CybersecurityJobs.io
← Back to all jobs

Job Description

BrightForge Innovation Studios is seeking a Cybersecurity Analyst to join its onsite security team in Hyattsville, MD. This SOC-focused role centers on monitoring, detecting, and responding to threats across IT infrastructure, networks, and cloud environments, with responsibilities spanning threat monitoring, incident response, vulnerability management, and implementing defensive controls. The position offers a salary of USD 90,985 to 94,981 per year and requires a minimum of two years of hands-on security experience.

Role Overview

In this frontline defense role, you will operate within our Security Operations Center to monitor security event logs, assess threat intelligence, perform root-cause analysis on alerts, and carry out incident response procedures.

Responsibilities

  • Threat Monitoring & Analysis: Monitor security logs, alerts, and event streams across network firewalls, endpoint protection systems, IAM platforms, and cloud environments using SIEM tools such as Splunk or Microsoft Sentinel.
  • Incident Response & Triage: Investigate security incidents, perform initial containment, isolate compromised endpoints, and execute containment and remediation protocols per incident response playbooks.
  • Vulnerability Assessment: Conduct regular vulnerability scans across infrastructure and applications using Nessus or Qualys; prioritize and track patching efforts with IT engineering teams.
  • Threat Intelligence Integration: Evaluate actionable threat intelligence feeds, IoCs, and emerging CVEs to update security rules and detection signatures.
  • Security Controls & Hardening: Collaborate with system administrators and network engineers to enforce baseline security configurations, least-privilege access, and multi-factor authentication (MFA).
  • Documentation & Compliance: Document security incidents, root-cause analyses, and post-incident reviews; support compliance audits aligned with standards such as NIST CSF, ISO 27001, or SOC 2.

Requirements

  • Experience: 2–4 years of hands-on technical experience as a Cybersecurity Analyst, SOC Analyst, or Information Security Specialist.
  • SIEM & Log Analysis: Hands-on experience operating SIEM systems (e.g., Splunk, Sentinel, QRadar) to write detection queries, analyze Syslog/Windows Event logs, and identify suspicious activity.
  • Networking & Security Fundamentals: Solid understanding of TCP/IP, DNS, routing/switching, firewalls, VPNs, TLS/SSL, and common attack vectors (Phishing, Ransomware, SQLi, XSS).
  • Endpoint Protection: Direct experience with EDR/XDR platforms (e.g., CrowdStrike, Defender for Endpoint, SentinelOne).
  • Packet & Traffic Analysis: Proficiency using Wireshark or tcpdump to inspect PCAP files and trace malicious network behavior.
  • Communication & Incident Management: Ability to produce clear incident triage reports and communicate mitigation steps effectively during active incident response scenarios.

Technologies

  • Splunk
  • Microsoft Sentinel
  • QRadar
  • Nessus
  • Qualys
  • Wireshark
  • tcpdump
  • CrowdStrike
  • Defender for Endpoint
  • SentinelOne
  • Python
  • PowerShell
  • Bash
  • AWS
  • Azure
  • GCP
  • MITRE ATT&CK
  • NIST CSF
  • ISO 27001
  • SOC 2

Benefits

  • 401(k)
  • Dental insurance
  • Health insurance
  • Life insurance

Technical Competencies (Preferred)

  • Active certifications such as CompTIA Security+, CySA+, GIAC (GSEC/GCIH), or CEH.
  • Scripting experience in Python, PowerShell, or Bash for automating log parsing and security tasks.
  • Knowledge of cloud security architecture and threat monitoring in AWS, Azure, or GCP environments.
  • Familiarity with the MITRE ATT&CK framework to map adversary tactics and techniques.

Similar Jobs