> Markdown version of [/jobs/ext/3055100-cyber-network-defense-team-lead](https://www.wearedevelopers.com/jobs/ext/3055100-cyber-network-defense-team-lead). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Network Defense Team Lead - **Company:** Leidos, Inc. - **Location:** Aiea, HI, United States - **Experience:** Expert - **Salary:** $131,300.0 - $237,350.0 - **Contract:** Permanent contract - **Skills:** Communications Protocols, Cyber Security, Computer Networks, Issue Tracking Systems, Intrusion Detection and Prevention, Intrusion Detection Systems, Network Security, Packet Analyzer, Mitre Att&ck, Firewalls (Computer Science), Information Technology, Cybercrime, Cyber Warfare - **Published:** September 24, 2026 - **Apply:** https://jobs.localjobnetwork.com/apply/add/88435300/1 ## About the Role * Bachelor's Degree and 12+ yrs of experience; additional years of experience may be substituted in lieu of degree, including experience leading a team or effort. * DoW 8570 IAT Level II (or Level III) Certification (e.g. Sec+ CE). * DoW 8570 CSSP Analyst Certification (e.g. CEH), OR able to obtain one within 180 days of starting. * DoW 8570 CSSP Infrastructure Support Certification (e.g. CEH, CySA+, SSCP), OR able to obtain one within 180 days of starting. * Strong computing system knowledge, particularly networking, including a knowledge of communication protocols and familiarity with common computing security elements such as IDS/IPS systems and firewalls. * Experience analyzing packet captures. * Strong analytical, organizational, communication, and stakeholder management skills. * Must be able to pass Yankee White clearance processing prior to start. * Active TS/SCI security clearance required prior to start. * Documenting analysis and providing response recommendations., * Prior CND experience. * Familiarity with computing security frameworks such as cyber kill chain and att&ck. * Monitoring of intrusion detection and computer defense appliances and applications, and analysis of associated alerts. * Prior experience in the Indo-Pacific region. ## Description Leidos is seeking an experienced Cyber Network Defense Team Lead to support the Indo-Pacific Logistics and Sustainment Services (ILS2) program in Aiea, Hawaii. This position supports our customers' mission to protect Information Technology (IT) networked systems and services throughout the Indo-Pacific region from evolving cyber threats. As part of a 24x7 mission-critical cyber defense operation, the Cyber Network Defense Team Lead provides senior-level technical expertise and operational leadership to help detect, analyze, respond to, and mitigate cyber threats and maintain the security and resilience of mission-critical networks. The Cyber Network Defense Team Lead serves as a senior technical lead responsible for coordinating 24x7 cyber network defense operations while remaining actively engaged in hands-on cyber defense activities. The Team Lead guides cyber network defense analysts in detecting, investigating, analyzing, and responding to cyber events; monitors security tools and network activity for malicious behavior; and develops response and mitigation recommendations. The successful candidate will be a self-starter capable of independently executing complex technical tasks while effectively leading and collaborating across a highly coordinated, mission-focused team. This position also serves as a key interface with customers, program leadership, and technical teams to communicate cyber events, operational status, trends, risks, and recommended courses of action. Primary Responsibilities. * Manage technical support projects or tasks in accordance with contract requirements, appropriate policies, procedures, and guidelines. * Manage the team and 24x7 schedule of technical cyber network defense analyst that investigate and analyze cyber events. * Interface with customers, technical staff, team members, and management to identify issues, negotiate changes, meet deadlines, and provide strong customer service both orally and in writing, as appropriate. * Generate daily, monthly, quarterly, yearly reports for customers involving project updates, metrics and ticketing trends. * Generate weekly status reports for the Program Manager to include projected and accomplished objectives. * Perform senior-level computer network incident detection and response activities to detect, correlate, identify and characterize anomalous activity that may be indicative of threats to the enterprise. * Monitor various security tools and applications for possible malicious activities, perform senior-level investigations into any associated alerts or indicators, and develop recommendations for a course of action, including mitigation strategies if required. * Possess good technical writing skills as each event, including the associated analysis, must be documented in a ticketing system so that it can be reviewed and acted on appropriately. * Possess excellent communication skills as we are collocated with our customer and regular face-to-face interaction is required throughout the day. * Follow Standard Operating Procedures (SOPs) and perform their duties with a high degree of attention to detail, ensuring that all system checks are performed in a timely manner and all documentation is complete and accurate. * Influence project/team leaders regarding solution design, process and/or approaches. * Review analyses, reports, and communications of juniors and peers to ensure accuracy and clarity of communications. * Develop and conduct briefings to senior leaders. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Fighting the Next Wave of Cybercrime](https://www.wearedevelopers.com/videos/100331-fighting-the-next-wave-of-cybercrime) - [Deep Fakes: The Lies We Can’t See](https://www.wearedevelopers.com/videos/1187-deep-fakes-the-lies-we-can-t-see) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [What’s the Difference between a Junior, Mid, and Senior Developer?](https://www.wearedevelopers.com/magazine/238-what-s-the-difference-between-a-junior-mid-and-senior-developer) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)