Cybersecurity Incident Response & Threat Detection Analyst
DirectViz Solutions, LLC Columbus, Ohio, United States
IT Services and IT Consulting · 201-500 employees
Applying here? Try the free cover letter tool — paste this posting and your résumé, no account needed.
About the role
The analyst will monitor SIEM and network traffic to detect, investigate, and respond to cybersecurity threats and suspicious activity. They are also responsible for performing root cause analysis and developing tools to enhance threat detection capabilities.
What they look for
Requirements
Candidates must have at least five years of relevant experience, including two years in root cause analysis of cybersecurity incidents. A DOD Top Secret clearance is required, along with proficiency in various security tools and scripting languages like Python or PowerShell.
Benefits
Full description
DirectViz Solutions (DVS) is a dynamic and rapidly growing government contractor committed to delivering innovative IT solutions that address the mission-critical needs of our government clients. Through the expertise and dedication of our talented team, we provide cutting-edge technology services designed to achieve success and exceed expectations.
At DVS, we prioritize our employees as our greatest asset. We offer competitive compensation, comprehensive medical benefits, a 401(k) match, generous PTO accrual, professional development reimbursement, corporate-funded technology certifications, and robust employee recognition and appreciation programs.
Title: Cybersecurity Incident Response & Threat Detection Analyst
Location: Columbus, OH
Clearance: Top Secret
Position Summary
We are seeking an experienced Cybersecurity Incident Response & Threat Detection Analyst to support a 24x7x365 cybersecurity operations environment. This position is responsible for monitoring, detecting, analyzing, and responding to cybersecurity threats and suspicious activity across a large enterprise network.
The analyst will monitor SIEM and other cybersecurity tools, investigate security alerts and logged events, identify indicators of attack or compromise, and support incident response activities. The role requires experience identifying sophisticated threats, including Advanced Persistent Threats (APT) and "low and slow" attacks.
Key Responsibilities
- Monitor SIEM, network traffic, security logs, and cybersecurity monitoring tools for suspicious or unauthorized activity.
- Analyze security alerts and events to identify potential attacks, compromises, and emerging threats.
- Investigate cybersecurity incidents and perform root cause analysis.
- Monitor for Advanced Persistent Threats (APT) and other sophisticated attack techniques.
- Use threat intelligence and Open Source Intelligence (OSINT) to identify and investigate potential threats.
- Support incident response activities and implementation of appropriate defensive actions.
- Analyze trends across security events to identify patterns indicative of malicious activity.
- Provide technical support for enterprise cybersecurity tools and applications.
- Support Defense-in-Depth security controls, signatures, and perimeter defenses.
- Develop scripts, tools, and automation to improve threat detection and incident response capabilities.
Minimum Requirements
- Five (5) years relevant experience • Two (2) years performing root cause analysis of cybersecurity events and incidents. • Working knowledge of at least two types of security tools: Firewall, IDS/IPS, Host based antivirus, Data loss prevention, Vulnerability Management, Forensics, Malware Analysis, Device Hardening • Understanding of Defense-in-Depth • Ability to build scripts and tools to enhance threat detection and incident response capabilities (Preferably in SPL, Python, PowerShell) • Must possess a DOD TOP SECRET Clearance and be eligible for an IT-1 and be eligible for SCI access.
If you thrive on solving complex problems and building meaningful connections, we'd love to hear from you. Join our team and make an impact today!
Physical and Mental Qualifications:
- Maintain focus and awareness throughout scheduled working hours.
- Perform tasks requiring prolonged periods of sitting or standing at a desk, utilizing a computer, mouse, and keyboard.
- Lift and move objects weighing up to 15 pounds as needed.
- Exhibit excellent verbal and written communication skills, with a strong command of the English language.
- Demonstrate the ability to work independently while also collaborating effectively as part of a team.
- Quickly learn and retain routine tasks and processes.
- Possess strong organizational skills, attention to detail, business correspondence proficiency, and self-management capabilities.
- Perform the essential functions of the role satisfactorily; reasonable accommodation will be provided for employees with disabilities upon request.
- Accept and adapt to additional responsibilities or changes to assigned duties as determined by DirectViz Solutions (DVS).
DirectViz Solutions, LLC (DVS) is an equal opportunity employer who prohibits discrimination and harassment against any employee or applicant for employment based on race, , sex (including pregnancy), age, gender identity, creed, religion, national origin, sexual orientation, marital status, genetic information, disability, political affiliation, protected veteran status, or any other status protected by federal, state or local law.
DVS has a zero-tolerance policy for harassment, threats, coercion, discrimination, and intimidation. Employees may file a complaint or exercise any right protected by Executive Order 11246, Section 503 of the Rehabilitation Act of 1973, as amended, Section 4212 of the Vietnam Era Veterans Readjustment Assistance Act of 1974, or the Veterans Employment Opportunities Act of 1998.
Similar roles
-
Cybersecurity Manager
URM Stores Inc Spokane, Washington, United States · $150K–$160K/yr
-
Cyber Security Engineer Job ID : 3/28/8
CEdge Inc Fairfax County, Virginia, United States · $200K/yr
-
Principal Cyber Security Engineer
Vertex Inc. Industrial, Odisha, India · ₹34M–₹44M/yr
-
Agentic Security Engineer
Beazley Security, LLC West Hartford, Connecticut, United States
-
Cybersecurity Awareness Associate I
Sempra San Diego, California, United States
-
Cybersecurity Engineer
Environmental Science Associates Portland, Oregon, United States · $110K–$135K/yr