> Markdown version of [/jobs/ext/2570826-defensive-cyber-operations-analyst](https://www.wearedevelopers.com/jobs/ext/2570826-defensive-cyber-operations-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Defensive Cyber Operations Analyst - **Company:** Booz Allen Hamilton Holding Corporation - **Location:** United States - **Experience:** Experienced - **Salary:** $69,000.0 - $158,000.0 - **Contract:** Permanent contract - **Skills:** Microsoft Word, Microsoft Excel, Artificial Intelligence, Cyber Security, Computer Networks, Data Infrastructure, Intrusion Detection and Prevention, Network Security, Microsoft Office, Network Administration, Microsoft PowerPoint, Security Software, Service Pack, Security Information and Event Management, Enterprise Software Applications, Information Technology, Cybercrime, Cyber Warfare, Splunk - **Published:** August 11, 2026 - **Apply:** https://bah.wd1.myworkdayjobs.com/BAH_Jobs/job/Peterson-AFB-CO/Defensive-Cyber-Operations-Analyst_R0246700 ## About the Role * 3+ years of experience conducting DCO, SOC, JCC, or NOSC mission operations * Experience supporting Defensive Cyberspace Operations within a 24x7 operations center, including shift work * Experience advising on network security issues and enforcing vulnerability mitigation policies and procedures * Experience developing reports, presenting daily network security summaries, and communicating clearly with senior leaders and varied audiences * Knowledge of management and monitoring of network security components, devices, and services * Knowledge of cybersecurity tools including Splunk, SIEM capabilities, Big Data Platform applications, Host-Based Security System, and DoD Security Incident Response processes * Ability to support Panama schedule DCO Watch Stander shifts, holidays, and weekends on an as-needed basis * TS/SCI clearance * Bachelor's degree * Security+ or DoDM 8140.03 Certification Nice If You Have: * Experience developing or delivering cyberspace operations support at the Combatant Command or Major Command level * Experience supporting DoD cyber missions * Experience using Microsoft Office tools, including Excel, Word, and PowerPoint * Knowledge of cybersecurity and cyberspace operations doctrine, Joint Publications, and policy implementation * Knowledge of modern computer systems, client and server models, LAN or WAN concepts, network management, and security monitoring principles * Knowledge of implementing security patching across enterprise systems * Ability to formulate recommendations for corrective actions that address identified risks and support JCC operations * Possession of strong oral and written communication skills for technical and non-technical audiences ## Description Be an Early Applicant In-Office Peterson Air Force Base, CO, USA 69K-158K Annually Mid level In-Office Peterson Air Force Base, CO, USA 69K-158K Annually Mid level Monitor and analyze real-time cyber threats for Combatant Command networks; perform DCO/SOC mission operations, correlate multi-source events, escalate incidents, produce daily reports, and coordinate with cyber defense partners to protect mission-critical systems. The summary above was generated by AI Defensive Cyber Operations Analyst The Opportunity: As a cyberspace defender on our team, you'll be in the middle of the action, monitoring real-time threats, analyzing complex cyber events, and helping protect mission-critical networks that support NORAD and USNORTHCOM operations. Every alert, anomaly, or suspicious pattern you uncover helps ensure the uninterrupted flow of information that commanders and warfighters rely on. We need a DCO analyst like you to help safeguard enterprise-level systems against cyber threats targeting Combatant Command Headquarters, Service Components, Joint Task Forces, and mission partners. As a DCO analyst, you'll monitor and analyze threats using advanced tools, including Assured Compliance Assessment Solution, Splunk, Host-Based Security System, and Big Data Platform capabilities like SIGACT and RALLY. You'll use your cyber defense tradecraft to identify malicious activity, distinguish real threats from benign events, and escalate incidents with clear summaries of impact and urgency. You'll combine threat intelligence, event data, and correlation across multiple sources to uncover attacker patterns and understand their goals, stopping them before they succeed. You'll work alongside teammates conducting uninterrupted Defensive Cyberspace Operations, Computer Network Defense, Information Assurance, and NetOps to maintain situational awareness and ensure secure, available IT C4 systems. Your work will include supporting DCO event and incident response, documenting and escalating cyber events, performing multi-source correlation, and producing daily reporting that enhances commander awareness. You'll also coordinate with enterprise-wide cyber defense partners, respond to CPCON changes, assist with operational briefs, and help implement proactive and reactive security measures that protect Combatant Command networks. You'll even leverage Department of War AI capabilities to strengthen defensive cyberspace operations. This is a great opportunity to build hands-on skills in threat detection, incident response, and cyber event analysis while contributing directly to missions vital to homeland defense. Work with us as we secure critical networks from malicious actors. ## Related Videos - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [IKEA Story: Transforming an Iconic Retail Brand](https://www.wearedevelopers.com/videos/444-ikea-story-transforming-an-iconic-retail-brand) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [What's (new) with Spring Boot and Containers?](https://www.wearedevelopers.com/videos/1514-what-s-new-with-spring-boot-and-containers) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Data Science & more: The Lopez dilemma](https://www.wearedevelopers.com/magazine/10-data-science-more-the-lopez-dilemma) - [Dev Digest 216: CyberSec + Mythos, Stack Overflow for Agents & DOOM in TTF](https://www.wearedevelopers.com/magazine/728-dev-digest-216-cybersec-mythos-stack-overflow-for-agents-doom-in-ttf)