Lead Cyber Threat Analyst

DirectViz SolutionsWashington, DC
16d

About The Position

The Lead Cyber Threat Analyst serves as the technical and operational lead for enterprise cybersecurity operations, overseeing approximately 63 systems and ensuring compliance with all federal security standards. This role is responsible for driving the organization's threat detection, analysis, and response strategy, leading the Computer Security Incident Response Center (CSIRC), and managing enterprise security monitoring tools within the Enterprise Security Operations Center (ESOC). The position requires deep expertise in cybersecurity frameworks, threat intelligence, and vulnerability management, combined with strong leadership, analytical, and communication skills to guide analysts, coordinate incident response, and safeguard sensitive financial and operational systems.

Requirements

  • Bachelor's degree in Computer Science, Information Technology, Engineering, or a related field.
  • Minimum of 10 years of progressive IT or technology experience, including at least 5 years within the past decade supporting large-scale federal technical contracts.
  • At least 7 years of cybersecurity experience, with 5 years focused on threat analysis in SOC or CSIRC environments supporting government systems.
  • Required Certification: Certified Information Systems Security Professional ( CISSP ).
  • Required: Information Technology Infrastructure Library ( ITIL ) 4 Foundation certification.
  • Strong understanding of cybersecurity frameworks and principles (NIST 800-53, FISMA, RMF, ISO 27001).
  • Proven experience with enterprise risk management, incident response, and vulnerability remediation.
  • Excellent analytical and problem-solving skills, with strong attention to detail.
  • Effective communication and interpersonal skills to collaborate across technical, executive, and federal teams.
  • Ability to lead multiple projects simultaneously and deliver results under tight deadlines.

Nice To Haves

  • Preferred Certifications: GIAC Certified Intrusion Analyst ( GCIA ), Certified Ethical Hacker ( CEH ), CompTIA Cybersecurity Analyst ( CySA+ ).

Responsibilities

  • Lead enterprise-wide cybersecurity operations across ~63 systems, ensuring continuous protection and compliance with federal security standards.
  • Oversee daily security monitoring, analysis, and response activities within the Enterprise Security Operations Center (ESOC).
  • Direct 24/7 Computer Security Incident Response Center (CSIRC) operations, including incident triage, containment, and recovery.
  • Develop and maintain comprehensive security documentation, including System Security Plans (SSPs), Privacy Impact Assessments (PIAs), and Risk Management Framework (RMF) artifacts.
  • Conduct annual Security Control Assessments (SCAs) and perform evaluations for new systems and applications.
  • Identify, track, and remediate vulnerabilities and risks across enterprise environments.
  • Develop and maintain a real-time Cyber Threat Dashboard for senior leadership reporting and situational awareness.
  • Lead the Vulnerability Management Program, including prioritization, patching, and remediation oversight.
  • Monitor and analyze network traffic for potential intrusions, unauthorized activity, and anomalous behavior.
  • Manage security tools, threat intelligence feeds, and automation solutions supporting the ESOC mission.
  • Provide training, mentoring, and technical guidance to cybersecurity analysts and SOC staff.
  • Oversee incident handling involving Personally Identifiable Information (PII) and ensure proper documentation and escalation.
  • Collaborate with cross-functional and government stakeholders to align operations with NIST, FISMA, and organizational security policies.
  • Support the protection and compliance of financial systems under the OCFO through proactive risk management.
  • Maintain system and application security posture, ensuring ongoing compliance and operational integrity.

Benefits

  • DVS provides competitive compensation, comprehensive medical plans, 401k match, PTO accrual, professional development reimbursement, corporate-funded technology certifications, and employee recognition and appreciation programs.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service