More jobs:
Cyber Defense Analyst; Sr. SOC
Job in
Oak Ridge, Anderson County, Tennessee, 37830, USA
Listed on 2026-06-05
Listing for:
VetJobs
Full Time
position Listed on 2026-06-05
Job specializations:
-
IT/Tech
Cybersecurity, Network Security
Job Description & How to Apply Below
Job Description
Location: Oak Ridge, TN
Job Title: Cyber Defense Analyst (Sr. SOC)
Career Level: Senior Associate to Senior Specialist
Specialty: Cyber Security
ResponsibilitiesWhat You'll Do
The Cyber Defense Analyst (Senior SOC) will investigate, analyze, and respond to cyber incidents within the Y12 network environment or enclave.
Job Functions Include- Coordinate and provide expert technical support to enterprise-wide cyber defense technicians to resolve cyber defense incidents
- Correlate incident data to identify specific vulnerabilities and make recommendations that enable expeditious remediation
- Perform analysis of log files from a variety of sources (e.g., individual host logs, network traffic logs, firewall logs, and intrusion detection system [IDS] logs) to identify possible threats to network security
- Perform cyber defense incident triage, to include determining scope, urgency, and potential impact, identifying the specific vulnerability, and making recommendations that enable expeditious remediation
- Perform real-time cyber defense incident handling (e.g., forensic collections, intrusion correlation and tracking, threat analysis, and direct system remediation) tasks to support deployable Incident Response Teams (IRTs)
- Receive and analyze network alerts from various sources within the enterprise and determine possible causes of such alerts
- Track and document cyber defense incidents from initial detection through final resolution
- Coordinate with intelligence analysts to correlate threat assessment data
- Perform cyber defense trend analysis and reporting
- Coordinate ad hoc cyber defense hunts
- Additional responsibilities as necessary
- Meaningful work and unique opportunities to support missions vital to national and global security
- Top‑notch dedicated colleagues
- Generous pay and benefits with a stable organization
- Career advancement and professional development programs
- Work‑life balance fostered through flexible work options and wellness initiatives
- Bachelor’s degree in engineering or science discipline:
Minimum of 2 years of relevant experience. - Master’s degree in engineering or science discipline:
No experience required. - Ten or more years of relevant education, training and/or progressive experience may be considered to satisfy educational and years of experience for this posting.
- Knowledge of cyber threats and vulnerabilities, and what constitutes a network attack
- Knowledge of cyber‑attack stages (e.g., reconnaissance, scanning, enumeration, gaining access, escalation of privileges, maintaining access, network exploitation, covering tracks)
- Knowledge of intrusion detection methodologies and techniques for detecting host and network‑based intrusions
- Knowledge of computer networking concepts and protocols, and network security methodologies
- Knowledge of network security architecture concepts including topology, protocols, components, and principles (e.g., application of defense‑in‑depth)
- Ability to perform network traffic and packet level analysis
- Ability to recognize and categorize types of vulnerabilities and associated attacks
- Strong problem solving and communication skills (both orally and in writing)
- Ability to handle sensitive situations with discretion and maintain confidentiality
- Knowledge of adversarial tactics, techniques, and procedures
- Ability to apply techniques for detecting host and network‑based intrusions using intrusion detection technologies
- Experience using security event correlation tools, analytics or SIEM correlation experience, skillset, or background
- Experience protecting a network against malware (e.g., NIPS, anti‑malware, restrict/prevent external devices, spam filters)
- Knowledge of malware analysis concepts and methodologies
- Knowledge of network protocols such as TCP/IP, Dynamic Host Configuration, Domain Name System (DNS), and directory services
- Knowledge of application security risks
- Knowledge of host/network access control mechanisms (e.g., access control list, capabilities list)
- Knowledge of network services and protocols interactions that provide network communications
- Knowledge of cloud service models and how those models can limit…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×