user avatar

Threat Evaluation, and Countermeasures Team (DETECT) Analyst

OneZero Solutions, LLC

Today
Secret
Mid Level Career (5+ yrs experience)
Unspecified
IT - Security
Charleston, SC (On/Off-Site)

The DETECT Analyst plays a critical role in strengthening network defense capabilities by developing, testing, and implementing advanced detection measures across multiple data sources. This position involves researching emerging threats, building detection analytics, and conducting forensic analysis and threat hunting to identify and mitigate malicious activity.

The ideal candidate is a technically skilled and analytical professional with a deep understanding of enterprise environments and a passion for continuous improvement in cybersecurity operations.

Key Responsibilities
Use network and host-based data to drive detection, monitoring, and response capabilities.
Create detection analytics based on the MITRE ATT&CK Framework and other security frameworks.
Perform research on adversarial Tools, Techniques, and Procedures (TTPs).
Assist incident response (IR) teams by analyzing host behavior and network traffic.
Collaborate with technical teams to develop and improve detection and response capabilities.
Conduct forensic analysis and proactive threat hunting as required.
Work independently and collaboratively while maintaining attention to detail under pressure.
Minimum Qualifications

Minimum 3-5 years of experience performing incident response, forensics, malware analysis, or penetration testing.
5-7 years of experience required if no degree is held.
Strong written and verbal communication skills.
Strong understanding of common enterprise technologies.
Ability to convey highly technical concepts to audiences with varying technical understanding.
Position may require up to 10% travel as needed.
Preferred Qualifications
Proficient in at least three of the following disciplines:
Network traffic analysis and host-based log analysis
Comprehensive understanding of enterprise Windows security (Active Directory)
Static and Dynamic malware analysis
Disk and Memory forensics
Practical knowledge in at least one scripting or development language (e.g., PowerShell or Python)
Working familiarity with at least two of the following products:
Splunk and/or Elastic
Sentinel / Microsoft MDE
Fidelis Network
Highly Desired
Demonstrated ability to work under pressure and meet tight deadlines
Excellent communication and problem-solving skills
Ability to work both independently and collaboratively
Required Certification(s)
Must meet Department of Defense (DoD) 8570 Information Assurance Technical (IAT) Level III certification requirements.
Computer Network Defense (CND) certification.

OneZero Solutions, LLC is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, pregnancy, genetic information, disability, status as a protected veteran, or any other protected category under applicable federal, state, and local laws.

To request an accommodation, please contact us at recruiting@onezerollc.com or call (202) 987-2580.
group id: 91092480
N
Name HiddenTechnical Recruiter

Match Score

Powered by IntelliSearchâ„¢
image match score
Create an account or Login to see how closely you match to this job!