Defensive Cyber Operations Analyst

Booz Allen Hamilton

Confirmed live today High trust

Quick summary

Work type
On-site
Location
Peterson AFB, CO
Salary
$69,300–$158,000 / yr
Employment
Full-time
Posted
2 days ago
Freshness
Confirmed live today

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $147k
This role $114k
$56k most similar roles pay here $196k

This role pays less than 89% of similar roles. Most pay $122,275–$171,533 — the shaded band above. At the midpoint, this role pays about $114k versus about $147k for comparable roles.

Based on 240 similar postings.

Employer

About Booz Allen Hamilton

Booz Allen Hamilton is a management and technology consulting firm that provides analytics, digital, engineering, and cybersecurity solutions primarily to U.S. government agencies and commercial clients. Industry: Management & Technology Consulting

Booz Allen Hamilton currently has 1042 open roles on FindRole.

Listed pay typically runs $86,800–$198,000 across 765 roles with salary data.

Most-posted roles

View all roles at Booz Allen Hamilton

At a glance

TL;DR · Defensive Cyber Operations Analyst

As a Defensive Cyber Operations Analyst, you will join the team to protect mission-critical networks and enterprise systems from cyber threats targeting Combatant Command Headquarters, Service Components, and Joint Task Forces. You will monitor real-time events, analyze complex cyber data, and identify malicious activity while distinguishing it from benign occurrences. Your daily responsibilities include performing multi-source correlation, documenting incidents, producing reports for commander awareness, and implementing proactive security measures. To succeed in this role, you must utilize tools such as Splunk, Host-Based Security System, Microsoft Defender, Security Onion, Assured Compliance Assessment Solution, and Big Data Platforms like SIGACT and RALLY. You will also leverage Department of War AI capabilities to strengthen defenses. This position requires a TS/SCI clearance and expertise in threat detection, incident response, and information assurance within the defense sector.

What you'll do

  • Monitor and analyze real-time cyber threats and anomalies using tools like Splunk and HBSS.
  • Identify malicious activity and distinguish it from benign events to protect mission-critical networks.
  • Correlate multi-source data and threat intelligence to uncover and stop attacker patterns.
  • Document, escalate, and provide clear summaries of cyber incidents based on impact and urgency.
  • Produce daily reports and operational briefs to enhance commander awareness of network security.
  • Implement proactive and reactive security measures to protect enterprise-level systems.
  • Coordinate with defense partners to respond to system changes and manage vulnerability mitigation.
  • Utilize AI capabilities to strengthen defensive cyberspace operations and improve detection.

What we're looking for

  • TS/SCI clearance is required.
  • Security+ or DoDM 8140.03 certification is required.
  • High school diploma and 2+ years of experience in DCO, SOC, JCC, or NOSC operations, or a Bachelor's degree and 1+ year of experience.
  • Experience supporting DCO within a shift work-based 24x7 operations center.
  • Experience advising on network security issues and enforcing vulnerability mitigation policies.
  • Experience developing reports and communicating network security summaries to senior leaders.
  • Knowledge of cybersecurity tools such as Splunk, HBSS, Microsoft Defender, or Security Onion.
  • Experience at the Combatant Command or Major Command level (preferred); knowledge of AI in DCO (preferred).

More like this

Similar roles

Computer Network Defense Analyst

Leidos

Arlington, VA 9 days ago $69,550–$125,725
Network Defense SIEM Splunk Elastic AWS Azure IDS/IPS Firewalls Windows Red Hat Cloud Migration Incident Response Network Log Analysis Security+ DISA Disaster Recovery Business Continuity
2+ yrs exp

Defensive Cyber Operations Analyst

Leidos

Washington, DC 51 days ago $87,100–$157,450
Cyber Network Defense Security Operations Center (SOC) SIEM Splunk Elastic IDS/IPS Firewalls PCAP Cyber Kill Chain Data Correlation Technical Writing
2+ yrs exp Hybrid

Defensive Cybersecurity Analyst

Leidos

Shiloh, IL 33 days ago $69,550–$125,725
SIEM SOAR IDS/IPS NetFlow Packet Analysis MITRE ATT&CK Cyber Kill Chain AWS Azure GCP Scripting OSI Model Defense-in-Depth MDM MAM MTD
2+ yrs exp

Defensive Cybersecurity Analyst

Leidos

Whitehall, OH 33 days ago $69,550–$125,725
SIEM SOAR IDS/IPS NetFlow Packet Analysis Cyber Kill Chain AWS Azure GCP Scripting OSI Model Defense-in-Depth MDM MAM MTD
2+ yrs exp

Cyber Security Analyst

Leidos

Adelphi, MD 37 days ago $87,100–$157,450
SIEM IDS Incident Response NetFlow Packet Capture AWS Microsoft Azure Google Cloud Platform Oracle Cloud TCP/IP Unix Cyber Kill Chain SaaS Vulnerability Management Network Security Security+ CE CSSP-Infrastructure Support
4+ yrs exp Hybrid

Cyber Security Analyst

Leidos

Adelphi, MD 37 days ago $87,100–$157,450
SIEM IDS AWS Microsoft Azure Google Cloud Platform Oracle Cloud NetFlow Packet Capture TCP/IP Unix Incident Response Cyber Kill Chain SaaS Security+ CE CSSP-Infrastructure Support Vulnerability Management Network Security
4+ yrs exp Hybrid