7 threat detection analyst jobs at 6 companies in Laurel, MD

1mo
Save
Mark Applied
Hide
AOUSC - Insider Threat Analyst
Washington, District of Columbia, United States
HybridFull Time
cFocus Software
cFocus Software: Provides cybersecurity compliance and enterprise IT services for government.
3+ YOEActive Public Trust clearance, B.S. in CS/IT or related, 3+ years IR/insider threat experience, live triage, log correlation, detection rule refinement, experience with Velociraptor, Splunk ES, and Sentinel, knowledge of NIST incident handling.
Velociraptor, Splunk ES, Sentinel
1mo
Save
Mark Applied
Hide
SOC Analyst
Crownsville, Maryland, United States
OnsiteFull Time
DMI
DMI: Provides end-to-end digital transformation and managed IT services.
Monitor, detect, and analyze threats; perform threat hunting, triage incidents, develop SIEM rules, support incident response; bachelor's in CS/IS/engineering/business preferred and relevant security certifications.
Wireshark, VirusTotal, Splunk, Python, PowerShell, VBScript
1mo
Save
Mark Applied
Hide
SOC Analyst
McLean, Virginia, United States
$96k-$112k/yr OnsiteFull Time
ID.me
ID.me: Provides secure digital identity verification and authentication services.
1+ YOE1–2 years experience in information security or IT, familiarity with threat detection, incident response, SIEM/EDR tools, basic cloud knowledge, analytical and communication skills.
SIEM, IDS/IPS, EDR, Splunk, Chronicle, Python, Bash, AWS, GCP, Azure, LLMs
2w
Save
Mark Applied
Hide
Enterprise Cybersecurity Analyst
McLean, Virginia, United States
$99k-$225k/yr OnsiteFull Time
Booz Allen Hamilton
Booz Allen HamiltonNYSE: BAH: Provides technology and management consulting services to diverse organizations.
Cybersecurity operations or security engineering experience, threat detection or incident response, vulnerability assessment, cross-functional collaboration, and a bachelor's degree. U.S. citizenship required.
CrowdStrike Falcon EDR/AV, Tenable Cloud Security Enterprise, BigID, Security Information and Event Management (SIEM), Security Orchestration, Automation, and Response (SOAR), Python, PowerShell, AWS, Azure, Google Cloud, Risk Management Framework (RMF), NIST 800-53, Defense Federal Acquisition Regulation Supplement (DFARS)
2w
Save
Mark Applied
Hide
Enterprise Cybersecurity Analyst
McLean, Virginia, United States
$99k-$225k/yr HybridFull Time
Booz Allen Hamilton
Booz Allen HamiltonNYSE: BAH: Consulting and technology services for government and commercial clients
Cybersecurity operations or security engineering experience, threat detection or incident response, vulnerability assessment support, a bachelor's degree, and U.S. citizenship; cloud and DoD security experience preferred.
CrowdStrike Falcon EDR/AV, Tenable Cloud Security Enterprise, BigID, Security Information and Event Management (SIEM), Security Orchestration, Automation, and Response (SOAR), Python, PowerShell, AWS, Azure, Google Cloud, Risk Management Framework (RMF), NIST 800-53, Defense Federal Acquisition Regulation Supplement (DFARS)
1w
Save
Mark Applied
Hide
Senior Cyber Technical Analyst
Chantilly, Virginia, United States
$146k-$180k/yr OnsiteFull Time
Amentum
AmentumNYSE: AMTM: Global provider of engineering, technical, and mission support services.
10+ YOEBachelor's degree and 10 years of technical cyber analysis experience required, with active Top Secret/SCI clearance, advanced cyber investigations, forensics, intelligence analysis, communications, and threat detection expertise.
cyber forensics-analysis tools
4w
Save
Mark Applied
Hide
Security Operations Center (SOC) Tier 3 Analyst / Incident Responder
Baltimore, Maryland, United States
OnsiteFull Time
OneMain Financial
OneMain FinancialNYSE: OMF: Provides personal loans and credit cards to nonprime consumers.
8+ YOE8+ years cybersecurity experience with 6+ years SOC experience; bachelor\u0002s degree or equivalent; 2+ DFIR/forensics years; requires multiple certifications (e.g., GCFA, GCIH, CISSP); deep expertise in enterprise incident response, detection engineering, and threat hunting.
Elastic Security, KQL, ES|QL/EQL, SQL, PowerShell, Python, Bash, CrowdStrike Falcon, Microsoft Defender XDR, Defender for Endpoint, Defender for Identity, Defender for Office 365, Defender for Cloud, Defender for Cloud Apps, Elastic, EDR/XDR, NDR, SIEM, SOAR, IDS/IPS, WAF, firewalls, VPN, DNS, DHCP, proxy, CASB, DLP, IAM, PAM, Kubernetes, Azure, AWS, Microsoft 365, Microsoft Entra ID, VMware, Hyper-V