Expert Cyber Defender

IBM

Confirmed live 2 days ago High trust

Quick summary

Work type
On-site
Location
Fort Meade, MD
Posted
10 days ago
Freshness
Confirmed live 2 days ago

Market check

Salary context

How this pay compares to similar roles

Similar $155k
$111k most similar roles pay here $203k

This listing doesn't post a salary. Most similar roles pay $127,150–$182,458.

Based on 239 similar postings.

Employer

About IBM

IBM is a US-based global technology company providing hybrid cloud, AI, consulting, enterprise software, and IT infrastructure products and services.

IBM currently has 506 open roles on FindRole.

Listed pay typically runs $174,632–$197,165 across 5 roles with salary data.

Most-posted roles

View all roles at IBM

At a glance

TL;DR · Expert Cyber Defender

As an Expert Cyber Defender, you will join the IBM Consulting team to protect organizational digital infrastructure by identifying, analyzing, and mitigating cyber threats. You will perform day-to-day tasks including investigating security incidents, managing incident reports with actionable recommendations, and conducting threat hunting and remediation. Your work involves monitoring and responding to events using SIEM, SOAR, EDR, and XDR platforms while applying the MITRE ATT&CK framework and the Cyber Kill Chain to counter adversary tactics. You will analyze logs from Windows, MAC, and Linux systems to identify vulnerabilities and participate in cyber threat intelligence activities. The role requires expertise in vulnerability management and a background in government cyber operations within high OPTEMO environments. Essential skills include proficiency with various operating systems and relevant certifications like CISSP to ensure robust security posture.

What you'll do

  • Investigate security incidents using SIEM, SOAR, EDR, and XDR platforms to identify and analyze potential threats.
  • Apply MITRE ATT&CK and Cyber Kill Chain frameworks to counter adversary tactics effectively.
  • Analyze network and endpoint logs from Windows, MAC, and Linux systems to detect vulnerabilities.
  • Manage incident reports by providing actionable recommendations and response strategies to improve client security posture.
  • Perform vulnerability management and cyber threat intelligence activities to anticipate emerging threats.
  • Provide expert guidance to clients to mitigate risks and enhance their overall security infrastructure.

What we're looking for

  • Bachelor's Degree required; Master's Degree preferred.
  • US Citizenship is required.
  • Possession of relevant cybersecurity certifications, such as CISSP, is required.
  • Experience with industry frameworks like MITRE ATT&CK and the Cyber Kill Chain is required.
  • Proficiency in cybersecurity tools including SIEM, SOAR, EDR, and XDR platforms is required.
  • Ability to interpret security tools and logs from Windows, MAC, and Linux systems is required.
  • Participation in vulnerability management and cyber threat intelligence activities is required.
  • Prior government cyber operational experience in a high OPTEMO environment is required.

More like this

Similar roles

Cyber Defender

IBM

Fort Meade, MD 16 days ago
SIEM SOAR EDR XDR MITRE ATT&CK Cyber Kill Chain Windows Linux Vulnerability Management Python PowerShell Bash Cloud Security Threat Intelligence Hybrid Cloud AI

Senior Cyber Defender

IBM

20 days ago
SIEM SOAR EDR XDR MITRE ATT&CK Cyber Kill Chain Windows Linux Vulnerability Management Cyber Threat Intelligence Hybrid Cloud AI Cloud

Senior Cyberspace Planner

IBM

Fort Meade, MD 11 days ago
SIEM SOAR EDR XDR MITRE ATT&CK Cyber Kill Chain Vulnerability Management Cyber Threat Intelligence Windows Linux Hybrid Cloud AI

Task Lead and Cyber Planner

IBM

Fort Meade, MD 10 days ago
cyber-security Risk Management Threat Analysis Cyber Operations TS/SCI DoD 8570 CISSP CASP CE CCNP CISA Hybrid Cloud AI Red Hat Cloud

Technical Operations Analyst

IBM

Fort Meade, MD 10 days ago
SIEM SOAR EDR XDR MITRE ATT&CK Cyber Kill Chain Windows Linux Vulnerability Management Python PowerShell Bash Cloud Security Threat Intelligence Security+ CCNA Security CySA+ GICSP GSEC SSCP