> Markdown version of [/jobs/ext/1143800-cybersecurity-ops-analyst](https://www.wearedevelopers.com/jobs/ext/1143800-cybersecurity-ops-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Ops Analyst - **Company:** Science Applications International Corporation - **Location:** United States (Remote available) - **Experience:** Experienced - **Salary:** $40,001.0 - $80,000.0 - **Contract:** Permanent contract - **Skills:** Adobe Analytics, Data Analysis, Cyber Security, Data Files, Network Forensics, Security Information and Event Management - **Published:** July 2, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=b5e53def2257663b ## About the Role Required Education and Experience Requirements: * Bachelors and two (2) years or more experience OR AA Degree in related discipline and three (3) years or more experience. * Must have a minimum of two (2) year cybersecurity operations related experience. * Must possess the following certification(s): Security+ AND CySA+ * Strong leadership skills; proven ability to lead and motivate a team effectively. * Can-do attitude. * Self-motivated and quick-learner. * Excellent communication skills both verbal and written. * Ability to multitask and collaborate to solve complex technical problems. Desirables: * Three (3) years cybersecurity operations related experience. ## Description SAIC has an opening for a Cybersecurity Ops Analyst. This position is located in Oak Ridge, Tennessee. SAIC is open to the position working remotely. The SAIC Cybersecurity Ops Analyst (Shift Leader) leads advanced security event analysis as part of the 24/7/365 Security Operations Center's Detection & Response team. They manage daily activities using a SIEM, monitoring events from multiple sources while overseeing a team of Cybersecurity Ops Associates. In addition to their incident response duties, the Shift Leader manages the operations of the shift, including timecard and expense approval, as well as daily training and performance tracking. They also participate in threat hunting, intelligence gathering, and strive to improve procedures and processes within the ESOC., * Conduct Lead the identification, prioritization, and response to intrusion activities and anomalous behavior as shift leader on an 24/7/365 Detection & Response Team. * Assess the impact of potentially malicious traffic on the network and infrastructure. * Perform in-depth analysis of security anomalies and incidents using network forensics via a SIEM and host level forensic via an EDR tool. * Document all incidents within the shift and maintain incident tickets. * Communicate and escalate issues and incidents as necessary. * Handle IP/URL/Hash block requests and develop new correlation content. * Conduct second-level real-time monitoring and analysis of security alerts. * Delegate event analysis tasks to Cybersecurity Ops Associates, as required. * Provide feedback on tuning for enhanced anomaly detection. * Retrieve and review data files associated with security events. * Evaluate malicious activity, and review vulnerability information to assess risk. * Collaborate with other teams for incident resolution. * Manage shift operations: Train, mentor, and oversee Cybersecurity Ops Associates, including approving timecards, expenses, providing feedback, writing performance reviews and ensuring shift coverage for 24/7/365 operation. * Continually review and improve documentation procedures * Participate in knowledge sharing * Additional responsibilities will include the ability to train, mentor Cybersecurity Ops Associates ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Introduction to TXT](https://www.wearedevelopers.com/videos/30-introduction-to-txt) - [Data Science in Retail](https://www.wearedevelopers.com/videos/586-data-science-in-retail) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Data Analyst Salary in Switzerland](https://www.wearedevelopers.com/magazine/276-data-analyst-salary-in-switzerland) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)