Haystack
← Back to Jobs
Employee
Technology
TS

Cyber Defense Analyst 2 with Security Clearance

The Swift GroupAnnapolis Junction, MD🇺🇸United StatesPosted Aug 27, 2026

Why This Role Stands Out

Advance your cybersecurity career with The Swift Group, a mission-driven company, by joining their growing team as a Cyber Defense Analyst. You'll gain valuable experience in advanced threat hunting and network analysis while enjoying hybrid work flexibility and contributing to critical defense operations. If you have a strong foundation in network analysis and SIEM tools, this role offers an exciting opportunity to develop your skills and make a significant impact.

Quick Overview

Seniority
Mid Senior
Employment type
Employee
Work mode
Hybrid
Location
Annapolis Junction, MD, United States
Posted
3 weeks ago
SwiftAWSSplunkTCP/IPAzureKibana

Job Description

Swift is a privately held, mission-driven and employee-focused services and solutions company headquartered in Reston, VA. Our capabilities include Software Development, Engineering & IT, Data Science, Cyber Enablement, Logistics, and Training. Founded in 2019, Swift supports Civilian, Defense, and Intelligence Community customers across the country and around the globe. We are looking for a Cyber Defense Analyst 2 to join a growing team in Annapolis Junction, MD. The Cyber Defense Analyst (Level 2) performs advanced network monitoring, threat analysis, and intrusion detection in support of enterprise defense operations.

Responsibilities

  • Perform advanced manual threat hunting
  • Conduct PCAP and packet-level analysis
  • Perform network traffic, protocol, and netflow analysis
  • Analyze malicious activity and identify exploited weaknesses
  • Correlate enterprise security events for situational awareness
  • Understand IDS/IPS tuning and Snort filters
  • Identify Command and Control (C2) indicators
  • Detect host- and network-based intrusions Requirements:
  • Four (4) years of demonstrated experience as a Cyber Defense Analyst in programs and contracts of similar scope, type, and complexity is required. A technical bachelor's degree from an accredited college or university may be substituted for two (2) years of CDA experience.
  • 1 year TCP/IP fundamentals
  • 1 year experience with network traffic analysis tools (e.g., Wireshark, tcpdump)
  • 2 years SIEM experience (e.g., Splunk, ArcSight, Kibana)
  • 2 years network and threat analysis experience
  • Splunk "Fundamentals I" course completion
  • DoD 8570 CSSP Analyst baseline certification
  • DoD 8570 IAT Level I or II
  • CE certification
  • 2 years maintaining or managing cloud environments (Azure, AWS)
  • US citizenship and an active TS/SCI with Polygraph security clearance required

Similar jobs