Impress employers and recruiters.
Choose from hundreds of resume examples.

Impress employers and recruiters.
Choose from hundreds of resume examples.
Tailor your resume to this Technology Department - Junior Blue Team Analyst role.
Rezi rewrites your resume against CACI Ltd's job description. Free.

Tailor your resume to this Technology Department - Junior Blue Team Analyst role.
Rezi rewrites your resume against CACI Ltd's job description. Free.
Don't guess if your resume is good enough.
See how it scores against the Technology Department - Junior Blue Team Analyst posting at CACI Ltd — free, in seconds.

Don't guess if your resume is good enough.
See how it scores against the Technology Department - Junior Blue Team Analyst posting at CACI Ltd — free, in seconds.
About the Role
CACI is seeking a Junior Blue Team Analyst to join the Infrastructure Cloud & Security Team within the Technology department. This role is central to CACI's IT operations, focusing on security monitoring, incident detection, and threat analysis.
Responsibilities
- Monitor security alerts and events from Microsoft Sentinel and other security tools.
- Perform initial triage of security incidents and escalate as needed.
- Investigate suspicious activity across cloud, network, endpoint, and identity platforms.
- Support security incident response and evidence gathering.
- Document security incidents, findings, and lessons learned.
- Review logs from AWS, Azure, Windows, Linux, Check Point, and Cisco platforms.
- Assist in identifying indicators of compromise and malicious behavior.
- Support the development and tuning of SIEM detection rules and alerting.
- Contribute to threat hunting exercises and security investigations.
- Assist with vulnerability scanning and remediation tracking.
- Validate remediation activities completed by infrastructure teams.
- Help identify recurring security weaknesses and improvement opportunities.
- Produce reports on vulnerability trends and remediation progress.
- Support monitoring of AWS and Azure security controls.
- Review security findings from native cloud security services.
- Assist with implementing security best practices for cloud workloads.
- Help maintain secure configurations and access controls.
- Assist with identity and access management reviews.
- Support privileged access monitoring and auditing.
- Help maintain security documentation, standards, and procedures.
- Participate in security testing activities and support remediation efforts.
- Assist in maintaining ISO27001 policies, procedures, and evidence.
- Support internal and external audits.
- Help maintain asset inventories and security records.
- Contribute to risk assessments and security reviews.
- Work closely with infrastructure, cloud, networking, and support teams.
- Provide security guidance to colleagues.
- Participate in security awareness and continuous improvement initiatives.
Requirements
- Good understanding of Windows and Active Directory.
- Basic understanding of Linux administration.
- Understanding of networking fundamentals including TCP/IP, routing, DNS, VPNs, and firewalls.
- Understanding of common cybersecurity concepts, threats, and attack techniques.
- Familiarity with cloud concepts in AWS and/or Azure.
- Understanding of authentication, MFA, and access control principles.
- Experience using or studying SIEM platforms such as Microsoft Sentinel.
- Understanding of security monitoring and incident management processes.
- Ability to analyze logs and investigate alerts.
- Awareness of vulnerability management practices.
- Strong troubleshooting and problem-solving skills.
- Ability to investigate issues methodically.
- Good attention to detail.
- Ability to document findings clearly.
- Desire to build a career in cybersecurity.
- Strong communication and interpersonal skills.
- Ability to work as part of a team.
- Customer-focused approach.
- Willingness to learn new technologies and security techniques.
- Demonstrable interest in cybersecurity through study, projects, or work experience.
Skills
- Windows
- Active Directory
- Linux administration
- Networking fundamentals
- TCP/IP
- Routing
- DNS
- VPNs
- Firewalls
- Cybersecurity concepts
- Threats
- Attack techniques
- AWS
- Azure
- Authentication
- MFA
- Access control
- SIEM platforms
- Microsoft Sentinel
- Security monitoring
- Incident management
- Log analysis
- Vulnerability management
- Troubleshooting
- Problem-solving
- Documentation
- Communication
- Interpersonal skills
- Teamwork
- Customer focus
- Microsoft Sentinel
- AWS security services
- Azure security services
- Check Point firewalls
- Cisco networking technologies
- ISO27001 environment
- PowerShell
- Python
- Scripting
- MITRE ATT&CK
- Threat hunting
- Security tooling
- Defender
- EDR
- Vulnerability scanners
- Email security platforms
Location
- CACI
Work Type
- Full-time
Experience Level
- Junior
- Entry-level
Education Level
- Security+
- SC-200 (Microsoft Security Operations Analyst)
- SC-900 (Microsoft Security, Compliance and Identity Fundamentals)
- AWS Cloud Practitioner
- Azure Fundamentals (AZ-900)
- ISC2 CC/SSCP
- Related degree or other qualifications
About the Company
- CACI is a central IT team focused on infrastructure, cloud, and security.
Equal Opportunity
- CACI is proud to be an equal opportunities employer.
- Embracing the diversity of our people, we are on a journey to build a truly inclusive work environment where no one is treated less favourably due to ethnic origin, age, sex, gender identity, veteran status, religion or belief, sexual orientation, marital status, and disability or health condition, actively working to prevent discrimination.
- As a Disability Confident employer, we will provide reasonable adjustments in the recruitment process where requested.
- Offer people with health conditions and disabilities, meeting the minimum criteria for a role an interview.
- Our people are unique and we encourage and support them to be confident in contributing to our inclusion journey.