Cyber Security Analyst - Lead

Job Number:
Job Category:
Cyber Security
Day Job
Potential for Teleworking:
Clearance Level Must Currently Possess:
Clearance Level Must Be Able to Obtain:
Public Trust
The health Products and Solutions Group is currently seeking a Cyber Security Analyst to support a large healthcare contract in Baltimore.

Provide security operations services, providing a full spectrum of integrated services for monitoring network and security activity (in near real time ) throughout the customer environment. 
  • Respond to Cyber Security Incidents, provide cyber threat analysis and reporting to support SOC and Program’s situational awareness.
  • Actively monitor security threats and risks, provide in-depth incident analysis, evaluate security incidents, and will provide proactive threat research.
  • Manage and ensure the timely response and investigations of security events and incidents by the security operations center
  • Coordinate with threat operations and threat intelligence specialists to resolve high or critical severity level incidents.
  • Assist with keeping security software and appliances up-to-date with versions and patches within the timeframes directed by the customer
  • Assist with the following proactive and reactive actions during security events:
    • Execution of countermeasures derived from IDS monitoring;
    • Audit-log analysis tools in support of real-time monitoring of operations;
    • Data collection in support of forensic analysis and incident handling procedures;
    • Access to all locally and remotely accessible devices in support of HHS mission-critical operations;
    • Develop and execute SOP for standard event types;
    • Close coordination with customer incident response and emergency response centers;
  • Assist with the creation and development of a comprehensive set of IT security-related operational policies, procedures, and guidelines that will support the customer's mission and ensure compliance with Federal and customer security requirements.
  • Implement, use, and sustain a suite of security tools in the environment for tracking security-incident data, vulnerability data, compliance data, security reports and any other related data
    as required by the SOC for security monitoring and analysis.


All candidates supporting the CMS programs must have lived in the United States at least three (3) out of the last five (5) years prior in order to be considered.

External referral eligible

EXPERIENCE LEVEL 8 years of related experience on a Computer Incident Response Team (CIRT), Computer Emergency Response Team (CERT), Computer Security Incident Response Center (CSIRC) or a Security Operations Center (SOC).

EDUCATION: Must possess a minimum of a Bachelor’s Degree in Computer Science, Information Technology or Information Security

Desired: CERTIFICATIONS: CompTIA Security CPTE - Certified Penetration Testing Engineer or CEH - Certified Ethical Hacker GCIH - (GIAC Certified Incident Handler) or ECIH - (EC-Council Certified Incident Handler)CISA - Certified Information Systems Auditor

Leidos Overview:
Leidos is a global science and technology solutions leader working to solve the world’s toughest challenges in the defense, intelligence, homeland security, civil, and health markets. The company’s 33,000 employees support vital missions for government and commercial customers. Headquartered in Reston, Virginia, Leidos reported pro forma annual revenues of approximately $10 billion for the fiscal year ended January 1, 2016 after giving effect to the recently completed combination of Leidos with Lockheed Martin's Information Systems & Global Solutions business (IS&GS). For more information, visit www.Leidos.com. The company’s diverse employees support vital missions for government and commercial customers. Qualified women, minorities, individuals with disabilities and protected veterans are encouraged to apply. Leidos will consider qualified applicants with criminal histories for employment in accordance with relevant Laws. Leidos is an Equal Opportunity Employer.
Other Locations: