> Markdown version of [/jobs/ext/1978492-cybersecurity-ops-analyst](https://www.wearedevelopers.com/jobs/ext/1978492-cybersecurity-ops-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Ops Analyst - **Company:** Science Applications International Corporation - **Location:** Santa Ana, CA, United States (Remote available) - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** JavaScript (Programming Language), Antivirus Softwares, C++ (Programming Language), Cyber Security, Intrusion Detection Systems, Python (Programming Language), Security Information and Event Management, Software Vulnerability Management, In-Plane Switching (IPS), Firewalls (Computer Science), Cybercrime, Malware Detection, Vulnerability Analysis - **Published:** August 7, 2026 - **Apply:** https://us.experteer.com/career/view-jobs/cybersecurity-ops-analyst-santa-ana-ca-usa-58826317 ## About the Role operational risk mitigations * Evaluate new security tools and technologies and align with IT security strategy * Utilize vetted tools to scan, contain, mitigate and remediate vulnerabilities and intrusions * Assist with government policy implementation (e.g., NIST) and tailor processes * Review system audits and close corrective actions; brief senior staff Tasks * Bachelor in related field and 2 years of related experience (4+ years preferred) * Preferred Certifications: CySA+, Security+ or GIAC GSEC (or similar) * Must pass LiveScan background, department reviews, and drug screen * Proficient programming languages: Python, C++, JavaScript * Experience with SIEM technologies and incident response * Knowledge of IDS/IPS, firewalls, anti-virus/anti-malware * Experience with Sentinel SIEM or similar SIEM tools * Ownership of security incidents and full IR cycle * Adherence to SOC Standard Operating Procedures Key requirements * ## Description Experteer Overview In this role, you will join the County of Orange SOC to protect assets, systems and data from cyber threats. You will manage SIEM monitoring, incident response, and forensics while supporting vulnerability management and risk activities. You'll mentor junior analysts, contribute to cyber metrics and threat intelligence, and help advance security controls and automation. This is a mission-driven, 24/7 operation with hybrid on-site/remote work that offers meaningful impact on public safety IT security. Compensation / Benefits * Monitor security events across networks and systems * Mentor and guide Tier 1 SOC Analysts * Identify, investigate, and report potential security incidents * Support risk and vulnerability assessments at multiple levels * Contribute to cyber metrics development, maintenance and reporting * Support cyber threat intelligence development and reporting * Assist in automating routine security tasks * Recommend and implement security controls and operational risk mitigations * Evaluate new security tools and technologies and align with IT security strategy * Utilize vetted tools to scan, contain, mitigate and remediate vulnerabilities and intrusions * Assist with government policy implementation (e.g., NIST) and tailor processes * Review system audits and close corrective actions; brief senior staff Tasks * Bachelor in related field and 2 years of related experience (4+ years preferred) * Preferred Certifications: CySA+, Security+ or GIAC GSEC (or similar) * Must pass LiveScan background, department reviews, and drug screen * Proficient programming languages: Python, C++, JavaScript * Experience with SIEM technologies and incident response * Knowledge of IDS/IPS, firewalls, anti-virus/anti-malware * Experience with Sentinel SIEM or similar SIEM tools * Ownership of security incidents and full IR cycle * Adherence to SOC Standard Operating Procedures Key requirements * ## Related Videos - [Get security done: streamlining application security with Aikido](https://www.wearedevelopers.com/videos/1638-get-security-done-streamlining-application-security-with-aikido) - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [The Developer Workstation Blind Spot: Why Your Security Stack Can't See What Matters Most](https://www.wearedevelopers.com/videos/100254-the-developer-workstation-blind-spot-why-your-security-stack-can-t-see-what-matters-most) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)