Cyber Anst Sr

BAE SystemsSterling, VA

About The Position

BAE Systems is looking for a Cybersecurity Analyst to serve as a TIER III analyst in a Network Operations and Security Center (NOSC) for a program that delivers cloud and on-prem services across multiple classification levels and remote locations. Responsibilities will include: Support in maintaining a Network Operations and Security Center (NOSC) conducting continuous monitoring, incident response and threat hunting activities. Work closely and cross-train with co-located NOC analysts to provide relevant artifacts and analysis IOT assist troubleshooting network transport related incidents. Assist the Program Management staff with prioritization and milestone tracking for efforts related to the SOC and NOC Operations and Maturity governance. Manage the security information and event management (SIEM) platform to monitor for error conditions, security alerts and coordinate vulnerability assessments and artifact collection across the enterprise Evaluate network structures and device configurations for security risks, offering recommendations based on best practices, and gather data to identify and respond to network intrusions Analyze network traffic (both CLOUD and on-prem) and system logs to identify error conditions, malicious activities, vulnerabilities exploited, and methods used, and develop processes to enhance SOC and NOC response and efficiency Conduct comprehensive technical analyses of computer evidence, research and integrate new security tools into the SOC, and synthesize findings into reports for both technical and non-technical audiences in accordance with established policies/procedures and applicable regulations. Capable of attack reconstruction based on network traffic, integrating Threat Intelligence, and familiar with MITRE ATT&CK framework, with the ability to collaborate effectively across multiple locations.

Requirements

  • Bachelor's degree in computer science, information systems, or other technology-related field
  • 5+ years of experience in security operations, demonstrating leadership in customer-facing roles
  • CASP+, Certified Ethical Handler (CEH), GIAC Certified Incident Handler (GCIH), or relevant DoDM 8140.03 AIM / AIT III qualified certifications
  • Proficient in analyzing cyber-attacks, with a deep understanding of attack classifications, stages, system/application vulnerabilities, and compliance with Department of Defense (DoD) policies and procedures
  • Extensive knowledge of network topologies, protocols (e.g., TCP/IP, ICMP, HTTP/S, DNS, SSH, SMTP, SMB), and experience with tools/systems including AWS, Cisco, Splunk SIEM, Splunk Forwarders, IDS/IPS, VMware, SSL Decryption, proxy and DLP operations, Windows and Linux based endpoints.
  • Deep understanding of Threat Intelligence integration and associated integration throughout the enterprise at multiple layers.

Nice To Haves

  • Familiar with MITRE ATT&CK framework

Responsibilities

  • Support in maintaining a Network Operations and Security Center (NOSC) conducting continuous monitoring, incident response and threat hunting activities.
  • Work closely and cross-train with co-located NOC analysts to provide relevant artifacts and analysis IOT assist troubleshooting network transport related incidents.
  • Assist the Program Management staff with prioritization and milestone tracking for efforts related to the SOC and NOC Operations and Maturity governance.
  • Manage the security information and event management (SIEM) platform to monitor for error conditions, security alerts and coordinate vulnerability assessments and artifact collection across the enterprise.
  • Evaluate network structures and device configurations for security risks, offering recommendations based on best practices, and gather data to identify and respond to network intrusions.
  • Analyze network traffic (both CLOUD and on-prem) and system logs to identify error conditions, malicious activities, vulnerabilities exploited, and methods used, and develop processes to enhance SOC and NOC response and efficiency.
  • Conduct comprehensive technical analyses of computer evidence, research and integrate new security tools into the SOC, and synthesize findings into reports for both technical and non-technical audiences in accordance with established policies/procedures and applicable regulations.
  • Capable of attack reconstruction based on network traffic, integrating Threat Intelligence, and familiar with MITRE ATT&CK framework, with the ability to collaborate effectively across multiple locations.

Benefits

  • health, dental, and vision insurance
  • health savings accounts
  • a 401(k) savings plan
  • disability coverage
  • life and accident insurance
  • employee assistance program
  • legal plan
  • discounts on things like home, auto, and pet insurance
  • paid time off
  • paid holidays
  • paid parental leave
  • paid military leave
  • paid bereavement leave
  • any applicable federal and state sick leave
  • company recognition program to receive monetary or non-monetary recognition awards
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service