Open/Close mobile menu

Lockheed Martin Corporation Home

Cyber Intel Analyst

Req ID :
Job Code/Title :
E2552:Cyber Intel Analyst
Job Description :
This Lockheed Martin (LM) Cyber Intelligence Analyst position will report to the Computer Incident Response Team (CIRT) Digital Investigations Team Manager within Corporate Information Security (CIS). The position will be required to obtain and maintain a DOD clearance, as well as the ability to adhere to the highest standards of ethics and professional conduct. This is a highly hands-on technical role and candidates must be comfortable working in a dynamic and fast-paced operational environment. The position requires the flexibility to occasionally work off hours and travel at a moment’s notice.

A Security Intelligence Center (SIC) is a dedicated function equipped to create, consume, and analyze actionable intelligence to defend the enterprise against advanced threats including broad-based, opportunistic, hacktivism, and Advanced Persistent Threat (APT) attacks.

A SIC evolves beyond a traditional response-based Security Operations Centers (SOC) to leverage threat intelligence in alignment with Intelligence Driven Defense® principles and strengthen the organization’s posture beyond best practices. Lockheed Martin has unique capabilities developed from years of analyzing adversaries to stay ahead of the next move.

Dedicated and experienced security professionals—and the opening of four SIC facilities around the globe—enable Lockheed Martin to offer the following capabilities:

• Focus on risk-based solutions that prioritize threats, risks, and vulnerabilities
• Integrate robust, seamless, and end-to-end defense solutions
• Leverage pattern recognition and predictive analysis to identify and prevent otherwise unknown threats
• Protect core process functionality, even during an active attack
Primary responsibilities for this role include, but are not limited to the following:
• Developing and maintaining detections for insider threat activities
• Providing digital forensics support to Corporate Investigations and Counter-Intelligence operations
This position can be located in one of the following locations: Rockville, MD or Orlando, FL.

Basic Qualifications
• Minimum of 3-5 years of work experience
• Work experience in digital forensics and incident response
• Familiarity with Windows, UNIX and Linux operating systems
• Demonstrated experience building scripts and detections utilizing different programming languages (Python, Perl, YARA, Powershell)
• Demonstrated experience and proficiency with SIEM tools (Splunk, ArcSight, etc.)
• Demonstrated experience and proficiency with multiple forensic tools (EnCase, FTK, Cellebrite, SANS SIFT, Intella, Volatility, RegRipper, etc.)
Ability to obtain and maintain appropriate DOD security clearance

Desired skills
• A Bachelor's degree or equivalent training or experience in an appropriate field, such as digital forensics, computer science, information technology, or other applicable area
• Demonstrated effective organizational, technical, customer service, and teaming skills
• Strong verbal and written communication skills. Candidate must be able to effectively convey ideas and analysis findings to investigators, senior management, team members, and other people throughout the company as a Subject Matter Expert
• Demonstrated problem solving skills and self-starter work style
○ Additional work experience in any of the following areas is a plus: intelligence analysis, system administration, information assurance, or network security/architecture
• Demonstrated experience in creation of custom content in Splunk (Reports, Dashboards, Alerts)
• Demonstrated experience in enterprise-level incident handling
• Conceptual understanding of investigative processes and forensic preservation of evidence
• Conceptual understanding of security issues facing enterprises including economic espionage and insider threats
• Conceptual understanding of the Lockheed Martin Cyber Kill Chain and Intelligence Driven Response
• Hold one or more certifications, such as:
○ Splunk Certified Power User, SANS GIAC (e.g. GSEC, GFCE, GFCA, GCIH), CFCE, CCFE, ENCE, ACE, or CISSP

As a leading technology innovation company, Lockheed Martin’s vast team works with partners around the world to bring proven performance to our customers’ toughest challenges. Lockheed Martin has employees based in many states throughout the U.S., and Internationally, with business locations in many nations and territories.

Join us at Lockheed Martin, where we’re engineering a better tomorrow.

Lockheed Martin is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, national origin, age, protected veteran status, or disability status.

Job Location(s): Orlando Florida, Orlando Maryland
Security Clearance :
Business Unit :
Job Class :
Information Technology
Job Category :
Experienced Professional
City :
State :
Virtual :
Relocation Available :
Work Schedule :
FLEX9x80A-Friday off in 2nd week w/flex hrs/day
Req Type :
Shift :
Additional Posting Locations :
Orlando, Rockville
Link for schema