> Markdown version of [/jobs/ext/3441237-cyber-defense-analyst-blue-team-lead](https://www.wearedevelopers.com/jobs/ext/3441237-cyber-defense-analyst-blue-team-lead). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Defense Analyst (Blue Team Lead - **Company:** Akira Technologies, Inc. - **Location:** Fort Bragg, NC, United States - **Experience:** Expert - **Salary:** $120,000.0 - $130,000.0 - **Contract:** Permanent contract - **Skills:** CompTIA Security+, Cyber Security, Computer Networks, Intrusion Detection and Prevention, Intrusion Detection Systems, Network Security, Network Monitoring, Security Information and Event Management, In-Plane Switching (IPS), Mitre Att&ck, Cyber Warfare, Blue Team (Cyber Security), Security Orchestration, Automation & Response - **Published:** September 10, 2026 - **Apply:** https://www.thejobnetwork.com/job/6d071d5b-f2a9-4359-951a-fe538f9335d1/senior-cyber-defense-analyst-blue-team-lead-fort-bragg-nc ## About the Role * Minimum 5 years of documented specialized operational experience in cybersecurity analysis, network security monitoring, incident response, or related DoD/enterprise IT cybersecurity operations. * Demonstrated experience supporting Security Operations Center (SOC) or Blue Team operations. * Experience with network security monitoring, intrusion detection, incident investigation, and cyber defense. * Experience analyzing network, host, system, and security-event data to identify potential threats and malicious activity. * Working knowledge of cybersecurity frameworks, defensive cyberspace operations, and incident response processes. * Demonstrated ability to lead cyber defense activities in a 24/7 operational environment. * Strong analytical, problem-solving, and technical documentation skills. * Ability to communicate cybersecurity findings clearly to both technical and Government stakeholders. * Ability to work effectively in a mission-focused, classified environment. * Active Secret security clearance with required privileged-access eligibility/T3 investigation consistent with PWS requirements. * Ability to work onsite at Fort Bragg, NC and support operational requirements, including shift coverage as required., * Experience supporting Army, Army Reserve, ARCYBER, or joint cyberspace operations. * Experience with enterprise Security Information and Event Management (SIEM), Security Orchestration, Automation and Response (SOAR), IDS/IPS, endpoint detection and response, network monitoring, or related cybersecurity technologies. * Experience conducting threat hunting and analyzing adversary behavior and TTPs. * Experience supporting Cybersecurity Readiness Inspections (CCRI), defensive cyber assessments, or similar DoD cybersecurity assessment activities. * Knowledge of MITRE ATT&CK or similar threat-modeling frameworks. * Experience with DoD incident response and cybersecurity reporting requirements. * Relevant cybersecurity certifications such as Security+, CySA+, GCIH, GCIA, CISSP, or equivalent are a plus. ## Description Akira is seeking a Senior Cyber Defense Analyst (Blue Team Lead) to support the U.S. Army Reserve Command (USARC) in cyberspace operations supporting Army and joint requirements. This position will lead Blue Team activities focused on continuous network security monitoring, cyber defense, incident detection and response, threat hunting, and assessment of cybersecurity incidents and events across Army networks., This is an onsite position at Fort Bragg, NC supporting a mission-focused U.S. Army Reserve Command cyberspace operations environment. The position requires working with classified information and supporting continuous defensive cyber operations. The Senior Cyber Defense Analyst will provide technical leadership across Blue Team activities and may be required to support 24/7 operational coverage, including shift work, as mission requirements dictate., * Lead Blue Team operations supporting continuous network security monitoring and defensive cyberspace operations (DCO). * Oversee the monitoring, detection, analysis, investigation, containment, mitigation, and response to cybersecurity incidents. * Ingest, correlate, and analyze sensor, host, network, and security-event data across the supported enterprise. * Analyze security alerts, network traffic, system activity, and other cybersecurity data to identify malicious, suspicious, or anomalous behavior. * Coordinate incident investigation and response activities with appropriate Government and contractor personnel. * Support threat hunting activities and identify indicators of compromise (IOCs), adversary tactics, techniques, and procedures (TTPs), and other evidence of malicious activity. * Conduct cybersecurity assessments and provide technical findings, risk analysis, and recommendations for remediation. * Support integrated defensive cyber assessments and other DCO mission activities. * Apply applicable DoD, Army, U.S. Army Cyber Command (ARCYBER), and supported Regional Cyber Center (RCC) cybersecurity procedures, TTPs, and SOPs. * Provide technical leadership, mentorship, and guidance to Cyber Defense Analysts and SOC personnel. * Coordinate operational activities across shifts to maintain continuous mission coverage and effective transition of ongoing investigations. * Identify significant cyber events and communicate findings through established escalation and notification procedures. * Support development of threat assessments, incident reports, technical findings, operational briefings, and other mission deliverables. * Coordinate with other cybersecurity and operational teams to support timely resolution and mitigation of identified threats. * Maintain accurate documentation of incidents, investigations, assessments, actions taken, and operational findings. * Support continuous improvement of Blue Team procedures, detection capabilities, analytical processes, and operational TTPs. * Perform other cyber defense and operational duties as required to support the USARC mission. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Checkmate: 5 Real Incidents That Can End a Software Company](https://www.wearedevelopers.com/videos/100126-checkmate-5-real-incidents-that-can-end-a-software-company) - [Outsmarting the System: What Game Cheaters Can Teach Us About Cyber Security](https://www.wearedevelopers.com/videos/1396-outsmarting-the-system-what-game-cheaters-can-teach-us-about-cyber-security) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [Best US AI Conferences for CTOs in 2026: Build vs. Buy, Vendor Evaluation, and Peer Intelligence](https://www.wearedevelopers.com/magazine/736-best-us-ai-conferences-for-ctos-in-2026-build-vs-buy-vendor-evaluation-and-peer-intelligence) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)