Skip to content
mimi

Cyber Defense Analyst

The Swift Group, LLC

Towson · On-site Full-time Mid Level From $50k/yr Today

About the role

About

For the OPS Consulting team, ‘the power to help’ means helping our clients, helping serve the mission, helping our employees and their families, and helping the community. Headquartered in Hanover, MD. OPS Consulting has over two decades of experience specializing in the most mission-critical operations. We are thought leaders and innovators. The ingenuity of our developers, engineers, cyber experts, linguists, and analysts are dedicated to empowering our clients, fulfilling The Mission, and remaining trusted leaders and advisers in national security and technology solutions.

We are looking for a Cyber Defense Analyst 2 to join a growing team in Annapolis Junction, MD.

The Cyber Defense Analyst (Level 2) performs advanced network monitoring, threat analysis, and intrusion detection in support of enterprise defense operations.

Responsibilities

  • Perform advanced manual threat hunting
  • Conduct PCAP and packet-level analysis
  • Perform network traffic, protocol, and netflow analysis
  • Analyze malicious activity and identify exploited weaknesses
  • Correlate enterprise security events for situational awareness
  • Understand IDS/IPS tuning and Snort filters
  • Identify Command and Control (C2) indicators
  • Detect host- and network-based intrusions

Requirements

  • Four (4) years of demonstrated experience as a Cyber Defense Analyst in programs and contracts of similar scope, type, and complexity is required. A technical bachelor’s degree from an accredited college or university may be substituted for two (2) years of CDA experience.
  • 1 year TCP/IP fundamentals
  • 1 year experience with network traffic analysis tools (e.g., Wireshark, tcpdump)
  • 2 years SIEM experience (e.g., Splunk, Arc Sight, Kibana)
  • 2 years network and threat analysis experience
  • Splunk “Fundamentals I” course completion
  • DoD 8570 CSSP Analyst baseline certification
  • DoD 8570 IAT Level I or II
  • CE certification
  • 2 years maintaining or managing cloud environments (Azure, AWS)
  • US citizenship and an active TS/SCI with Polygraph security clearance required

Equal Opportunity Employer

The Swift Group and Subsidiaries are an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status, or any other protected class.

Pay Range

Pay ranges are a general guideline and not intended as a guaranteed and/or implied final compensation or salary for this job opening. Determination of official compensation or salary relies on several different factors including, but not limited to: level of position, complexity of job responsibilities, geographic location, work experience, education, certifications, Federal Government contract labor categories, and contract wage rates.

Benefits

At The Swift Group and Subsidiaries, you will receive comprehensive benefits including but not limited to: healthcare, wellness, financial, retirement, education, and time off benefits.

Requirements

  • 1 year TCP/IP fundamentals
  • 1 year experience with network traffic analysis tools (e.g., Wireshark, tcpdump)
  • 2 years SIEM experience (e.g., Splunk, Arc Sight, Kibana)
  • 2 years network and threat analysis experience
  • Splunk “Fundamentals I” course completion
  • DoD 8570 CSSP Analyst baseline certification
  • DoD 8570 IAT Level I or II
  • CE certification
  • 2 years maintaining or managing cloud environments (Azure, AWS)

Responsibilities

  • Perform advanced manual threat hunting
  • Conduct PCAP and packet-level analysis
  • Perform network traffic, protocol, and netflow analysis
  • Analyze malicious activity and identify exploited weaknesses
  • Correlate enterprise security events for situational awareness
  • Understand IDS/IPS tuning and Snort filters
  • Identify Command and Control (C2) indicators
  • Detect host- and network-based intrusions

Benefits

healthcarewellnessfinancialretirementeducationtime off

Skills

AWSArc SightAzureCECSSP AnalystDoD 8570IAT Level IIAT Level IIIDSIPSKibanaNetflowPCAPSnortSplunkTCP/IPWireshark

Don't send a generic resume

Paste this job description into Mimi and get a resume tailored to exactly what the hiring team is looking for.

Get started free