Malware Analyst 2
Annapolis Junction, MDFull-time$50k–$290kPosted Jul 21, 2026
The Swift Group is a privately held, mission-driven and employee-focused services and solutions company headquartered in Reston, VA. Our capabilities include Software Development, Engineering & IT, Data Science, Cyber Enablement, Logistics, and Training. Founded in 2019, Swift supports Civilian, Defense, and Intelligence Community customers across the country and around the globe.
We are seeking a Malware Analyst Level 2 to join a mission-focused cyber team in Annapolis Junction, MD supporting the analysis of malicious code and emerging cyber threats. This role is responsible for conducting both static and dynamic malware analysis, identifying indicators of compromise, developing mitigation strategies, and producing technical reporting to support cyber defense operations.
Required Skills & Qualifications:
Desired Experience:
The Swift Group and Subsidiaries are an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status, or any other protected class.
Pay Range: $49,996.80 - $290,004.00Pay ranges are a general guideline and not intended as a guaranteed and/or implied final compensation or salary for this job opening. Determination of official compensation or salary relies on several different factors including, but not limited to: level of position, complexity of job responsibilities, geographic location, work experience, education, certifications, Federal Government contract labor categories, and contract wage rates. At The Swift Group and Subsidiaries, you will receive comprehensive benefits including but not limited to: healthcare, wellness, financial, retirement, education, and time off benefits.
We are seeking a Malware Analyst Level 2 to join a mission-focused cyber team in Annapolis Junction, MD supporting the analysis of malicious code and emerging cyber threats. This role is responsible for conducting both static and dynamic malware analysis, identifying indicators of compromise, developing mitigation strategies, and producing technical reporting to support cyber defense operations.
Responsibilities:
- Conduct static and dynamic analysis of suspicious and malicious code to determine capabilities, behavior, and potential impact.
- Analyze malware execution through host and network monitoring to identify propagation techniques and intrusion-related artifacts.
- Examine audit logs, network traffic, and captured data to identify indicators of compromise and support incident investigations.
- Research operating system-specific exploitation techniques and malware attack vectors.
- Utilize scripting languages, reverse engineering tools, and virtual environments to analyze malicious code.
- Develop technical reports documenting malware capabilities, vulnerabilities, indicators of compromise, and recommended mitigation strategies.
- Create malware signatures, detection rules, and analytical techniques to improve identification and response efforts.
- Correlate data from multiple sources to identify threat actors and emerging threats.
- Collaborate with internal and external partners to develop new malware detection methodologies, processes, and tools.
- Communicate technical findings clearly through written reports and verbal briefings.
- Support continuous monitoring of malware threats across enterprise networks, hosts, mission platforms, and boundary systems.
Required Skills & Qualifications:
- Five (5) years of cybersecurity experience.
- Three (3) years of malware analysis experience, including static and dynamic analysis.
- Experience using malware analysis or reverse engineering tools such as Ghidra, Sysinternals, FireEye AX, or similar technologies.
- Experience developing scripts or software using Python, C/C++, Lua, Ruby, or similar languages.
- Experience analyzing host artifacts, network traffic, system logs, and malware behavior to identify indicators of compromise.
- Strong written and verbal communication skills with the ability to produce technical reports and recommend mitigation strategies.
- US citizenship and an active TS/SCI with Polygraph security clearance required
Required Certifications:
- Active DoD 8570 compliance with:
- CSSP Analyst baseline certification
- IAT Level II or Level III certification
- GIAC Certified Forensic Analyst (GCFA) or GIAC Reverse Engineering Malware (GREM) certification.
Desired Experience:
- Reverse engineering of malware using industry-standard tools.
- Threat hunting and malware detection engineering.
- Development of malware detection signatures and analytical methodologies.
- Experience supporting enterprise cyber defense or Security Operations Center (SOC) environments.
The Swift Group and Subsidiaries are an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status, or any other protected class.
Pay Range: $49,996.80 - $290,004.00Pay ranges are a general guideline and not intended as a guaranteed and/or implied final compensation or salary for this job opening. Determination of official compensation or salary relies on several different factors including, but not limited to: level of position, complexity of job responsibilities, geographic location, work experience, education, certifications, Federal Government contract labor categories, and contract wage rates. At The Swift Group and Subsidiaries, you will receive comprehensive benefits including but not limited to: healthcare, wellness, financial, retirement, education, and time off benefits.