1

Cyber Fusion Center Triage Analyst Jobs (NOW HIRING)

Manager Cyber Fusion Center

Poland, OH ยท On-site +1

$96K - $129K/yr

The Manager, Cyber Fusion Center (CFC) is a senior cybersecurity leader responsible for building ... Ensure SOC alerts and triage workflows are mapped, prioritized, and tuned using the MITRE ATT&CK ...

Cyber Fusion Analyst

Washington, DC ยท Hybrid

$107K - $195K/yr

The Leidos Digital Modernization sector is looking for a Cyber Fusion Analyst to support a ... Fusion Center Experience:Previous experience working within a government or large-scale ...

Cyber Fusion and Threats Analyst

Odenton, MD ยท On-site

$107K - $195K/yr

The Leidos Digital Sector has a current job opportunity for a Cyber Fusion and Threats Analyst on ... Center (D2OC) on Ft. Meade, MD. POSITION SUMMARY: GSM-O II provides network operations and cyber ...

next page

Showing results 1-20

Cyber Fusion Center Triage Analyst information

See salary details

$44.5K

$107.5K

$151K

How much do cyber fusion center triage analyst jobs pay per year?

As of Aug 28, 2026, the average yearly pay for cyber fusion center triage analyst in the United States is $107,522.00, according to ZipRecruiter salary data. Most workers in this role earn between $91,500.00 and $126,500.00 per year, depending on experience, location, and employer.

What is a Cyber Fusion Center Triage Analyst?

A Cyber Fusion Center Triage Analyst is a cybersecurity professional responsible for the initial assessment and prioritization of security alerts and incidents within a cyber fusion center. They analyze incoming threat intelligence, monitor security systems, and determine the severity and credibility of potential threats. Their work is crucial in ensuring that serious incidents are escalated quickly to the right teams while filtering out false positives. This role often involves close collaboration with incident response, threat intelligence, and security operations teams to streamline the organization's defense against cyber threats.

What are the key skills and qualifications needed to thrive as a Cyber Fusion Center Triage Analyst?

To thrive as a Cyber Fusion Center Triage Analyst, you need a solid understanding of cybersecurity fundamentals, incident response principles, and experience with threat detection, typically supported by a degree in cybersecurity or related certifications like CompTIA Security+ or GIAC. Familiarity with Security Information and Event Management (SIEM) tools, ticketing systems, and threat intelligence platforms is commonly required. Strong analytical thinking, attention to detail, and effective communication skills help analysts quickly assess potential threats and collaborate with multidisciplinary teams. These skills and qualifications are crucial to swiftly and accurately identifying, prioritizing, and escalating security incidents to protect organizational assets.

What are some common challenges faced by Cyber Fusion Center Triage Analysts, and how can they be managed?

Cyber Fusion Center Triage Analysts often face the challenge of quickly distinguishing real threats from false positives among a high volume of security alerts. Time management and prioritization are crucial, as is maintaining clear communication with other teams such as incident response and threat intelligence. Developing a solid understanding of the organization's security tools and processes helps streamline triage tasks. Leveraging automation where possible and participating in continuous training can also make the workload more manageable and improve incident detection accuracy.
More about Cyber Fusion Center Triage Analyst jobs

What cities are hiring for Cyber Fusion Center Triage Analyst jobs?

Cities with the most Cyber Fusion Center Triage Analyst job openings:

What job categories do people searching Cyber Fusion Center Triage Analyst jobs look for?

The top searched job categories for Cyber Fusion Center Triage Analyst jobs are:

Infographic showing various Cyber Fusion Center Triage Analyst job openings in the United States as of August 2026, with employment types broken down into 2% As Needed, 81% Full Time, 15% Part Time, and 2% Contract. Highlights an 90% Physical, 1% Hybrid, and 9% Remote job distribution, with an average salary of $107,522 per year, or $51.7 per hour.

Manager Cyber Fusion Center

Poland, OH โ€ข On-site, Remote

Pharmacy Data Management, Inc.
Pharmaceutical and Medicine Manufacturingย โ€ขย 51 - 200 employees

$96K - $129K/yr

Full-time

Re-posted 16 days ago


Job description

PDMI is looking to add a Manager, Cyber Fusion Center to our team! The Manager, Cyber Fusion Center (CFC) is a senior cybersecurity leader responsible for building, maturing, and leading a modern cyber defense capability with incident response as a core area of expertise. This role oversees cyber incident response, data breach readiness, SOC operations, security engineering, cloud and product security. The ideal candidate combines deep technical knowledge with strong leadership, communication, and strategy skills to design and operationalize an AI-enabled SOC in partnership with internal teams and external MSSPs, solution providers and other partners.

Since 1984, PDMI has provided pharmacy data processing and other flexible, scalable solutions to help our clients meet their businessobjectives. We offer transparent, pass-through pharmacy processing and other services for private label Pharmacy Benefit Managers (PBMs), vertically integrated healthplansand hospital systems. In addition to Pharmacy Benefit Administrative Services, we offer 340B Administration, Hospice and Long-Term Care Services.

Why Join Us:

  • Best Employer: PDMI was votedBestEmployer in Ohio for the 5th consecutive year in 2025!
  • Meaningful Work: Contribute to improving healthcare quality and efficiency.
  • Collaborative Environment: Work with passionate professionals who share your drive.
  • Exciting Challenges: Every day brings new opportunities to excel.
  • Flexible Work: Fully remote opportunity with a company thatcares.

Key Responsibilities:

  • Lead the strategy, design, implementation, operation and continuous improvement of a Cyber Fusion Center including Security Operations Center (SOC) aligned to business risk and enterprise security objectives.
  • Oversee SOC operations across internal teams and external providers, including MSSPs, and AI-enabled SOC platforms.
  • Serve as the primary leader for cybersecurity incident response, including preparation, detection, triage, containment, eradication, recovery, and post-incident review.
  • Lead or coordinate response to high-severity cybersecurity incidents, data breaches, and crisis events; stand up and run CSIRT activities when needed.
  • Develop, maintain, and test the incident response plan, escalation procedures, and cybersecurity playbooks using frameworks such as MITRE ATT&CK and other industry best practices.
  • Ensure SOC alerts and triage workflows are mapped, prioritized, and tuned using the MITRE ATT&CK framework, cyber threat intelligence, and risks it brings to PDMI.
  • Drive operational excellence in monitoring, detection engineering, threat triage, and response workflows to reduce false positives and improve speed and quality of response.
  • Partner with vulnerability management, security engineering, infrastructure, architecture, product security, risk management, legal, IT operations, and product engineering & owners to improve detection, response, and remediation outcomes.
  • Lead security input into enterprise initiatives involving Microsoft Defender EDR, Entra ID / Active Directory, Penetration Testing, Red & Purple team exercise, Email Security, CSPM/Cloud Security, KnowBe4 and broader security telemetry integration.
  • Establish and track operational metrics and KPIs such as alert fidelity, MTTD, MTTR, incident trends, log ingestion coverage gaps, and control effectiveness.
  • Manage third-party incident response retainers, forensic partners, and external service providers to ensure readiness and effective support during incidents.
  • Plan and facilitate cybersecurity tabletop exercises and simulations with technical teams, executives, and business stakeholders to validate readiness and strengthen decision-making.
  • Provide clear, concise updates to leadership during incidents and communicate cyber risk, trends, and improvement priorities to executive team.

Word & Education Experience Requirements:

  • Bachelor's degree in computer science, cybersecurity, or a related technical field required or equivalent combination of education and experience.
  • 8-10 years of progressive experience in cybersecurity with significant experience in incident response, SOC operations, security engineering, or cyber defense leadership required.
  • Proven experience designing, implementing, or operating SOC and experience in SIEM, SOAR required.
  • Strong hands-on and strategic knowledge of security operations platforms, endpoint detection and response, identity security, vulnerability management, and cloud security required.
  • Experience leading major incident response efforts, coordinating technical and business stakeholders, and managing executive communications during cyber events required.
  • Strong understanding of network protocols, secure system design, logging solutions, and endpoint security required.
  • Proficient in various scripting languages to automate repetitive tasks and streamline security operations required.
  • Experience with industry standards and frameworks (e.g., NIST IR, NIST RMF, MITRE, CIS) required.
  • Security certifications such as CISSP and CISM are preferred.

AIUsage& Candidate Authenticity:

AI tools may be used for resume formatting or drafting application materials; however,submittingcontent that misrepresents yourexperience, includingcopied job descriptions or unverifiable workhistory, isnot acceptable. Candidates must be prepared to clearly and confidently speak to allexperiencelisted. PDMI may request work samples, portfolio links, or other forms of validation during the process. Use of AI tools during interviews or assessments, unless explicitlypermitted, will result in disqualification.

All offers are contingent upon successful completion of a pre-employment background check, including employment and education verification, as well as a 4-panel drug screen.

Employment Type: FULL_TIME