yoinka

Cyber Security Analyst

Leidos

Adelphi, MDSeniorH-1B sponsor companyClearance required
Sign in to applyVerified 1h ago
Location
Adelphi, MD
Work model
On-Site
Level
Senior
H-1B history
26 approvals (FY2023)
Posted
Aug 25, 2026

Skills

AWSAzureCybersecurityGCPOCISAP

About this role

Ready to take your cybersecurity experience beyond routine alert monitoring? Leidos is seeking a Cyber Security Analyst to support the C5ISR Defensive Cyber Solutions Branch (DCSB) and help protect critical Department of War networks, systems, and data from sophisticated cyber threats. You'll join a high-visibility Security Operations Center (SOC) providing 24x7x365 defensive cyber operations, including continuous monitoring, threat detection, incident response, and vulnerability management. Our team protects a diverse, multi-tenant environment spanning on-premises infrastructure and leading cloud platforms, including AWS, Microsoft Azure, Google Cloud Platform (GCP), Oracle Cloud, and SaaS environments. If you thrive on investigating complex threats, analyzing network activity, and working alongside experienced cyber professionals to defend critical missions, we want to hear from you. Location: Hybrid - 3 days on site at Adelphi, MD Schedule: Full Time | Mid Shift: 10:00 pm to 6:00 pm Clearance: U.S. Citizenship with an active TS/SCI with SAP Eligibility Required Certifications: Baseline certification (Security+ CE) and CSSP-Infrastructure Support Primary Responsibilities: Lead and coordinate investigations throughout the Incident Response lifecycle, from initial detection through remediation. Correlate and analyze security events, alerts, logs, and network data to determine the scope and impact of cyber incidents. Acquire and analyze endpoint and network artifacts, including NetFlow and full packet capture, to identify malicious or suspicious activity. Identify attacker tactics, techniques, and procedures (TTPs) and indicators of compromise (IOCs) to strengthen detection and response capabilities. Tune and maintain SIEM and IDS technologies to reduce false positives and improve SOC detection effectiveness. Develop and maintain Incident Response processes, procedures, workflows, and playbooks. Document investigations and response actions in case management systems and prepare clear, actionable incident reports. Collaborate with cyber professionals in a fast-paced operational environment to defend the DoD Information Network (DoDIN) against sophisticated threats and advanced persistent threat (APT) actors.

Basic Qualifications

Bachelor's degree and 4–8 years of relevant cybersecurity experience.  Hands-on experience using an enterprise Security Information and Event Management (SIEM) platform. Experience analyzing high volumes of security logs and network data, including NetFlow and/or full packet capture. Experience with network traffic and packet analysis. Strong understanding of TCP/IP, common ports and protocols, network traffic flows, the OSI model, system administration, defense-in-depth, and network security technologies. Understanding of cloud security concepts and considerations. Familiarity with Unix-based systems. Ability to work effectively in a collaborative, mission-focused SOC environment. Ability to work the 10:00 pm to 6:00 pm mid shift. Baseline certification (Security+ CE) and CSSP-Infrastructure Support certification at start. U.S. citizenship with an active TS/SCI clearance with SAP Eligibility.

Preferred Qualifications

You don't need to check every box below. We'd especially like to hear from candidates with experience in one or more of the following areas: Cybersecurity experience across Protect, Detect, Respond, and Sustain functions within a Computer Incident Response or Security Operations organization. Experience working in a 24x7 SOC or cyber operations environment. Understanding of the cyber threat lifecycle, attack vectors, exploitation techniques, and adversary behavior. Familiarity with intelligence-driven defense, Cyber Kill Chain methodology, and/or related threat frameworks. Experience analyzing advanced attacker TTPs and indicators of compromise. Strong written and verbal communication skills, including the ability to translate complex technical findings into clear, actionable

Listing verified 1h ago. Applications go through the company's official careers site.

← Back to Yoinka

Cyber Security Analyst at Leidos, Adelphi, MD | Yoinka