Responsibilities
- Conduct daily threat detection and incident response activities by analyzing indicators, adversary campaigns, and tactical intelligence inputs.
- Identify opportunities to apply automation for improving operational efficiency, data usability, and cross-team collaboration within the security operations environment.
- Use SOAR and SIEM platforms to detect threat behaviors, enrich investigative workflows, and develop automated response processes.
- Break down intelligence from multiple sources into structured, actionable data such as TTPs, campaign insights, and threat trends.
- Analyze malware reports regularly to understand attacker behavior and contribute to the development of a comprehensive TTP database.
- Gain deep knowledge of the organization’s threat environment using internal telemetry, threat trends, and performance metrics to brief senior leadership, including top security and IT executives.
- Build and sustain strong working relationships with internal teams such as Cyber Intelligence, Red Team, Insider Threat, and Threat Hunting units.
- Perform rapid analysis during active cyber incidents, including threat hunting, malware examination, and campaign context expansion.
- Detect detection coverage gaps and work with cybersecurity teams to reduce risk through blocking malicious indicators, refining detection signatures, and deploying custom rules.
- Support the integration of tactical intelligence into detection systems, including reverse engineering malware, analyzing TTPs, and mapping relationships in threat intelligence platforms.
- Participate in industry events and briefings to maintain awareness of threats targeting the company and the broader financial services industry.
- Guide and train fellow analysts through project support and skill development sessions, including informal knowledge-sharing forums.
Benefits
- Comprehensive, competitive benefits package focused on health, financial wellness, and overall well-being, with eligibility determined by employment classification including work hours, exempt status, and management tier.
Work Arrangement
On-site — VA - McLean, United States of America, McLean, Virginia
Other
- Applications will be accepted for at least five business days.
- Recruitment agencies are not authorized to submit candidates for this role.
- Employment authorization sponsorship is not available for new applicants.
- Eligibility for benefits depends on full or part-time status, exempt or non-exempt classification, and management level.
- The company maintains a drug-free workplace.
- Qualified applicants with criminal histories will be considered in compliance with applicable laws governing background checks.
This position does not support new employment authorization sponsorship.