Haystack
← Back to Jobs
Technology
AD

AI Cybersecurity Analyst

Advance Digital SystemsWashington, DC🇺🇸United StatesPosted 4 Sept 2026

Quick Overview

Seniority
Mid Senior
Work mode
Hybrid
Location
Washington, DC, United States
Posted
Yesterday
AWSSplunkAzure

Job Description

Seeking a Senior Cybersecurity Analyst with hands-on experience applying Artificial Intelligence (AI) to Security Operations Center (SOC) and computer network defense. The role combines advanced cybersecurity operations, threat detection, incident response, and AI-enabled automation across on-premises and cloud environments. The ideal candidate will develop and implement AI-driven capabilities that improve detection, triage, threat hunting, and incident response.

Position Responsibilities

·        Design and implement AI-enabled cybersecurity solutions and integrate AI capabilities into SOC operations and workflows.

·        Analyze real-time network activity, raw data, metadata, and event logs to identify and investigate potential intrusions across on-premises and cloud environments.

·        Develop and maintain custom detection content for SIEM, IDS/IPS, endpoint, and firewall technologies.

·        Use security orchestration, automation, and AI to improve alert triage, reduce false positives, eliminate redundant detections, and accelerate remediation.

·        Investigate network anomalies, conduct threat hunting, and support cybersecurity incident response.

·        Develop technical requirements, designs, recommendations, and artifacts supporting AI adoption within cybersecurity operations.

·        Ensure AI-enabled solutions comply with applicable security, governance, privacy, and regulatory requirements.

·        Develop cybersecurity analytics, metrics, incident reports, and threat-hunt products demonstrating operational effectiveness.

Position Qualifications

·        7+ years of hands-on cybersecurity operations experience using technologies such as Splunk, CrowdStrike, Palo Alto, Trellix/FireEye, Corelight, and Cisco Firepower.

·        5+ years of cloud cybersecurity operations experience across platforms such as AWS, Azure, and ServiceNow.

·        Hands-on experience implementing AI solutions within a SOC or cybersecurity operations environment.

·        Strong experience with intrusion detection, prevention, network analysis, SIEM, endpoint, and firewall technologies.

·        Demonstrated ability to develop and implement custom detection rules, signatures, SIEM content, endpoint detections, and firewall logic.

·        Experience analyzing network telemetry, event logs, metadata, and security alerts to validate and investigate suspected threats.

·        Experience with AI-enabled cybersecurity automation, threat detection, or incident response preferred.

·        Experience supporting government environments governed by NIST, FISMA, FedRAMP, and OMB requirements preferred.

·        Strong analytical, problem-solving, communication, and technical documentation skills.

 _______________________________________________________________________

No Phone calls Please

Please apply with your resume in a word file including all your contact details

Similar jobs