Invictus International Consulting, LLC

Cybersecurity Defense Analyst

Invictus International Consulting, LLC Colorado Springs, Colorado, United States

Defense and Space Manufacturing · 201-500 employees

3 d ago
security Mid (2-5 yrs) Full-time United States
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

Perform continuous monitoring and initial alert triage using various security tools and telemetry to identify malicious behavior. Document investigative findings, validate incidents, and escalate risks according to established SOC procedures.

What they look for

Cybersecurity SOC Procedures Incident Triage Network Analysis SIEM Endpoint Security TCP/IP DNS HTTP/S Authentication Firewalls Intrusion Detection Vulnerability Assessment Threat Intelligence Technical Documentation

Requirements

Requires a bachelor's degree in a technical discipline or equivalent experience, plus at least two years of relevant professional experience. Candidates must hold an active TS/SCI clearance and a DoD 8570 IAT II or IAM II certification.

Full description

Title: Cybersecurity Defense Analyst

Location: Colorado Springs, CO

Clearance: TS/SCI with the ability to obtain and maintain a CI polygraph

Job Details:

  • Perform continuous monitoring and initial alert triage under established SOC procedures and analyst runbooks
  • Perform cyber defense monitoring and analysis using security information from enterprise systems, networks, security sensors, firewalls, intrusion detection/prevention technologies, endpoint sources, and other available telemetry
  • Analyze log files and network activity to identify anomalous or malicious behavior, determine potential security impact, and document investigative findings in the authorized case or ticketing system
  • Perform cyber defense incident triage, including validation, enrichment, determination of scope, urgency, potential impact, and appropriate escalation
  • Conduct basic enrichment of alerts using available asset, user, network, vulnerability, and threat information before escalation
  • Accurately document actions, evidence, findings, and escalation rationale; maintain awareness of open cases and shift-turnover requirements
  • Escalate activity that exceeds established procedures or indicates increased risk, broader scope, or potential incident impact
  • Participate in training, exercises, and qualification activities to build proficiency across SOC tools and investigative methods

Requirements:

  • Bachelor's degree from an accredited institute in a technical discipline applicable to the position; an additional 4 years of may be substituted in lieu of a degree
  • Minimum two (2) years of relevant experience in addition to education level
  • Foundational knowledge of TCP/IP, DNS, HTTP/S, authentication, operating systems, and common enterprise security concepts
  • Experience with SIEM, security monitoring, network analysis, endpoint security, or comparable cyber defense tools is desired
  • Ability to follow technical procedures, document findings clearly, and communicate effectively in a high-tempo operational environment
  • Must possess current DoD 8570 IAT II or IAM II certification
  • Experience working in a DoD or IC environment desired
  • Current active TS/SCI clearance, with the ability to obtain and maintain a CI polygraph

Equal Opportunity Employer/Veteran/Disabled

Similar roles