33 cyber defense analyst jobs at 26 companies in Middle River, MD
3mo
Save
Mark Applied
Hide
3mo
Cyber Defense Analyst 3 (CDA3)
Annapolis Junction, Maryland, United States
OnsiteFull Time
RealmOne: Advanced technology services for national security and defense missions.
8+ YOEEight years as a Cyber Defense Analyst; TCP/IP and network analysis; SIEM (Splunk/ArcSight/Kibana/LogRhythm); network and threat analysis tools; DoD 8570/GIAC certifications; Splunk training; 8x5 schedule.
Wireshark, tcpdump, tshark, Snort, Splunk, ArcSight, Kibana, LogRhythm, Bricata, Windows Active Directory
Fort Meade or Annapolis or Baltimore or Washington
OnsiteFull Time
SAICNASDAQ: SAIC: Premier technology integrator for defense, space, and civilian markets.
9+ YOEBachelor's degree plus 9 years' experience or 13 years without a degree; digital forensics, incident response, SOC Tier 2/3, cyber protection, TS/SCI with CI Poly, and IAT Level III required.
Nightwing: Advanced cyber, intelligence, and systems integration services for national security.
5+ YOEU.S. citizen with active TS/SCI clearance, 5+ years cyber defense experience, forensic and incident response skills, proficiency with Linux/Unix and Windows, ability to create forensic images and author investigative reports.
CrowdStrike, SentinelOne, Cortex, MS MDE, Trellix, EnCase, FTK, X-Ways, Sleuth Kit/Autopsy, SIFT, Volatility, KAPE, WireShark, Splunk, Elastic, Linux/Unix, Windows
The Swift Group: Invisible by Design. Impossible to Ignore.
8+ YOE8+ years CDA experience or substitute degree for 2 years; TCP/IP, tcpdump/Wireshark, SIEM and network/threat analysis experience; CSSP baseline and IAT certifications; US citizenship and active TS/SCI with Polygraph required.
TIME Systems: Service-disabled veteran-owned IT, cybersecurity, engineering, and management consulting contractor serving government, corporate, and nonprofit clients.
Bachelor's degree in a technical discipline or equivalent experience, Secret clearance, Security+ CE or higher, and knowledge of ACAS, endpoint security, STIG, RMF, vulnerability management, and incident response.
Revolutional: Private federal IT consulting firm delivering AI, cybersecurity, cloud, and modernization solutions to government agencies.
5+ YOE5+ years forensic/IR/threat-hunting experience, active Top Secret/SCI, bachelor\u0002s or equivalent, must work onsite in government-controlled secure facility, proficiency with EnCase/FTK/Autopsy/Volatility/Wireshark, NICE IN-FOR-002 alignment.
Koniag Data Solutions, LLC: Alaska Native-owned IT consulting firm serving defense and civilian agencies with data, AI, modernization, and cybersecurity services.
6+ YOEBachelor's degree, 6+ years cybersecurity operations experience with 2+ years senior SOC functions, federal SOC experience, Public Trust eligibility, GIAC/CISSP or similar, SIEM/EDR/network forensics skills.
Splunk, Microsoft Sentinel, ArcSight, Wireshark, Zeek, AWS GuardDuty, Microsoft Defender for Cloud, Google Security Command Center, SOAR, Python, PowerShell
Capstone Research Corporation: Systems engineering and integration for the Department of Defense's most challenging problems
10+ YOEBachelor's in a technical discipline, 10+ years supporting DoD/IC cyber or national security programs, experience with offensive/defensive cyber operations and non-kinetic effects, and active TS/SCI clearance required.
Modeling & Simulation (M&S), cyber ranges, Command and Control (C2) systems, tactical data links, electronic warfare systems
Cyber Network Defense Analyst (CNDA) IV – Cloud Forensics
Arlington, Virginia, United States
$130k-$160k/yrHybridFull Time
Argo Cyber Systems: Service-disabled veteran-owned cybersecurity firm providing monitoring, assessments, consulting, and managed security services to businesses and government entities.
8+ YOERequires U.S. citizenship, active TS/SCI clearance with DHS EOD eligibility, 8+ years of DFIR experience, cloud forensics expertise, and proficiency in M365/Azure AD, AWS IAM, and SaaS investigations.
T1 Cyber Network Defense Analyst – Shift (w/ active TS)
Washington or Ashburn
$58k-$74k/yrHybridFull Time
Critical Solutions: Cybersecurity services firm serving federal agencies through defense, incident response, assessments, and cyber operations.
2+ YOEBachelor's degree in a related field, 2+ years of professional experience in IT or software disciplines, active TS/SCI clearance, U.S. citizenship, and one listed cybersecurity certification required.
Security Information and Event Management (SIEM), Full PCAP, Wireshark, Python, PowerShell, JavaScript, VBS, Unix, Linux, Windows, TCP/UDP, HTTP, ICMP, DNS, SMTP, IDS/IPS, OSINT, Antivirus, DLP
AmentumNYSE: AMTM: Global provider of engineering, technical, and mission-critical services.
10+ YOE10+ years leading cyber intelligence or defense operations; experience with DOE/DoD/IC or national labs; leadership of investigations and analyst teams; knowledge of NIST 800-53, RMF, MITRE ATT&CK, Zero Trust, cloud and OT/ICS security; CISSP/GCIH/GCIA preferred; active TS/SCI or DOE Q clearance.
NIST 800-53, RMF, MITRE ATT&CK, Zero Trust, OT/ICS
Northrop GrummanNYSE: NOC: Global aerospace and defense technology.
8+ YOETop Secret/SCI clearance with recent polygraph; extensive SOC and defensive cyber experience; ability to build automation, tune detections, and work across Windows/Linux/AWS/Azure environments.
AmentumNYSE: AMTM: Global provider of engineering, technical, and mission-critical services.
10+ YOE10+ MgmtRequires 10–15+ years leading cyber intelligence or defense operations, relevant government or laboratory experience, team leadership, cybersecurity framework expertise, and active TS/SCI or DOE Q clearance.
NIST 800-53, RMF, MITRE ATT&CK, Zero Trust, OT/ICS
Washington or Chicago or Oakbrook Terrace or Philadelphia or Newark or Baltimore or Golden
$137k-$205k/yrHybridFull Time
ExelonNasdaq: EXC: Public U.S. utility holding delivering regulated electricity and natural gas through six transmission-and-distribution utilities.
5+ YOEBachelor's degree or equivalent military/government experience, 5–8 years in IT or cybersecurity, threat hunting, MITRE ATT&CK, OSINT, incident handling, and operational technology defense; must obtain TS/SCI clearance.
PLEX Solutions: Government consulting firm specializing in management and technical services.
10+ YOEActive TS/SCI, advanced degree with 15 years or bachelor's with 18 years, and 10+ years in strategic planning, policy development, and cyberspace operations; extensive defense cyber policy expertise required.
Joint Cyber Planning Course (JCPC), Joint Professional Military Education (JPME), School of Advanced Military Studies (SAMS), School of Advanced Air and Space Studies (SAASS), School of Advanced Warfighting (SAW), Joint Advanced Warfighting School (JAWS), DoW 8500/8140
CACINYSE: CACI: Provider of specialized IT and mission-critical government services.
Active TS/SCI with polygraph required; STEM degree or equivalent; experience in cyber/network security, vulnerability analysis, forensics, or systems/network administration; strong analytical and communication skills.
Set of X: Private engineering-services providing software and technical support to U.S. government customers.
Experience in cyber/network security, vulnerability analysis, incident response or related fields; background in network or system administration; bachelor’s degree in STEM or equivalent military training; TS/SCI with polygraph required; strong analytical and problem-solving skills.
Sentar: Employee-owned cyber-intelligence contractor serving U.S. national-security agencies with cybersecurity, intelligence, and systems-engineering services.
Active TS/SCI with polygraph, degree in a related engineering/IT field, relevant experience in cyber/network security, network or system administration, and applicable military cyber training accepted.
Washington or Oakbrook Terrace or Chicago or Philadelphia or Baltimore or Newark or Golden
$137k-$188k/yrHybridFull Time
ExelonNasdaq: EXC: Public U.S. utility holding delivering regulated electricity and natural gas through six transmission-and-distribution utilities.
5+ YOEBachelor's degree or equivalent experience, 5–8 years in IT or cybersecurity, threat hunting and intelligence expertise, security-tool proficiency, strong OS and network knowledge, and willingness to obtain TS/SCI clearance.
MITRE ATT&CK, Security Information and Event Management (SIEM), Intrusion Detection and Prevention Systems (IDS/IPS), Security Orchestration, Automation and Response (SOAR), Open-Source Intelligence (OSINT), Microsoft