Leidos is seeking a Cyber Fusion and Threats Analyst to protect mission-critical systems for government and commercial clients. In this hybrid role near Reston, VA, you will analyze security events, correlate threat intelligence, and respond to complex cyber incidents in a collaborative fusion center environment. Responsibilities include triage, containment, and remediation support; developing threat reports and IOCs; and refining detection content and playbooks. You'll work with cross-functional teams, leverage advanced tools, and stay current on adversary TTPs to support national security and critical infrastructure missions.
Responsibilities
- Monitor and analyze security events from multiple sources to identify cyber threats and intrusions.
- Correlate intelligence, logs, and network data to build a comprehensive threat picture.
- Conduct incident triage, containment, and remediation in coordination with SOC and engineering teams.
- Produce threat reports, indicators of compromise, and recommendations for risk mitigation.
- Support development and tuning of detection rules, playbooks, and automation workflows.
- Collaborate with government and commercial stakeholders to support mission-critical operations.
- Stay current on adversary TTPs, emerging vulnerabilities, and cyber defense best practices.
Required Skills
- Security Incident and Event Monitoring (SIEM)
- Network traffic analysis
- Threat intelligence analysis
- Incident response and containment
- Endpoint detection and response (EDR)
- Writing and tuning detection rules (e.g., SIEM queries)
- Malware and IOC analysis
- Scripting/automation (e.g., Python, Power
- Shell)
- Knowledge of MITRE ATT&CK framework
- Vulnerability assessment and risk prioritization