> Markdown version of [/jobs/ext/1920063-t1-cyber-network-defense-analyst-shift-w-active-ts](https://www.wearedevelopers.com/jobs/ext/1920063-t1-cyber-network-defense-analyst-shift-w-active-ts). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # T1 Cyber Network Defense Analyst - Shift (w/ active TS) - **Company:** Critical Solutions - **Location:** Washington, DC, United States - **Experience:** Experienced - **Salary:** $58,000.0 - $74,000.0 - **Contract:** Permanent contract - **Skills:** JavaScript (Programming Language), Vbscript, Antivirus Softwares, Cyber Security, Computer Networks, Domain Name System (DNS), Monitoring of Systems, Hypertext Transfer Protocols (HTTP), Network Topologies, Internet Control Message Protocol, Intrusion Detection Systems, Python (Programming Language), Network Security, Pcap, Simple Mail Transfer Protocols, Packet Analyzer, Network Administration, Open Source Intelligence, Windows PowerShell, Security Information and Event Management, Software Engineering, Wireshark, Data Logging, Scripting, Malware, Firewalls (Computer Science), Information Technology, Vulnerability Analysis - **Published:** August 4, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=4766c2cc0fb5b9f9 ## About the Role * Active TS/SCI and must be able to obtain and maintain an Entry on Duty (EOD) clearance * Must have the ability to work non-core hours, if necessary. * Bachelor's degree in Computer Science, Engineering, Information Technology, Cybersecurity, or related field AND a minimum of two (2) years professional experience in the areas listed below: + Network Administration + Unix/Linux Administration + Software engineering + Software development + Systems administration + Help desk/IT support * The ideal candidate is a self-motivated individual in pursuit of a career in cyber security. * Familiarity with a SOC's purpose and role within an organization * General understanding of common network ports and protocols (e.g. TCP/UDP, HTTP, ICMP, DNS, SMTP, etc) * Familiarity with network topologies and network security device functions (e.g. Firewall, IDS/IPS, Proxy, DNS, etc). * Familiarity with packet analysis tools such as Wireshark * Able to perform critical thinking and analysis to investigate cyber security alerts * Familiarity with common malware and attack vectors * Familiarity with Windows operating systems and standard OS logging * Familiarity with Antivirus, DLP, and host based firewalls * Must have one of the following certifications: A+ CE, CCNA-Security, CND, Network+ CE, SSCP, Security+, CySA+ PREFERRED QUALIFICATIONS: * Familiar with SOC methodologies and processes * Familiarity with scripting languages (e.g. Python, Powershell, Javascript, VBS etc), CLEARANCE REQUIREMENT: Must possess an active DoD Top Secret Clearance. In addition, selected candidate must undergo background investigation (BI) and finger printing by the federal agency and successfully pass the preceding to qualify for the position. US CITIZENSHIP IS REQUIRED ## Description Critical Solutions has an immediate opening for a Tier 1 Cyber Network Defense Analyst (CNDA) to support our federal customer in Washington, DC. The Tier 1 Cyber Network Defense Analyst (CNDA) will be part of a team that provides security operations center (SOC) support, cyber analysis, application development, and a 24x7x365 support staff. Candidates must have the ability to work non-core hours, if necessary. Duties include network security monitoring and detection. Proactively searching for threats. Inspect traffic for anomalies and new malware patterns. Investigate and analyze logs. Provide analysis and response to alerts, and document activity in SOC investigations and Security Event Notifications (SENs)., * Utilize a SIEM for enterprise monitoring and detection * Create Security Event Notifications to document investigation findings * Perform critical thinking and analysis to investigate cyber security alerts * Analyze network traffic using enterprise tools (e.g. Full PCAP, Firewall, Proxy logs, IDS logs, etc) * Collaborate with team members to analyze an alert or a threat * Stay up to date with latest threats * Monitor shared email box for notifications and requests * Utilize OSINT to aid in their investigation * Contribute to content tuning requests ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Enhancing Workload Security in Kubernetes](https://www.wearedevelopers.com/videos/356-enhancing-workload-security-in-kubernetes) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Full Spectrum File Uploads](https://www.wearedevelopers.com/videos/870-full-spectrum-file-uploads) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [WeAreDevelopers LIVE - Yes, CSS Can Do That!](https://www.wearedevelopers.com/videos/1819-wearedevelopers-live-yes-css-can-do-that) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Dev Digest 216: CyberSec + Mythos, Stack Overflow for Agents & DOOM in TTF](https://www.wearedevelopers.com/magazine/728-dev-digest-216-cybersec-mythos-stack-overflow-for-agents-doom-in-ttf)