N

Cyber Threat Analyst (Level II/III) - Joint Fires Network SOC

Newberry Group • United State
Relocation
Apply Now

Newberry Group is seeking a mission-driven Cyber Threat Analyst to support defensive cyber operations for the Joint Fires Network SOC at DISA Pacific (Ford Island, HI). The role involves advanced threat hunting, behavioral anomaly detection, TS/SCI incident response, and detection engineering using Elastic Search/Defend, Corelight, and Darktrace. Requires U.S. citizenship, an active Top Secret clearance with SCI eligibility, and DoD 8140/8570 certification (DCWF 531) at the Intermediate level.

Key Highlights
Full-time onsite role in a SCIF at DISA Pacific, Ford Island, HI supporting the JFN IL-7 and multi-level classified enclaves (Olympus Fires mission)
Requires active Top Secret clearance with SCI eligibility (Tier 5/SSBI) and DoD 8140.03/DCWF 531 certification (CySA+, GCTI, CEH, Security+ CE, GSEC, or higher)
Develop novel threat hunting playbooks, map adversary TTPs to MITRE ATT&CK, and tune Elastic KQL/EQL detections for a 24/7 watch cell
Enforce DIA-aligned TS/SCI incident reporting and support DoD CSSP core functions during Phase I standup
Key Responsibilities
Design, test, and operationalize novel threat hunting playbooks focused on behavioral anomalies, C2 activity, lateral movement, and traffic pattern deviations across JFN transport nodes
Formulate threat hypotheses based on all-source intelligence and interrogate the Elastic Search/Defend SIEM and raw network telemetry to uncover evasive adversary tradecraft
Author, refine, and maintain standardized threat containment processes and playbooks in Atlassian JIRA
Map adversary TTPs to the MITRE ATT&CK framework to identify visibility gaps and improve defensive posturing
Recommend and refine custom detection queries (Elastic KQL/EQL) and alert correlations within Elastic Defend to reduce false positives
Drive the technical threat intelligence and containment sections of the JFN Incident Response Plan
Enforce DIA requirements for TS/SCI incident handling and reporting within mandated reporting windows
Support DoD CSSP core functions and deliver threat summaries, warnings, and intelligence briefings to JFN leadership, DISA, and mission stakeholders
Analyze and correlate network protocol telemetry, Netflow, proxy logs, and raw packet captures to reconstruct intrusion paths
Work standard operational shifts with readiness for on-call surge or emergency incident escalation
Technical Skills Required
Cyber Threat Intelligence Threat Hunting Elastic Search / Elastic Defend SIEM
Benefits & Perks
Medical coverage with three plan options, dental and vision coverage
Personal time off, paid holidays, and paid parental leave
Retirement savings accounts (Pre-Tax and Roth) and flexible/dependent care savings accounts
Life insurance and long/short-term disability coverage
Tuition and training reimbursement, employee assistance program
Relocation expenses may be eligible for reimbursement
Nice to Have
Prior experience supporting C4ISR systems or tactical operational enclaves (e.g., PMN)
Operational experience analyzing telemetry from Corelight (Zeek), Darktrace MDR, or Palo Alto Advanced Threat Prevention (ATP)
Experience utilizing AI prompting tools (Gemini, Grok, ChatGPT) to automate threat hunting data collection and indicator extraction

Job Description

Newberry Group is seeking an analytical, mission-driven to join our customer’s defensive cyber operations team supporting the Security Operations Center (SOC). Operating out of secure Sensitive Compartmented Information Facilities (SCIFs) at DISA Pacific (Ford Island, HI), this team provides specialized threat intelligence synthesis, behavioral anomaly detection, and advanced threat hunting to safeguard the JFN Impact Level 7 (IL-7) and multi-level classified enclaves supporting the Olympus Fires mission.
Want the full job description? Read the complete details on LinkedIn, the original posting.
Continue on LinkedIn

This is a short excerpt. All rights to the full description belong to its original publisher.

See Jaabz jobs first on Google 1 tap · free · in AI Overviews Jaabz is on your Google Manage Preferred Sources

Similar Jobs

Explore other opportunities that match your interests

Visa Sponsorship Relocation Remote
Job Type Full-time
Experience Level Not Applicable

KBR Careers

United State

Principal Network Communications Engineer

Networking
•
1d ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

Northrop Grumman

United State

Senior Principal Network Communications Engineer

Networking
•
1d ago

Premium Job

Sign up is free! Login or Sign up to view full details.

•••••• •••••• ••••••
Job Type ••••••
Experience Level ••••••

Northrop Grumman

United State

Subscribe our newsletter

New Things Will Always Update Regularly