1,393,162open jobs
80,767companies
206,875added this week
Browse all
Salary
≈ $108k – $215k per year (Estimated)
Location
In office (Washington)
Seniority
Senior · 5+ years exp

Confirmed on the employer's own hiring board on Oct 9, 2026. First seen by Alion on Sep 3, 2026. SAIC scores B on the Alion truth index.

Overview
Company
Impact
Profile match
SAIC delivers technology integration and mission services to government agencies. Its work spans enterprise information technology, space systems, engineering and digital modernisation. The company is one of the largest federal services contractors.

SAIC is looking for a Senior Cybersecurity Analyst supports Security Operations functions while helping establish and mature the organization's offensive security capability in support of a critical U.S. Government agency.

This position is responsible for advanced incident detection, investigation, response, threat analysis, and security monitoring across on-premises and cloud environments. In addition to traditional SOC responsibilities, the analyst performs authorized offensive security activities, including manual vulnerability validation, reproduction of penetration test findings, remediation verification, and security control validation to identify and validate security weaknesses requiring manual analysis beyond automated vulnerability scanning.

The position supports the development of repeatable security validation processes and the agency's evolving offensive security capability, which may expand over time to include application security assessments, adversary emulation, and purple team activities.

ONSITE 3 Days / Remote 2 days - Washington DC

Key Responsibilities:

  • Monitor, analyze, investigate, and respond to cybersecurity alerts and incidents using SIEM, endpoint detection and response (EDR), network monitoring, email security, identity security, and other enterprise security technologies.
  • Perform advanced incident triage to determine scope, impact, attack vectors, and recommend appropriate containment, eradication, recovery, and mitigation activities.
  • Analyze network traffic, endpoint telemetry, authentication events, application logs, system logs, and threat intelligence to identify malicious activity and indicators of compromise.
  • Lead or support investigations involving phishing, malware, unauthorized access, insider threats, data exposure, and other cybersecurity events.
  • Develop, maintain, and improve incident response procedures, investigative workflows, technical documentation, and response playbooks.
  • Review, assign, document, and track cybersecurity incidents and operational activities using approved ticketing and documentation systems.
  • Support investigations involving DHS, CISA, US-CERT, vendor advisories, and other cybersecurity notifications affecting agency systems.
  • Provide technical leadership, mentorship, and knowledge sharing to junior cybersecurity analysts.
  • Conduct authorized offensive security activities, including manual vulnerability validation, reproduction of penetration test findings, remediation verification, and security control validation.
  • Perform recurring validation testing of known vulnerabilities and security deficiencies to verify exploitability, assess technical impact, and confirm remediation effectiveness.
  • Perform manual testing of applications, APIs, identity services, wireless technologies, and other designated systems using approved security assessment tools and methodologies.
  • Distinguish confirmed vulnerabilities from false positives, configuration issues, environmental conditions, and non-exploitable findings, and document technical evidence, remediation recommendations, and validation results.
  • Develop repeatable testing procedures, validation methodologies, assessment documentation, and technical guidance to support recurring security validation activities.
  • Collaborate with Security Operations, Patch and Vulnerability Management, application teams, infrastructure teams, system owners, and external assessors to improve the agency's overall security posture.
  • Identify opportunities to improve security monitoring, detection logic, logging, defensive controls, and incident response based on manual security assessment results.
  • Research emerging threats, vulnerabilities, and offensive security techniques to support continuous improvement of organizational cybersecurity capabilities.
  • Support the continued development of internal offensive security, application security, adversary emulation, and purple team capabilities while performing all activities within approved authorization, scope, rules of engagement, and operational safeguards.

Qualifications & Experience:

  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field. Additional relevant experience may be substituted in lieu of a degree.
  • Five or more years of experience in cybersecurity operations, Security Operations Center (SOC) activities, incident response, vulnerability management, security engineering, or related cybersecurity disciplines.
  • Ability to obtain and maintain a public trust requiring U.S. Citizenship or Green Card.
  • Demonstrated experience investigating, analyzing, and responding to cybersecurity incidents.
  • Strong understanding of cybersecurity principles, attack methodologies, common threat vectors, and NIST incident response guidance.
  • Experience analyzing network traffic, endpoint telemetry, authentication activity, application logs, system logs, and threat indicators.
  • Experience with enterprise cybersecurity technologies, including SIEM, EDR, email security, identity security, privileged access management, and threat intelligence platforms.
  • Working knowledge of TCP/IP, DNS, HTTP/HTTPS, authentication protocols, Windows, Linux, cloud environments, enterprise networking, and common application architectures.
  • Understanding of web applications, APIs, authentication, authorization, session management, and common application security vulnerabilities.
  • Ability to learn, adapt to, and effectively utilize agency-approved offensive security methodologies, manual security assessment techniques, and supporting technologies.
  • Ability to reproduce technical findings, validate vulnerabilities, document repeatable testing procedures, and communicate technical results.
  • Strong analytical, troubleshooting, organizational, technical writing, and communication skills.
  • Ability to work independently while collaborating effectively across technical teams, application owners, and government stakeholders.

Preferred Qualifications:

  • Experience conducting manual vulnerability validation, application security testing, remediation verification, or penetration testing activities.
  • Experience reproducing and validating findings identified through penetration testing, vulnerability assessments, or independent security assessments.
  • Familiarity with OWASP Top 10, OWASP API Security Top 10, MITRE ATT&CK, and common offensive security methodologies.
  • Experience evaluating authentication, authorization, business logic, API security, identity security, wireless security, or other application security controls.
  • Experience supporting federal cybersecurity operations, FISMA compliance, or DHS/CISA cybersecurity activities.
  • Experience developing scripts or automating security tasks using Python, PowerShell, SQL, or similar technologies.
  • Relevant cybersecurity certifications such as CISSP, Security+, CySA+, PenTest+, GPEN, GWAPT, GWEB, PNPT, OSCP, or equivalent.
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,393,162 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Washington
$105k – $115k per year • Equity • Hybrid • Full-Time • 3+ years exp • Bachelor's Degree • San Jose
Cybersecurity
Microsoft Sentinel
Microsoft Defender
QA
Rest-Assured
Apply
$120k – $163k per year • Equity • Remote (United States) • Full-Time • 7+ years exp • United States
DevOps
Terraform
Azure DevOps
Azure
CI/CD
Git
Docker
Kubernetes
QA
Rest-Assured
Apply
$125k – $140k per year • Equity • Hybrid • Full-Time • Washington
Apply
≈ $94k – $185k per year (Estimated) • In office • Full-Time • 3+ years exp • Manassas
AI/ML
Multimodal AI
DevOps
Incident Management
Analytics
Microsoft Excel
Management
Outlook
Microsoft Office
Apply
Host Security Engineer 3 months ago
$165k – $190k per year • Hybrid • Full-Time • 7+ years exp • Bachelor's Degree • Pleasanton
DevOps
Splunk
Linux
Windows
Cybersecurity
Crowdstrike
Qualys Cloud Platform
Microsoft Sentinel
SentinelOne
IBM QRadar
Tanium
SIEM
Apply
≈ $49k – $103k per year (Estimated) • Hybrid • Full-Time • Utrecht
DevOps
Terraform
Azure DevOps
Rancher
Azure
CI/CD
Git
Kubernetes
Bitbucket
Azure AKS
Linux
Windows
TCP/IP
DNS
Management
Agile
Apply
≈ $45k – $103k per year (Estimated) • In office • Full-Time • 10+ years exp • Bachelor's Degree • Jakarta
DevOps
GCP
Azure
AWS
Kubernetes
FinOps
Incident Management
Linux
Windows
Management
ITSM
Apply
≈ $13k – $23k per year (Estimated) • In office • 2+ years exp • Bachelor's Degree • Khimki
JavaScript
PHP
Databases
MySQL
PostgreSQL
DevOps
Nginx
Linux
Windows
Apache HTTP Server
Apply
≈ $18k – $44k per year (Estimated) • In office • Tashkent
PowerShell
DevOps
VMWare
Windows Server
Windows
DNS
DHCP
Cybersecurity
Active Directory
Apply
≈ $73k – $146k per year (Estimated) • Hybrid • Galashiels
Python
DevOps
Terraform
Azure
IAM
Linux
Apply
≈ $139k – $281k per year (Estimated) • In office • TS/SCI • 9+ years exp • Bachelor's Degree • Chantilly
Apply
≈ $106k – $211k per year (Estimated) • In office • TS/SCI • 5+ years exp • Bachelor's Degree • Fayetteville
Python
PowerShell
YARA
DevOps
Splunk
Cybersecurity
YARA
MITRE ATT&CK
SIEM
Apply
≈ $55k – $120k per year (Estimated) • In office • Public Trust • Associate's Degree • Oklahoma City
Management
Outlook
Microsoft Office
Apply
≈ $87k – $171k per year (Estimated) • Hybrid • Top Secret • 3+ years exp • Bachelor's Degree • Washington
SQL
Databases
Azure SQL Database
DevOps
Terraform
GCP
Helm
Azure DevOps
Azure
CI/CD
AWS
Kubernetes
Bicep
Azure AKS
Linux
Windows
DNS
Cybersecurity
Okta
FedRAMP
Zero Trust
Least Privilege
Fortify
OWASP Dependency-Track
OWASP
Apply
≈ $119k – $241k per year (Estimated) • In office • TS/SCI • 9+ years exp • Saint Louis
Apply
$85k – $110k per year • In office • Secret • 2+ years exp • Bachelor's Degree • Washington
Analytics
Power BI
Management
SharePoint
Microsoft Office
Apply
$58k – $86k per year • In office • Full-Time • 8+ years exp • High School Diploma • Alpharetta • Washington
Management
Outlook
SharePoint
Microsoft Office
Apply
$100k – $110k per year • In office • Full-Time • 5+ years exp • Washington
Management
Microsoft Office
Marketing
Salesforce
Apply
≈ $36k – $65k per year (Estimated) • In office • Public Trust • Washington
Analytics
Microsoft Excel
Management
ServiceNow
Microsoft Office
Apply
See all jobs
This is one of many
1,393,162 more open roles from verified company boards, updated every day.