Senior Cyber Defense Analyst

Camp HM Smith, HI, US • Posted 6 hours ago • Updated 6 hours ago
Full Time
On-site
Company Branding Image
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • Data Science
  • Software Development
  • Network Engineering
  • Surveillance
  • ISR
  • Logistics
  • Network Security
  • Real-time
  • DaaS
  • Cloud Computing
  • Decision-making
  • Innovation
  • Mentorship
  • Documentation
  • Threat Analysis
  • Leadership
  • Network
  • Regulatory Compliance
  • RMF
  • Risk Management Framework
  • Security Clearance
  • DoD
  • Security+
  • Customer Engagement
  • GSEC
  • Cisco Certifications
  • Incident Management
  • Malware Analysis
  • SIEM
  • Communication
  • Operational Risk
  • GCIA
  • GCIH
  • CISSP
  • Military
  • Tier 2
  • Tier 3
  • Collaboration
  • Artificial Intelligence
  • Machine Learning (ML)
  • Analytics
  • System On A Chip
  • Workflow
  • Dashboard
  • Reporting
  • Microsoft Power BI
  • JIRA
  • ServiceNow
  • Splunk
  • Microsoft
  • Wireshark

Summary

Company Description

Founded in 1989 and headquartered in Reston, Virginia, SOSi is a private defense and government solutions business specializing in advanced technology systems and mission support. Its capabilities include data science, software development, network engineering, intelligence, surveillance, and reconnaissance (ISR), and logistics.

Job Description

Senior Cyber Defense Analyst - NIGHT Shift Lead

Step into a high-impact cyber defense leadership role at the forefront of mission operations. As a Night Shift Senior Cyber Defense Analyst Lead within SOSi's INDOPACOM Network Security Operations Center, you'll drive real-time threat defense across multi-enclave coalition environments powered by cutting-edge DaaS private cloud technology.

This role blends advanced cyber operations with modern AI-assisted detection-leading analysts through threat hunting, incident response, and rapid decision-making to protect critical warfighter networks. You'll be the connective force between detection engineering, cyber innovation teams, and mission partners, ensuring precision, speed, and mission assurance in a dynamic, 24/7 operational environment.

Lead the shift. Validate the signal. Defend the mission.

Essential Job Duties
  • Serve as the senior analyst and shift lead for assigned operations, providing direction on monitoring priorities, triage, threat hunting, and incident investigation activities.
  • Coordinate shift-level cyber defense response activities during alerts, incidents, outages, and mission-impacting events, escalating to the Incident Response Lead, DCO Lead, or INSOC leadership as required.
  • Validate, adjudicate, and prioritize escalated detections from AI-assisted SOC tools, SIEM, EDR, SOAR, and enterprise monitoring platforms.
  • Lead initial incident triage and support containment, remediation, evidence preservation, reporting, and handoff activities across shift transitions.
  • Mentor junior and mid-level analysts in detection analysis, threat hunting, incident response procedures, documentation standards, and operational best practices.
  • Serve as the shift-level liaison between analysts, DCAI engineers, detection engineering, NetOps, SysOps, and mission partners to refine detections, SOAR playbooks, AI-assisted workflows, and response procedures.
  • Conduct threat hunting based on adversary tactics, techniques, and procedures (TTPs), threat intelligence, anomaly detection, and mission-specific risk indicators.
  • Ensure incidents, investigations, shift notes, case updates, and lessons learned are documented accurately in accordance with SOPs, CSSP reporting requirements, and escalation timelines.
  • Support red/blue team events, tabletop exercises, operational drills, and after-action reviews to validate analyst readiness and improve shift procedures.
  • Provide clear verbal and written shift updates, incident summaries, and operational reporting to leadership, Government stakeholders, and external mission partners as required.
  • Maintain awareness of enterprise cyber, network, system, and mission environments to support timely detection, correlation, and mission-impact assessment.
  • Support compliance with RMF, CSSP, DoD 8140, SOPs, and accreditation requirements for AI-augmented cyber defense and incident response processes.


Qualifications

Minimum Requirements
  • Active in-scope Top Secret/SCI clearance.
  • DoD 8140 / 8570 IAT Level II certification required within 180 days of hire, such as Security+ CE, CySA+, GSEC, CCNA Security, or equivalent.
  • Minimum 5+ years of SOC, CSSP, Defensive Cyberspace Operations, or cyber defense experience with demonstrated incident response and threat hunting expertise.
  • Experience serving as a senior analyst, shift lead, incident lead, or escalation point within a SOC or enterprise cyber defense environment.
  • Strong understanding of adversary TTPs, MITRE ATT&CK, malware analysis fundamentals, cyber kill chain concepts, and advanced detection and response techniques.
  • Hands-on experience with SIEM, EDR, SOAR, packet capture and analysis tools, and enterprise monitoring platforms, such as Splunk, Elastic, Defender, Wireshark, Zeek, ServiceNow, or similar tools.
  • Ability to coordinate cross-functional response efforts across analysts, engineers, operations teams, Government stakeholders, and mission partners during cyber incidents and operational events.
  • Strong written and verbal communication skills, including the ability to brief technical findings, incident status, operational risk, and recommended actions to technical and non-technical audiences.
  • Must be flexible to support 24/7/365 operations, including rotating shifts, nights, weekends, holidays, on-call support, and surge coverage during major incidents or exercises.

Preferred Qualifications
  • Advanced certifications such as GCIA, GCIH, GDAT, GCTI, CISSP, CASP+, or equivalent.
  • Experience supporting DISA, CSSP, TNCC, INDOPACOM, coalition, or military cyber defense environments.
  • Prior Tier 2/Tier 3 SOC analyst, shift lead, incident commander, battle captain, or major incident coordination experience.
  • Experience working with AI/ML-assisted SOC platforms, automation pipelines, SOAR workflows, and operational analytics platforms.
  • Experience building, maturing, or refining SOC workflows, CONOPS, SOPs, escalation procedures, dashboards, and reporting products.
  • Experience with Mavin, Power BI, JIRA, ServiceNow, Elastic, Splunk, Microsoft Defender, Zeek, Wireshark, or similar enterprise platforms.


Additional Information

Work Environment
  • NIGHT Shift-based schedule 2200 till 0600 hours as a senior analyst role supporting 24/7/365 mission operations; flexibility is required for rotating shifts, weekends, holidays, after-hours escalations, exercises, and surge support.
  • Fast-paced, mission-critical cyber defense operations supporting classified mission activities and enterprise-level operational response.
  • May require participation in operational meetings, briefings, shift turnovers, tabletop exercises, and after-action reviews.

Working at SOSi

All interested individuals will receive consideration and will not be discriminated against for any reason.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10237746
  • Position Id: 3743990014826736
  • Posted 6 hours ago

Company Info

About SOS International LLC (SOSi)

Since 1989, SOSi has provided specialized services supporting the national security interests of the United States and the security and stability needs of its allies.

We excel at providing logistics, construction, training, intelligence and information technology solutions to our clients in the defense, diplomatic, intelligence and law enforcement communities.

Decades of successful business have earned SOSi a well-deserved reputation for reliability and excellence in the government contracting industry. Originally founded to provide specialized language support to the law enforcement community, SOSi has grown into a diverse company with a broad portfolio of clients and service offerings. Our ability to enter new markets and deliver integrated solutions to complex challenges has been the hallmark of our growth into a large business with global reach.

Since 2002, SOSi s compounded annual growth rate has exceeded 30%, fueled by growth and diversification of SOSi s core businesses. In 2016, SOSi made its first acquisition, adding New World Solutions (NWS) to the portfolio of SOSi companies. NWS enhances SOSi s intelligence service offerings, adding highly sought after capabilities in data and imagery science, overhead persistent infrared (OPIR) and cyber solutions.

Whether the mission involves systems engineering and intelligence analysis supporting the U.S. military in Europe or operating bases that house thousands of clients in Iraq, we re ready to go where you need us.

At SOSi, it s always Challenge Accepted!

SOSi s unique approach to business features:

-An experienced team For over a quarter century, SOSi has delivered quality program management. We have proven business processes, corporate infrastructure and credentialed professionals that ensure project success.

-A client-centric approach As a family owned business, we bring a passion and commitment to our customers jobs that companies with institutional or public ownership simply do not offer. We are personally vested in our customers' success.

-Fully integrated solutions We do more than just staff a project. We develop holistic solutions that meet our customers needs. Innovation, efficiency and quality are the hallmarks of our work.

-An international perspective With experience in over 30 countries across Latin America, Europe, Africa, the Middle East and Asia, SOSi understands how to manage complex projects both at home and abroad.

-Willingness to take calculated risks SOSi is as comfortable working in the national capital region of the United States as it is supporting its clients in remote, austere and dangerous places. We go wherever you need us.

About_Company_One
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Joint Base Pearl Harbor-Hickam, Hawaii

Today

Full-time

Joint Base Pearl Harbor-Hickam, Hawaii

Today

Full-time

Search all similar jobs