Jobless Developer
UltraViolet Cyber logo

Posted 6 days ago

Open

Cyber Defense Analyst

Lehi, UTHybrid

AI Summary

A Cyber Defense Analyst analyzes and responds to cybersecurity alerts, investigates intrusions, performs packet and log analysis, and implements security changes to protect systems and ensure continuity.

About this role

Make a difference here.

UltraViolet Cyber is a leading platform-enabled unified security operations company providing a comprehensive suite of security operations solutions. Founded and operated by security practitioners with decades of experience, the UltraViolet Cyber security-as-code platform combines technology innovation and human expertise to make advanced real-time cybersecurity accessible for all organizations by eliminating risks of separate red and blue teams.

By creating continuously optimized identification, detection, and resilience from today’s dynamic threat landscape, UltraViolet Cyber provides both managed and custom-tailored unified security operations solutions to the Fortune 500, Federal Government, and Commercial clients. UltraViolet Cyber is headquartered in McLean, Virginia, with global offices across the U.S. and in India.

The Cyber Defense Analyst will join an UltraViolet Cyber services team at one of our premier customers. This position involves analyzing, investigating, containing, and responding to cybersecurity alerts. Your analytical insight, instincts, and attention to detail will be vital in minimizing damage, protecting sensitive data, and ensuring business continuity. Ready for a challenge?
  • On-Site Requirement: 50%
  • Work Schedule: Four 10-hour shifts, with one shift covering either Sunday–Wednesday or Wednesday–Saturday
  • Work Hours: 8AM MTN to 6PM MTN

What You'll Do:

UltraViolet Cyber is seeking a Cyber Defense Analyst to add to our existing team. Primary responsibilities will require: (i) in-depth analysis of intrusions in diverse computing environments; (ii) thorough packet analyses; (iii) implementing/optimizing changes to security infrastructure; (iv) integrating threat intelligence into the operational environment; and (v) protecting systems and infrastructure from infiltration or exfiltration of data.
Responsibilities:
  • Perform analyses of network infrastructure, applications, operating systems, firewalls, proxy devices and malware detection in a fast-paced environment
  • Proactively identify threats across a wide range of customer environments
  • Monitor alerts using a SIEM platform to respond, triage and escalate incidents, as necessary
  • Perform vulnerability scans, analyze results and recommend remediation actions
  • Perform continuous monitoring of diverse security environments and analyze event log data to determine severity and prioritization of incident response efforts
  • Contribute to the advancement of security posture
  • Minimum Requirements:
  • 2 years of operational experience with securing and monitoring multiple platforms, network configurations and implementations
  • Broad knowledge of IT security
  • General systems infrastructure experience
  • Experience with log correlation and packet analysis tools
  • Solid understanding of common enterprise information systems services such as Active Directory
  • Solid understanding of TCP/IP protocol suite, security architecture and security techniques/products
  • Experience with various security management tools (e.g., vulnerability management, configuration management and SIEM)
  • Proven ability to analyze captured data to perform incident response and identify potential compromises
  • Excellent written and oral communication skills
  • Preferred Education and Certifications:
  • B.A or B.S in computer science or related field
  • CompTia Sec+
  • CompTia CySa+
  • Required Skills Section

  • We want to see proven experience in thoroughly conducting cyber security investigations.
  • Solid understanding of threat intelligence, malware analysis, and network security concepts.
  • Excellent analytical and problem-solving skills with the ability to think critically under pressure.
  • Communicate concisely with diversified stakeholders and engineering teams using clear data points.
  • Hands on experience with SIEM and familiarity with a diversified set of security tools and investigation supporting data sets.
  • Proven understanding of security and privacy fundamentals.
  • Familiarity with compliance frameworks such as FedRAMP, ISO 27001, SOC2, HIPAA, FERPA, and PCI.
  • Strong organizational skills are a plus.
  • Strong written and verbal communication skills.
  • A collaborative outlook that seeks to build and cultivate relationships.
  • Ability to multi-task in a fast-paced environment.
  • Skills

    Active DirectoryConfiguration ManagementLog CorrelationMalware AnalysisNetwork SecurityPacket AnalysisSIEMTCP/IPThreat IntelligenceVulnerability Management

    Explore related jobs

    Browse these categories