> Markdown version of [/jobs/ext/2629814-cysoc-analyst](https://www.wearedevelopers.com/jobs/ext/2629814-cysoc-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # CYSOC Analyst - **Company:** Peraton Inc - **Location:** Washington, DC, United States - **Salary:** $112,000.0 - $179,000.0 - **Contract:** Permanent contract - **Skills:** CompTIA Security+, Cyber Security, Domain Name System (DNS), Intelligence Analysis, Network Security, Pcap, NetFlow, Routing, Packet Analyzer, Remote Access Technology, Security Information and Event Management, TCP/IP, Workflow Management Systems, Mitre Att&ck, Malware, Cyber Threat Analysis, Tanium Platform Expertise, Cybercrime, Real Time Data, Cyber Warfare, Splunk - **Published:** August 20, 2026 - **Apply:** https://diversityjobs.com/main/sendform/8/8/28176/1/18006115?backUrl=%2Fcareer%2F18006115%2FCysoc-Analyst-D-C-Washington ## About the Role Active TS/SCI or Q/SCI clearance required. * Minimum of 12 years with BS/BA; Minimum of 10 years with MS/MA; Minimum of 7 years with Ph.D., 16 years with a HS Diploma * Experience supporting Security Operations Center (SOC), Computer Network Defense (CND), or cyber operations environments. * Hands-on experience with: * Splunk Enterprise Security (ES) * CrowdStrike Falcon * Tanium * SIEM and log aggregation platforms * Endpoint Detection and Response (EDR) tools * Security ticketing and workflow management systems Experience performing: * Incident response * Threat hunting * Malware analysis * Alert triage and escalation * Log correlation and forensic analysis Strong understanding of: * TCP/IP protocol suite * DNS * Routing and switching concepts * Network security architecture * Remote access security technologies * Enterprise security monitoring Experience analyzing: * NetFlow data * Packet captures (PCAP) * Security event logs * Indicators of compromise (IOCs) Knowledge of: * MITRE ATT&CK framework * Threat actors and adversary campaigns * Cyber kill chain methodologies * Intelligence Community cybersecurity operations Ability to communicate technical findings clearly through written reports and verbal briefings., * Prior experience supporting Intelligence Community (IC), Department of Defense (DoD), or other Federal Government cybersecurity programs. * Familiarity with CDOC/SOC operational environments and federal cybersecurity compliance frameworks. * Experience with classified network environments and cross-domain security operations. * Industry certifications such as: * CompTIA Security+ * CySA+ * CEH * GCIH * GCIA * CISSP Knowledge of: * NIST 800-series publications * RMF (Risk Management Framework) * Continuous Diagnostics and Mitigation (CDM) * Cyber threat intelligence analysis ## Description Develops detailed plans for the support of a range of cyber operations through collaboration with planners, operators, analysts, and military leadership. Participates in targeting selection, validation, synchronization, integration, and execution of cyber activities. Analyzes, reviews, and monitors strategies, doctrine, policies, and other directives to ensure compliance with mandated regulations from both the government at large and the military customer. Assists and advises inter-agency partners in identifying and developing standard operation procedures (SOPs) for operational support in achievement of organizational objectives. Employees have knowledge of cyber security principles, operations security, cyber threats and vulnerabilities, and knowledge of national regulations, policies, and ethics as they relate to cyber security. Develops, reviews, and applies specific cyber operations guidance for integration into broader planning activities. Responsible for providing input to stakeholders for the development and refinement of cyber operations objectives, priorities, strategies, plans and programs. Provides input into the administrative and logistical elements of an operational support plan. Employees review, approve, prioritize, and submit operational requirements for research, development, and/or acquisition of cyber capabilities. Collaborates with internal and external stakeholders to leverage analytical and technical expertise to ensure mission goals are met. Typically has prior military experience and a deep understanding of military hierarchy and leadership. May work in the financial sphere to assist with planning goals, programming objectives, and may be responsible for preparing real time data for leadership. Assists in developing new approaches to improve organizational framework through the coordination and integration of staff processes. Drafts and provides briefings, information/decision papers, policy documents, staffing packages, letters, memorandums, and official multimedia correspondence. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [An Applied Introduction to eBPF with Go](https://www.wearedevelopers.com/videos/1075-an-applied-introduction-to-ebpf-with-go) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Turning Container security up to 11 with Capabilities](https://www.wearedevelopers.com/videos/718-turning-container-security-up-to-11-with-capabilities) - [Debunking the Top 10 Myths about Web 3](https://www.wearedevelopers.com/videos/634-debunking-the-top-10-myths-about-web-3) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 216: CyberSec + Mythos, Stack Overflow for Agents & DOOM in TTF](https://www.wearedevelopers.com/magazine/728-dev-digest-216-cybersec-mythos-stack-overflow-for-agents-doom-in-ttf) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents)