5 threat detection analyst jobs at 5 companies in Timonium, MD
1mo
Save
Mark Applied
Hide
1mo
AOUSC - Insider Threat Analyst
Washington, District of Columbia, United States
HybridFull Time
cFocus Software Incorporated: Private IT services firm providing cybersecurity, cloud, geospatial, and enterprise software services to U.S. federal agencies.
3+ YOEActive Public Trust clearance, B.S. in CS/IT or related, 3+ years IR/insider threat experience, live triage, log correlation, detection rule refinement, experience with Velociraptor, Splunk ES, and Sentinel, knowledge of NIST incident handling.
ID.me: Private American digital identity wallet and identity-verification helping people securely access government, healthcare, and commercial services.
1+ YOE1–2 years experience in information security or IT, familiarity with threat detection, incident response, SIEM/EDR tools, basic cloud knowledge, analytical and communication skills.
Northrop GrummanNYSE: NOC: Global aerospace and defense technology.
Requires current U.S. Top Secret with SCI and recent polygraph, strong blue-team experience, threat detection engineering, DevSecOps coding skills, and experience across Windows, Linux, networking, AWS/Azure.
Security Operations Center (SOC) Tier 3 Analyst / Incident Responder
Baltimore, Maryland, United States
OnsiteFull Time
OneMain FinancialNYSE: OMF: Provides personal loans and credit cards to nonprime consumers.
8+ YOE8+ years cybersecurity experience with 6+ years SOC experience; bachelor\u0002s degree or equivalent; 2+ DFIR/forensics years; requires multiple certifications (e.g., GCFA, GCIH, CISSP); deep expertise in enterprise incident response, detection engineering, and threat hunting.
Elastic Security, KQL, ES|QL/EQL, SQL, PowerShell, Python, Bash, CrowdStrike Falcon, Microsoft Defender XDR, Defender for Endpoint, Defender for Identity, Defender for Office 365, Defender for Cloud, Defender for Cloud Apps, Elastic, EDR/XDR, NDR, SIEM, SOAR, IDS/IPS, WAF, firewalls, VPN, DNS, DHCP, proxy, CASB, DLP, IAM, PAM, Kubernetes, Azure, AWS, Microsoft 365, Microsoft Entra ID, VMware, Hyper-V