×
Register Here to Apply for Jobs or Post Jobs. X

Lead Cyber Watch Ops Analyst null

Job in Washington, District of Columbia, 20022, USA
Listing for: Amtrak
Full Time position
Listed on 2026-01-23
Job specializations:
  • IT/Tech
    Cybersecurity, Security Manager
Salary/Wage Range or Industry Benchmark: 200000 - 250000 USD Yearly USD 200000.00 250000.00 YEAR
Job Description & How to Apply Below
Position: Lead Cyber Watch Ops Analyst - 90402954 - null

Select how often (in days) to receive an alert:

Lead Cyber Watch Ops Analyst -  - null

Date:
Jan 6, 2026

Location:

US

Company:
Amtrak

Your success is a train ride away!

As we move America’s workforce toward the future, Amtrak connects businesses and communities across the country. We employ more than 20,000 diverse, energetic professionals in a variety of career fields throughout the United States. The safety of our passengers, our employees, the public and our operating environment is our priority, and the success of our railroad is due to our employees.

Are you ready to join our team?

Our values of ‘Do the Right Thing, Excel Together and Put Customers First’ are at the heart of what matters most to us, and our Core Capabilities, ‘Building Trust, Accountability, Effective Communication, Customer Focus, and Proactive Safety & Security’ are what every employee needs to know and do to be most impactful  living the Amtrak values, focusing on our capabilities, and actively embracing and fostering diverse ideas, backgrounds, and perspectives, together we will honor our past and make Amtrak a company of the future.

SUMMARY

The Cyber Watch Operations Analyst is a key position responsible for supporting the day-to-day operations of our Cyber Threat Command Center. In this role, you will have a critical impact with key stakeholder engagement, cybersecurity incident management, incident response, and coordination. Your expertise in cyber incident response, cybersecurity incident handling, and cyber threat analysis will be instrumental in protecting our organization's systems, data, and reputation.

ESSENTIAL

FUNCTIONS
  • Ability to work under pressure, prioritize tasks, and meet deadlines in a fast-paced environment.
  • Ability to think critically and like threat actors.
  • Strong analytical and problem-solving skills, with the ability to assess complex situations and make informed decisions.
  • Ability to communicate complex information, concepts, or ideas in a confident and well-organized manner through verbal, written, and/or visual means.
  • Ability to apply techniques for detecting host and network-based intrusions using intrusion detection technologies.
  • Ability to interpret the information collected by security tools.
  • Knowledge of attack vectors, threat tactics, and attacker techniques.
  • Preferred ability for effective communication and interpersonal skills, work well with others in an integrated team environment, and must be self‑motivated.
  • Preferred knowledge and familiarity with Operational Technology (OT), Industrial Controls Systems (ICS) or Supervisory Control and Data Acquisition (SCADA) systems but not required.
  • Responsible for delivery of security solutions for activity‑based assignments, executing and resolving problems within specified area.
  • Monitor Cyber security anomalies, investigate, resolve and escalating Cyber Security events, incidents and problems. Search for potential vulnerability, exploit, or “0” day based on user behavior, endpoint threat detection, network behavior analytics, artificial engine alarms and managed security reports.
  • Review Firewall, IDS/IPS logs, web content filtering logs, Net Flow device logs, antivirus logs.
  • Lead Cyber Security tools (SIEM, EDR, CASB etc.) administration.
  • Lead periodical checks for company policy violation / Support the investigation on policy violation.
  • Lead Cyber security audits and inspecting security logs to uncover possible security violations.
  • Generating, gathering, and tracking security metrics, developing scorecards for the metrics, and communicating the results. Supports and participates in formal reporting related to Cyber Security Operations.
  • Monitor security events and develop Cyber security controls across the enterprise.
  • Lead Security support efforts for application and infrastructure related projects.
  • Lead application security risk assessments for new or updated internal or third‑party applications.
  • Conduct quality test activities and validate test completeness in preparation for go‑live.
  • Responding and resolving problems, security incidents and forensic investigations.
  • Investigates, resolves and escalates problems. Monitors and analyzes metrics to ensure customer…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary