Senior Cyber Defense Analyst (Blue Team Lead)
- Location
- Reston, VA, US
- Workplace
- On-site
- Compensation
- $120k – $130k
About this role
Akira is seeking a Senior Cyber Defense Analyst (Blue Team Lead) to support the U.S. Army Reserve Command (USARC) in cyberspace operations supporting Army and joint requirements. This position will lead Blue Team activities focused on continuous network security monitoring, cyber defense, incident detection and response, threat hunting, and assessment of cybersecurity incidents and events across Army networks.
This is an onsite position at Fort Bragg, NC supporting a mission-focused U.S. Army Reserve Command cyberspace operations environment. The position requires working with classified information and supporting continuous defensive cyber operations. The Senior Cyber Defense Analyst will provide technical leadership across Blue Team activities and may be required to support 24/7 operational coverage, including shift work, as mission requirements dictate.
Key Responsibilities
- Lead Blue Team operations supporting continuous network security monitoring and defensive cyberspace operations (DCO).
- Oversee the monitoring, detection, analysis, investigation, containment, mitigation, and response to cybersecurity incidents.
- Ingest, correlate, and analyze sensor, host, network, and security-event data across the supported enterprise.
- Analyze security alerts, network traffic, system activity, and other cybersecurity data to identify malicious, suspicious, or anomalous behavior.
- Coordinate incident investigation and response activities with appropriate Government and contractor personnel.
- Support threat hunting activities and identify indicators of compromise (IOCs), adversary tactics, techniques, and procedures (TTPs), and other evidence of malicious activity.
- Conduct cybersecurity assessments and provide technical findings, risk analysis, and recommendations for remediation.
- Support integrated defensive cyber assessments and other DCO mission activities.
- Apply applicable DoD, Army, U.S. Army Cyber Command (ARCYBER), and supported Regional Cyber Center (RCC) cybersecurity procedures, TTPs, and SOPs.
- Provide technical leadership, mentorship, and guidance to Cyber Defense Analysts and SOC personnel.
- Coordinate operational activities across shifts to maintain continuous mission coverage and effective transition of ongoing investigations.
- Identify significant cyber events and communicate findings through established escalation and notification procedures.
- Support development of threat assessments, incident reports, technical findings, operational briefings, and other mission deliverables.
- Coordinate with other cybersecurity and operational teams to support timely resolution and mitigation of identified threats.
- Maintain accurate documentation of incidents, investigations, assessments, actions taken, and operational findings.
- Support continuous improvement of Blue Team procedures, detection capabilities, analytical processes, and operational TTPs.
- Perform other cyber defense and operational duties as required to support the USARC mission.
Required Qualifications
- Minimum 5 years of documented specialized operational experience in cybersecurity analysis, network security monitoring, incident response, or related DoD/enterprise IT cybersecurity operations.
- Demonstrated experience supporting Security Operations Center (SOC) or Blue Team operations.
- Experience with network security monitoring, intrusion detection, incident investigation, and cyber defense.
- Experience analyzing network, host, system, and security-event data to identify potential threats and malicious activity.
- Working knowledge of cybersecurity frameworks, defensive cyberspace operations, and incident response processes.
- Demonstrated ability to lead cyber defense activities in a 24/7 operational environment.
- Strong analytical, problem-solving, and technical documentation skills.
- Ability to communicate cybersecurity findings clearly to both technical and Government stakeholders.
- Ability to work effectively in a mission-focused, classified environment.
- Active Secret security clearance with required privileged-access eligibility/T3 investigation consistent with PWS requirements.
- Ability to work onsite at Fort Bragg, NC and support operational requirements, including shift coverage as required.
Preferred Qualifications
- Experience supporting Army, Army Reserve, ARCYBER, or joint cyberspace operations.
- Experience with enterprise Security Information and Event Management (SIEM), Security Orchestration, Automation and Response (SOAR), IDS/IPS, endpoint detection and response, network monitoring, or related cybersecurity technologies.
- Experience conducting threat hunting and analyzing adversary behavior and TTPs.
- Experience supporting Cybersecurity Readiness Inspections (CCRI), defensive cyber assessments, or similar DoD cybersecurity assessment activities.
- Knowledge of MITRE ATT&CK or similar threat-modeling frameworks.
- Experience with DoD incident response and cybersecurity reporting requirements.
- Relevant cybersecurity certifications such as Security+, CySA+, GCIH, GCIA, CISSP, or equivalent are a plus.
Salary Range: $120,000 to $130,000
Akira’s pay range for this position considers various factors including skills, years of experience, training, licenses, certifications, alignment with market data, and internal equity in the organization. This pay range estimate is a general guideline only and not a guarantee of compensation or salary, which Akira believes to be done in good faith in compliance with local laws. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. It is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case.
General Description of Benefits
Akira offers its employees multiple options for medical plans (some with Health Savings Account), dental plans, and vision coverage, and a 401(k) plan with employer match. To promote work/life balance, Akira offers paid time off, including vacation and sick time, holidays, paid parental leave, military leave, bereavement leave, and jury duty leave. We also offer short and long-term disability benefits to protect employee income in the event of sickness or injury, life insurance, accidental death and dismemberment insurance, and critical illness insurance. Akira also offers tuition, training, and certification reimbursement for professional development and career advancement.
Akira regularly reviews our total rewards package to ensure our offerings remain competitive and reflect the values and needs expressed by our employees.
About Akira Technologies
Akira strives to meet and exceed the mission and objectives of US federal agencies. As a leading small business cloud modernization and data analytics services provider, we deliver trusted and highly differentiated solutions and technologies that serve the needs of our customers and citizens. Akira serves as a valued partner to essential government agencies across the intelligence, cyber, defense, civilian, and health markets. Every day, our employees deliver transformational outcomes, solving the most daunting challenges facing our customers.
Akira is proud to be an Equal Employment Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.
Tired of cold applications?
Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.
Know someone who'd be great for this?