Cyber Security Analyst I

Akima, LLCReston, VA
Onsite

About The Position

We are seeking a Cybersecurity Analyst to join our SOC. You will participate in the execution of incident detection, containment, and remediation activities across Windows, Linux, and cloud environments. This role blends hands-on technical response, threat hunting, network analysis, and cross-functional coordination to reduce risk and improve security posture.

Requirements

  • Minimum 5 years working in Windows and Linux environments with hands-on incident response or SOC experience.
  • CCNA, GCIH, GCIA, OSCP, CEH, Security+ or equivalent.
  • AWS/Azure/Oracle security certifications or hands-on cloud security experience.
  • Strong understanding of TCP/IP, DNS, SMTP, HTTPS, and other Internet protocols.
  • Practical experience with SIEM, EDR/XDR, firewalls, IDS/IPS, anti-malware, vulnerability scanners, and encryption technologies.
  • Ability to collect, parse, and interpret logs and artifacts from endpoints, servers, network devices, and cloud services.
  • Familiarity with common exploitation techniques, software vulnerabilities (e.g., input validation flaws), and attacker tradecraft.
  • Proficiency in at least one scripting language (Python, PowerShell, Bash) and experience with forensic and analysis tools (Wireshark, Sysinternals).
  • Familiar with incident response lifecycle, containment/isolation techniques, evidence collection, and chain-of-custody practices.
  • Excellent written and verbal communication skills; able to explain technical decisions clearly to technical and non-technical stakeholders.
  • Strong prioritization, organization, analytical reasoning, attention to detail, and ability to perform under stress.
  • Proven ability to collaborate in tightly coordinated teams during emergencies and mentor junior staff.
  • High integrity and ability to handle confidential and sensitive information appropriately.

Responsibilities

  • Incident Response and Network Forensics: Triage, containment, eradication, and recovery for security incidents; perform network-based forensics.
  • Detection and Monitoring: Operate and tune SIEM, EDR/XDR, and network detection tools; develop and maintain detection rules, alerts, and dashboards.
  • Threat Hunting and Analysis: Proactively hunt for threats using telemetry from endpoints, network devices, cloud services, and logs; map activity to MITRE ATT&CK techniques.
  • Malware Analysis: Perform static and dynamic analysis of suspicious binaries and scripts.
  • Vulnerability Management: Support vulnerability scanning, prioritize findings, and coordinate remediation with engineering teams.
  • Cloud and Identity Security: Investigate incidents in Azure/VMware; analyze identity and access events; support Zero Trust and IAM controls.
  • Automation and Playbooks: Create and maintain incident response playbooks and SOAR workflows; automate repetitive tasks with scripting (Python, PowerShell, Bash).
  • Logging and Telemetry: Analyze logs from systems and applications.
  • Collaboration and Communication: Coordinate with system/network administrators, developers, and external stakeholders; prepare incident reports and brief leads.
  • On-call and Emergency Response: On-call for emergencies and respond effectively under pressure to meet critical deadlines.

Benefits

  • medical
  • dental
  • vision
  • life insurance
  • 401(k)
  • Paid Time Off (PTO)
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service