... Microsoft Sentinel to detect intrusions, anomalies, and malware activity. * Conduct forensic ... Support red/blue team exercises and improve SOC playbooks for faster containment and recovery.
... Microsoft Sentinel to detect intrusions, anomalies, and malware activity. * Conduct forensic ... Support red/blue team exercises and improve SOC playbooks for faster containment and recovery.
Cybersecurity Analyst - Intermediate
Fort George G Meade, MD · On-site
$70K - $80K/yr
... Microsoft Sentinel to detect intrusions, anomalies, and malware activity. * Conduct forensic ... Support red/blue team exercises and improve SOC playbooks for faster containment and recovery.
Cybersecurity Analyst - Intermediate
Fort George G Meade, MD · On-site
$70K - $80K/yr
... Microsoft Sentinel to detect intrusions, anomalies, and malware activity. * Conduct forensic ... Support red/blue team exercises and improve SOC playbooks for faster containment and recovery.
Security Engineer
Vienna, VA · On-site
$142K - $179K/yr
... blue team defense & incident response, and threat & vulnerability analysis. The Security Engineer ... Microsoft Sentinel, Splunk, Tenable/Nessus, CrowdStrike, Microsoft Defender Endpoint • ...
Security Engineer
Vienna, VA · On-site
$142K - $179K/yr
... blue team defense & incident response, and threat & vulnerability analysis. The Security Engineer ... Microsoft Sentinel, Splunk, Tenable/Nessus, CrowdStrike, Microsoft Defender Endpoint • ...
Security Engineer
$142K - $179K/yr
... blue team defense & incident response, and threat & vulnerability analysis. The Security Engineer ... Proficiency with Microsoft Sentinel, Splunk, Tenable/Nessus, CrowdStrike, Microsoft Defender ...
Security Engineer
$142K - $179K/yr
... blue team defense & incident response, and threat & vulnerability analysis. The Security Engineer ... Proficiency with Microsoft Sentinel, Splunk, Tenable/Nessus, CrowdStrike, Microsoft Defender ...
... blue team defense & incident response, and threat & vulnerability analysis. The Security Engineer ... Sentinel, Splunk, Tenable/Nessus, CrowdStrike, Microsoft Defender Endpoint · Proficiency with ...
Quick apply
... blue team defense & incident response, and threat & vulnerability analysis. The Security Engineer ... Sentinel, Splunk, Tenable/Nessus, CrowdStrike, Microsoft Defender Endpoint · Proficiency with ...
Ensure pipelines support blue/green, canary, and rolling deployment strategies where appropriate ... Experience implementing policy-as-code and security-as-code (e.g., OPA, Sentinel, Conftest)
Ensure pipelines support blue/green, canary, and rolling deployment strategies where appropriate ... Experience implementing policy-as-code and security-as-code (e.g., OPA, Sentinel, Conftest)
Technical DevSecOps Manager - TS/SCI with Polygraph
Mclean, VA · On-site
$144K/yr
Ensure pipelines support blue/green, canary, and rolling deployment strategies where appropriate ... Experience implementing policy-as-code and security-as-code (e.g., OPA, Sentinel, Conftest)
Technical DevSecOps Manager - TS/SCI with Polygraph
Mclean, VA · On-site
$144K/yr
Ensure pipelines support blue/green, canary, and rolling deployment strategies where appropriate ... Experience implementing policy-as-code and security-as-code (e.g., OPA, Sentinel, Conftest)
SIEM tools (Level Blue, Devo, Elastic SIEM, Splunk, Sentinel, QRadar, etc.) * VPNs, IDS/IPS, and traffic analysis * Experience with incident response workflows and real-time threat handling
Quick apply
SIEM tools (Level Blue, Devo, Elastic SIEM, Splunk, Sentinel, QRadar, etc.) * VPNs, IDS/IPS, and traffic analysis * Experience with incident response workflows and real-time threat handling
SIEM tools (Level Blue, Devo, Elastic SIEM, Splunk, Sentinel, QRadar, etc.) * VPNs, IDS/IPS, and traffic analysis * Experience with incident response workflows and real-time threat handling
SIEM tools (Level Blue, Devo, Elastic SIEM, Splunk, Sentinel, QRadar, etc.) * VPNs, IDS/IPS, and traffic analysis * Experience with incident response workflows and real-time threat handling
SIEM tools (Level Blue, Devo, Elastic SIEM, Splunk, Sentinel, QRadar, etc.) * VPNs, IDS/IPS, and traffic analysis * Experience with incident response workflows and real-time threat handling
SIEM tools (Level Blue, Devo, Elastic SIEM, Splunk, Sentinel, QRadar, etc.) * VPNs, IDS/IPS, and traffic analysis * Experience with incident response workflows and real-time threat handling
Sentinel Blue information
Is cybersecurity still worth it in 2026?
What are some typical challenges faced by professionals in a Sentinel Blue team, and how can new hires best prepare for them?
Is Sentinel Blue legit?
What are the key skills and qualifications needed to thrive as a Sentinel Blue, and why are they important?
What jobs pay $10,000 a month without a degree?
What are Sentinel Blue professionals?
What's the easiest cyber security job to get?
What is the difference between Sentinel Blue vs Security Guard?
| Aspect | Sentinel Blue | Security Guard |
|---|---|---|
| Certifications | Typically requires security licenses and specialized training | Requires security licenses, basic training often sufficient |
| Work Environment | Corporate, high-security facilities, or specialized environments | Various settings including retail, events, and residential areas |
| Employer & Industry Usage | Used by private security firms, corporations, and government agencies | Commonly employed by retail stores, malls, and private clients |
Sentinel Blue often refers to a specialized security role with advanced training and specific industry applications, whereas Security Guard is a broader term for personnel providing general security services across various environments. Both roles require licensing, but Sentinel Blue typically involves more technical or high-security responsibilities.
Full-time
Posted 16 days ago
Job description
VG Systems, LLC, a HUBZone small business based in Quantico, VA, is seeking aCybersecurity Analyst (Intermediate) to support our federal IT and cybersecurity operations at Fort Meade, MD. This full-time role is ideal for a motivated professional with hands-on experience in monitoring, threat detection, vulnerability management, and cybersecurity compliance.
Key Responsibilities
- Monitor and analyze security events using SIEM platforms such as Splunk, ELK, and Microsoft Sentinel to detect intrusions, anomalies, and malware activity.
- Conduct forensic investigations on suspicious network activity and support incident triage and resolution.
- Conduct vulnerability scanning, analyze results, validate patches, and coordinate remediation with system owners.
- Develop, update, and maintain cybersecurity baseline documentation (e.g., CONOPS, Incident Response Plans, SOPs, PPPs).
- Assess applicability of IAVMs, STIGs, and SRGs; track remediation efforts and document compliance.
- Support development and maintenance of RMF accreditation packages, including evidence collection, compliance validation, and POA&M development.
- Apply RMF controls and assist with Authority to Operate (ATO) documentation.
- Provide inputs for monthly/quarterly security status reports and IA briefings.
- Document incident response actions and create after-action reports for leadership review.
- Assist senior engineers and analysts with risk assessments and corrective action planning.
- Participate in cybersecurity inspections (CCRI, SAV) by preparing documentation and supporting on-site assessments.
- Support red/blue team exercises and improve SOC playbooks for faster containment and recovery.
- Ensure cybersecurity requirements are fully integrated into system lifecycle processes.
- Assist with configuration reviews, log management, and system baseline checks across hybrid cloud environments.
- Enforce Zero Trust-aligned data governance and access models.
- Integrate AI-enabled analytics into SOC workflows for faster detection and automated threat forecasting.
- Develop Python and PowerShell scripts to automate security log parsing, vulnerability reporting, and alert notifications.
- Maintain all position-based Standard Operating Procedures (SOPs) and update them as needed or requested.
Qualifications
Required:
- Active Secret clearance.
- 3-5 years of relevant IA/cybersecurity experience.
- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or related field (or four additional years of relevant experience in lieu of degree).
- DoD 8570 IAT Level II certification (e.g., Security+ CE, CySA+, GSEC, or equivalent).
- Experience with DISA IA processes, eMASS, ACAS, and STIG/SRG compliance.
- Strong knowledge of DoD RMF, NIST 800-53, DISA STIGs, and Zero Trust architectures.
Desired:
- Familiarity with FISMA reporting and NIST RMF processes.
- Experience supporting DISA CCRI/SAV inspections.
- Strong written and oral communication skills for Government reporting.
- Hands-on experience with security tools including Splunk, ArcSight, ELK, Microsoft Sentinel, Wireshark, Snort, and Nessus.
- Proficiency in automation and scripting using Python, PowerShell, or Microsoft Power Automate.
- Experience with cloud platforms such as Microsoft Azure Government, Microsoft 365, and AWS GovCloud.
- Detail-oriented, dependable, and able to work independently.
Equal Opportunity Employer/Veterans/Disabled
About VG Systems
Sourced by ZipRecruiter
Company size
11 - 50 Employees
Headquarters location
Quantico, VA, US
Year founded
2014