2

Remote Cyber Defense Analyst Jobs (NOW HIRING)

... to strengthen cyber defense and incident response operations. This role directly supports a ... Analyze logs from multiple sources, including packet captures, correlation engines, parsed security ...

Systems Test Engineer

Morrisville, NC · On-site +1

$95K - $125K/yr

Hybrid Work Environment: Hybrid Owl Cyber Defense is a leader and trusted partner in ... Analyze and communicate performance results and trends Test Automation and Quality Engineering

Remote (Must be in Eastern or Central time zone) Owl Cyber Defense is a leader and trusted partner ... Perform market research, competitive analysis, and customer discovery to validate requirements and ...

Threat Hunt Analyst

Lakewood, CO · On-site +1

$99K - $225K/yr

Join a high-impact, mission-driven team operating at the forefront of cyber defense for critical ... Remote : If this position is listed as remote, there may still be occasions when you are required ...

Senior Buyer

Danbury, CT · On-site +1

$95K - $125K/yr

Remote (for those in Eastern or Central time zones) Owl Cyber Defense is a leader and trusted partner in cyber security. We deliver solutions that protect and connect the world's most critical ...

Cyber Engineer

$96K - $123K/yr

Configure and maintain GlobalProtect and Prisma Access where applicable, extending network defense into cloud and remote environments. * Partner with the Cyber Defense Operations teams to investigate ...

Showing results 21-40

Remote Cyber Defense Analyst information

See salary details

$44.5K

$107.5K

$151K

How much do remote cyber defense analyst jobs pay per year?

As of Aug 17, 2026, the average yearly pay for remote cyber defense analyst in the United States is $107,522.00, according to ZipRecruiter salary data. Most workers in this role earn between $91,500.00 and $126,500.00 per year, depending on experience, location, and employer.

What does a remote cyber defense analyst do?

A Remote Cyber Defense Analyst is responsible for monitoring, analyzing, and responding to cybersecurity threats and incidents from a remote location. They work with security tools to detect suspicious activities, investigate potential breaches, and implement protective measures to safeguard an organization’s digital assets. Their role often involves collaborating with other IT and security professionals, providing reports, and staying updated on the latest cyber threats and best practices. By working remotely, they utilize secure connections and specialized software to perform their duties without being physically present at the company's location.

What are the key skills and qualifications needed to thrive as a remote cyber defense analyst?

To thrive as a Remote Cyber Defense Analyst, you need a strong understanding of network security, threat analysis, and incident response, often supported by a degree in cybersecurity or a related field. Familiarity with SIEM tools, intrusion detection systems, and certifications like CompTIA Security+, CEH, or CISSP are typically required. Analytical thinking, attention to detail, and effective communication are essential soft skills for excelling in this role. These skills and qualifications are crucial for proactively identifying and mitigating cyber threats, ensuring the security and resilience of an organization’s digital assets.

How do remote cyber defense analysts typically collaborate with on-site IT teams during a security incident?

Remote Cyber Defense Analysts often work closely with on-site IT teams through secure communication channels like video calls, instant messaging, and incident management platforms. During a security incident, they provide real-time analysis, guide the collection of forensic data, and help coordinate responses such as containment and remediation actions. Effective collaboration relies on clear protocols, regular updates, and thorough documentation to ensure rapid and unified responses. Building strong relationships and maintaining open lines of communication with on-site personnel are essential for seamless teamwork.

What is the difference between Remote Cyber Defense Analyst vs Remote Security Operations Center (SOC) Analyst?

AspectRemote Cyber Defense AnalystRemote Security Operations Center (SOC) Analyst
CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, CISSP, CEH
Work EnvironmentRemote, often part of cybersecurity teamsRemote, within SOC teams monitoring security alerts
Industry UsageVarious industries including finance, healthcare, techPrimarily in cybersecurity firms and large organizations
Job FocusAnalyzing threats, developing defense strategiesMonitoring security alerts, incident response

The Remote Cyber Defense Analyst and Remote SOC Analyst roles share similar certifications and work environments but differ in focus. The Cyber Defense Analyst emphasizes proactive threat analysis and defense strategy, while the SOC Analyst concentrates on real-time monitoring and incident response within security operations centers.

More about Remote Cyber Defense Analyst jobs

What cities are hiring for Remote Cyber Defense Analyst jobs?

Cities with the most Remote Cyber Defense Analyst job openings:

What are the most commonly searched types of Cyber Defense Analyst jobs?

The most popular types of Cyber Defense Analyst jobs are:

What states have the most Remote Cyber Defense Analyst jobs?

States with the most job openings for Remote Cyber Defense Analyst jobs include:

Infographic showing various Remote Cyber Defense Analyst job openings in the United States as of August 2026, with employment types broken down into 93% Full Time, 4% Part Time, 2% Contract, and 1% Nights. Highlights an 91% Physical, 3% Hybrid, and 6% Remote job distribution, with an average salary of $107,522 per year, or $51.7 per hour.

Full-time

Re-posted 21 days ago


ASM Research rating

8.6

Company rating: 8.6 out of 10

Based on 14 frontline employees who took The Breakroom Quiz

32nd of 224 rated it services


Job description

Position Overview
The Cyber Threat Hunter proactively protects enterprise environments from advanced cyber threats by analyzing network, endpoint, and log data to identify malicious activity that may evade conventional security controls. This role establishes normal traffic and data-flow baselines, detects anomalies, develops threat hypotheses, and investigates adversary tactics, techniques, and procedures to strengthen cyber defense and incident response operations. This role directly supports a proactive SOC model by contributing to detection engineering, monitoring enhancements, automation development and continuous gap analysis to identify and mitigate emerging threats before they materialize.
Key Responsibilities
  • Conduct proactive threat hunting across networks, endpoints, and security datasets to identify, isolate, and help eradicate advanced threats before they impact operations.
  • Analyze logs from multiple sources, including packet captures, correlation engines, parsed security data, and endpoint telemetry, to detect suspicious behavior and validate threat activity.
  • Establish and maintain baseline patterns for normal traffic, system activity, and data flows to improve anomaly detection and investigative accuracy.
  • Collaborate closely with SOC analysts and detection engineers to recommend new alerts, analytics, and monitoring logic based on threat hunting findings, emerging trends, and identified visibility gaps.
  • Develop automation scripts and workflows (using SOAR platforms, Python, PowerShell, or similar tools) to streamline threat hunting activities, automate repetitive analytical tasks, and reduce detection and response time.
  • Research and track adversary tactics, techniques, and procedures (TTPs), developing technical hypotheses and investigative leads based on threat intelligence and observed behaviors.
  • Support incident response activities by creating incident documentation, follow-up actions, reporting criteria, and recommendations that improve overall response maturity and operational resilience.
  • Examine and characterize malware and cyber threats, including viruses, worms, bots, rootkits, and Trojan horses, to determine threat nature, scope, and potential impact.
  • Apply reverse engineering and binary analysis techniques using tools such as Ghidra and IDA Pro to support vulnerability research and understand malicious code behavior.

Required Qualifications
  • Bachelor's degree in Information Technology, Computer Science, Cybersecurity, or a related field, or equivalent relevant experience.
  • 4 years of experience in cybersecurity or a closely related technical security role.
  • Demonstrated ability to perform system administrator-level analysis across multiple platforms and operating systems in support of cyber investigations.
  • Strong analytical and problem-solving skills with the ability to identify, track, and assess adversary TTPs and suspicious activity.
  • Knowledge of intrusion detection methodologies, evidence preservation practices, and cyber defense and information security policies, procedures, and regulations.

Preferred Qualifications
  • Relevant cybersecurity certifications such as GCDA, GNFA, CompTIA PenTest+ (Removed CISSP), CISM, or CompTIA CySA+.
  • Experience with reverse engineering, malware analysis, vulnerability research, and threat analysis in enterprise or government environments.
  • Familiarity with U.S. Army Corps of Engineers (USACE) IT policies and operational security requirements.
  • Experience preparing technical reports, incident summaries, and threat findings for stakeholders and operational leadership.

Job Specific Skills
  • Threat hunting and anomaly detection.
  • Log correlation and security event analysis.
  • Packet capture analysis and data parsing.
  • Malware analysis, reverse engineering, and binary analysis.
  • Threat intelligence analysis and TTP identification.
  • Incident response documentation and reporting.
  • Detection engineering collaboration and monitoring enhancement support.

Compensation Ranges
Compensation ranges for ASM Research positions vary depending on multiple factors; including but not limited to, location, skill set, level of education, certifications, client requirements, contract-specific affordability, government clearance and investigation level, and years of experience. The compensation displayed for this role is a general guideline based on these factors and is unique to each role. Monetary compensation is one component of ASM's overall compensation and benefits package for employees.
EEO Requirements
It is the policy of ASM that an individual's race, color, religion, sex, disability, age, sexual orientation or national origin are not and will not be considered in any personnel or management decisions. We affirm our commitment to these fundamental policies.
All recruiting, hiring, training, and promoting for all job classifications is done without regard to race, color, religion, sex, disability, or age. All decisions on employment are made to abide by the principle of equal employment.
Physical Requirements
The physical requirements described in "Knowledge, Skills and Abilities" above are representative of those which must be met by an employee to successfully perform the primary functions of this job. (For example, "light office duties' or "lifting up to 50 pounds" or "some travel" required.) Reasonable accommodations may be made to enable individuals with qualifying disabilities, who are otherwise qualified, to perform the primary functions.
Disclaimer
The preceding job description has been designed to indicate the general nature and level of work performed by employees within this classification. It is not designed to contain or be interpreted as a comprehensive inventory of all duties, responsibilities and qualifications required of employees assigned to this job.

What ASM Research employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom