Senior Cyber Security Analyst
ManTech · Denver, CO
—
Jul 23, 2026
Denver, CO
Jul 24, 2026
What this job asks for AI summary
A shift-based role (24x7 coverage) within a cyber security operations center, focused on monitoring networks and systems for threats, triaging and investigating incidents, correlating security events from multiple sources, and tracking incidents from detection through remediation. Suited to experienced security analysts familiar with Windows, Linux, and CSOC tooling who hold an active TS/SCI with Polygraph clearance.
Senior level · 5+ years · Denver-Aurora-Lakewood, CO · TS/SCI clearance · Full-time
“or” means any one of them counts — you don't need all of them.
We read this from the posting text with AI. Skim the description below before ruling yourself out.
How this req sits in the market our data
Most people in this occupation already list these. Still required — just not what gets you shortlisted.
What the occupation pays Median $139,675 (middle half $110,017–$174,679).
Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.
Why we read it this way (8)
An active TS/SCI with Polygraph is explicitly required — this is a hard gate for this position.
The degree requirement is effectively waived: the JD accepts '4+ years of additional IT/cyber experience in lieu of degree', so no minimum degree is set.
The IAT Level II certification requirement names GSEC as the primary option with Security+, SSCP, and CCNA-Security as accepted equivalents — any one of these satisfies the gate.
The role requires 24x7 shift work on-site in Aurora, CO; fully remote work is not an option.
The 'Preferred Qualifications' section lists only soft skills and behavioral traits (fast-paced adaptability, communication, judgment, independent work) — no concrete named technologies appear there, so no preferred-only tools were extracted.
The JD references 'COTS technologies and current Cybersecurity protocols used in CSOC environments' and 'security event and incident correlation' without naming specific SIEM or tooling products; SIEM is captured as a representative must-have given the CSOC/SOC monitoring context, but the specific platform is unspecified.
Ignored 1 non-technology phrase(s) as skills (responsibilities/concepts, not named tools): network traffic analysis.
Requires a TS/SCI clearance — the cleared population is a small fraction of this occupation, so the real candidate pool is materially smaller than the estimate below, which does not model clearance.
Read the full posting
The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.