Cybersecurity Operations Analyst

JCS Solutions LLC•Alexandria, VA
•$105,000 - $150,000•Onsite

About The Position

JCS Solutions is seeking a Cybersecurity Operations Analyst to support a fast-paced Security Operations Center (SOC) environment. This role is responsible for helping protect critical IT infrastructure through continuous cybersecurity monitoring, threat detection, incident analysis, and security operations support. The successful candidate must possess an active DoD security clearance and will play a key role in maintaining and strengthening the security posture of a leading IT and cybersecurity services organization. Working alongside cybersecurity professionals, you will contribute to the identification, investigation, and response to security events while supporting ongoing efforts to improve cyber defense capabilities and operational resilience.

Requirements

  • Active DoD Top Secret/Sensitive Compartmented Information (TS/SCI) security clearance.
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field. Additional relevant experience, military training, or cybersecurity certifications may be substituted in lieu of a degree.
  • 10+ years of experience in cybersecurity operations, incident response, computer network defense (CND), cyber threat analysis, or a related cyber defense discipline.
  • Experience working within a Security Operations Center (SOC) environment supporting security monitoring, incident detection, triage, investigation, and response activities.
  • Demonstrated experience performing Computer Network Defense (CND) functions across the Protect, Detect, Respond, and Sustain mission areas.
  • Strong understanding of the cyber threat lifecycle, attack methodologies, threat actors, attack vectors, indicators of compromise (IOCs), and adversary tactics, techniques, and procedures (TTPs).
  • Strong understanding of TCP/IP networking, common ports and protocols, traffic analysis, system administration concepts, OSI model principles, defense-in-depth strategies, and enterprise security architectures.
  • Excellent analytical, troubleshooting, written communication, and verbal communication skills with the ability to prepare detailed technical reports and investigative findings.
  • Current DoD 8570 IAT Level II (or higher) certification prior to start date, including one of the following: CompTIA Security+ CE, ISC2 SSCP, GIAC GSEC, or Equivalent DoD-approved certification.
  • Ability to obtain and maintain a DoD 8570 CSSP Analyst certification within six months of hire, such as: CompTIA CySA+, EC-Council CEH, GIAC GCIA, or Equivalent DoD-approved certification.
  • Ability and willingness to support shift operations, including weekends, holidays, and alternate schedules as mission requirements dictate.

Nice To Haves

  • Experience analyzing large log datasets, NetFlow, packet captures, and attack artifacts during investigations.
  • Hands-on experience with SIEM platforms such as Splunk, ArcSight, QRadar, or McAfee ESM.
  • Proficiency with security tools including IDS/IPS, HBSS/HIPS, antivirus, packet capture, and network forensics.
  • Knowledge of malware analysis techniques and investigative methodologies.
  • Experience working in Unix/Linux environments.
  • Scripting or programming experience (Python, PowerShell, Bash, or similar).
  • Strong written and verbal communication skills with the ability to produce technical reports.
  • Familiarity with Intelligence-Driven Defense, the Cyber Kill Chain, and MITRE ATT&CK frameworks.
  • Experience with threat hunting and advanced threat detection activities.

Responsibilities

  • Monitor and analyze security alerts generated from endpoints, IDS/IPS, NetFlow, SIEM platforms, and custom security sensors to identify potential threats, compromises, and unauthorized activity across customer networks and systems.
  • Conduct Tier 1/Tier 2 security analysis by reviewing large-scale log data, pivoting across multiple data sources, and correlating evidence to support cyber threat investigations and incident response activities.
  • Investigate and triage security events, escalating validated incidents and high-priority alerts to senior SOC analysts while providing supporting evidence and analysis.
  • Assist in identifying malicious activity, indicators of compromise (IOCs), attack patterns, and adversary behaviors affecting customer environments.
  • Document investigative activities, findings, recommendations, and response actions within case management, ticketing, and knowledge management systems.
  • Support senior SOC personnel in the development and distribution of incident reports, executive summaries, and technical findings to customers and leadership stakeholders.
  • Maintain awareness of emerging cybersecurity threats, vulnerabilities, and attack techniques to support continuous improvement of SOC operations and detection capabilities.
  • Collaborate with cybersecurity team members to support incident response efforts, threat detection initiatives, and operational security monitoring activities.

Benefits

  • Health, dental, and vision insurance
  • Life insurance
  • Short- and long-term disability
  • Paid time off (PTO)
  • 401k retirement plan with employer match
  • Annual Professional Development Reimbursement Program
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service