> Markdown version of [/jobs/ext/238808-cyber-defense-specialist](https://www.wearedevelopers.com/jobs/ext/238808-cyber-defense-specialist). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Defense Specialist - **Company:** the Trace - **Location:** Sumter, SC, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Cyber Security, Computer Networks, Linux, Networking Hardware, Intrusion Detection and Prevention, Software Tools, Malware, Firewalls (Computer Science), Information Technology, Cyber Warfare, Vulnerability Analysis - **Published:** May 16, 2026 - **Apply:** https://www.juju.com/job/00000000fzx161 ## About the Role + Active, in-scope US Government issued Top Secret clearance with SCI eligibility. + Due to the nature of the work and contract requirements, US Citizenship is required. + DoDM 8140 IAT Level 2 (CySA+) or higher certification. + DoDM 8140 CSSP-A certification. + DoDM 8140 CSSP-IR certification. Desired Qualification + 5+ years' relevant work experience. Education + Bachelor's degree in Computer Science or related field OR 5+ years' relevant work experience. ## Description Trace Systems is seeking a dynamic Cyber Defense Specialist to join our team in support of the AFCENT Combined Air Operations Center (CAOC) contract at Shaw AFC, SC. This role offers the opportunity to management, administration and implementation of cybersecurity Mission Defense programs to ensure confidentiality, availability, and integrity of Enterprise and AOC networks, systems and information. If you're ready to make a significant impact and thrive in a mission-critical environment, this opportunity is for you!The job responsibilities include, but are not limited to: + Analyze identified anomalous or malicious activity to determine weaknesses exploited, exploitation methods, effects on system and information; + Assist in the development indicators, alerts, and/or signatures for cybersecurity applications and tools; + Correlate cyber events and/or incidents to information obtained from sources (e.g., alerts, intelligence, threat reports, etc.); + Evaluate logs from network resources (e.g., individual hosts, firewalls, intrusion detection/prevention systems, etc.); + Characterize and analyze network traffic to identify anomalous activity and potential indicators of threats to network resources; + Perform trend analysis and reporting on network traffic and cyber events/incidents. + Generate system and network baselines; + Collect and analyze intrusion artifacts (e.g., source code, malware, trojans); + Conduct analysis of host systems (Windows and Linux) for indications of compromise; + Perform initial, forensically sound collection of images and inspect to discern possible mitigation/remediation; + Perform real-time incident handling (e.g., forensic collections, intrusion correlation/tracking, threat analysis, and direct system remediation) tasks; + Serve as technical experts and liaisons to law enforcement personnel; + Track, escalate and document cyber incidents from initial detection through final resolution, IAW SPIN-C and applicable cybersecurity regulations; + Use discovered data to develop mitigations/remediation to potential network incidents; + Write network guidance and report on incident findings to appropriate constituencies/stakeholders; + Configure and maintain Security Information and Event Manager dashboards. + Attend and participate in cybersecurity meetings, as required; + Develop and submit a Cybersecurity Monthly Status Report; + Develop and submit recurring/ad-hoc reports, as required by the government; + Perform applicable technical support and O&M activities for cyber mission defense systems; + Utilize standard software tools to perform vulnerability scans of network equipment and software; and assist network, systems and client administrators in implementing corrective actions required when vulnerabilities are detected. + Other Duties as Required. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Enhancing Workload Security in Kubernetes](https://www.wearedevelopers.com/videos/356-enhancing-workload-security-in-kubernetes) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Full Spectrum File Uploads](https://www.wearedevelopers.com/videos/870-full-spectrum-file-uploads) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [Dev Digest 216: CyberSec + Mythos, Stack Overflow for Agents & DOOM in TTF](https://www.wearedevelopers.com/magazine/728-dev-digest-216-cybersec-mythos-stack-overflow-for-agents-doom-in-ttf) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)