational documentation.
- Strong familiarity with cloud security architectures and enterprise cyber defense frameworks.
- Experience supporting large-scale government IT modernization initiatives.
- Salary Range: $150,000 - $180,000 (depending on experience)
- Full Benefits: Medical, Dental, Vision, 401(k), PTO, and Sick Leave as required by law
Keywords: Cybersecurity, Defensive Cyber Operations, DISA, DCDC, Department of Defense, TS/SCI, Security+, Incident Response, Splunk, Splunk SPL, Threat Hunting, Network Security, Security Operations Center, SOC, DoDIN, Cloud Security, SIEM, PCAP Analysis, Wireshark, NetFlow Analysis, Network Forensics, Security Architecture, Cyber Defense, Threat Intelligence, Vulnerability Management, Continuous Monitoring, Security Analytics, Digital Forensics, Intrusion Detection, IDS, IPS, Endpoint Detection and Response, EDR, Security Operations, Risk Assessment, Cloud Computing, IaaS, PaaS, Enterprise Security, Situational Awareness, Military Operations, Joint Operations Center, Cyber Threats, Security Engineering, Security Governance, Compliance Management, Technical Writing, CONOPS, SAFe, ITIL 4, CISSP, AWS, Azure, VMware, Defensive Cyber Analyst.
Recommended Jobs
Sr Analyst, Information Security
Posted 43 minutes ago
Information Security Engineer
Posted 1 hour ago
Cyber Threat Analyst - GTA / Active TS
Posted 1 hour ago
SOC Lead
Posted 1 hour ago
Senior Cyber Security Engineer
Posted 1 hour ago

