Senior Cyber Manager
Job in
Washington, District of Columbia, 20022, USA
Listed on 2026-08-07
Listing for:
Peraton
Full Time
position Listed on 2026-08-07
Job specializations:
-
IT/Tech
Cybersecurity, Information Security & Data Protection, Network Security
Job Description & How to Apply Below
Required:
- BS with 12+ Years of relevant experience, 4 additional years of relevant experience may be considered in lieu of a degree
- Active Top Secret clearance with SCI eligibility is required
- Bachelor’s degree in Computer Science, Information Systems, or equivalent education or work experience (additional relevant work experience can be substituted for a degree)
- Experience managing and leading a team
- Experience managing cyber incidents in enterprise environments
- Must have a current DoD 8570.1-M IAT Level II certification
- Desired
Certifications:
CEH, GCIH, GCIA, GCFA - 3+ years in a SOC or Incident Response role
- Experience with Cisco Firepower, Cisco Source fire, Cisco Advanced Malware Protection, Cisco Stealthwatch, Cisco Umbrella
- Experience with deploying and writing signatures (Snort, YARA, HIPS)
- Experience with network hunting utilizing Zeek/Bro
- Experience with McAfee ePO, HBSS
- Splunk:
Create log searches, dashboards, setting up alerts, and scheduled reports to help detect and remediate security concerns. - Experience with Arc Sight
- Experience with Wireshark and packet analysis
- Experience with Tanium or other endpoint solutions
- Working knowledge of scripting languages such as Python, Power Shell, Shell
- Knowledge of Regular Expressions
- Knowledge of server and client operating systems
- Participate in development and reporting of security metrics
- Experience in a SOC or Incident Response role
- Excellent communication, leadership, and decision-making skills
Peraton is currently seeking a Cyber Incident Response Analyst Manager to support a government Cyber Security Operation Center (CSOC) onsite in Washington D.C. The program provides comprehensive Computer Network Defense and Incident Response support monitoring and analysis of potential threat activity targeting the enterprise. The Incident Response Analyst Manager will conduct security event monitoring, advanced analytics, and response activities in support of the CND operational mission, as well as manage a team of SOC analysts.
We are seeking candidates with diverse backgrounds in cyber security systems operations, analysis and incident response.
- Perform technical analysis on a wide range of cybersecurity issues, with a focus on network activity, host activity, and data. This includes, but is not limited to: network flow (i.e. netflow) or related forms of session summary data, signature-based IDS/IPS alert/event data, full packet capture (PCAP) data, proxy and application server logs (various types).
- Triage IDS/IPS alerts, collect related data from various systems, review open and closed source information on related threats & vulnerabilities, diagnose observed activity for likelihood of system infection, compromise or unintended/high-risk exposure.
- Prepare analysis reports detailing background, observables, analysis process & criteria, and conclusions.
- Analyze large volumes of network flow data for specific patterns/characteristics or general anomalies, to trend network activity and to correlate flow data with other types of data or reporting regarding enterprise-wide network activity.
- Leverage lightweight programming/scripting skills to automate data-parsing and simple analytics. Document key event details and analytic findings in analysis reports and incident management systems. Identify, extract and characterize network indicators from cyber threat intelligence sources, incident reporting and published technical advisories/bulletins.
- Assess cyber indicators/observables for technical relevance, accuracy, and potential value/risk/reliability in monitoring systems. Recommend detection and prevention/mitigation signatures and actions as part of a layered defensive strategy leveraging multiple capabilities and data types.
- Develop IDS/IPS signatures, test and tune signature syntax, deploy signatures to operational sensors, and monitor and tune signature and sensor performance.
- Fuse open-source threat & vulnerability information with data collected from sensors across the enterprise into cohesive and comprehensive analysis.
- Develop security metrics and trend analysis reports
- Designs, develops, and implements security requirements within an organization’s business…
Position Requirements
10+ Years
work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×