All jobs

Advanced Threat Detection Analyst

100% Remote Full-time Open now

About the position Leidos has a job opportunity for a Advanced Threat Detection Analyst expected to start in March 2026. This is a hybrid position allowing a 50/50 remote/onsite split, and can work out of any of our three locations: Hill AFB, Scott AFB, or Whitehall OH. Candidates must be within commuting distance (or prepared to self-relocate) to one of these locations. This position supports the Defense Information Systems Agency (DISA) GSM-O II program and its global Defensive Cyber Operations (DCO) organization. As a key leader, you will lead a Advanced Threat Detection team in providing critical network operations and cyber defense for stakeholders including Cyber Security Service Provider (CSSP) Customers, the Department of War (DoW) Information Network, and Combatant Commands. You will be responsible for overseeing daily threat hunting operations, developing cyber threat intelligence products, and investigating adversary indicators. This role involves leading your team in incident handling, network analysis, threat detection, and trend analysis, while also serving as a subject matter expert on advanced threat intelligence principles.

Responsibilities

  • Strategic Threat Intelligence Leadership: Serve as a subject matter expert on advanced threat intelligence principles (e.g., Cyber Kill Chain, MITRE ATT&CK), influencing the development of solutions that impact strategic program goals.
  • Develop and recommend new technical standards and products to support the organization's cyber defense strategy.
  • Innovative Solution Development: Resolve highly complex problems by conceptualizing, researching, and integrating best practices.
  • Lead the development of highly innovative solutions, such as custom signatures and advanced correlation logic, by interpreting threat actor tactics, techniques, and procedures (TTPs).
  • Executive Communication & Influence: Communicate matters of significant importance to executive leadership, both internally and with the client.
  • Deliver authoritative threat briefs to senior leaders and work to convince stakeholders to accept and adopt new concepts, practices, and security approaches.
  • Team Leadership & Management: Lead and manage the work of other technical staff, including mentoring and training fusion analysts on advanced TTPs.
  • Ensure the team's work on incident handling, event triage, and network analysis has a significant and positive impact on project results and outputs.
  • Advanced Operational Collaboration: Drive daily coordination with the DISA Global Countermeasures Team and external agencies.
  • Ensure the seamless integration of threat intelligence into countermeasures to proactively detect, prevent, and mitigate intrusions and malware infections across the enterprise.
  • Process & Documentation Oversight: Direct the creation and maintenance of all process documentation for the fusion team, ensuring that operational standards align with strategic objectives and reflect industry best practices.

Requirements

  • Clearance: Minimum active DoD Secret clearance with the ability to obtain and maintain a TS/SCI.
  • Certification: Current DoD 8570 IAT Level II (or higher), such as CompTIA Security+ CE, ISC2 SSCP, or SANS GSEC.
  • Education & Experience: Requires a BS degree and 8–12 years of prior relevant experience, OR a Master's with 6 - 8 years of prior relevant experience. A Doctorate may also be considered.
  • Leadership Experience: 4+ years of formal or informal leadership experience.
  • Cybersecurity Experience: 8+ years of cybersecurity experience with an in-depth understanding of advanced computer defense technologies.
  • Expertise in the following areas: Proven ability to develop innovative solutions by researching and integrating best practices.
  • Demonstrated experience using frameworks like the Cyber Kill Chain and MITRE ATT&CK to influence strategic goals.
  • Ability to lead and manage the work of a technical, multi-site team.
  • Excellent verbal and written communication skills, with experience influencing executive leadership.

Nice-to-haves

  • Experience working for a Cybersecurity Service Provider (CSSP) or Security Operations Center (SOC).
  • Knowledge of Threat Hunting practices, techniques, and Advanced Persistent Threats (APTs).
  • Advanced knowledge of a prominent Security Information and Event Management (SIEM) tool (e.g., Splunk, Elasticsearch).

Apply tot his job Apply To this Job

You might also like

Data Architect and Strategy - AI Integration & Deployment (Remote with travel - 1099 - Independ[...]

100% Remote Full-time

Process Excellence, Audit, and Controls Analyst - IT

100% Remote Full-time

Associate IT Audit Analyst

100% Remote Full-time

Sr. Data Compliance Analyst - Utilization Management

100% Remote Full-time

Data Science Engineering Manager, Healthcare

100% Remote Full-time

Manager - Ads Data Engineering

100% Remote Full-time

Data Engineer - Capital One Software (Remote)

100% Remote Full-time

Experienced Data Entry/Administrative Professional – Medical and Dental Services Support

100% Remote Full-time

Data Governance Analyst (Workday)

100% Remote Full-time

Lead Data Modeler - BI

100% Remote Full-time

Senior Associate - Healthcare Quality & Analytics

100% Remote Full-time

Warehouse Clerk – Amazon Store

100% Remote Full-time

Experienced Data Entry and Virtual Assistant Professional for Remote Opportunities with The Walt Disney Company

100% Remote Full-time

Associate Director, Copywriting

100% Remote Full-time

Manager, Call Center Operations (Clinical)

100% Remote Full-time

Rewritten Job Title:

100% Remote Full-time

Experienced Customer Service Representative – Delivering Exceptional Experiences for arenaflex Customers

100% Remote Full-time

Remote Data Entry Jobs with American Express: Work from Home – USA Remote Jobs

100% Remote Full-time

Remote Medical Transcriptionist (Evenings) - Competitive Salary and Flexible Work Arrangement

100% Remote Full-time

Remote Instagram Data Operations Specialist – Full‑Time, $27/hr – Work‑From‑Home Opportunity with Meta’s Instagram Team

100% Remote Full-time