
location_on429, O Street Northwest, Logan Circle/Shaw, Ward 2, Washington, District of Columbia, 20001, United States
Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. We operate at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. Our employees serve as valued partners to essential government agencies and support every branch of the U.S. armed forces, solving the most daunting challenges our customers face every day.
As a Tier 2/3 Cyber Security Analyst within the Federal Strategic Cyber Mission program, you will serve as a seasoned professional dedicated to the maturation of detection capabilities across the Microsoft security ecosystem. This role is designed for a senior escalation point who will lead advanced threat-hunting operations and manage complex security incidents in a 24x7x365 environment.
In this position, you will partner with customer teams and local, national, and international CIRTs to investigate and respond to events. Your day-to-day involves conducting in-depth analysis of coordinated threats, characterizing network traffic, and performing forensic analysis of host artifacts and email content. You will drive the engineering and operations of Microsoft Sentinel and Microsoft Defender, designing analytics rules, tuning detection logic, and developing automation playbooks to optimize security posture. Additionally, you will mentor Tier 1 and Tier 2 analysts, providing technical guidance on incident response processes and Microsoft security tools.
The application period for this role is estimated to be 30 days from the posting date, though this timeline may be adjusted based on business needs and candidate availability. By applying, you express interest in the role and the company. During the review process, selected candidates may be required to participate in an on-camera interview and a process to verify their identity.
Peraton is an equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.
Work model: On-site
429, O Street Northwest, Logan Circle/Shaw, Ward 2, Washington, District of Columbia, 20001, United States
Skills: Microsoft Sentinel, Microsoft Defender, Kusto Query Language, KQL, Soar, Siem, Edr, Azure, Aws, GCP.
Education: Bachelor's degree required with 5 years experience; High school diploma with 9 years experience (alternative to Bachelor's).
Washington, District of Columbia
Microsoft SC-200 (Security Operations Analyst), Microsoft SC-100 (Cybersecurity Architect), Microsoft AZ-500 (Azure Security Engineer), Microsoft SC-300 (Identity and Access Administrator), Microsoft SC-900, SecurityX/CASP+, CySA+, Cloud+, GCIH, GCIA, GCFA, GNFA, GREM, GEIR, CCSP, CCSK, CHFI, GCLD, PRMP, TryHackMe SAL1, HackTheBox CDSA, CyberDefenders CCD. Experience architecting multi-tenant or multi-workspace Sentinel environments, experience with Sentinel content hub solutions and custom content development, proficiency with Microsoft Defender for Cloud workload protection across Azure, AWS, and GCP, experience developing Logic Apps and Power Automate flows for security automation, proficiency with Splunk for monitoring, alerting, and threat hunting, knowledge of Microsoft Azure/Entra ID access and identity management, experience with digital forensics tools (Autopsy, Magnet Forensics, KAPE, CyLR, Volatility, Zimmerman tools), experience with ServiceNow SOAR for automated ticketing and response, proficiency in Python, PowerShell, and Bash for automation and tool development, ability to perform static/dynamic malware analysis and reverse engineering, experience integrating cyber threat intelligence and IOC-based hunting into Sentinel TI module, experience leading purple team exercises and translating findings into actionable detections.
Recrutus helps candidates discover roles that match their skills and helps teams reach qualified applicants faster. Browse by metro, discipline, or work style — from internships to senior leadership.