> Markdown version of [/jobs/ext/1778354-cybersecurity-analyst](https://www.wearedevelopers.com/jobs/ext/1778354-cybersecurity-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Analyst - **Company:** BrightForge Innovation LLC - **Location:** Hyattsville, MD, United States - **Experience:** Experienced - **Salary:** $90,985.0 - $94,981.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Amazon Web Services, Systems Engineering, Microsoft Azure, Bash Shell, Cloud Computing Security, Communications Protocols, CompTIA Security+, Cyber Security, Domain Name System (DNS), Multi-Factor Authentication, Event Logging, Identity and Access Management, Virtual Private Networks (VPN), Python (Programming Language), Network Security, Pcap, Log Analysis, Routing, Windows PowerShell, Phishing, Security Information and Event Management, SQL Injection, Syslog, TCP/IP, Tcpdump, Traffic Analysis, Wireshark, Software Vulnerability Management, EndPointSecurity, Scripting, Transport Layer Security, Cloud Platform System, Mitre Att&ck, QRadar, Malware, Cyber Threat Analysis, Firewalls (Computer Science), Cross-Site Scripting (XSS), Falcon Platform, Information Technology, Nessus, Microsoft Sentinel, Splunk, SentinelOne Expertise, Qualys, Vulnerability Analysis - **Published:** July 31, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=fa8e896bf382ae29 ## About the Role This position requires hands-on experience with SIEM platforms, network protocol analysis, endpoint detection tools, and security remediation workflows in accordance with established framework standards., * Experience: Minimum 2-4 years of technical experience as a Cybersecurity Analyst, SOC Analyst, or Information Security Specialist. * SIEM & Log Analysis: Hands-on experience operating SIEM systems (e.g., Splunk, Sentinel, QRadar) to write detection queries, analyze Syslog/Windows Event logs, and identify suspicious activity. * Networking & Security Fundamentals: Deep understanding of TCP/IP stack, DNS, routing/switching concepts, firewalls, VPNs, TLS/SSL, and common attack vectors (e.g., Phishing, Ransomware, SQLi, XSS). * Endpoint Protection: Direct experience with Endpoint Detection and Response (EDR/XDR) platforms (e.g., CrowdStrike, Defender for Endpoint, SentinelOne). * Packet & Traffic Analysis: Proficiency using tools like Wireshark or tcpdump to inspect PCAP files and trace malicious network behavior. * Communication & Incident Management: Ability to produce clear incident triage reports and communicate mitigation steps effectively during active incident response scenarios. Technical Competencies (Preferred) * Active industry certifications such as CompTIA Security+, CySA+, GIAC (GSEC/GCIH), or Certified Ethical Hacker (CEH). * Scripting experience in Python, PowerShell, or Bash for automating log parsing and security tasks. * Knowledge of cloud security architecture and threat monitoring in AWS, Azure, or GCP environments. * Practical familiarity with the MITRE ATT&CK framework to map adversary tactics and techniques. ## Description We are looking for an experienced Cybersecurity Analyst to monitor, detect, and respond to security threats across our IT infrastructure, networks, and cloud environments. In this role, you will analyze security telemetry, investigate security incidents, perform vulnerability management, and implement defensive controls to protect our systems from unauthorized access, malware, and data breaches., As a Cybersecurity Analyst, you will serve as a frontline defender of our technical environment. You will work within our Security Operations Center (SOC) framework to monitor security event logs, evaluate threat intelligence, conduct root-cause analysis on security alerts, and execute incident response procedures., * Threat Monitoring & Analysis: Monitor security logs, alerts, and event streams across network firewalls, endpoint protection systems, IAM platforms, and cloud environments using SIEM tools (e.g., Splunk, Microsoft Sentinel). * Incident Response & Triage: Investigate security incidents, perform initial containment, isolate compromised endpoints, and execute containment/remediation protocols following incident response playbooks. * Vulnerability Assessment: Conduct regular vulnerability scans across infrastructure and applications using tools like Nessus or Qualys; prioritize and track patching efforts with IT engineering teams. * Threat Intelligence Integration: Evaluate actionable threat intelligence feeds, Indicator of Compromise (IoC) data, and emerging CVEs to update security rules and detection signatures. * Security Controls & Hardening: Collaborate with system administrators and network engineers to enforce baseline security configurations, principle of least privilege access, and multi-factor authentication (MFA). * Documentation & Compliance: Document security incidents, root-cause analyses, and post-incident reviews; support compliance audits aligned with standards such as NIST CSF, ISO 27001, or SOC 2. ## Related Videos - [Better Together: Leveraging Your Observability Tools as a SIEM](https://www.wearedevelopers.com/videos/2118-better-together-leveraging-your-observability-tools-as-a-siem) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [An Applied Introduction to eBPF with Go](https://www.wearedevelopers.com/videos/1075-an-applied-introduction-to-ebpf-with-go) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Turning Container security up to 11 with Capabilities](https://www.wearedevelopers.com/videos/718-turning-container-security-up-to-11-with-capabilities) - [Debunking the Top 10 Myths about Web 3](https://www.wearedevelopers.com/videos/634-debunking-the-top-10-myths-about-web-3) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)