2

Remote Cyber Defense Analyst Jobs (NOW HIRING)

Cyber Hunt Analyst

Mclean, VA · Remote

$91K - $153K/yr

... defensive gaps are identified. * Staying up to date with the latest cyber threats, attack ... For Remote Opportunities), education and certifications as well as Federal Government Contract ...

... Cyber Defense Operations and can be remote or based in Austin, TX. Responsibilities: * Lead Unified Program: Direct the unified intelligence collection, analysis, and adversary emulation programs ...

Remote Employment Type: Full‑Time Salary Range: $100,000 - $116,000 Work Schedule: 12x5 coverage ... cyber requirements analysis and tracking activities Why Join Us * Work on advanced cyber defense ...

They are seeking a Cyber Threat Analyst to support this critical customer mission. Responsibilities ... Apply cybersecurity concepts to the detection and defense of intrusions into small, and large-scale ...

Senior Cybersecurity Analyst

$102K - $132K/yr

Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability ... Remote Position Overview The Senior SOC Analyst is responsible for advanced threat detection ...

As part of our Cyber Defense & Response team, you will lead efforts to detect, analyze, and respond to sophisticated attacks targeting NVIDIA's corporate, cloud, and product ecosystems. You ...

Remote Shift Schedule: 8am - 5pm Eastern Standard Time (EST) What you will do: * Lead the ATO ... Analyze systems for compliance with mandated security controls, document non-compliance issues, and ...

Showing results 41-60

Remote Cyber Defense Analyst information

See salary details

$44.5K

$107.5K

$151K

How much do remote cyber defense analyst jobs pay per year?

As of Sep 7, 2026, the average yearly pay for remote cyber defense analyst in the United States is $107,522.00, according to ZipRecruiter salary data. Most workers in this role earn between $91,500.00 and $126,500.00 per year, depending on experience, location, and employer.

What does a remote cyber defense analyst do?

A Remote Cyber Defense Analyst is responsible for monitoring, analyzing, and responding to cybersecurity threats and incidents from a remote location. They work with security tools to detect suspicious activities, investigate potential breaches, and implement protective measures to safeguard an organization’s digital assets. Their role often involves collaborating with other IT and security professionals, providing reports, and staying updated on the latest cyber threats and best practices. By working remotely, they utilize secure connections and specialized software to perform their duties without being physically present at the company's location.

What are the key skills and qualifications needed to thrive as a remote cyber defense analyst?

To thrive as a Remote Cyber Defense Analyst, you need a strong understanding of network security, threat analysis, and incident response, often supported by a degree in cybersecurity or a related field. Familiarity with SIEM tools, intrusion detection systems, and certifications like CompTIA Security+, CEH, or CISSP are typically required. Analytical thinking, attention to detail, and effective communication are essential soft skills for excelling in this role. These skills and qualifications are crucial for proactively identifying and mitigating cyber threats, ensuring the security and resilience of an organization’s digital assets.

How do remote cyber defense analysts typically collaborate with on-site IT teams during a security incident?

Remote Cyber Defense Analysts often work closely with on-site IT teams through secure communication channels like video calls, instant messaging, and incident management platforms. During a security incident, they provide real-time analysis, guide the collection of forensic data, and help coordinate responses such as containment and remediation actions. Effective collaboration relies on clear protocols, regular updates, and thorough documentation to ensure rapid and unified responses. Building strong relationships and maintaining open lines of communication with on-site personnel are essential for seamless teamwork.

What is the difference between Remote Cyber Defense Analyst vs Remote Security Operations Center (SOC) Analyst?

AspectRemote Cyber Defense AnalystRemote Security Operations Center (SOC) Analyst
CertificationsCompTIA Security+, CISSP, CEHCompTIA Security+, CISSP, CEH
Work EnvironmentRemote, often part of cybersecurity teamsRemote, within SOC teams monitoring security alerts
Industry UsageVarious industries including finance, healthcare, techPrimarily in cybersecurity firms and large organizations
Job FocusAnalyzing threats, developing defense strategiesMonitoring security alerts, incident response

The Remote Cyber Defense Analyst and Remote SOC Analyst roles share similar certifications and work environments but differ in focus. The Cyber Defense Analyst emphasizes proactive threat analysis and defense strategy, while the SOC Analyst concentrates on real-time monitoring and incident response within security operations centers.

More about Remote Cyber Defense Analyst jobs

What cities are hiring for Remote Cyber Defense Analyst jobs?

Cities with the most Remote Cyber Defense Analyst job openings:

What are the most commonly searched types of Cyber Defense Analyst jobs?

The most popular types of Cyber Defense Analyst jobs are:

What states have the most Remote Cyber Defense Analyst jobs?

States with the most job openings for Remote Cyber Defense Analyst jobs include:

Infographic showing various Remote Cyber Defense Analyst job openings in the United States as of August 2026, with employment types broken down into 93% Full Time, 4% Part Time, 2% Contract, and 1% Nights. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution, with an average salary of $107,522 per year, or $51.7 per hour.

Manager Cyber Fusion Center

Pharmacy Data Management, Inc.

Poland, OH • On-site, Remote

$96K - $129K/yr

Full-time

Re-posted 25 days ago


Job description

PDMI is looking to add a Manager, Cyber Fusion Center to our team! The Manager, Cyber Fusion Center (CFC) is a senior cybersecurity leader responsible for building, maturing, and leading a modern cyber defense capability with incident response as a core area of expertise. This role oversees cyber incident response, data breach readiness, SOC operations, security engineering, cloud and product security. The ideal candidate combines deep technical knowledge with strong leadership, communication, and strategy skills to design and operationalize an AI-enabled SOC in partnership with internal teams and external MSSPs, solution providers and other partners.

Since 1984, PDMI has provided pharmacy data processing and other flexible, scalable solutions to help our clients meet their businessobjectives. We offer transparent, pass-through pharmacy processing and other services for private label Pharmacy Benefit Managers (PBMs), vertically integrated healthplansand hospital systems. In addition to Pharmacy Benefit Administrative Services, we offer 340B Administration, Hospice and Long-Term Care Services.

Why Join Us:

  • Best Employer: PDMI was votedBestEmployer in Ohio for the 5th consecutive year in 2025!
  • Meaningful Work: Contribute to improving healthcare quality and efficiency.
  • Collaborative Environment: Work with passionate professionals who share your drive.
  • Exciting Challenges: Every day brings new opportunities to excel.
  • Flexible Work: Fully remote opportunity with a company thatcares.

Key Responsibilities:

  • Lead the strategy, design, implementation, operation and continuous improvement of a Cyber Fusion Center including Security Operations Center (SOC) aligned to business risk and enterprise security objectives.
  • Oversee SOC operations across internal teams and external providers, including MSSPs, and AI-enabled SOC platforms.
  • Serve as the primary leader for cybersecurity incident response, including preparation, detection, triage, containment, eradication, recovery, and post-incident review.
  • Lead or coordinate response to high-severity cybersecurity incidents, data breaches, and crisis events; stand up and run CSIRT activities when needed.
  • Develop, maintain, and test the incident response plan, escalation procedures, and cybersecurity playbooks using frameworks such as MITRE ATT&CK and other industry best practices.
  • Ensure SOC alerts and triage workflows are mapped, prioritized, and tuned using the MITRE ATT&CK framework, cyber threat intelligence, and risks it brings to PDMI.
  • Drive operational excellence in monitoring, detection engineering, threat triage, and response workflows to reduce false positives and improve speed and quality of response.
  • Partner with vulnerability management, security engineering, infrastructure, architecture, product security, risk management, legal, IT operations, and product engineering & owners to improve detection, response, and remediation outcomes.
  • Lead security input into enterprise initiatives involving Microsoft Defender EDR, Entra ID / Active Directory, Penetration Testing, Red & Purple team exercise, Email Security, CSPM/Cloud Security, KnowBe4 and broader security telemetry integration.
  • Establish and track operational metrics and KPIs such as alert fidelity, MTTD, MTTR, incident trends, log ingestion coverage gaps, and control effectiveness.
  • Manage third-party incident response retainers, forensic partners, and external service providers to ensure readiness and effective support during incidents.
  • Plan and facilitate cybersecurity tabletop exercises and simulations with technical teams, executives, and business stakeholders to validate readiness and strengthen decision-making.
  • Provide clear, concise updates to leadership during incidents and communicate cyber risk, trends, and improvement priorities to executive team.

Word & Education Experience Requirements:

  • Bachelor's degree in computer science, cybersecurity, or a related technical field required or equivalent combination of education and experience.
  • 8-10 years of progressive experience in cybersecurity with significant experience in incident response, SOC operations, security engineering, or cyber defense leadership required.
  • Proven experience designing, implementing, or operating SOC and experience in SIEM, SOAR required.
  • Strong hands-on and strategic knowledge of security operations platforms, endpoint detection and response, identity security, vulnerability management, and cloud security required.
  • Experience leading major incident response efforts, coordinating technical and business stakeholders, and managing executive communications during cyber events required.
  • Strong understanding of network protocols, secure system design, logging solutions, and endpoint security required.
  • Proficient in various scripting languages to automate repetitive tasks and streamline security operations required.
  • Experience with industry standards and frameworks (e.g., NIST IR, NIST RMF, MITRE, CIS) required.
  • Security certifications such as CISSP and CISM are preferred.

AIUsage& Candidate Authenticity:

AI tools may be used for resume formatting or drafting application materials; however,submittingcontent that misrepresents yourexperience, includingcopied job descriptions or unverifiable workhistory, isnot acceptable. Candidates must be prepared to clearly and confidently speak to allexperiencelisted. PDMI may request work samples, portfolio links, or other forms of validation during the process. Use of AI tools during interviews or assessments, unless explicitlypermitted, will result in disqualification.

All offers are contingent upon successful completion of a pre-employment background check, including employment and education verification, as well as a 4-panel drug screen.

Employment Type: FULL_TIME