DirectViz Solutions, LLC

Cybersecurity Incident Response & Threat Detection Analyst

DirectViz Solutions, LLC Columbus, Ohio, United States

IT Services and IT Consulting · 201-500 employees

4 d ago
security Senior (5-10 yrs) Full-time United States
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

The analyst will monitor SIEM and network traffic to detect, investigate, and respond to cybersecurity threats and suspicious activity. They are also responsible for performing root cause analysis and developing tools to enhance threat detection capabilities.

What they look for

Cybersecurity Incident response Threat detection SIEM Root cause analysis Network security Advanced Persistent Threats OSINT Firewall IDS/IPS Vulnerability management Forensics Malware analysis Python PowerShell SPL

Requirements

Candidates must have at least five years of relevant experience, including two years in root cause analysis of cybersecurity incidents. A DOD Top Secret clearance is required, along with proficiency in various security tools and scripting languages like Python or PowerShell.

Benefits

Competitive compensation Comprehensive medical benefits 401(k) match Generous PTO accrual Professional development reimbursement Corporate-funded technology certifications Employee recognition and appreciation programs

Full description

DirectViz Solutions (DVS) is a dynamic and rapidly growing government contractor committed to delivering innovative IT solutions that address the mission-critical needs of our government clients. Through the expertise and dedication of our talented team, we provide cutting-edge technology services designed to achieve success and exceed expectations.

At DVS, we prioritize our employees as our greatest asset. We offer competitive compensation, comprehensive medical benefits, a 401(k) match, generous PTO accrual, professional development reimbursement, corporate-funded technology certifications, and robust employee recognition and appreciation programs.

Title: Cybersecurity Incident Response & Threat Detection Analyst

Location: Columbus, OH

Clearance: Top Secret

Position Summary

We are seeking an experienced Cybersecurity Incident Response & Threat Detection Analyst to support a 24x7x365 cybersecurity operations environment. This position is responsible for monitoring, detecting, analyzing, and responding to cybersecurity threats and suspicious activity across a large enterprise network.

The analyst will monitor SIEM and other cybersecurity tools, investigate security alerts and logged events, identify indicators of attack or compromise, and support incident response activities. The role requires experience identifying sophisticated threats, including Advanced Persistent Threats (APT) and "low and slow" attacks.

Key Responsibilities

  • Monitor SIEM, network traffic, security logs, and cybersecurity monitoring tools for suspicious or unauthorized activity.
  • Analyze security alerts and events to identify potential attacks, compromises, and emerging threats.
  • Investigate cybersecurity incidents and perform root cause analysis.
  • Monitor for Advanced Persistent Threats (APT) and other sophisticated attack techniques.
  • Use threat intelligence and Open Source Intelligence (OSINT) to identify and investigate potential threats.
  • Support incident response activities and implementation of appropriate defensive actions.
  • Analyze trends across security events to identify patterns indicative of malicious activity.
  • Provide technical support for enterprise cybersecurity tools and applications.
  • Support Defense-in-Depth security controls, signatures, and perimeter defenses.
  • Develop scripts, tools, and automation to improve threat detection and incident response capabilities.

Minimum Requirements

  • Five (5) years relevant experience • Two (2) years performing root cause analysis of cybersecurity events and incidents. • Working knowledge of at least two types of security tools: Firewall, IDS/IPS, Host based antivirus, Data loss prevention, Vulnerability Management, Forensics, Malware Analysis, Device Hardening • Understanding of Defense-in-Depth • Ability to build scripts and tools to enhance threat detection and incident response capabilities (Preferably in SPL, Python, PowerShell) • Must possess a DOD TOP SECRET Clearance and be eligible for an IT-1 and be eligible for SCI access.

If you thrive on solving complex problems and building meaningful connections, we'd love to hear from you. Join our team and make an impact today!

Physical and Mental Qualifications:

  • Maintain focus and awareness throughout scheduled working hours.
  • Perform tasks requiring prolonged periods of sitting or standing at a desk, utilizing a computer, mouse, and keyboard.
  • Lift and move objects weighing up to 15 pounds as needed.
  • Exhibit excellent verbal and written communication skills, with a strong command of the English language.
  • Demonstrate the ability to work independently while also collaborating effectively as part of a team.
  • Quickly learn and retain routine tasks and processes.
  • Possess strong organizational skills, attention to detail, business correspondence proficiency, and self-management capabilities.
  • Perform the essential functions of the role satisfactorily; reasonable accommodation will be provided for employees with disabilities upon request.
  • Accept and adapt to additional responsibilities or changes to assigned duties as determined by DirectViz Solutions (DVS).

DirectViz Solutions, LLC (DVS) is an equal opportunity employer who prohibits discrimination and harassment against any employee or applicant for employment based on race, , sex (including pregnancy), age, gender identity, creed, religion, national origin, sexual orientation, marital status, genetic information, disability, political affiliation, protected veteran status, or any other status protected by federal, state or local law.

DVS has a zero-tolerance policy for harassment, threats, coercion, discrimination, and intimidation. Employees may file a complaint or exercise any right protected by Executive Order 11246, Section 503 of the Rehabilitation Act of 1973, as amended, Section 4212 of the Vietnam Era Veterans Readjustment Assistance Act of 1974, or the Veterans Employment Opportunities Act of 1998.

Similar roles