Cybersecurity Defense Analyst
Invictus International Consulting, LLC Colorado Springs, Colorado, United States
Defense and Space Manufacturing · 201-500 employees
About the role
Perform continuous monitoring and initial alert triage using various security tools and telemetry to identify malicious behavior. Document investigative findings, validate incidents, and escalate risks according to established SOC procedures.
What they look for
Requirements
Requires a bachelor's degree in a technical discipline or equivalent experience, plus at least two years of relevant professional experience. Candidates must hold an active TS/SCI clearance and a DoD 8570 IAT II or IAM II certification.
Full description
Title: Cybersecurity Defense Analyst
Location: Colorado Springs, CO
Clearance: TS/SCI with the ability to obtain and maintain a CI polygraph
Job Details:
- Perform continuous monitoring and initial alert triage under established SOC procedures and analyst runbooks
- Perform cyber defense monitoring and analysis using security information from enterprise systems, networks, security sensors, firewalls, intrusion detection/prevention technologies, endpoint sources, and other available telemetry
- Analyze log files and network activity to identify anomalous or malicious behavior, determine potential security impact, and document investigative findings in the authorized case or ticketing system
- Perform cyber defense incident triage, including validation, enrichment, determination of scope, urgency, potential impact, and appropriate escalation
- Conduct basic enrichment of alerts using available asset, user, network, vulnerability, and threat information before escalation
- Accurately document actions, evidence, findings, and escalation rationale; maintain awareness of open cases and shift-turnover requirements
- Escalate activity that exceeds established procedures or indicates increased risk, broader scope, or potential incident impact
- Participate in training, exercises, and qualification activities to build proficiency across SOC tools and investigative methods
Requirements:
- Bachelor's degree from an accredited institute in a technical discipline applicable to the position; an additional 4 years of may be substituted in lieu of a degree
- Minimum two (2) years of relevant experience in addition to education level
- Foundational knowledge of TCP/IP, DNS, HTTP/S, authentication, operating systems, and common enterprise security concepts
- Experience with SIEM, security monitoring, network analysis, endpoint security, or comparable cyber defense tools is desired
- Ability to follow technical procedures, document findings clearly, and communicate effectively in a high-tempo operational environment
- Must possess current DoD 8570 IAT II or IAM II certification
- Experience working in a DoD or IC environment desired
- Current active TS/SCI clearance, with the ability to obtain and maintain a CI polygraph
Equal Opportunity Employer/Veteran/Disabled
Similar roles
-
Senior Cybersecurity Analyst
Orbia Bogota, Capital District, RAP (Especial) Central, Colombia
-
CyberSecurity - Interns
Auctane Wrocław, Lower Silesian Voivodeship, Poland
-
Senior Manager Cybersecurity
Sia Brussels, Brussels-Capital, Belgium
-
Senior Consultant in Cybersecurity
Sia Antwerp, Antwerp, Belgium
-
Senior Security Engineer, AI/ML, National Security, Public Sector
Google Washington, District of Columbia, United States · $174K–$252K/yr
-
Pre-Sales Engineer, Cybersecurity
Hewlett Packard Enterprise Washington, District of Columbia, United States · $146K–$343K/yr