Cyber Defense Analyst
Core
Provide strategic guidance and technical analysis to detect and respond to adversarial cyber activity across enterprise communications networks.
Role type
Cyber Defense Analyst (Incident Response & Threat Detection)
Builds
Incident response strategies, security procedures, and actionable intelligence for DoD/Government leaders.
Domain
Cybersecurity / Defense / Government Contracting
Deliverable
production ML models | product features | dashboards & analysis | client delivery
Required skills
Network traffic analysis, IDS/IPS configuration, packet capture analysis, threat intelligence research, incident reporting, security framework application (MITRE ATT&CK, Cyber Kill Chain), root cause analysis, risk assessment
Preferred skills
Advanced threat actor TTP analysis, obfuscated code analysis, large-scale data processing for threat analytics
Technologies
Splunk, Elastic, Snort, Suricata, Wireshark, tcpdump, Firewalls, IDS/IPS devices
Responsibilities
Monitor network security devices and respond to Tiered alerts; Analyze raw packet data and net flow to detect threats; Develop strategies to prevent future security incidents; Create comprehensive incident reports and post-incident briefs; Collaborate with DoD/Government Leaders on defense strategies; Research emerging threats and vulnerabilities; Analyze packet captures and software exploits for incident handling.
Seniority
Senior, hands-on IC