18 edr analyst jobs at 12 companies in Maryland

1mo
Save
Mark Applied
Hide
Senior Sensor Analyst
Linthicum, Maryland, United States
$135k-$216k/yr OnsiteFull Time
Peraton
Peraton: Provider of mission-critical national security technologies and services.
Requires advanced degree or extensive experience in IT/Cybersecurity, proficiency with network and sensor data (Netflow, PCAP), SIEM, NIDS/IPS, EDR, vulnerability scanning, experience producing intelligence products, and active TS/SCI with poly.
Netflow, PCAP, SIEM, NIDS, IPS, EDR, vulnerability scanners, log collectors
1mo
Save
Mark Applied
Hide
IT Security Analyst
Hanover, Maryland, United States
$95k-$125k/yr HybridFull Time
Physicians Management Group
Physicians Management Group: Healthcare management services organization providing administrative, financial, IT, HR, and billing support to a physician-owned primary-care network.
3+ YOEBachelor's degree and minimum 3 years IT security experience, CompTIA Security+ required; experience with SIEM, EDR, Microsoft 365 security, PowerShell, HIPAA, and healthcare EHR environments preferred.
SIEM, EDR, Proofpoint, Microsoft Entra ID (Azure AD), Microsoft Exchange Online, Microsoft Defender, Conditional Access, Microsoft Purview, PowerShell, RMM, Windows
1mo
Save
Mark Applied
Hide
Cybersecurity Analyst, Incident Responder
Bethesda, Maryland, United States
HybridFull Time
Digital Global Connectors
Digital Global Connectors: Woman-owned cybersecurity services firm providing engineering, assessment, consulting, training, and operations services to federal and private-sector clients.
4+ YOEBachelor's degree and 4+ years incident response experience; US citizenship and ability to obtain Tier 2 Public Trust; expertise with SIEM/EDR/XDR, digital forensics, malware analysis, and incident documentation.
Microsoft Sentinel, Splunk Enterprise Security, Microsoft Defender XDR, Microsoft Defender for Endpoint, Microsoft Defender for Identity, Microsoft Defender for Cloud, CrowdStrike Falcon, Palo Alto Cortex XDR, Trellix, Cisco Secure, Wireshark, Velociraptor, SIEM, EDR, XDR, Microsoft Office Suite, ServiceNow, Jira
4mo
Save
Mark Applied
Hide
System Administrator/SOC Analyst
Columbia, Maryland, United States
OnsiteFull Time
DigiFlight
DigiFlight: Veteran-owned minority U.S. defense contractor providing aviation, aerospace, intelligence, cybersecurity, and IT services.
7+ YOE7+ years system administration; endpoint hardening; reporting from SEIM/EDR/DLP/MDM; Workspace Admin Console familiarity.
EDR, DLP, MDM, SIEM, YubiKeys, STIG, Google Workspace, Chrome Enterprise Browser, Entra ID GCCH, Box for Government, GovSlack
1mo
Save
Mark Applied
Hide
Cybersecurity Analyst, Security Operations Center (SOC) Analyst
Bethesda, Maryland, United States
HybridFull Time
Digital Global Connectors
Digital Global Connectors: Woman-owned cybersecurity services firm providing engineering, assessment, consulting, training, and operations services to federal and private-sector clients.
2+ YOEBachelor's degree and 2+ years SOC or cybersecurity operations experience; U.S. citizenship and ability to obtain Tier 2 Public Trust; experience with SIEM/EDR/XDR; rotating shift availability; strong analytical and communication skills.
Microsoft Sentinel, Splunk Enterprise Security, Microsoft Defender XDR, Microsoft Defender for Endpoint, Microsoft Defender for Identity, Microsoft Defender for Cloud, CrowdStrike Falcon, Palo Alto Cortex XDR, Trellix, Cisco Secure, Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR), Extended Detection and Response (XDR), Intrusion Detection and Prevention Systems (IDS/IPS), Microsoft Office Suite, ServiceNow, Jira
1mo
Save
Mark Applied
Hide
Collision Data Analyst
Baltimore or Alexandria
FieldPart Time
Advantage Investigations
Advantage Investigations: Insurance-investigation firm serving insurers, third-party administrators, self-insured companies, and law firms.
Experience in collision investigation and vehicle/scene analysis, courtroom testimony and litigation support, valid driver’s license and reliable transportation, ability to collect and interpret EDR and physical evidence.
Event Data Recorder (EDR), LIDAR scanners, Drones/UAS, Total stations, photogrammetry, reconstruction software platforms
1mo
Save
Mark Applied
Hide
Cybersecurity Analyst, Threat Hunter
Bethesda, Maryland, United States
HybridFull Time
Digital Global Connectors
Digital Global Connectors: Woman-owned cybersecurity services firm providing engineering, assessment, consulting, training, and operations services to federal and private-sector clients.
6+ YOEBachelor's degree,6+ years in cybersecurity operations/threat hunting,experience with SIEM/EDR/XDR,PowerShell/Python skills,U.S. Citizenship and ability to obtain Tier 2 Public Trust.
Microsoft Sentinel, Splunk Enterprise Security, Microsoft Defender XDR, Microsoft Defender for Endpoint, Microsoft Defender for Identity, Microsoft Defender for Cloud, CrowdStrike Falcon, Palo Alto Cortex XDR, Microsoft Defender for Office 365, Velociraptor, Sysmon, Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR), Extended Detection and Response (XDR), User and Entity Behavior Analytics (UEBA), PowerShell, Python, Kusto Query Language (KQL), Microsoft Office Suite, ServiceNow, Jira, MITRE ATT&CK Framework
2mo
Save
Mark Applied
Hide
Senior Information Security Analyst
Washington or Atlanta or Austin or Baltimore or Chicago or Virginia
$94k-$131k/yr HybridFull Time
DLA Piper
DLA Piper: A global law firm providing comprehensive legal and business services.
7+ YOE7+ years in cybersecurity, Bachelor's in Information Security/Cybersecurity required, professional certs (e.g., CISSP, GIAC, SANS) preferred, SIEM/EDR/IDS/IPS and vendor tool experience, incident response and vulnerability management expertise.
Security Incident and Event Management (SIEM), Endpoint Detection and Response (EDR), Intrusion Detection/Prevention Systems (IDS/IPS), Microsoft Defender, CrowdStrike, Palo Alto Networks, malware sandbox, DNS, Active Directory, Exchange
1mo
Save
Mark Applied
Hide
Senior Sensor Analyst
Linthicum, Maryland, United States
$135k-$216k/yr OnsiteFull Time
Peraton
Peraton: Provider of mission-critical national security technologies and services.
8+ YOEActive TS/SCI with poly; degree in IT/CS/cyber/data/software or equivalent experience; advanced cyber analysis skills; 8+ years experience with BS (or 6+ with MS,3+ with PhD); multiple cybersecurity certifications preferred.
Netflow, PCAP, NIDS, IPS, EDR, SIEM, vulnerability scanners, log collectors
3mo
Save
Mark Applied
Hide
IT Security Analyst
Baltimore, Maryland, United States
$90k-$100k/yr OnsiteFull Time
Baltimore Orioles
Baltimore Orioles: Privately owned Major League Baseball club based in Baltimore serving baseball fans.
2+ YOEBachelor’s in cybersecurity or IT; 2–5+ years in cybersecurity; strong analytical skills; knowledge of risk, resilience, and security tooling; on-site role.
SIEM, EDR, Vulnerability Scanning, Incident Response Tools
1mo
Save
Mark Applied
Hide
SOC Analyst - Tier 1
Fort Meade, Maryland, United States
$88k-$108k/yr OnsiteFull Time
Evans & Chambers Technology
Evans & Chambers Technology: HUBZone-certified technology delivering software integration, IT modernization, cybersecurity, and intelligence services to government and commercial organizations.
0+ YOETS/SCI with CI Poly required. High school diploma required; associate preferred. DoD 8570/8140 IAT Level II (e.g., CompTIA Security+) required. 0–2 years IT/cyber experience or equivalent military training.
SIEM, EDR, IDS/IPS
1mo
Save
Mark Applied
Hide
Principal Cyber Intelligence Analyst
Annapolis Junction, Maryland, United States
$104k-$155k/yr OnsiteFull Time
Northrop Grumman
Northrop GrummanNYSE: NOC: Global aerospace and defense technology.
Requires current U.S. Top Secret with SCI and recent polygraph, strong blue-team experience, threat detection engineering, DevSecOps coding skills, and experience across Windows, Linux, networking, AWS/Azure.
Windows, Linux, AWS, Azure, SIEM, EDR, Yara, SOAR
1mo
Save
Mark Applied
Hide
Principal Cyber Intelligence Analyst
Annapolis Junction, Maryland, United States
$104k-$155k/yr HybridFull Time
Northrop Grumman
Northrop GrummanNYSE: NOC: Global aerospace and defense technology.
8+ YOETop Secret/SCI clearance with recent polygraph; extensive SOC and defensive cyber experience; ability to build automation, tune detections, and work across Windows/Linux/AWS/Azure environments.
Windows, Linux, Networking, AWS, Azure, SIEM, EDR, Yara, Security Orchestration Automation & Response (SOAR)
1w
Save
Mark Applied
Hide
IS Support Analyst II
Baltimore, Maryland, United States
OnsiteFull Time
Axillon Aerospace
Axillon Aerospace: Private aerospace component manufacturer supplying engineered carbon-fiber composites to commercial and defense aerospace customers.
5+ YOEBachelor's degree or equivalent experience, 5+ years in IT or security support, Windows and Microsoft 365 knowledge, cybersecurity fundamentals, Secret clearance, and strong troubleshooting and communication skills.
Windows, Microsoft 365, MFA, antivirus, EDR, firewalls
3w
Save
Mark Applied
Hide
Cyber Monitoring Signature Analyst
Rosslyn or Beltsville
$80k-$128k/yr OnsiteFull Time
Peraton
Peraton: Provider of mission-critical national security technologies and services.
5+ YOEBachelor's degree and 5 years of relevant experience, or master's degree and 3 years; 3 years authoring and tuning SPL in Splunk; required security certification, U.S. citizenship, and clearance eligibility.
Splunk Cloud Enterprise Security, Splunk, SPL, SPL2, MITRE ATT&CK, Zeek, Suricata, EDR, Python, Regex, Microsoft Azure, Google GCP, Amazon AWS, IaaS, PaaS, SaaS, Microsoft Defender for Endpoint, Zscaler, Cloudflare, Splunk Mission Control, Detection as Code
3w
Save
Mark Applied
Hide
Cyber Monitoring Signature Analyst
Rosslyn or Beltsville
$80k-$128k/yr OnsiteFull Time
Peraton
Peraton: Provider of mission-critical national security technologies and services.
3+ YOEBachelor's degree with 5 years of relevant experience or master's degree with 3 years, 3 years of SPL experience, one listed security certification, U.S. citizenship, and ability to obtain Secret and Top Secret clearances.
Splunk, Splunk Enterprise Security, Splunk Cloud Enterprise Security, SPL, SPL2, Splunk Common Information Model (CIM), MITRE ATT&CK, Zeek, Suricata, EDR, Python, Regex, Microsoft Azure, Microsoft Azure Active Directory (AAD), Google GCP, Amazon AWS, IaaS, PaaS, SaaS, Microsoft Defender for Endpoint, Advanced Hunting, Zscaler, Cloudflare, Splunk Mission Control
2mo
Save
Mark Applied
Hide
ME00629-System Vulnerability Analyst 4
Fort Meade, Maryland, United States
$150k-$200k/yr OnsiteFull Time
Momentum Engineering, Inc.
Momentum Engineering, Inc.: Woman-owned U.S. defense and intelligence contractor delivering systems engineering, software, analytics, and test services to federal customers.
9+ YOEActive Top Secret/SCI with NSA Full Scope Polygraph; Master's +9 yrs (or Bachelor's +11 yrs or Associate +13 yrs) relevant cybersecurity experience; Red/Blue/Purple Team experience, network analysis, IOC identification, MITRE ATT&CK, NIST/ISO standards; willing to travel OCONUS.
MITRE ATT&CK Framework, NIST Cybersecurity Framework, NIST SP 800 Series, ISO/IEC 27001, Splunk, Microsoft Sentinel, Elastic, Python, SIEM, EDR
1mo
Save
Mark Applied
Hide
Security Operations Center (SOC) Tier 3 Analyst / Incident Responder
Baltimore, Maryland, United States
OnsiteFull Time
OneMain Financial
OneMain FinancialNYSE: OMF: The leader in offering nonprime customers responsible access to credit.
8+ YOE8+ years cybersecurity experience with 6+ years SOC experience; bachelor\u0002s degree or equivalent; 2+ DFIR/forensics years; requires multiple certifications (e.g., GCFA, GCIH, CISSP); deep expertise in enterprise incident response, detection engineering, and threat hunting.
Elastic Security, KQL, ES|QL/EQL, SQL, PowerShell, Python, Bash, CrowdStrike Falcon, Microsoft Defender XDR, Defender for Endpoint, Defender for Identity, Defender for Office 365, Defender for Cloud, Defender for Cloud Apps, Elastic, EDR/XDR, NDR, SIEM, SOAR, IDS/IPS, WAF, firewalls, VPN, DNS, DHCP, proxy, CASB, DLP, IAM, PAM, Kubernetes, Azure, AWS, Microsoft 365, Microsoft Entra ID, VMware, Hyper-V