Demo

Cyber Security Analyst (S-NET)

Waypoint Human Capital
Annapolis, MD Full Time
POSTED ON 4/25/2025
AVAILABLE BEFORE 6/24/2025
Position Type: Full-time
Location Type: Onsite
Clearance Required: Active TS w/ SCI eligibility

Waypoint’s client is seeking a Cyber Security (Incident Response) Analyst to support a government Cyber Security Operation Center (CSOC) will conduct security event monitoring, advanced analytics, and response activities in support of the CND operational mission with diverse backgrounds in cyber security systems operations, analysis and incident response.

Responsibilities:
  • Perform technical analysis on a wide range of cybersecurity issues, with a focus on network activity, host activity, and data.  This includes but is not limited to: network flow (i.e. Netflow) or related forms of session summary data, signature-based IDS/IPS alert/event data, full packet capture (PCAP) data, proxy and application server logs (various types).
  • Triage IDS/IPS alerts, collect related data from various systems, review open and closed source information on related threats & vulnerabilities, diagnose observed activity for likelihood of system infection, compromise or unintended/high-risk exposure.
  • Prepare analysis reports detailing background, observables, analysis process & criteria, and conclusions.
  • Analyze large volumes of network flow data for specific patterns/characteristics or general anomalies, to trend network activity and to correlate flow data with other types of data or reporting regarding enterprise-wide network activity.
  • Leverage lightweight programming/scripting skills to automate data-parsing and simple analytics. Document key event details and analytic findings in analysis reports and incident management systems. Identify, extract and characterize network indicators from cyber threat intelligence sources, incident reporting and published technical advisories/bulletins.
  • Assess cyber indicators/observables for technical relevance, accuracy, and potential value/risk/reliability in monitoring systems. Recommend detection and prevention/mitigation signatures and actions as part of a layered defensive strategy leveraging multiple capabilities and data types.
  • Develop IDS/IPS signatures, test and tune signature syntax, deploy signatures to operational sensors, and monitor and tune signature and sensor performance.
  • Fuse open-source threat & vulnerability information with data collected from sensors across the enterprise into cohesive and comprehensive analysis.
  • Develop security metrics and trend analysis reports.
Requirements:
  • Bachelor’s degree in Computer Science, Information Systems, or equivalent education or work experience (additional relevant work experience can be substituted for a degree)
  • Must have a current DoD 8570.1-M IAT Level II certification.
Desired:
  • Desired Certifications: CEH, GCIH, GCIA, GCFA
  • 3 years in a SOC or Incident Response role
  • Experience with Cisco Firepower, Cisco Sourcefire, Cisco Advanced Malware Protection, Cisco Stealthwatch, Cisco Umbrella
  • Experience with deploying and writing signatures (Snort, YARA, HIPS)
  • Experience with network hunting utilizing Zeek/Bro
  • Experience with McAfee ePO, HBSS
  • Splunk: Create log searches, dashboards, setting up alerts, and scheduled reports to help detect and remediate security concerns.
  • Experience with ArcSight
  • Experience with Wireshark and packet analysis
  • Experience with Tanium or other endpoint solutions
  • Working knowledge of scripting languages such as Python, PowerShell, Shell
  • Knowledge of Regular Expressions
  • Knowledge of server and client operating systems
  • Participate in development and reporting of security metrics
  • Experience in a SOC or Incident Response role
 
Education Required Salary Range
Requires 5 to 8 years with BS/BA or 3 to 5 years with MS/MA or 0 to 2 years with PhD.   $170-213K
Requires 8 to 10 years with BS/BA or 6 to 8 years with MS/MA or 3 to 5 years with PhD.



*Waypoint Human Capital is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender, national origin, age, protected veteran status, or disability status.

Salary : $170,000 - $213,000

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Cyber Security Analyst (S-NET)?

Sign up to receive alerts about other jobs on the Cyber Security Analyst (S-NET) career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$125,027 - $157,872
Income Estimation: 
$149,432 - $188,965
Income Estimation: 
$87,466 - $114,731
Income Estimation: 
$114,790 - $146,930
Income Estimation: 
$115,647 - $153,495
Income Estimation: 
$99,793 - $130,112
Income Estimation: 
$125,027 - $157,872
Income Estimation: 
$114,790 - $146,930
Income Estimation: 
$142,618 - $183,267
Income Estimation: 
$115,647 - $153,495
Income Estimation: 
$125,027 - $157,872
Income Estimation: 
$149,432 - $188,965
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Waypoint Human Capital

Waypoint Human Capital
Hired Organization Address Huntsville, AL Full Time
Position : Project Support Analyst Position Type : On-Site Position Location : Huntsville, AL Clearance : Secret – TS / ...
Waypoint Human Capital
Hired Organization Address Annapolis, MD Full Time
Position Type: Full-time Location Type: Onsite Clearance Required: Active TS w/ SCI eligibility Waypoint’s client is see...
Waypoint Human Capital
Hired Organization Address Annapolis, MD Full Time
Position Type: Full-time Location Type: Onsite Clearance Required: Active TS w/ SCI eligibility Waypoint’s client is see...
Waypoint Human Capital
Hired Organization Address Annapolis, MD Full Time
Position: Data Center Engineer (VDI & S-NET) Position Type: Full-time Position Location: Annapolis Junction MD Location ...

Not the job you're looking for? Here are some other Cyber Security Analyst (S-NET) jobs in the Annapolis, MD area that may be a better fit.

DoD SkillBridge: Cyber Intelligence Analyst

TeamWorx Security, Inc., Columbia, MD

Cyber Security Analyst

Tech-X, Aberdeen, MD

AI Assistant is available now!

Feel free to start your new journey!