CIRT Tier 1 Analyst / Active Secret

Peraton Inc
Arlington, VA, United States
4 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
2 years minimum
Compensation
$80,000.0 - $128,000.0
Working hours
Shift work

Tech stack

Cloud Computing Security Cyber Security Issue Tracking Systems Network Protocols Windows PowerShell Phishing Mitre Att&ck Azure Security Center Splunk Servicenow

Job description

  • Detect, classify, process, track, and report on cyber security events and incidents.
  • Perform triage of incoming alerts and requests in a 24x7x365 environment.
  • Monitor and triage the CIRT hotline, email inboxes, and fax.
  • Create tickets and initiate workflows as instructed in SOPs.
  • Triage Splunk Enterprise Security (ES) Alerts and Microsoft Defender for Endpoint (MDE) Alerts.
  • Identify and triage benign, spam, exercise, and malicious phishing email.
  • Perform binary artifact triage to understand malware behavior.
  • Coordinate and collaborate with Department teams as needed to analyze and respond to events and incidents.
  • Report incident information to the Cybersecurity and Infrastructure Security Agency (CISA).
  • Collaborate with other local, national and international CIRTs as directed.
  • Deliver and oversee remediation activities.
  • Conduct shift change briefs., MANTECH seeks a motivated, career and customer-oriented Budget Analyst to join our team in Arlington, VA. This is an onsite position. Responsibilities include, but are not limite…
  • 4 days ago, MANTECH seeks a motivated, career and customer-oriented Senior Budget Analyst to join our team in Arlington, VA. This is an onsite position. Responsibilities include, but are not…
  • 4 days ago

Requirements

  • Bachelor’s degree and at least 2 years of experience or a High School diploma and 6 years of experience.
  • Must possess or be able to obtain at least one of the following certifications before start date. Continued certification required as a condition of employment:

  • CCNA-Security
  • CND
  • CySA+
  • GICSP
  • GSEC
  • Security+ CE
  • SSCP
  • Demonstrated knowledge of ticketing systems (i.e. ServiceNow, Remedy).
  • Demonstrated knowledge of computer networking protocols and principles.
  • Demonstrated knowledge of cybersecurity principles, practices, threats, and vulnerabilities.
  • Demonstrated knowledge of incident response principles and practices.
  • Skill in critical thinking by evaluating information and making independent decisions.
  • Demonstrated ability to work autonomously while taking initiative on assigned responsibilities.
  • Ability to follow established procedures and written guidance with precision and attention to detail.
  • Demonstrated skills in taking ownership of problems and seeing them through to completion.
  • U.S. Citizenship required.
  • Active Secret security clearance., * Experience with Splunk for security monitoring and alert triage.
  • Knowledge of Microsoft Defender for Endpoint for security monitoring and response.
  • Experience with ServiceNow for ticketing and workflow management.
  • Knowledge of cloud security monitoring fundamentals.
  • Experience with email security and phishing analysis.
  • Knowledge of the MITRE ATT&CK framework.
  • Familiarity with PowerShell and basic scripting concepts.

About the company

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world’s leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can’t be done by solving the most daunting challenges facing our customers. Visit to learn how we’re keeping people around the world safe and secure. Target Salary Range

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerjet.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

56 sec

Integrating automated approval workflows into the portal

Markus Eisele Markus Eisele · WWC 2025

1:29 min

Evaluating phishing emails that leverage artificial time constraints

Mauro Verderosa · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

2:27 min

Establishing a simulated technical environment for the workflow demo

Tobias Dunn-Krahn · LIVE

Videos

See all

Related articles

See all