> Markdown version of [/jobs/ext/2728270-cyber-security-analyst](https://www.wearedevelopers.com/jobs/ext/2728270-cyber-security-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Security Analyst - **Company:** VAE, Inc. - **Location:** Arlington, VA, United States - **Experience:** Experienced - **Salary:** $66,227.0 - $68,702.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Command-Line Interface, CompTIA Security+, Cyber Security, Computer Programming, Intelligence Analysis, OSI Models, Network Forensics, Packet Analyzer, Security Information and Event Management, TCP/IP, Scripting, Mitre Att&ck, Malware, Splunk, Vulnerability Analysis - **Published:** September 5, 2026 - **Apply:** https://www.jofdav.com/jobs/59558833-cyber-security-analyst ## About the Role * Bachelor's Degree and 4+ years of prior relevant experience; additional work experience or cyber courses/certifications may be substituted in lieu of a degree * Demonstrated understanding of TCP/IP, common networking ports and protocols, traffic flow, system administration, the OSI model, defense-in-depth, and common security elements * Motivated self-starter with strong written and verbal communication skills, and the ability to create complex technical reports on analytic findings * DoD 8570 IAT Level II or higher certification (such as CompTIA Security+ CE, ISC2 SSCP, or SANS GSEC) prior to starting * DoD 8570 CSSP-A level certification (such as CEH, CySA+, or GCIA) or other qualifying certification required within 180 days of hire * Demonstrated commitment to training, self-study, and maintaining proficiency in the technical cybersecurity domain, with the ability to think and work independently * Strong analytical and troubleshooting skills * Willingness to perform shift work * U.S. Citizenship required * Active DoD TOP SECRET clearance with SCI eligibility required Preferred Qualifications * CND experience (Protect, Detect, Respond, and Sustain) within a Computer Incident Response organization * Demonstrated understanding of the life cycle of network threats, attacks, attack vectors, and methods of exploitation, with an understanding of intrusion set tactics, techniques, and procedures (TTPs) * Advanced understanding of TCP/IP, common networking ports and protocols, traffic flow, system administration, the OSI model, defense-in-depth, and common security elements * Experience with development and incorporation of AI and automation tools into incident response processes * Demonstrated hands-on experience analyzing high volumes of logs and network data (e.g., Splunk, Suricata, Zeek, Full Packet Capture) and other attack artifacts in support of incident investigations * In-depth knowledge of the architecture, engineering, and operations of at least one enterprise SIEM platform (e.g., Splunk ES, Elastic) * Experience and proficiency with any of the following: Splunk, Suricata, Zeek, Full Packet Capture, Network Forensics, Endpoint Detection and Response, Corelight, Elastic * Experience with malware analysis concepts and methods * Unix/Linux command line experience * Scripting and/or programming experience to write Suricata and Zeek rule sets * Familiarity or experience with Intelligence Driven Defense, MITRE ATT&CK, and/or the Cyber Kill Chain methodology CLEARANCE LEVEL: TSSCI CERTIFICATIONS: 8570 IAT Level II or higher certification. DOD 8570 CSSP-A Level Cert required within 180 days of hi ## Description VAE, Inc. is seeking a Cyber Security Analyst to support the DISA GSMO-II program in the Washington, DC area. This position provides 24x7 cybersecurity monitoring and analysis services for Department of Defense networks above the SECRET level, including real-time cyber threat intelligence analysis, correlation of actionable security events, network traffic analysis using raw packet data, and participation in the coordination of resources during the incident response process. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [An Applied Introduction to eBPF with Go](https://www.wearedevelopers.com/videos/1075-an-applied-introduction-to-ebpf-with-go) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Enhancing Workload Security in Kubernetes](https://www.wearedevelopers.com/videos/356-enhancing-workload-security-in-kubernetes) - [The Developer Workstation Blind Spot: Why Your Security Stack Can't See What Matters Most](https://www.wearedevelopers.com/videos/100254-the-developer-workstation-blind-spot-why-your-security-stack-can-t-see-what-matters-most) - [Turning Container security up to 11 with Capabilities](https://www.wearedevelopers.com/videos/718-turning-container-security-up-to-11-with-capabilities) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents)