Über diese Operations Enhancement Analyst - Junior & Mid-Level [U.S. Citizenship & CBP High Trust Suitability Required] Stelle bei Via Logic LLC
Operations Enhancement Analyst - Junior & Mid-Level [U.S. Citizenship & CBP High Trust Suitability Required]
Start Your Adventure at Via Logic
Location: Primarily onsite at a government site in Ashburn, VA. Specific worksite expectations will be confirmed for the assignment.
Type: Full-time, W-2
Compensation: $68,000-107,000 annually, depending on experience, qualifications, and assignment.
Experience: 3+ years of relevant experience
Anticipated annual salary ranges by level are:
- Junior: $68,000-87,000
- Mid-Level: $81,000-107,000
Join Via Logic supporting U.S. Customs and Border Protection cybersecurity operations. As an Operations Enhancement Analyst, you'll help strengthen and mature Security Operations Center capabilities by identifying opportunities to improve processes, automation, security tooling, detection, and operational visibility.
You'll work alongside cybersecurity and government teams to improve how security operations are performed—from automating workflows and refining playbooks to tuning security tools, developing security content, and measuring whether operational improvements are delivering results.
This posting covers both Junior and Mid-Level Operations Enhancement Analyst openings. Both levels have a 3+ year hiring threshold for these openings. We'll consider the depth and relevance of your experience against the available positions to determine the appropriate level.
Eligibility & Clearance Requirements
Due to CBP requirements, applicants must:
- Be a U.S. citizen.
- Be able to obtain and maintain the required CBP High Trust background investigation and suitability determination for access to government facilities and systems.
- Be available to work primarily onsite at a government site in Ashburn, VA. Specific worksite and travel expectations will be confirmed for the assignment.
Your Mission
- Support the continuous improvement and maturation of Security Operations Center processes, capabilities, and visibility.
- Help develop, improve, and maintain security operations processes, playbooks, work instructions, and operational workflows.
- Author and maintain automation scripts and workflows within Security Orchestration, Automation, and Response (SOAR) platforms.
- Troubleshoot and resolve issues involving SOAR code, integrations, workflows, and supporting infrastructure.
- Help define and track operational metrics, statistics, and key performance indicators (KPIs) to measure the effectiveness of automation and security-tool tuning.
- Identify gaps in detection capabilities and contribute strategies and recommendations for improving detection of attacker tactics, techniques, and behaviors.
- Support baselining of enterprise activity to help distinguish normal from abnormal behavior.
- Recommend improvements to event-monitoring policies, indicators, and alerts across technologies such as SIEM, firewalls, IDS, cloud services, email, DLP, and EDR.
- Draft, test, modify, and maintain security content, including signatures and alerts used by security monitoring technologies.
- Support configuration, tuning, maintenance, and policy management for network, endpoint, and mobile security tools.
- Review security-tool policies for outdated rules, signatures, and blocks and recommend appropriate updates.
- Research and test new tools, technologies, and techniques that may improve operational efficiency or enterprise visibility.
- Help communicate newly created or updated security content to the teams that use it.
What You Bring to the Expedition
- 3+ years of relevant professional experience supporting cybersecurity, security operations, security engineering, automation, or a related technical area.
- Experience analyzing operational or technical processes and identifying opportunities to improve effectiveness, efficiency, or visibility.
- Familiarity with Security Operations Center processes and technologies used for monitoring, detection, and response.
- Experience developing or maintaining technical documentation such as playbooks, workflows, work instructions, or Standard Operating Procedures.
- Ability to analyze technical information, troubleshoot issues, and translate findings into practical recommendations.
- Ability to communicate technical findings clearly and collaborate with security analysts, engineers, government partners, and other technical teams.
We are considering candidates at two levels:
- Junior - 3+ years: You bring relevant cybersecurity or security operations experience and can contribute to process improvement, technical documentation, security tooling, automation, or detection-related activities with guidance from more experienced team members.
- Mid-Level - 3+ years: You bring demonstrated depth in relevant cybersecurity operations and can independently contribute to operational improvements, technical problem-solving, security-tool enhancement, automation, or detection-related work.
Preferred qualifications:
- A bachelor's degree in Computer Science, Cybersecurity, Information Technology, Engineering, or a related field.
- Hands-on experience with SOAR platforms, automation workflows, or scripting.
- Experience with SIEM, EDR, IDS, DLP, firewall, cloud-security, or related security technologies.
- Experience creating, modifying, testing, or tuning security alerts, signatures, detection content, or monitoring policies.
- Experience defining, tracking, and reporting operational metrics and KPIs.
- Experience researching, testing, or evaluating cybersecurity tools and technologies.
Your Route Into Via Logic
One posting, two experience levels. Tell us about the cybersecurity operations you've supported and the improvements you've helped make—whether through automation, process improvement, detection engineering, security-tool tuning, documentation, or operational analysis.
Why Explorers Stay
- Healthcare coverage and paid time off that give you room to take care of life outside work.
- Teammates who share knowledge, pitch in, and help each other grow.
- Opportunities to deepen your specialty and explore adjacent areas of cybersecurity as new assignments open up.
- Meaningful work improving cybersecurity capabilities that support a federal mission.
How We Work
- These positions work primarily onsite at a government site in Ashburn, VA. Specific worksite and travel expectations will be confirmed for the assignment.
- You'll collaborate with Via Logic teammates, government partners, security analysts, engineers, and other technical teams using tools approved for your work environment.
- Core task coverage is generally weekdays, 8:30 a.m.–5:00 p.m. Eastern Time, with on-call support requirements based on assignment needs. We'll discuss specific scheduling expectations before moving forward.
- When virtual meetings are part of the work, we expect active participation and use video when appropriate and permitted by the client environment.