Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Cherokee Federal

Cybersecurity Analyst

Cherokee Federal

Cybersecurity Analyst supporting operations in federal environment by performing detection, analysis, investigation, threat hunting, and incident response activities.

Posted 7/20/2026full-timeRemote • 🇺🇸 United StatesMid-LevelSenior💰 $153,000 - $160,000 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in cybersecurity operations, incident response, and threat analysis, with a strong focus on utilizing Splunk Enterprise Security and Microsoft Defender for Endpoint. Proficient in AWS cloud security technologies and familiar with the MITRE ATT&CK framework to enhance security posture and incident management.

Highest-signal resume keywords
Splunk Enterprise SecurityMicrosoft Defender for EndpointAWS Cloud SecurityIncident Response Lifecycle ManagementMITRE ATT&CK Framework

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Security Event MonitoringIncident ResponseThreat HuntingRoot Cause AnalysisPolicy ManagementCorrelation Rule TuningDashboard CreationAlert TriageForensic ReviewVulnerability Assessment
Soft Skills
Analytical SkillsProblem-SolvingWritten CommunicationVerbal CommunicationCollaboration
Tools & Technologies
SplunkMicrosoft DefenderAWS GuardDutyAWS Security HubCase Management Systems
Industry Keywords
Cybersecurity OperationsSOC AnalysisIncident Response MethodologiesNIST 800-61Federal Government Compliance

Tech Stack

Tools & technologies
AWSCloudCyber SecuritySplunk

About the role

Key responsibilities & impact
  • Monitor and analyze security events utilizing Splunk Enterprise Security (ES).
  • Build, maintain, and tune Splunk searches, correlation rules, alerts, and dashboards.
  • Conduct incident response activities from detection through containment, eradication, recovery, and closure.
  • Investigate endpoint security incidents utilizing Microsoft Defender for Endpoint.
  • Perform endpoint policy management and incident investigations.
  • Assess AWS cloud security telemetry utilizing GuardDuty, Security Hub, and related cloud security services.
  • Identify threats, vulnerabilities, suspicious activity, and cloud misconfigurations.
  • Execute alert triage, incident scoping, and escalation activities according to established playbooks.
  • Recommend updates and improvements to operational procedures and incident response playbooks.
  • Support threat hunting activities and detection engineering initiatives aligned to MITRE ATT&CK methodologies.
  • Perform phishing investigations, alert enrichment, and forensic review activities.
  • Conduct root cause analysis and document corrective actions following security incidents.
  • Track incidents and operational tasks utilizing case management systems.
  • Participate in tabletop exercises and operational readiness activities.
  • Collaborate with Security Operations teams, Incident Response personnel, and federal stakeholders.
  • Prepare reports and communicate findings to technical and non-technical audiences.
  • Perform other job-related duties as assigned.

Requirements

What you’ll need
  • Three (3) to five (5) years of experience in cybersecurity operations, SOC analysis, incident response, or related security disciplines.
  • Demonstrated hands-on experience with Splunk Enterprise Security, including search development, dashboard creation, and correlation rule tuning.
  • Experience utilizing Microsoft Defender for Endpoint for security investigations and policy management.
  • Working knowledge of AWS cloud security technologies, including GuardDuty, Security Hub, or equivalent tools.
  • Proven experience managing incidents through the complete incident response lifecycle.
  • Working knowledge of MITRE ATT&CK framework and common threat actor tactics, techniques, and procedures.
  • Familiarity with incident response methodologies and frameworks such as NIST 800-61.
  • Strong analytical, investigative, and problem-solving capabilities.
  • Excellent written and verbal communication skills.
  • Experience supporting federal government customers or highly regulated environments.
  • Ability to work independently while collaborating effectively with cross-functional teams.

Benefits

Comp & perks
  • Medical
  • Dental
  • Vision
  • 401(k)
  • Paid Time Off
  • Life Insurance
  • Disability Coverage
  • other benefits as provided