> Markdown version of [/jobs/ext/3376564-cybersecurity-operations-analyst](https://www.wearedevelopers.com/jobs/ext/3376564-cybersecurity-operations-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cybersecurity Operations Analyst - **Company:** JCS Solutions LLC - **Location:** Alexandria, VA, United States - **Experience:** Expert - **Salary:** $105,000.0 - $150,000.0 - **Contract:** Permanent contract - **Skills:** Antivirus Softwares, Bash Shell, CompTIA Security+, Cyber Security, Computer Programming, Intrusion Detection and Prevention, Intrusion Detection Systems, OSI Models, Python (Programming Language), Knowledge Management, Network Security, McAfee VirusScan, NetFlow, Network Forensics, Packet Analyzer, Windows PowerShell, ArcSight SIEM Tool, Security Information and Event Management, Transmission Control Protocol (TCP), Traffic Analysis, Scripting, In-Plane Switching (IPS), Mitre Att&ck, QRadar, Malware, Cyber Threat Analysis, Information Technology, Cybercrime, Cyber Warfare, Splunk, Vulnerability Analysis - **Published:** September 30, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9203417/cybersecurity-operations-analyst ## About the Role The successful candidate must possess an active DoD security clearance and will play a key role in maintaining and strengthening the security posture of a leading IT and cybersecurity services organization. Working alongside cybersecurity professionals, you will contribute to the identification, investigation, and response to security events while supporting ongoing efforts to improve cyber defense capabilities and operational resilience., * Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field. Additional relevant experience, military training, or cybersecurity certifications may be substituted in lieu of a degree. * 10+ years of experience in cybersecurity operations, incident response, computer network defense (CND), cyber threat analysis, or a related cyber defense discipline. * Experience working within a Security Operations Center (SOC) environment supporting security monitoring, incident detection, triage, investigation, and response activities. * Demonstrated experience performing Computer Network Defense (CND) functions across the Protect, Detect, Respond, and Sustain mission areas. * Strong understanding of the cyber threat lifecycle, attack methodologies, threat actors, attack vectors, indicators of compromise (IOCs), and adversary tactics, techniques, and procedures (TTPs). * Strong understanding of TCP/IP networking, common ports and protocols, traffic analysis, system administration concepts, OSI model principles, defense-in-depth strategies, and enterprise security architectures. * Excellent analytical, troubleshooting, written communication, and verbal communication skills with the ability to prepare detailed technical reports and investigative findings. * Current DoD 8570 IAT Level II (or higher) certification prior to start date, including one of the following: * CompTIA Security+ CE * ISC2 SSCP * GIAC GSEC * Equivalent DoD-approved certification * Ability to obtain and maintain a DoD 8570 CSSP Analyst certification within six months of hire, such as: * CompTIA CySA+ * EC-Council CEH * GIAC GCIA * Equivalent DoD-approved certification * Ability and willingness to support shift operations, including weekends, holidays, and alternate schedules as mission requirements dictate. How will you wow us: * Experience analyzing large log datasets, NetFlow, packet captures, and attack artifacts during investigations. * Hands-on experience with SIEM platforms such as Splunk, ArcSight, QRadar, or McAfee ESM. * Proficiency with security tools including IDS/IPS, HBSS/HIPS, antivirus, packet capture, and network forensics. * Knowledge of malware analysis techniques and investigative methodologies. * Experience working in Unix/Linux environments. * Scripting or programming experience (Python, PowerShell, Bash, or similar). * Strong written and verbal communication skills with the ability to produce technical reports. * Familiarity with Intelligence-Driven Defense, the Cyber Kill Chain, and MITRE ATT&CK frameworks. * Experience with threat hunting and advanced threat detection activities. ## Description JCS Solutions is seeking a Cybersecurity Operations Analyst to support a fast-paced Security Operations Center (SOC) environment. This role is responsible for helping protect critical IT infrastructure through continuous cybersecurity monitoring, threat detection, incident analysis, and security operations support., * Monitor and analyze security alerts generated from endpoints, IDS/IPS, NetFlow, SIEM platforms, and custom security sensors to identify potential threats, compromises, and unauthorized activity across customer networks and systems. * Conduct Tier 1/Tier 2 security analysis by reviewing large-scale log data, pivoting across multiple data sources, and correlating evidence to support cyber threat investigations and incident response activities. * Investigate and triage security events, escalating validated incidents and high-priority alerts to senior SOC analysts while providing supporting evidence and analysis. * Assist in identifying malicious activity, indicators of compromise (IOCs), attack patterns, and adversary behaviors affecting customer environments. * Document investigative activities, findings, recommendations, and response actions within case management, ticketing, and knowledge management systems. * Support senior SOC personnel in the development and distribution of incident reports, executive summaries, and technical findings to customers and leadership stakeholders. * Maintain awareness of emerging cybersecurity threats, vulnerabilities, and attack techniques to support continuous improvement of SOC operations and detection capabilities. * Collaborate with cybersecurity team members to support incident response efforts, threat detection initiatives, and operational security monitoring activities. ## Related Videos - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [ The attacker's footprint](https://www.wearedevelopers.com/videos/375-the-attacker-s-footprint) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again)