Cyber Analyst
Role details
Job location
Tech stack
Job description
Leidos has a new and exciting opportunity for a Cyber Analyst in our INTEL Sector's Cyber & Analytics Business Area (CABA) . Our talented team is at the forefront in Security Engineering, Computer Network Operations (CNO), Mission Software, Analytical Methods and Modeling, Signals Intelligence (SIGINT), and Cryptographic Key Management. At Leidos , we offer competitive benefits , including Paid Time Off, 11 paid Holidays, 401K with a 6% company match and immediate vesting, Flexible Schedules, Discounted Stock Purchase Plans, Technical Upskilling, Education and Training Support, Parental Paid Leave, and much more. Join us and make a difference in National Security, * Perform Threat Intelligence Integration and Researchreportingon detection gapswithin our problem setwhile stayingcurrent on TTPs, vulnerabilities, and SOC technologies
- Detection Engineering & Tuninganalyzingfalse positives/negatives and providingfeedback to developersso they can tweakdetection algorithms for accuracy and operational relevance
- Bridge the gap between defensive operations and software engineering by conducting training sessions and walkthroughs using simulated SOC scenarios
- Participate in sprint planning and product roadmap discussionsto ensure the "operator perspective" is baked into software requirements
- Provide input on UI/UX for analyst efficiencyand reduce cognitive load during high-stress alerts
Requirements
This is a full-time position with the Leidos Cyber Electromagnetic Activity (CEMA) team that is based in Lawton, OK, and will require the candidate to be able toobtain andmaintaina TS/SCI Clearance., * Bachelor's Degree incybersecurityor similar degree and 4- 8 years of relevant experience. Will consider experience in lieu of a degree
- Minimum4+ years of professionalexperience in Cyber Security
- Minimum2+ years of professional experience as a SOC operator
- Intermediate to ExpertknowledgeofLinux
- A good understanding of networking - protocols at all layers of the networking stack and network architectureaccompanied with various tooling needed for network analysis such as Wireshark.
- Intermediate to Expert knowledge of host-based forensics, telemetry generation, and low-level artifacts (like memory, processes, and network packet analysis).
- Moderate ability to produce scripts for testing
- Must be a US Citizen and be able to obtain a TS/SCI security clearance., * Experience analyzing low-level system artifacts, memory forensics, or firmware/embedded system security.
- Familiarity with the MITRE ATT&CK framework and mapping telemetry to specific adversary behaviors.
- Experience working in an Agile/Scrum development environment alongside software engineers.
- GIAC Certified Detection Engineer (GCDE)
- GIAC Certified Forensic Analyst (GCFA) / GIAC Network Forensic Analyst (GNFA)
- FOR572: Advance Network Forensics
Benefits & conditions
Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits .