Lead Cyber Watch Analyst

1 day ago


Arlington, United States Tyto Athene, LLC Full time
Job Description

Tyto Athene is searching for a Lead Cyber Watch Analystto support our customer in Arlington, Virginia.

Responsibilities:

  • Utilize security tools to analyze, investigate, and triage security alerts
  • Coordinate the monitoring of our customers environments, including cloud and SaaS solutions for evidence of adversarial activity
  • Lead cross-functional teams to perform in-depth analysis and investigation of high-priority cybersecurity incidents
  • Utilize advanced tools, such as digital forensics or malware analysis capabilities, to identify incidents’ root causes, scope, and impact
  • Collaborate with cyber threat hunting and cyber threat intelligence teams
  • Serve as the primary incident point of contact with law enforcement, third-party vendors, and other external parties
  • Conduct post-incident analysis and lessons learned to identify improvement opportunities
  • Develop or tune detection rules or signatures to improve the effectiveness of security monitoring and collaborate with engineering teams to implement them
  • Accurately document triage findings, and intake reports of external cybersecurity events from SOC customers via phone or email in the SOCs Incident Management System(IMS)
  • Learn new open and closed-source investigative techniques
  • Perform research on emerging threats and vulnerabilities to aid their prevention and mitigation
  • Assist in developing and implementing initiatives that will enhance the SOC’s performance (e.g., SOPs, playbooks, capability deployments)
  • Escalate SOC performance issues or risks to management
  • Provide guidance and mentorship to Tier 1 and Tier 2 SOC Analysts to enhance their skills and capabilities
Required:
  • Bachelor’s degree in Computer Science, Information Technology, or related field and 8 years of relevant experience or a Master’s degree and 4 years.
  • CISSP or CEH certification; additional experience, formal training, certifications, and/or education may be substitutable at the client's discretion
  • Experience in some of the following tools and technologies: EDR and SIEM
  • The ability to take the lead on incident research and mentor junior analysts
  • Understanding of MITRE ATT CK and D3FEND
  • Knowledge of advanced attacker tools, techniques, and procedures (TTP)
  • Current malware campaigns TTPs
  • Experience with malware analysis
  • Experience with digital forensics tools and case procedures
  • Knowledge of enterprise architecture including zero trust principles
  • Knowledge of Windows and Linux file systems
  • Common phishing techniques and how to investigate them
  • Proficiency in technical writing
  • Experience in customer service or client-facing roles
  • Experience presenting and speaking to leadership
  • The ability to mentor Tier 1 and Tier 2 analysts
Desired:
  • Previous SOC or incident response experience
  • Working knowledge of regex and scripting languages is highly preferred
  • Additional relevant certifications such as those from GIAC or CompTIA
  • Experience with major cloud service provider offerings
  • Knowledge of offensive security tools and techniques
  • Experience with cyber threat intelligence gathering and analysis
  • Experience with cyber threat hunting


Clearance:Active Secret Clearance required

Certification:DoD 8570 IAM/IAT Level II certification. This will change to a DoD 8140 equivalent once a DISA 8140 policy is released.

Location:This is an on-site role with expectations of being on the client site in Arlington, VA five days a week.

Additional Information

After several strategic acquisitions in 2021, Tyto Athene has experienced enormous opportunity and growth. Aside from being the leading provider of mission-focused IT and Cyber services and solutions to critical U.S. government agencies, Tyto is well-positioned to meet the growing demand for network modernization requirements across the federal enterprise.

Our employees are the key to the innovation that has made Tyto a success. We provide an environment that is geared to reward potential, innovation, and teamwork. If you would like to unleash your creativity and your career -- it's time to join Team Tyto

  • Arlington, United States Tyto Athene, LLC Full time

    Job Description Tyto Athene is searching for a Senior Watch Analyst to support our customer in Arlington, Virginia. Responsibilities:Utilize security tools to analyze, investigate, and triage security alertsCoordinate the monitoring of our customers environments, including cloud and SaaS solutions for evidence of adversarial activityLead cross-functional...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job OverviewWe are seeking a highly skilled Cyber Threat Analyst to join our team at Argo Cyber Systems.About the RoleThis is an exciting opportunity for a motivated and detail-oriented individual to contribute to our mission of providing advanced technical assistance and cybersecurity analysis capabilities.The ideal candidate will have 5+ years of...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    We are seeking a skilled Cyber Defense Analyst to join our team at Argo Cyber Systems. This critical role involves monitoring network activity, analyzing traffic for suspicious behavior, and identifying potential threats to network resources.The ideal candidate will have 5+ years of direct relevant experience in cyber defense analysis using leading-edge...


  • Arlington, United States Peraton Full time

    Peraton is seeking a Senior Cyber Analyst - Team Lead to become part of Peraton's Department of State (Do. S) Diplomatic Security Cyber Mission (DSCM) program providing leading cyber and technology security experience toenable innovative, effective a Team Lead, Analyst, External, Cyber, Senior, Security, Technology


  • Arlington, United States Argo Cyber Systems Full time

    The DHS's Hunt and Incident Response Team (HIRT) secures the Nation's cyber and communications infrastructure. HIRT provides DHS's front line response for cyber incidents and proactively hunting for malicious cyber activity. Argo Cyber Systems is a key partner to DHS, and performs HIRT investigations to develop a preliminary diagnosis of the severity of...


  • Arlington, United States Argo Cyber Systems Full time

    The DHS's Hunt and Incident Response Team (HIRT) secures the Nation's cyber and communications infrastructure. HIRT provides DHS's front line response for cyber incidents and proactively hunting for malicious cyber activity. Argo Cyber Systems is a key partner to DHS, and performs HIRT investigations to develop a preliminary diagnosis of the severity of...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Argo Cyber Systems, a key partner to the Department of Homeland Security's Hunt and Incident Response Team (HIRT), seeks a skilled Cyber Forensic Investigator to support their critical customer mission.The ideal candidate will have 8+ years of experience in cyber forensic investigations using leading edge technologies and industry standard forensic tools....


  • Arlington, United States Cordia Resources by Cherry Bekaert Full time

    The Cyber / All-Source Intelligence Analyst is a member of our client’s Intel Team, which collaborates with member firm intelligence teams and U.S. Government partners to ensure public and private capabilities are leveraged to evaluate and warn about cyber and other threats and vulnerabilities to critical assets in the financial services sector. The...


  • Arlington, United States Cordia Resources by Cherry Bekaert Full time

    The Cyber / All-Source Intelligence Analyst is a member of our client’s Intel Team, which collaborates with member firm intelligence teams and U.S. Government partners to ensure public and private capabilities are leveraged to evaluate and warn about cyber and other threats and vulnerabilities to critical assets in the financial services sector. The...


  • Arlington, Virginia, United States TestPros Full time

    Job OverviewTestPros, a renowned IT technical support services provider, is seeking a highly skilled Cyber Security Threat Analyst Lead to support a Federal cyber security program.This full-time position offers a competitive salary, medical/dental/vision insurance, life insurance, paid time off, paid holidays, 401(k) retirement plan with company match,...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job OverviewAt Argo Cyber Systems, we are seeking a highly skilled Cyber Network Defense Analyst (CNDA) to join our team. This critical role involves monitoring network activity, analyzing it for evidence of suspicious behavior, and identifying potential threats to information systems and networks.


  • Arlington, Virginia, United States Cayuse Holdings Full time

    OverviewCayuse Holdings is a leading provider of information technology solutions, offering expertise to clients in the federal markets and missions. As an SBA tribal 8(a) certified company, Cayuse brings significant past performance and excellent CPARS to its clients at an exceptionally competitive price.We are committed to delivering exceptional results,...


  • Arlington, United States ANALYGENCE Inc Full time

    Description ANALYGENCE is seeking an experienced Cyber Vulnerability Assessment Analyst (SME) to supportour federal customer who plays a key role in enhancing the security, resiliency, and reliability of the nation's cyber and communications infrastructure. This role directly supports the customer Mission Engineering (ME) Information Security Branch (ISB)...


  • Arlington, United States Piper Companies Full time

    Zachary Piper Solutions provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based and cloud-based cybersecurity analysis capabilities. Team personnel provide front line response for digital forensics/incident response (DFIR) and...


  • Arlington, United States Piper Companies Full time

    The DHS's Hunt and Incident Response Team (HIRT) secures the Nation's cyber and communications infrastructure. HIRT provides DHS's front-line response for cyber incidents and proactively hunting for malicious cyber activity. Zachary Piper Solutions, as a prime contractor to DHS, performs HIRT investigations to develop a preliminary diagnosis of the severity...


  • Arlington, United States Zachary Piper Solutions Full time

    The DHS’s Hunt and Incident Response Team (HIRT) secures the Nation’s cyber and communications infrastructure. HIRT provides DHS’s front-line response for cyber incidents and proactively hunting for malicious cyber activity. Zachary Piper Solutions, as a prime contractor to DHS, performs HIRT investigations to develop a preliminary diagnosis of the...


  • Arlington, Virginia, United States Piper Companies Full time

    Cyber Network Defense SpecialistPiper Companies is seeking a Cyber Network Defense Specialist to support our critical customer mission. As a key member of our team, you will be responsible for characterizing and analyzing network traffic to identify anomalous activity and potential threats to network resources.Coordinate with enterprise-wide cyber defense...


  • Arlington, United States Two Six Technologies Full time

    At Two Six Technologies, we build, deploy, and implement innovative products that solve the world’s most complex challenges today. Through unrivaled collaboration and unwavering trust, we push the boundaries of what’s possible to empower our team and support our customers in building a safer global future. Two Six Technologies is growing and we are...


  • Arlington, Virginia, United States SAIC Full time

    SAIC Cyber Training Program AnalystSafer America, Inc. (SAIC) is a leading technology integrator and strategic solutions provider serving the U.S. government, defense, space, energy, healthcare, and civil markets. With over 25 years of experience, SAIC supports its customers' mission-critical needs with expertise in enterprise IT, cybersecurity, systems...


  • Arlington, Virginia, United States JCS Solutions LLC Full time

    Cyber Security Integration LeadAt JCS Solutions LLC, we are seeking a highly skilled Cyber Security Integration Lead to oversee and lead cybersecurity planning partner integration efforts in support of the Department of Homeland Security (DHS), Cybersecurity and Infrastructure Security Agency (CISA).The ideal candidate will have experience leading a team of...