Threat Management Specialist, Tier 2

🔥 0 minutes ago

⚔️ Virginia – Remote

infoinfo

💵 $96.6k - $130.7k / year

⏰ Full Time

🟠 Senior

🔴 Lead

🦅 H1B Visa Sponsor

infoinfo

👻 Ghost score 0%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of General Dynamics Information Technology

General Dynamics Information Technology

10,000+ employees

Founded 1954

💼 Consulting

🏥 Healthcare

📦 Logistics

Consulting • Healthcare • Logistics

General Dynamics Information Technology is a company at the forefront of technological innovation, offering a wide range of services including consulting, digital modernization, and application services. The company is heavily involved in implementing solutions related to artificial intelligence, cloud computing, cybersecurity, high-performance computing, and quantum technologies. GDIT is committed to supporting government and defense sectors, providing mission-critical services such as logistics and supply chain management, intelligence, and homeland security. The company also focuses on diverse and inclusive hiring practices and actively promotes employee well-being. Through its digital accelerator solutions and pioneering use of emerging technologies, GDIT aims to propel agencies' missions forward and address complex technological challenges.

📋 Description

• Perform deep-dive incident analysis by correlating data from multiple sources • Determine whether critical systems or data sets are affected • Handle incidents according to playbooks and standard operating procedures • Advise on remediation actions • Provide analysis on leveraging AI, machine learning, and SOAR to improve CSOC efficiency and accuracy • Identify cybersecurity problems requiring mitigating controls • Analyze network traffic for exploit- or intrusion-related attempts • Recommend detection mechanisms • Provide subject matter expertise on network attacks, traffic analysis, and intrusion methodologies • Escalate items requiring further investigation • Execute operational processes supporting security incident response • Use AI/ML tools to detect anomalies, automate incident triage, and improve threat intelligence • Perform threat intelligence analysis to assess risk and adapt defenses • Manage email security with Proofpoint and respond to attacks • Configure Splunk for log analysis, create alerts, and investigate incidents • Configure FirePower for network monitoring and enforce security measures • Deploy SentinelOne agents, monitor alerts, and conduct security assessments • Monitor and respond to alerts and incidents across Microsoft Defender, Azure Entra ID, and Google Cloud SCC • Investigate suspicious activity, coordinate incident response, and implement remediation • Tune security policies and maintain cloud and endpoint visibility • Support continuous improvement of the security posture • Track cybersecurity trends, threat actors, and relevant AI/ML research • Identify automation use cases and collaborate across Operations to enhance SOC capabilities

🎯 Requirements

• BA or BS in Computer Science, Information Technology or related field • If no relevant college degree, an additional 4 years of relevant work experience is required • 8+ years of relevant experience • 3+ years of IT security experience, including some exposure to AI/ML projects • 2+ years of experience in network traffic analysis • Ability to work Monday–Friday, 11:00 PM–7:30 AM ET • Strong working knowledge of Boolean Logic, TCP/IP fundamentals, network-level exploits, threat management, control frameworks and risk management techniques • Strong understanding of IDS/IPS technologies, architectures, implementations, signatures, content creation, and signature/anomaly-based analysis • Experience with cloud security across AWS, Azure, and GCP • Hands-on experience with cybersecurity automation, such as SOAR platforms • Proficiency using machine learning frameworks to develop, train, and deploy cybersecurity models • Skills in data analysis and feature engineering using large datasets such as logs and network traffic • Familiarity with AI/ML applications in cybersecurity and evaluating AI/ML solutions in a SOC environment • Understanding and experience identifying and implementing automation use cases • Ability to obtain and maintain a Public Trust clearance and pass government background screening, including fingerprinting • U.S. residency for the last 5 years, subject to the stated USPS residency requirements • Relevant certifications such as GCED, GSEC, CISSP, or SSCP desired

🏖️ Benefits

• 401K with company match • Comprehensive health and wellness packages • Internal mobility team dedicated to helping you own your career • Professional growth opportunities including paid education and certifications • Cutting-edge technology you can learn from • Paid vacation and holidays • Medical plan options, some with Health Savings Accounts • Dental plan options • Vision plan options • Paid sick and personal time • Paid parental, military, bereavement and jury duty leave • Up to 160 hours of paid family leave in a rolling 12 month period for eligible employees • Short- and long-term disability benefits • Life insurance • Accidental death and dismemberment insurance • Personal accident insurance • Critical illness insurance • Business travel and accident insurance • Full flex work weeks where possible • Remote work / telecommuting

Apply Now

Similar Jobs

🔥 22 minutes ago

Ulteig

1001 - 5000

💼 Consulting

📦 Logistics

🏗️ Construction

Systems Integrator III designing and commissioning PLC/HMI controls for Ulteig’s renewable energy and substation projects. Integrating automation, protection, and communications systems for critical infrastructure.

🔥 22 minutes ago

Ulteig

1001 - 5000

💼 Consulting

📦 Logistics

🏗️ Construction

Lead systems integrator designing and commissioning PLC/HMI controls for Ulteig’s renewable-energy and critical-infrastructure engineering projects. Leading substation integration, testing, field commissioning, and multidisciplinary teams.

🔥 37 minutes ago

Centivo

201 - 500

🏥 Healthcare

🛡️ Insurance

⚕️ Healthcare Insurance

Benefit plan specialist configuring medical and dental benefits in claims systems. Supporting Centivo’s mission to deliver affordable healthcare for self-funded employers.

🔥 1 hour ago

Archer

501 - 1000

🏭 Manufacturing

📦 Logistics

🚀 Aerospace

Flight Test Planning Specialist developing FAA-compliant plans for Archer’s advanced air mobility aircraft. Coordinating certification testing, readiness reviews, procedures, and flight-test documentation.

🔥 1 hour ago

DecisionPoint Corporation

51 - 200

🎖️ Defense

💼 Consulting

📦 Logistics

Technical Product Experience Specialist translating UX strategy into accessible digital products for Military Community and Family Policy. Bridging design, technical delivery, Agile planning, and Section 508/WCAG compliance.