Cyber Security Operations Analyst

Mantech International Corporation
Boulder, CO, United States
29 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Starter
Experience required
0 years minimum
Working hours
Shift work
Job source

Tech stack

Cyber Security Computer Networks Linux Intrusion Detection Systems Office Suite ArcSight SIEM Tool Phishing Security Information and Event Management Transmission Control Protocol (TCP) Windows Desktop Firewalls (Computer Science) Information Technology
+1 more
Splunk

Job description

  • Monitor security consoles and identify security platform alerts (SIEM, IDS/IPS, Firewall, etc.) for potential malicious activity.

  • Perform initial analysis and triaging of security events to determine severity and impact.

  • Maintain detailed logs of activity and create initial incident reports for escalation to incident responders and other team members.

  • Review network traffic patterns and system logs to identify unauthorized access or anomalies.

  • Assist with the health and maintenance checks of security tools and sensors.

  • Coordinate with team members and shift leads to ensure a seamless handoff between night and day operations.

  • This position requires shifts that may include days, nights, and/or weekends to ensure continuous coverage. Examples include: Saturday & Sunday: 12-hour night shifts (8:00 PM - 8:00 AM). Weekdays: Two additional 8-hour shifts (to be scheduled) to complete a 40-hour work week. Monday - Friday: shifts may be 8am - 4pm, 4pm to 12 midnight, or 12 midnight to 8am.

Requirements

  • Bachelor’s degree in Cybersecurity, Computer Science, or a related field (or equivalent military/professional experience) is preferred.

  • 0-2 years of experience in a SOC, NOC, or technical support environment.

  • Basic understanding of TCP/IP networking and common protocols as well as:

  • Familiarity with Windows and Linux operating systems.

  • Exposure to security tools like Splunk, ArcSight, Sentinel or others is a plus.

  • Basic understanding of Security alerts, logs, and event analysis.

  • Basic understanding of common attack types (phishing, malware, brute force, lateral movement).

  • Must be able to consistently work the 12-hour weekend night shift (Sat/Sun 8 PM - 8 AM) and/or other assigned shifts.

Preferred Qualifications:

  • Certifications: Security+, CySA+, GCIH, or similar is preferred.

  • Active Top Secret clearance

Clearance Requirements:

  • Must be a US Citizen with a current/active secret clearance.

Physical Requirements:

  • Must be able to remain in a stationary position 50%

  • Constantly operates a computer and other office productivity machinery, such as a calculator, copy machine and computer printer.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.juju.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:23 min

Understanding the complexity of cybersecurity domains

Jennifer Reif · LIVE

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

2:39 min

Exposing stored XSS and phishing attacks via markdown

Ramona Schwering Ramona Schwering · WWC Europe 2026

Videos

See all

Related articles

See all