Tier 2 Shift Lead
SkyePoint Decisions
| Company | SkyePoint Decisions |
| Category | Uncategorised |
| Location | 8101 Odell Rd |
| Remote | On-site (inferred) |
| Employment | Not stated |
| Level | Not stated |
| Salary | Not stated by the employer |
| Posted | 30 Jul 2026 |
| Last verified | 6 Aug 2026 |
| Source | Employer ATS (greenhouse) |
Description
SkyePoint Decisions is a leading Cybersecurity Architecture and Engineering, Critical Infrastructure and Operations, and Applications Development and Maintenance IT service provider headquartered in Dulles, Virginia with operations across the U.S. We provide innovative enterprise-wide solutions as well as targeted services addressing the complex challenges faced by our federal government clients. Our focus is on enabling our clients to deliver their mission most efficiently and effectively – anytime, anywhere, securely. We combine technical expertise, mission awareness, and an empowered workforce to produce meaningful results. This is a contingent position based upon customer approval.
SkyePoint Decisions is seeking a Tier 2 Shift Lead to support the Diplomatic Security Cyber Mission (DSCM) program providing leading cyber and technology security experience to enable innovative, effective, and secure business processes.
This position is located in Beltsville, MD and will be onsite 5 days a week. No hybrid/telework allowed.
Work Hours: Day Shift, 06:00– 14:00 EST (6:00 - 2:00 PM, EST), Tuesday - Saturday
Responsibilities:
Detect, classify, process, track, and report on cyber security events and incidents.
Perform advanced in-depth analysis of coordinated Tier 1 alert triage and requests in a 24x7x365 environment.
Analyze logs from multiple sources (e.g., host logs, EDR, firewalls, intrusion detection systems, servers) to identify, contain, and remediate suspicious activity.
Characterize and analyze network traffic to identify anomalous activity and potential threats.
Protect against and prevent potential cyber security threats and vulnerabilities.
Perform forensic analysis of hosts artifacts, network traffic, and email content.
Analyze malicious scripts and code to mitigate potential threats.
Conduct malware analysis to generate IOCs to identify and mitigate threats.
Collaborate with Department of State teams to analyze and respond to events and incidents.
Monitor and respond to the CIRT Security Orchestration and Automation Response (SOAR) platform, hotline, email in-boxes.
Create tickets and initiate workflows as instructed in technical SOPs.
Coordinate and report incident information to the Cybersecurity and Infrastructure Security Agency (CISA).
Collaborate with other local, national and international CIRTs as directed.
Submit alert tuning requests.
Additionally, as a Tier 2 Shift Lead you will:
Review all Tier 2 shift tickets for accuracy and completeness
Coordinate with CIRT Watch Officers and government leadership on remediation actions
Provide technical and procedural improvement recommendations to CIRT leadership
Assist with Tier 2 candidate technical interviews as required
Ensure coordinated remediation actions are operating properly
Required Qualifications:
Bachelor’s degree and minimum of 9 years of relevant experience; or, Master’s degree with minimum of 7 years; or PhD with 4 years. In lieu of a degree, 4 years of additional experience may be considered.
Must possess, or obtain prior to start date, at least one of the following certifications. Continued certification is required as a condition of employment:
CASP+ CE; CCNA Cyber Ops; CCNA-Security; CCNP Security; CEH; CFR; CHFI; CISA;CISSP (or Associate); CISSP-ISSAP; CISSP-ISSEP; CySA+; GCED; GCFA; GCIH; SCYBER
Demonstrated experience across the incident response lifecycle.
Experience with SOAR platforms and automated response workflows (e.g., ServiceNow, Splunk SOAR, Microsoft Sentinel).
Experience with Security Information and Event Management (SIEM) platforms (e.g., Splunk, Microsoft Sentinel, Elastic, QRadar).
Experience with Endpoint Detection and Response (EDR) solutions (e.g., Microsoft Defe