37 edr analyst jobs at 25 companies in Middle River, MD
1mo
Save
Mark Applied
Hide
1mo
SOC Analyst
McLean, Virginia, United States
$96k-$112k/yrOnsiteFull Time
ID.me: Private American digital identity wallet and identity-verification helping people securely access government, healthcare, and commercial services.
1+ YOE1–2 years experience in information security or IT, familiarity with threat detection, incident response, SIEM/EDR tools, basic cloud knowledge, analytical and communication skills.
Peraton: Provider of mission-critical national security technologies and services.
Requires advanced degree or extensive experience in IT/Cybersecurity, proficiency with network and sensor data (Netflow, PCAP), SIEM, NIDS/IPS, EDR, vulnerability scanning, experience producing intelligence products, and active TS/SCI with poly.
Physicians Management Group: Healthcare management services organization providing administrative, financial, IT, HR, and billing support to a physician-owned primary-care network.
3+ YOEBachelor's degree and minimum 3 years IT security experience, CompTIA Security+ required; experience with SIEM, EDR, Microsoft 365 security, PowerShell, HIPAA, and healthcare EHR environments preferred.
SIEM, EDR, Proofpoint, Microsoft Entra ID (Azure AD), Microsoft Exchange Online, Microsoft Defender, Conditional Access, Microsoft Purview, PowerShell, RMM, Windows
Digital Global Connectors: Woman-owned cybersecurity services firm providing engineering, assessment, consulting, training, and operations services to federal and private-sector clients.
4+ YOEBachelor's degree and 4+ years incident response experience; US citizenship and ability to obtain Tier 2 Public Trust; expertise with SIEM/EDR/XDR, digital forensics, malware analysis, and incident documentation.
Microsoft Sentinel, Splunk Enterprise Security, Microsoft Defender XDR, Microsoft Defender for Endpoint, Microsoft Defender for Identity, Microsoft Defender for Cloud, CrowdStrike Falcon, Palo Alto Cortex XDR, Trellix, Cisco Secure, Wireshark, Velociraptor, SIEM, EDR, XDR, Microsoft Office Suite, ServiceNow, Jira
Los Angeles or San Francisco or Washington or San Diego or Seattle or London
$110k-$160k/yrOnsiteFull Time
CHAOS Industries: Redefining modern defense with a multi-product portfolio.
3+ YOE3+ years cybersecurity/IT experience, U.S. citizenship eligible for government facilities, familiarity with SIEM/EDR/XDR, CrowdStrike, Azure Sentinel, Microsoft GCC High, scripting (PowerShell/Python/Bash), and security incident response.
Saliense Consulting: Privately owned technology consulting firm serving federal and commercial customers with cybersecurity, engineering, modernization, and mission support.
5+ YOERequires 5+ years in digital forensic analysis, media and mobile acquisition, malware analysis, M365, Azure, AWS, virtual machines, CloudTrail, IAM logs, EDR, SIEM, and packet capture; Public Trust clearance required.
AmentumNYSE: AMTM: Global provider of engineering, technical, and mission-critical services.
3+ YOERequires 3–8+ years supporting SOC or incident response teams, experience with SIEM, EDR, threat hunting, malware analysis, and digital forensics, plus active TS/SCI or DOE Q clearance.
AmentumNYSE: AMTM: Global provider of engineering, technical, and mission-critical services.
3+ YOE3+ years SOC/incident response experience; familiarity with SIEM, EDR, threat hunting, malware analysis, digital forensics; knowledge of MITRE ATT&CK and NIST CSF; active TS/SCI or DOE Q clearance required.
Tetrad Digital Integrity: Cybersecurity firm delivering cybersecurity performance management and full-lifecycle cyber services to government and commercial clients.
12+ YOEAbility to obtain Public Trust; required bachelor's degree and 12+ years experience; hands-on incident detection/response, malware analysis or forensics; expertise with Windows/Linux, networking, SIEM/EDR/IDS/IPS; scripting (Python, PowerShell, Bash).
Koniag Data Solutions, LLC: Federal government contractor providing enterprise, professional, and operational solutions.
3+ YOEBachelor's or equivalent, 3+ years SOC/cybersecurity operations experience, SIEM/EDR experience, ability to obtain Public Trust, strong communication and analytical skills; relevant certifications preferred.
Ntiva: Managed IT, cybersecurity, and cloud services built to help organizations grow.
1+ YOERequires 1–2 years of cybersecurity or 3–5 years of IT experience, EDR/SIEM exposure, ConnectWise Manage experience, English communication, and CySA+, GCIH, or SC-200 certification or pursuit.
ConnectWise Manage, SentinelOne, CrowdStrike, Microsoft Defender, Microsoft Sentinel, Windows Event Viewer, SIEM, EDR
Advantage Investigations: Insurance-investigation firm serving insurers, third-party administrators, self-insured companies, and law firms.
Experience in collision investigation and vehicle/scene analysis, courtroom testimony and litigation support, valid driver’s license and reliable transportation, ability to collect and interpret EDR and physical evidence.
Event Data Recorder (EDR), LIDAR scanners, Drones/UAS, Total stations, photogrammetry, reconstruction software platforms
cFocus Software Incorporated: Private IT services firm providing cybersecurity, cloud, geospatial, and enterprise software services to U.S. federal agencies.
2+ YOEActive Public Trust, BS in CS/IT or related, 2+ years security operations, 1+ year EDR experience, SIEM log search and triage, strong network and log analysis skills.
Washington or Atlanta or Austin or Baltimore or Chicago or Virginia
$94k-$131k/yrHybridFull Time
DLA Piper: A global law firm providing comprehensive legal and business services.
7+ YOE7+ years in cybersecurity, Bachelor's in Information Security/Cybersecurity required, professional certs (e.g., CISSP, GIAC, SANS) preferred, SIEM/EDR/IDS/IPS and vendor tool experience, incident response and vulnerability management expertise.
Security Incident and Event Management (SIEM), Endpoint Detection and Response (EDR), Intrusion Detection/Prevention Systems (IDS/IPS), Microsoft Defender, CrowdStrike, Palo Alto Networks, malware sandbox, DNS, Active Directory, Exchange
Peraton: Provider of mission-critical national security technologies and services.
8+ YOEActive TS/SCI with poly; degree in IT/CS/cyber/data/software or equivalent experience; advanced cyber analysis skills; 8+ years experience with BS (or 6+ with MS,3+ with PhD); multiple cybersecurity certifications preferred.
National Renewable Energy Laboratory: Government-owned DOE national laboratory researching critical minerals, energy innovation, and energy security for public and private partners.
4+ YOERequires a relevant bachelor's degree and 9+ years, master's and 7+ years, or PhD and 4+ years; security certification; cybersecurity expertise; and ability to obtain DOE Q clearance as a U.S. citizen.
Baltimore Orioles: Privately owned Major League Baseball club based in Baltimore serving baseball fans.
2+ YOEBachelor’s in cybersecurity or IT; 2–5+ years in cybersecurity; strong analytical skills; knowledge of risk, resilience, and security tooling; on-site role.
Evans & Chambers Technology: HUBZone-certified technology delivering software integration, IT modernization, cybersecurity, and intelligence services to government and commercial organizations.
0+ YOETS/SCI with CI Poly required. High school diploma required; associate preferred. DoD 8570/8140 IAT Level II (e.g., CompTIA Security+) required. 0–2 years IT/cyber experience or equivalent military training.
UnitedHealth GroupNYSE: UNH: Diversified health care helping people live healthier lives.
3+ YOE3+ years in threat intelligence, security engineering, IR or malware analysis; strong software engineering and cybersecurity integration experience; experience with TIPs, SIEM, SOAR, and automation.
Splunk, Microsoft Sentinel, IBM QRadar, Elastic, Python, Java, JavaScript/Node.js, Go, REST APIs, JSON, STIX/TAXII, Bash, PowerShell, Git, CI/CD, Linux, Ubuntu, CentOS, RHEL, Kali, AWS, Docker, Windows Server, Active Directory, Mac OS X, LLM, MCP, RAG, SIEM, SOAR, EDR, NDR, MISP, OpenCTI, ThreatConnect, Anomali, ThreatQuotient, Cortex XSOAR, Splunk SOAR, Swimlane, Tines, Kafka, Spark, Elasticsearch