Cyber Defense Analyst - Swing Shift
Listed on 2026-07-19
-
IT/Tech
Cybersecurity, Information Security, Network Security
ASRC Federal is a leading government contractor furthering missions in space, public health and defense. As an Alaska Native owned corporation, our work helps secure an enduring future for our shareholders. Join our team and discover why we are a top veteran employer and Certified Great Place to Work™.
ASRC Federal is seeking a highly skilled and experienced Cyber Defense Analyst (Threat Hunter) to join our dynamic team on the swing shift (1400 – 0000), providing extended‑hours coverage that includes weekend and holiday rotations (Four 10‑hour shifts per work week). This is a fully on-site position at Quantico Marine Corps Base, VA – no telework is available for this role.
PositionDescription
The Cyber Defense Analyst (Threat Hunter) is responsible for performing comprehensive network security monitoring and proactive threat hunting during swing‑shift, weekend, and holiday coverage windows. The role focuses on safeguarding the network through continuous traffic analysis, vulnerability and wireless scanning, and leveraging enterprise tools such as SIEM, SOAR, Crowd Strike, Cyber Ark, and Endpoint Security Suite (ESS). The analyst collaborates with cross‑functional IT and security teams to:
- Implement Information Assurance Vulnerability Management (IAVM) programs
- Manage Network Access Control
- Provide insider threat support
- Monitor data at rest
- Review web content filtering
- Maintain and upkeep various cybersecurity applications and tools on servers and workstations to ensure high operational readiness during all covered hours
- At least five (5) years of hands‑on technical cybersecurity experience and knowledge of Computer Network Defense concepts, DISA Security Technical Information Implementation Guides, DoD A&A Process, NIST SP 800‑53, NIST SP 800‑61, CJCSM 6510.01 B, United States Cyber Command guidelines, and other applicable DoD Cyber Security and Computer Network Defense policies.
- Active Top‑Secret Clearance REQUIRED, eligible to be upgraded to TS/SCI.
- Bachelor’s degree in information technology, Information Systems Management, Cyber Security, or equivalent experience.
- Must meet 8570 certification requirements at the time of hire. IAT Level II (e.g., CCNA Security, CySA+, GICSP, GSEC, Security+, SSSP or a CSSP Auditor Certification, CEH, CISA, GSNA is preferred).
- Willingness and availability to work the swing shift (1430 – 2300), including weekend and holiday rotations, fully on‑site at Quantico, VA.
- Log Analysis & Threat Identification:
Experience analyzing log files from network traffic logs, firewall logs, IDS logs, DNS logs and ESS to identify possible security threats (e.g., determine rogue systems, infected systems, unauthorized system changes, and unauthorized hardware connections). - Policy Enforcement:
Ability to identify violations of internet access by reviewing web content filtering logs in accordance with DoD policy and Standard Operating Procedures (SOPs). - Task Management:
Experience in processing and handling JFHQ DODIN Cyber related tasks to completion. - Proactive Threat Hunting:
Performance of threat hunting activities using DoD approved cyber tools through data hunting, manipulation, and presentation, including generating queries and reports for management and the end‑customer. - Incident Assessment:
Validation and confirmation of critical security events and assessing the impact of the event, by incorporating data from multiple tool sources. - Investigation & Forensics:
Identifying evidence of illegal activity involving cybercrime offenses and examining computers that may have been involved in other types of crime or malware infection. - Malware Analysis:
Use of forensic tools and investigative methods to find specific electronic data, namely associated with performing complex malware analysis. - Process Documentation:
Experience developing and maintaining SOPs for security monitoring. - Reporting:
Provide daily/weekly/monthly reports to senior leadership on key indicators of network security.
- This is a fully on‑site position at DCSA facilities, Quantico Marine Corps Base, VA. Telework is not offered for this shift.
- Must work the…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).