Find Jobs
Find Jobs Near You – Available Work in Your Location
Skip to job details
TA
Technology, Automation, and Management, Inc.
DCOMSS - Blue Team Lead / Senior Cyber Defense Analyst
Career Insights for Security Operations Center Analyst
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on North Carolina data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Security Operations Center Analyst monitors and analyzes security events and instances within an organization's IT infrastructure. Responds to real-time cybersecurity threats, configuring and deploying security infrastructures, and monitoring of ongoing security issues.
$95,010 / year median in North Carolina
Job Description
DCOMSS - Blue Team Lead / Senior Cyber Defense Analyst Technology, Automation, and Management, Inc. Fort Bragg, NC Job Details 15 hours ago Qualifications Incident reporting compliance Intrusion detection analysis Threat hunting activities Security team coordination Team supervision Incident report management Reporting (security system operation) Shift management Incident Escalation Quality assurance Incident management operations support Security threat response protocols Mentoring Quality control operations Leading team collaboration initiatives Cybersecurity investigations Senior level Network incident reporting Escalation handling Task assignment Incident response implementation IT security monitoring Full Job Description Pending Contract Award Mission Objectives ? Defensive Cyberspace Operations (DCO) are the passive and active measures taken to detect, characterize, and defeat adversary activity on Army networks and preserve the Army's ability to use its own cyberspace capabilities ? a distinct, adversary-focused mission from routine IT infrastructure or help-desk support. This position leads both Blue Team task areas of the USARC Defensive Cyberspace Operations Mission Support Services (DCOMSS) effort: Blue Team ? Network Security Monitoring, Detection, Analysis, and Incident Response, and Blue Team ? Integrated Assessments. Together these form the primary operational layer defending U.S. Army Reserve information systems supporting approximately 205,000 Army Reserve personnel across NIPRNet and SIPRNet on a continuous basis. The Blue Team Lead is the single point of accountability for both task areas and is one of three Key Personnel positions on this task order. Position Responsibility Summary Serve as Key Personnel and single point of accountability for Blue Team ? Network Security Monitoring, Detection, Analysis, and Incident Response across NIPRNet and SIPRNet, maintaining 24/7/365 watch coverage. Lead Tier 3 senior analysis, hypothesis-driven hunt missions, and detection-signature development, coordinating signature submissions with the CTI cell and the ARCYBER signature working group. Own incident categorization and reporting
IAW CJCSM 6510.01B
; ensure execution of critical blocks within 2 hours of notification/detection and 24-hour mitigation actions where required.Direct shift operations:
watch schedule, pass-down log, shift-lead handoff briefings, and surge staffing procedures during declared elevated threat conditions, named operations, or directed exercises. Direct execution of Blue Team ? Integrated Assessments, including Network Assistance Visits (NAVs) and Network Damage Assessments (NDAs) under the CDAP construct, with 4-hour NDA deployment readiness. Serve as the Blue Team escalation point to ARCYBER, the supported Regional Cyber Center, JFHQ-DoDIN, and Law Enforcement/Counterintelligence. Mentor and quality-control Tier 1 and Tier 2 analysts; own team compliance with DoDM 8140.03 DCWF qualification requirements. Own Blue Team performance against PRS thresholds, including =99.5% watch availability, mean-time-to-detect under 15 minutes on high-fidelity alerts, and 100% shift-handoff log completeness.Benefits
- Dental Insurance