Lead Cyber Watch Analyst
1 day ago
Tyto Athene is searching for a Lead Cyber Watch Analystto support our customer in Arlington, Virginia.
Responsibilities:
- Utilize security tools to analyze, investigate, and triage security alerts
- Coordinate the monitoring of our customers environments, including cloud and SaaS solutions for evidence of adversarial activity
- Lead cross-functional teams to perform in-depth analysis and investigation of high-priority cybersecurity incidents
- Utilize advanced tools, such as digital forensics or malware analysis capabilities, to identify incidents’ root causes, scope, and impact
- Collaborate with cyber threat hunting and cyber threat intelligence teams
- Serve as the primary incident point of contact with law enforcement, third-party vendors, and other external parties
- Conduct post-incident analysis and lessons learned to identify improvement opportunities
- Develop or tune detection rules or signatures to improve the effectiveness of security monitoring and collaborate with engineering teams to implement them
- Accurately document triage findings, and intake reports of external cybersecurity events from SOC customers via phone or email in the SOCs Incident Management System(IMS)
- Learn new open and closed-source investigative techniques
- Perform research on emerging threats and vulnerabilities to aid their prevention and mitigation
- Assist in developing and implementing initiatives that will enhance the SOC’s performance (e.g., SOPs, playbooks, capability deployments)
- Escalate SOC performance issues or risks to management
- Provide guidance and mentorship to Tier 1 and Tier 2 SOC Analysts to enhance their skills and capabilities
- Bachelor’s degree in Computer Science, Information Technology, or related field and 8 years of relevant experience or a Master’s degree and 4 years.
- CISSP or CEH certification; additional experience, formal training, certifications, and/or education may be substitutable at the client's discretion
- Experience in some of the following tools and technologies: EDR and SIEM
- The ability to take the lead on incident research and mentor junior analysts
- Understanding of MITRE ATT CK and D3FEND
- Knowledge of advanced attacker tools, techniques, and procedures (TTP)
- Current malware campaigns TTPs
- Experience with malware analysis
- Experience with digital forensics tools and case procedures
- Knowledge of enterprise architecture including zero trust principles
- Knowledge of Windows and Linux file systems
- Common phishing techniques and how to investigate them
- Proficiency in technical writing
- Experience in customer service or client-facing roles
- Experience presenting and speaking to leadership
- The ability to mentor Tier 1 and Tier 2 analysts
- Previous SOC or incident response experience
- Working knowledge of regex and scripting languages is highly preferred
- Additional relevant certifications such as those from GIAC or CompTIA
- Experience with major cloud service provider offerings
- Knowledge of offensive security tools and techniques
- Experience with cyber threat intelligence gathering and analysis
- Experience with cyber threat hunting
Clearance:Active Secret Clearance required
Certification:DoD 8570 IAM/IAT Level II certification. This will change to a DoD 8140 equivalent once a DISA 8140 policy is released.
Location:This is an on-site role with expectations of being on the client site in Arlington, VA five days a week.
Additional Information
After several strategic acquisitions in 2021, Tyto Athene has experienced enormous opportunity and growth. Aside from being the leading provider of mission-focused IT and Cyber services and solutions to critical U.S. government agencies, Tyto is well-positioned to meet the growing demand for network modernization requirements across the federal enterprise.
Our employees are the key to the innovation that has made Tyto a success. We provide an environment that is geared to reward potential, innovation, and teamwork. If you would like to unleash your creativity and your career -- it's time to join Team Tyto
-
Senior Cyber Watch Analyst
1 day ago
Arlington, United States Tyto Athene, LLC Full timeJob Description Tyto Athene is searching for a Senior Watch Analyst to support our customer in Arlington, Virginia. Responsibilities:Utilize security tools to analyze, investigate, and triage security alertsCoordinate the monitoring of our customers environments, including cloud and SaaS solutions for evidence of adversarial activityLead cross-functional...
-
Arlington, Virginia, United States Argo Cyber Systems Full timeJob OverviewWe are seeking a highly skilled Cyber Threat Analyst to join our team at Argo Cyber Systems.About the RoleThis is an exciting opportunity for a motivated and detail-oriented individual to contribute to our mission of providing advanced technical assistance and cybersecurity analysis capabilities.The ideal candidate will have 5+ years of...
-
Cyber Defense Analyst
1 week ago
Arlington, Virginia, United States Argo Cyber Systems Full timeWe are seeking a skilled Cyber Defense Analyst to join our team at Argo Cyber Systems. This critical role involves monitoring network activity, analyzing traffic for suspicious behavior, and identifying potential threats to network resources.The ideal candidate will have 5+ years of direct relevant experience in cyber defense analysis using leading-edge...
-
External Cyber Analyst
1 week ago
Arlington, United States Peraton Full timePeraton is seeking a Senior Cyber Analyst - Team Lead to become part of Peraton's Department of State (Do. S) Diplomatic Security Cyber Mission (DSCM) program providing leading cyber and technology security experience toenable innovative, effective a Team Lead, Analyst, External, Cyber, Senior, Security, Technology
-
Host Based Cyber Systems Analyst IV
1 week ago
Arlington, United States Argo Cyber Systems Full timeThe DHS's Hunt and Incident Response Team (HIRT) secures the Nation's cyber and communications infrastructure. HIRT provides DHS's front line response for cyber incidents and proactively hunting for malicious cyber activity. Argo Cyber Systems is a key partner to DHS, and performs HIRT investigations to develop a preliminary diagnosis of the severity of...
-
Host Based Cyber Systems Analyst IV
1 week ago
Arlington, United States Argo Cyber Systems Full timeThe DHS's Hunt and Incident Response Team (HIRT) secures the Nation's cyber and communications infrastructure. HIRT provides DHS's front line response for cyber incidents and proactively hunting for malicious cyber activity. Argo Cyber Systems is a key partner to DHS, and performs HIRT investigations to develop a preliminary diagnosis of the severity of...
-
Cyber Forensic Investigator
1 week ago
Arlington, Virginia, United States Argo Cyber Systems Full timeArgo Cyber Systems, a key partner to the Department of Homeland Security's Hunt and Incident Response Team (HIRT), seeks a skilled Cyber Forensic Investigator to support their critical customer mission.The ideal candidate will have 8+ years of experience in cyber forensic investigations using leading edge technologies and industry standard forensic tools....
-
Cyber Intelligence Analyst
1 month ago
Arlington, United States Cordia Resources by Cherry Bekaert Full timeThe Cyber / All-Source Intelligence Analyst is a member of our client’s Intel Team, which collaborates with member firm intelligence teams and U.S. Government partners to ensure public and private capabilities are leveraged to evaluate and warn about cyber and other threats and vulnerabilities to critical assets in the financial services sector. The...
-
Cyber Intelligence Analyst
4 weeks ago
Arlington, United States Cordia Resources by Cherry Bekaert Full timeThe Cyber / All-Source Intelligence Analyst is a member of our client’s Intel Team, which collaborates with member firm intelligence teams and U.S. Government partners to ensure public and private capabilities are leveraged to evaluate and warn about cyber and other threats and vulnerabilities to critical assets in the financial services sector. The...
-
Arlington, Virginia, United States TestPros Full timeJob OverviewTestPros, a renowned IT technical support services provider, is seeking a highly skilled Cyber Security Threat Analyst Lead to support a Federal cyber security program.This full-time position offers a competitive salary, medical/dental/vision insurance, life insurance, paid time off, paid holidays, 401(k) retirement plan with company match,...
-
Cybersecurity Threat Intelligence Analyst
4 days ago
Arlington, Virginia, United States Argo Cyber Systems Full timeJob OverviewAt Argo Cyber Systems, we are seeking a highly skilled Cyber Network Defense Analyst (CNDA) to join our team. This critical role involves monitoring network activity, analyzing it for evidence of suspicious behavior, and identifying potential threats to information systems and networks.
-
Cyber Intelligence Analyst
1 week ago
Arlington, Virginia, United States Cayuse Holdings Full timeOverviewCayuse Holdings is a leading provider of information technology solutions, offering expertise to clients in the federal markets and missions. As an SBA tribal 8(a) certified company, Cayuse brings significant past performance and excellent CPARS to its clients at an exceptionally competitive price.We are committed to delivering exceptional results,...
-
Cyber Vulnerability Assessment Analyst
2 weeks ago
Arlington, United States ANALYGENCE Inc Full timeDescription ANALYGENCE is seeking an experienced Cyber Vulnerability Assessment Analyst (SME) to supportour federal customer who plays a key role in enhancing the security, resiliency, and reliability of the nation's cyber and communications infrastructure. This role directly supports the customer Mission Engineering (ME) Information Security Branch (ISB)...
-
Cyber Network Defense Analyst
2 weeks ago
Arlington, United States Piper Companies Full timeZachary Piper Solutions provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based and cloud-based cybersecurity analysis capabilities. Team personnel provide front line response for digital forensics/incident response (DFIR) and...
-
Cyber Network Defense Analyst Level III
2 weeks ago
Arlington, United States Piper Companies Full timeThe DHS's Hunt and Incident Response Team (HIRT) secures the Nation's cyber and communications infrastructure. HIRT provides DHS's front-line response for cyber incidents and proactively hunting for malicious cyber activity. Zachary Piper Solutions, as a prime contractor to DHS, performs HIRT investigations to develop a preliminary diagnosis of the severity...
-
Cyber Network Defense Analyst Level III
6 months ago
Arlington, United States Zachary Piper Solutions Full timeThe DHS’s Hunt and Incident Response Team (HIRT) secures the Nation’s cyber and communications infrastructure. HIRT provides DHS’s front-line response for cyber incidents and proactively hunting for malicious cyber activity. Zachary Piper Solutions, as a prime contractor to DHS, performs HIRT investigations to develop a preliminary diagnosis of the...
-
Cyber Network Defense Specialist
1 week ago
Arlington, Virginia, United States Piper Companies Full timeCyber Network Defense SpecialistPiper Companies is seeking a Cyber Network Defense Specialist to support our critical customer mission. As a key member of our team, you will be responsible for characterizing and analyzing network traffic to identify anomalous activity and potential threats to network resources.Coordinate with enterprise-wide cyber defense...
-
Cyber Command Portfolio Lead
4 days ago
Arlington, United States Two Six Technologies Full timeAt Two Six Technologies, we build, deploy, and implement innovative products that solve the world’s most complex challenges today. Through unrivaled collaboration and unwavering trust, we push the boundaries of what’s possible to empower our team and support our customers in building a safer global future. Two Six Technologies is growing and we are...
-
Cyber Training Program Specialist
7 days ago
Arlington, Virginia, United States SAIC Full timeSAIC Cyber Training Program AnalystSafer America, Inc. (SAIC) is a leading technology integrator and strategic solutions provider serving the U.S. government, defense, space, energy, healthcare, and civil markets. With over 25 years of experience, SAIC supports its customers' mission-critical needs with expertise in enterprise IT, cybersecurity, systems...
-
Cyber Security Integration Lead
7 days ago
Arlington, Virginia, United States JCS Solutions LLC Full timeCyber Security Integration LeadAt JCS Solutions LLC, we are seeking a highly skilled Cyber Security Integration Lead to oversee and lead cybersecurity planning partner integration efforts in support of the Department of Homeland Security (DHS), Cybersecurity and Infrastructure Security Agency (CISA).The ideal candidate will have experience leading a team of...