Cyber Defense Analyst
Listed on 2026-10-05
-
IT/Tech
Cybersecurity
Cyber Defense Analyst
Location:
Suitland, MD Clearance:
Active TS/SCI Leidos is seeking a Cyber Defense Analyst to join a mission focused team supporting the Navy's cybersecurity environment in Suitland, MD.
At Leidos, we outthink, outbuild, and outpace the status quo — because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 — and moving faster than anyone else dares.
NITESONI DABAOPP1 If you're looking for comfort, keep scrolling.
Primary Responsibilities- Perform first line monitoring of security tools and conduct initial analysis of alerts for TS/SCI networks, including JWICS, ATLAS, and other networks for which HGCC is responsible.
- Monitor organizational cybersecurity tools for alerts, anomalies, and indicators of compromise.
- Investigate and perform initial technical analysis of cybersecurity alerts and events, escalating potential incidents to Tier 2 as appropriate.
- Create, update, and manage incident and event tickets within the approved ticketing system.
- Conduct proactive threat hunting activities to identify potential malicious activity and emerging threats.
- Perform wireless security scans of facilities and document and report findings.
- Correlate alerts and security events across multiple platforms to identify patterns, trends, and potential threats.
- Prepare and deliver operational and situational awareness briefings.
- Support annual cyber defense exercises.
- Bachelor's degree in Cybersecurity, Information Technology, Information Assurance, or a related area of study desired, with 4+ years of experience.
- Additional experience may be considered in lieu of a degree.
- Active TS/SCI security clearance.
- Concentrated experience in the CND discipline, regardless of degree.
- Professional experience monitoring and investigating alerts from cybersecurity tools.
- Experience with Security Information and Event Management (SIEM) systems such as Splunk and Elastic.
- Experience with Network Intrusion Detection/Prevention Systems (NIDPS), such as Cisco Fire Power and Palo Alto NGFW, as well as host based tools such as Trellix ePO, Microsoft Defender, and Tanium.
- Knowledge of scripting and coding languages such as Python, Perl, Ruby, JavaScript, Power Shell, C, C++, and Java.
- Knowledge of penetration testing and red team tactics, techniques, and procedures, as well as tools such as Kali, SamuraiWTF, Nmap, Burp Suite, sqlmap, and Metasploit.
- Knowledge of ticketing systems, report writing, and intelligence gathering, analysis, and dissemination techniques specific to cybersecurity.
- Strong analytical, conceptual, and problem solving skills.
- Must possess one of the following active certifications:
CompTIA Security+, CompTIA CySA+, CompTIA Pen Test+, CompTIA Cloud+, CEH, FITSP-O, GIAC GMON, GIAC GRID, GIAC GCIA, GIAC GCIH, GIAC GICSP, GIAC GCED, GIAC GDSA, GIAC GSEC, CFR, or Cisco Cyber Ops.
Original Posting:
October 1, 2026 For U.S. Positions:
While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.
Pay Range:
Pay Range $87,100.00 - $ The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.
Leidos Leidos is an industry and technology…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).