Logo
ManTech

Cyber Incident Detection and Response Analyst

ManTech, Jackson, Mississippi, United States

Save Job

Cyber Incident Detection and Response Analyst

Join to apply for the

Cyber Incident Detection and Response Analyst

role at

MANTECH Continue with Google Continue with Google Cyber Incident Detection and Response Analyst

Join to apply for the

Cyber Incident Detection and Response Analyst

role at

MANTECH ManTech

seeks a motivated, career and customer-oriented

Mid-Level

Cyber Incident Detection and Response Analyst

to join our team in

Stennis, MS .

The NOSC Cyber Incident Detection and Response Analyst monitors, analyzes and responds to cybersecurity threats to protect mission-critical systems. They investigate security incidents, coordinate mitigation efforts, and implement proactive defense measures to enhance cybersecurity posture and resilience. Reports to the IR Lead and assists with training and development of Junior Analysts.

Responsibilities Include But Are Not Limited To

Provide 24/7 support for incident monitoring, data flow and response, content, and remediation, and interfaces with other incident response centers in maintaining an understanding of threats, vulnerabilities, and exploits that could impact networks and assets. Perform the role of Incident Coordinator for IT Security events requiring focused response, containment, investigation, and remediation. Ensuring review and quality on incident closures. Perform real-time proactive event investigation and forensic analysis on various security enforcement systems, such as SIEM, Anti-virus, Internet content filtering/reporting, malcode prevention, Firewalls, IDS & IPS, Web security, antispam, etc. Conduct malware analysis in out of-band environment (static and dynamic), including complex malware. Analyze operational anomalies, network behavior and perform mitigation actions derived from cyber threat monitoring and anomaly analysis, and actively monitor the networks for cybersecurity threats and vulnerabilities. Assist with Knowledge Management - Standard Operating Procedures and procedural support data. Develop and implement detection use cases and signatures to enhance threat identification capabilities. Continuously assess and improve incident detection and response processes providing training and guidance to junior analysts and other team members, support and report to the Cyber Security Incident Response Lead.

Minimum Qualifications

7+ years of experience in cybersecurity, with a focus on incident detection and response and a Bachelor’s degree in computer science, information technology, cybersecurity, or a related field of study (or equivalent experience). One of the following relevant 8570 compliant certifications: Certified Information Systems Security Professional (CISSP), Certified Incident Handler (GCIH), Certified Information Security Manager (CISM), Certified Ethical Hacker (CEH) Proficiency with SIEM tools (e.g., Splunk, ArcSight). Experience with intrusion detection/prevention systems (IDS/IPS), endpoint detection and response (EDR) tools, and firewalls. Strong understanding of network protocols, operating systems, and security architectures. Familiarity with digital forensics tools and techniques.

Preferred Qualifications

Experience working in a government or defense environment. Familiarity with DHS policies and procedures. Knowledge of broader cybersecurity frameworks (e.g., NIST, ISO 27001).

Clearance Requirements

Must have a current/active Secret clearance with the ability to obtain and maintain a TS/SCI. The ability to obtain and maintain a DHS EOD suitability is required prior to starting this position.

Physical Requirements

Must be able to work in an office environment and maneuver in data center and other IT equipment installation locations. Constantly operate a computer and other office productivity machinery, such as a calculator, copy machine and computer printer. Ability to lift and carry 75 lbs for distances up to 50 feet.

Seniority level

Seniority level Mid-Senior level Employment type

Employment type Full-time Job function

Job function Information Technology Industries IT Services and IT Consulting Referrals increase your chances of interviewing at MANTECH by 2x Sign in to set job alerts for “Cyber Security Analyst” roles.

Continue with Google Continue with Google Continue with Google Continue with Google Network Operations Security Center Analyst

Senior Cyber Incident Detection and Response Analyst

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

#J-18808-Ljbffr