Job Opportunities API

The Public Ledger of Openings

← Back to the ledger

Tier 2 Shift Lead

SkyePoint Decisions
CompanySkyePoint Decisions
CategoryUncategorised
Location8101 Odell Rd
RemoteOn-site (inferred)
EmploymentNot stated
LevelNot stated
SalaryNot stated by the employer
Posted30 Jul 2026
Last verified6 Aug 2026
SourceEmployer ATS (greenhouse)
Applications are handled by the employer, not by us.Apply on the employer's site →
Description
SkyePoint Decisions is a leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations, and Applications Development and Maintenance IT service provider headquartered in Dulles, Virginia with operations across the U.S. We provide innovative enterprise-wide solutions as well as targeted services addressing the complex challenges faced by our federal government clients. Our focus is on enabling our clients to deliver their mission most efficiently and effectively – anytime, anywhere, securely. We combine technical expertise, mission awareness, and an empowered workforce to produce meaningful results. This is a contingent position based upon customer approval. SkyePoint Decisions is seeking a Tier 2 Shift Lead to support the Diplomatic Security Cyber Mission (DSCM) program providing leading cyber and technology security experience to enable innovative, effective, and secure business processes.    This position is located in Beltsville, MD and will be onsite 5 days a week. No hybrid/telework allowed.  Work Hours:  Day Shift, 06:00– 14:00 EST (6:00 - 2:00 PM, EST), Tuesday - Saturday Responsibilities: Detect, classify, process, track, and report on cyber security events and incidents. Perform advanced in-depth analysis of coordinated Tier 1 alert triage and requests in a 24x7x365 environment. Analyze logs from multiple sources (e.g., host logs, EDR, firewalls, intrusion detection systems, servers) to identify, contain, and remediate suspicious activity. Characterize and analyze network traffic to identify anomalous activity and potential threats. Protect against and prevent potential cyber security threats and vulnerabilities. Perform forensic analysis of hosts artifacts, network traffic, and email content. Analyze malicious scripts and code to mitigate potential threats. Conduct malware analysis to generate IOCs to identify and mitigate threats. Collaborate with Department of State teams to analyze and respond to events and incidents. Monitor and respond to the CIRT Security Orchestration and Automation Response (SOAR) platform, hotline, email in-boxes. Create tickets and initiate workflows as instructed in technical SOPs. Coordinate and report incident information to the Cybersecurity and Infrastructure Security Agency (CISA). Collaborate with other local, national and international CIRTs as directed. Submit alert tuning requests. Additionally, as a Tier 2 Shift Lead you will:   Review all Tier 2 shift tickets for accuracy and completeness Coordinate with CIRT Watch Officers and government leadership on remediation actions Provide technical and procedural improvement recommendations to CIRT leadership Assist with Tier 2 candidate technical interviews as required Ensure coordinated remediation actions are operating properly   Required Qualifications: Bachelor’s degree and minimum of 9 years of relevant experience; or, Master’s degree with minimum of 7 years; or PhD with 4 years. In lieu of a degree, 4 years of additional  experience may be considered. Must possess, or obtain prior to start date, at least one of the following certifications. Continued certification is required as a condition of employment: CASP+ CE; CCNA Cyber Ops; CCNA-Security; CCNP Security; CEH; CFR; CHFI; CISA;CISSP (or Associate); CISSP-ISSAP; CISSP-ISSEP; CySA+; GCED; GCFA; GCIH; SCYBER Demonstrated experience across the incident response lifecycle. Experience with SOAR platforms and automated response workflows (e.g., ServiceNow, Splunk SOAR, Microsoft Sentinel). Experience with Security Information and Event Management (SIEM) platforms (e.g., Splunk, Microsoft Sentinel, Elastic, QRadar). Experience with Endpoint Detection and Response (EDR) solutions (e.g., Microsoft Defe