Full-Time

Cyber Incident Handling Analyst

Confirmed live in the last 24 hours

Peraton

Peraton

10,001+ employees

Provides advanced technology solutions for government

Compensation Overview

$80k - $128k/yr

Junior, Mid

Frankfurt, Germany

US Citizenship, US Top Secret Clearance Required

Category
Cybersecurity
IT & Security
Requirements
  • Minimum of 2 years experience in Cyber Systems Engineering with a Bachelor’s degree in a STEM field or Business Administration; an additional 6 years of experience in lieu of degree may be considered.
  • Must be able to qualify for technical expert status accreditation (TESA) by having a bachelor's degree in a STEM field or Business Administration plus 3 years of specialized experience OR an associate’s degree plus 7 years of specialized experience OR a major certification plus 7 years of specialized experience.
  • Active DoD Approved 8140 Certification (DCWF: 531 - B.S. or GCFA or GCIA), (DCWF: 511 - B.S. or GCFA, GCIA, CFR, Cloud+, CYSA+, GCED, PenTest) and (8140 Residential within 90 days of acceptance - Cisco CyberOps Professional, GCED, GCFA, GCFE, GCIH, GNFA, DCITA CIRC, Blue Team level 1, FIWE or Offensive Security OSDA).
  • Fluent in all aspects of government and corporate communications media to include all MS Office products and common task ticketing systems.
  • U.S. citizenship required.
  • An Active DoD Top Secret/SCI security clearance.
Responsibilities
  • Monitor, analyze, and act on SIEM alerts and events to detect malicious activities across information systems and networks.
  • Support dynamic cyber defense operations by coordinating security toolsets and adhering to the Department of Defense framework for measuring and quantifying cyber risk.
  • Conduct threat and vulnerability analysis by evaluating network and host activity against baseline requirements, researching security standards, reviewing vulnerability findings related to SIEM alerts, and analyzing system logs for indicators of malicious intent.
  • Manage incident response by documenting and classifying incidents (in accordance with Army and DoD regulations), determining root causes, coordinating remediation efforts, and performing post-intrusion analyses to identify detection gaps; actively participate in a dedicated, rotating 24/7 incident response team to ensure continuous operational coverage.
  • Communicate effectively by providing timely incident updates and daily reports to higher headquarters and Defensive Cyber Operations staff, and by preparing visual charts, diagrams, and comprehensive reports to support metrics analysis and enhance cybersecurity posture.
  • Optimize detection capabilities by developing specialized SIEM queries, tuning IDS/IPS rules to reduce false positives, and documenting identified vulnerabilities for operational integration.
  • Provide team and customer support by assisting various sections of the Defensive Cyber Operations team and conducting in-depth network security evaluations at customer sites.
  • Utilize SIEM technologies for advanced cyber forensics to detect and deter malicious actors targeting networked weapons platforms and U.S. DoD networks.
  • Analyze host and network events to assess operational impact and advisory capabilities.
  • Develop analytics based on indicators of compromise and perform forensic investigations by dissecting host data to determine the root causes, tactics, techniques, and tools used in cyber intrusions.
  • Prepare high-quality strategic reports, presentations, and recommendations for senior U.S. government intelligence and network operations officials.
Desired Qualifications
  • Experience with the Elastic SIEM.
  • Experience in packet captures and analyzing a network packet.
  • Experience with intrusion detection systems such as Snort, Suricata, and Zeek.
  • Experience with SIEM systems such as Splunk, ArcSight, or Elastic.
  • Experience with Microsoft Windows event IDs.
  • Experience with Linux audit log analysis.
  • Familiarity with Git and VScode.
  • Strong understanding of adversary tactics, techniques, and procedures (TTPs) and the MITRE ATT&CK framework.
  • Experience with one or more scripting languages such as PowerShell, Bash, Python.

Peraton provides advanced technology solutions and services primarily for government clients in the defense, intelligence, and critical infrastructure sectors. The company focuses on creating cyber-hardened systems, systems engineering, and mission-critical support to address complex challenges in national security. Peraton's business model relies on long-term contracts with government agencies, which often involve high-value projects requiring specialized expertise. A key aspect of Peraton's approach is its partnerships with other firms, which enhance its capabilities through clear communication and joint marketing efforts. Additionally, Peraton actively recruits veterans and military spouses, valuing the unique skills they bring to the workforce. The company's goal is to contribute to national security and technological advancement while supporting the military community.

Company Size

10,001+

Company Stage

Grant

Total Funding

$60M

Headquarters

Herndon, Virginia

Founded

2017

Simplify Jobs

Simplify's Take

What believers are saying

  • Growing demand for AI-driven fraud detection boosts Peraton's market potential.
  • Tony Encinias' appointment may expand technological strategies for state and local services.
  • Recognition as a VETS Indexes Employer enhances workforce diversity and innovation.

What critics are saying

  • Layoffs due to NASA contract cancellation suggest potential instability in future contracts.
  • AI tool launches may expose Peraton to risks like algorithmic bias or technical failures.
  • New CSO appointment may indicate previous security challenges or need for enhanced measures.

What makes Peraton unique

  • Peraton specializes in defense, intelligence, and critical infrastructure for government clients.
  • The company emphasizes veteran recruitment, enhancing workforce diversity and innovation.
  • Peraton's business model focuses on long-term government contracts and strategic partnerships.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Paid Vacation

Performance Bonus

Growth & Insights and Company News

Headcount

6 month growth

0%

1 year growth

0%

2 year growth

2%
Peraton
May 7th, 2025
Your Future, Our Mission: Find High-Impact Careers at Peraton's Virtual Hiring Event on May 21

Your future, its mission: find high-impact careers at Peraton's Virtual Hiring Event on May 21.

ExecutiveBiz
May 6th, 2025
Peraton Launches AI-Enabled Anti-Fraud Tool

Peraton launches ai-enabled anti-fraud tool.

Peraton
May 5th, 2025
Peraton Introduces Rapid Fraud Intelligence to Revolutionize Government Fraud Detection

Peraton today announced the launch of Rapid Fraud Intelligence (Rapid FI), an advanced fraud detection and prevention solution that combines artificial intelligence with decades of federal fraud-fighting expertise.

WashingtonExec
Apr 27th, 2025
Tony Encinias to Lead Peraton's Citizen Security and Public Services Sector

Peraton has named Tony Encinias to its Citizen Security and Public Services sector, where he will lead the technological strategy for the state and local government services business unit.

Peraton
Apr 17th, 2025
Peraton Recognized as a 2025 VETS Indexes Employer for Third Consecutive Year

Peraton was named, yet again, in this year's VETS Indexes Employer Awards program.