Cybersecurity Ops Analyst
SAIC — Remote
Posted: 2026-10-07
Job Description
• Lead advanced security event analysis and incident response as Shift Leader for a 24/7/365 Security Operations Center Detection & Response team.
• Monitor and investigate security events using SIEM, EDR, network forensics, and host-level forensics; assess malicious traffic, vulnerabilities, and risk.
• Manage second-shift operations, including event delegation, incident documentation, escalation, timecard and expense approval, performance tracking, and shift coverage.
• Train, mentor, oversee, and evaluate Cybersecurity Ops Associates; improve ESOC procedures, documentation, detection tuning, and correlation content.
• Requires a Bachelor's degree plus 2+ years or an AA degree in a related discipline plus 3+ years, at least 2 years of cybersecurity operations experience, Security+ and CySA+ certifications, and U.S. citizenship; remote within the United States or based in Oak Ridge, TN.