Advanced Threat Team Lead - Senior
FAIRFAX, VA, United States
USD 104K-166K (estimate) Senior-level Full Time
Tasks
- Analyze user activity monitoring
- Apply behavioral analytics
- Coordinate SOC investigations
- Correlate security data sources
- Develop detection engineering
- Direct investigation workflows
- Document investigative findings
- Escalate security incidents
- Establish analytic governance
- Integrate threat intelligence with telemetry
- Lead advanced threat monitoring
- Lead insider threat monitoring
- Maintain performance metrics
- Produce cybersecurity reporting
- Recommend response actions
- Tune MITRE ATT&CK analytics
Perks/Benefits
- N/A
Skills/Tech-stack
Activity monitoring | Behavioral analytics | Continuous Monitoring | Cyber incident | Cyber incident response | DLP | Detection engineering | EDR | Incident Response | MITRE ATT&CK | RMF | SIEM | SOAR | Security telemetry | Sysmon | Threat Intelligence | User Activity Monitoring | Zeek
Education
Related jobs
-
Senior SOC Analyst/Lead USD 135K-150KCIRT | CVE management | Cause analysis | Computer Networking | Computer fundamentals24x7 shift coverage | Flexible shift scheduling subject to operational needs | Remote workSenior-level Full TimeWork from home, VA, United States R14h ago
-
Senior Security GRC Lead USD 121K-185KCCPA | CCSP | CISA | CISM | CISSP401k | Dental insurance | Education and learning stipend | Flexible vacation | Health insuranceSenior-level Full TimeAustin | Chicago | New York …14h ago
-
800-53 | Access Management | Cloud Security | Configuration Management | Critical Security Controls401k match | Annual flu vaccinations | Dental coverage | Development sessions | Discounted gym membershipExecutive-level Full TimeIselin, New Jersey, United States15h ago
-
Cyber Defense – Defense Engineering Service Lead USD 108K-176KAccess Control | Anomaly Detection | Cloud Security | Data Enrichment | Data NormalizationSenior-level Full TimeMalvern, United States1d ago
-
Cyber Defense – Defense Engineering Service Lead USD 108K-176KAnomaly Detection | CIM | Cloud Security | Data Enrichment | Data NormalizationSenior-level Full TimeMalvern, United States1d ago
-
Cyber Defense Forensics Lead USD 170K-230KCloud Security | Detection Systems | Digital forensics | Endpoint threat detection | Event managementSenior-level Full TimeUSA VA Ashburn - 22001 Loudoun …1d ago
-
APIs | Agile | CPE | CVE | CVSSBackup childcare | Financial coaching | Health care coverage | Mental health support | On-site health and wellness centersExecutive-level Full TimePlano, TX, United States1d ago
-
Lead Cyber Security Research Consultant USD 119K-224KAI Assisted Development | Azure | Cloud Security | Cloud platform | Cobalt StrikeHybrid work schedule | No visa sponsorshipSenior-level Full Time142019-NC-300 South Brevard, Charlotte, United States2d ago
-
ACAS | ArcSight | Change Control | Configuration Management | Cyber incidentOnsite workSenior-level Full TimeIndianapolis, IN3d ago
-
ACAS | Anomaly Detection | ArcSight | CMRS | Computer SecuritySenior-level Full TimeIndianapolis, IN3d ago
-
Information Security Assurance Lead USD 98K-166KAssessment and Authorization | Audit tracking | Configuration Management | Control Testing | Cybersecurity complianceSenior-level Full TimeIndianapolis, IN3d ago
-
Security Team Lead USD 100K-150KChange Control | Configuration Management | DISA STIG | DNS | DNS SecurityOnsite work | Top secret clearance requiredSenior-level Full TimeBratenahl, OH3d ago
-
Security Operations Manager USD 108K-140K800-171 | AWS GovCloud | Bash | Behavioral analytics | CMMCTS SCI clearance process | TS clearance or higherMid-level Full TimeTorrance, CA4d ago
-
IT Network Security Team Lead USD 149K-195KCisco | Disaster Recovery | Firewalls | Fortigate | FortinetSenior-level Full TimeUSA MD Bethesda - 9000 Rockville …4d ago
-
Cybersecurity Operations Lead - Secret Clearance USD 115K-158KAccess Management | Anomaly Detection | Authentication | Authorization | Cloud SecuritySenior-level Full TimeScott Air Force Base, South Drive, …5d ago
-
Security Engineering Lead USD 132K-176KAccess Lifecycle | Access Management | Access lifecycle management | EDR | GRCSenior-level Full TimeLogan, UT, USA5d ago
-
SOC Team Lead USD 118K-166KACAS | DISA VDP | Defense in Depth | Detection engineering | Event CorrelationDental insurance | Health insurance | Paid Holidays | Paid life insurance | Paid time offSenior-level Full TimeRemote (United States) R5d ago
-
Cyber Security Lead USD 120K-157KACL | AWS | Access Control | Active Directory | CISAfter hours incident response and patching support | Executive stakeholder reporting | Hybrid schedule | On-call supportSenior-level ContractTampa, United States R5d ago
-
Deputy Chief Information Security Officer USD 225K-270KAI Security | Access Management | Application Security | Automation | AzureExecutive-level Full TimeLos Angeles, CA, United States6d ago
-
Lead Cyber Security Engineer USD 119K-193KAccess Management | Cybersecurity | FISMA | Forensics | Identity and Access ManagementSenior-level Full TimeArlington, VA, USA6d ago
-
Exploitation Engineer Lead IV USD 141K-214KAcunetix 360 | Adversary Emulation | Application Security Testing | BigFix | Burp SuiteBackground check | DoD Secret clearance | E Verify employment | Random drug screeningSenior-level Full TimeArlington, VA, USA6d ago
-
Abuse Monitoring | Access Management | Agile Scrum | Anomaly Detection | Artificial Intelligence401k | Accident insurance | Caregiver leave | Dental insurance | Disability insuranceSenior-level Full TimeChicago, IL, United States6d ago
-
Cybersecurity Technical Specialist Lead USD 135K-180KContinuous Monitoring | Cybersecurity Auditing | Implementation guides | Incident Response | Management Framework401k plan | Employee assistance program | Flexible spending account | Group health plans | Health savings accountSenior-level Full TimeDugway, UT, US6d ago
-
Lead Security Engineer, Enterprise Security USD 175K-262KAWS | Access Management | CNAPP | Cloudflare | Cloudflare WAFSenior-level Full TimeBoston, MA6d ago
-
Lead Security Engineer, Enterprise Security USD 175K-262KAWS IAM | Access Management | CNAPP | Cloudflare Gateway | Cloudflare WAFSenior-level Full TimeDenver, CO6d ago