> Markdown version of [/jobs/ext/3660413-master-level-cyber-defense-analyst-intrusion-detection-team-shift-lead](https://www.wearedevelopers.com/jobs/ext/3660413-master-level-cyber-defense-analyst-intrusion-detection-team-shift-lead). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Master Level Cyber Defense Analyst/Intrusion Detection Team Shift Lead - **Company:** GovCIO - **Location:** Albany, NY, United States (Remote available) - **Experience:** Expert - **Salary:** $180,000.0 - **Contract:** Permanent contract - **Skills:** Biometrics, Cyber Security, Computer Networks, Web Servers, Intelligence Analysis, Intrusion Detection and Prevention, Intrusion Detection Systems, Information Systems Security Architecture Professional, Log Analysis, Raw Data, Security Information and Event Management, Data Logging, Snort (Software), Firewalls (Computer Science), Cybercrime, Grep, Epic ECSA, Cyber Warfare, Splunk - **Published:** October 9, 2026 - **Apply:** https://dejobs.org/x/x/A138136B2B4143D6B42C21F773B92B36/job/ ## About the Role * Bachelor's with 12+ (or commensurate experience) * 8 years of intrusion detection experience * Minimum Relevant Experience - The requirement states: 7 years of security intrusion detection examination experience involving a range of security technologies that produce logging data; to include wide area networks host and network IPS/IDS/HIPs traffic event review, server web log analysis, raw data logs. Working experience of Splunk SIEM. Contractor will have at least two years as a cyber security or security operations shift team leader. At least five years' experience working at a senior level, performing analytics examination of logs and console events in the following working experience areas of; creating advance queries methods in Splunk or advance Grep skills, firewall ACL review, examining Snort based IDS events, Pcaps, web server log review, and working in a SIEM environment. * Required Certification - The requirement states: Must possess at least one (1) of the following certifications: GIAC Certified Intrusion Analyst (GCIA), EC-Council's Certified Security Analyst (ECSA), GIAC Certified Perimeter Protection Analyst (GPPA), GIAC Certified Enterprise Defender (GCED), Systems Security Certified Practitioner (SSCP), or a Certified Information Systems Security Professional (CISSP). Splunk Fundamentals I & II certification. Clearance Required: Must able to attain and maintain AOUSC Public Trust, * A valid photo ID must be presented during each interview * During the Hiring Process * Enhanced Biometrics ID verification screening * Background check, to include: * Criminal history (past 7 years) * Verification of your highest level of education * Verification of your employment history (past 7 years), based on information provided in your application ## Description * Collaborates with intrusion analysts to identify, report on, and coordinate remediation of cyber threats to the client * Provides timely and actionable sanitized intelligence to cyber incident response professionals * Leverages technical knowledge of computer systems and networks with cyber threat information to assess the client's security posture * Conducts intelligence analysis to assess intrusion signatures, tactics, techniques and procedures associated with preparation for and execution of cyber attacks * Researches hackers, hacker techniques, vulnerabilities, exploits, and provides detailed briefings and intelligence reports to leadership