SOC Analyst with Security Clearance

2 weeks ago


Scott AFB, United States TEKsystems co Allegis Group Full time
Job Description
Responsible for maintaining the integrity and security of
enterprise-wide cyber systems and networks. Supports cyber security
initiatives through both predictive and reactive analysis, articulating
emerging trends to leadership and staff. Coordinates resources during
enterprise incident response efforts, driving incidents to timely and complete
resolution. Performs network traffic analysis utilizing raw packet data, net
flow, IDS, and custom sensor output as it pertains to the cyber security of
communications networks. Reviews threat data from various sources and develops
custom signatures for Open Source IDS or other custom detection capabilities.
Correlates actionable security events from various sources including Security
Information Management System (SIMS) data and develops unique correlation
techniques. Utilizes understanding of attack signatures, tactics, techniques
and procedures associated with advanced threats. Develops analytical products
fusing enterprise and all-source intelligence. Be able to conduct malware
analysis of attacker tools providing indicators for enterprise defensive
measures, and reverse engineer attacker encoding protocols. Interfaces with
external entities including law enforcement organizations, intelligence
community organizations and other government agencies such as the Department
of Defense. DISA is a combat support agency of the Department of Defense (DoD). The agency is composed of nearly 6,000 civilian employees; more than 1,500 active duty military personnel from the Army, Air Force, Navy, and Marine Corps; and approximately 7,500 defense contractors. The agency provides, operates, and assures command and control and information-sharing capabilities and a globally accessible enterprise information infrastructure in direct support to joint warfighters, national level leaders, and other mission and coalition partners across the full spectrum of military operations. DISA has decided to shut down one of its facilities in Hawaii and establish those operations in Utah, which is the reason for the openings here at Scott. These folks will be working in what is essentially a commercial SOC, but for the Military/DISA. They will mostly be monitoring intrusions and escalating issues. If a candidate is more of a tier two or three level they will still hire them. Show me any candidate, in any pay range they are open to senior members as well. For now, ideal candidates will be from the reserves, the national guard, or separating from active duty. The candidate will serve as a Cyber Operations Analyst on the DISA GSM-O program. Analysts synthesize, summarize, consolidate and share potentially malicious activities on the DoDIN with DISA and mission partner organizations by creating incident reports, wiki updates, Hold DoD-8570 IAT Level 2 baseline certification (Security+ CE, CISSP or equivalent) with the ability to obtain CND-A certification within 180 days of start date.- Hold and maintain an active Top Secret w/ SCI eligibility- Hold a proficient understanding of TCP/IP, common networking ports and protocols, traffic flow, system administration, OSI model, defense-in-depth and common security elements.- Demonstrated understanding of the life cycle of network threats, attacks, attack vectors and methods of exploitation with an understanding of intrusion set tactics, techniques and procedures (TTPs).- Demonstrated hands-on experience analyzing high volumes of logs, network data (e.g. Netflow, FPC), and other attack artifacts in support of incident investigations.- Demonstrated commitment to training, self-study and maintaining proficiency in the technical cyber security domain.- Familiarity or experience in Intelligence Driven Defense and/or Cyber Kill Chain methodology.collaboration/chat tippers and notifications, DoD incident handling database queries, metrics, and trend reports. Required Skills, Experience, and Education: Basic Qualifications- Candidate must possess a CompTIA Security+ with Continuing Education (CE) certification; have experience supporting CND or related teams; working CND duties (e.g., Protect, Defend, Respond, and Sustain); experience working with DoD / Government Leaders at all levels; and have strong communication skills (both written and verbal). Desired skills: Candidate should have at least one other IA certification completed, i.e., SSCP, CSIH, GCIA, GCIH or CEH; have UNIX Administrative skills; Command Line Scripting skills (PERL, python, shell scripting) to automate analysis task; Knowledge of hacker tactics, techniques and procedures (TTP); Be able to conduct malware analysis; Demonstrated hands on experience with various static and dynamic malware analysis tools; Knowledge of advanced threat actor tactics, techniques and procedures (TTP); Understanding of software exploits; Ability to analyze packed and obfuscated
code; Comprehensive understanding of common Windows APIs and ability to analyze shellcode. Typical minimum requirements: Bachelor's degree from an accredited college in a related discipline or equivalent experience/combined education with 7 years of professional experience or 5 years of professional experience with a related Master's degree.

  • Schriever AFB, United States IC-CAP Full time

    Security Operation Center (SOC) Analyst Lead 1: Position Description: Lead SOC Analyst's primary function is to develop, implement, and evaluate a SOC teams' ability to provide comprehensive Computer Network Defense and Response support through 24×7×365 monitoring and analysis of potential threat activity targeting the enterprise. This position is...


  • Scott AFB, United States TEKsystems co Allegis Group Full time

    Workplace TypeHybridWorksite Location731 Lakepointe Centre Dr, O Fallon, Illinois, 62269-3073, United StatesJob Titledata analystTop Skills - Must Haves • cloud • relational databaseTop Skills' DetailsDegree and 2+ years of experienceNeed some development experience with Python and SQLSecondary Skills - Nice to HavesJob DescriptionAGENCY:...


  • Scott AFB, United States CSIOS Corporation Full time

    Duties and Responsibilities Perform analysis and correlation on cybersecurity eventsCollaborate with internal and external cyber defense organizationsCollaborate with intelligence community and cyber operational forcesMaintain awareness of active cyber threat actors and associated threat setsPredict trends in cyber threat activity relative to the associated...


  • Bolling AFB, United States Base One Technologies Full time

    Our DC Metro based client is looking for a Security Subject Matter Expert/Lead. This position requires an active Secret. If you are qualified for this position. Please email me your updated resume in word format to    Work location:St. Elizabeths Campus, Washington, DC We are looking for a Cyber Security Subject Matter Expert/Lead that will support the...


  • Scott AFB, United States All Points Logistics LLC Full time

    *UNITED STATES CITIZENSHIP REQUIRED**ACTIVE US DOD SECRET SECURITY CLEARANCE REQUIRED* DESCRIPTION OF POSITION:All Points is currently seeking a Help Desk Technician III to support our AF LOGNET contract. Candidates must have a current Secret security clearance. This position serves as Air Mobility Command (AMC) A4 Client Support Administrator (CSA) for...


  • Macdill AFB, United States Federal IT Consulting Full time

    Cybersecurity System Analyst, Associate Job Location: MacDill AFB - Tampa, FL Position Type: Full Time Education Level: 4 Year Degree Overview of position: Seeking a Cybersecurity Systems Analyst, Associate, to work at MacDill AFB. A United States Citizenship and an active TS/SCI DoD Security Clearance is required to be considered for this position. Performs...


  • Scott AFB, United States TEKsystems co Allegis Group Full time

    Our customer is the Defense Information Systems Agency (DISA) located at Scott AFB and acts as the provider of GIG/Defense Information System Network (DISN) services to its customers, the department of Defense (DoD) and national security organizations. The core telecommunications capabilities supported by GSM-O enables the Warfighter to meet operational...


  • Scott AFB, United States Electrosoft Services, Inc. Full time

    Technical Writer The Technical Writer will assist the customer in documenting the progression and the implementation of a comprehensive diagraming and mapping of individual Zero Trust pillars to include users, devices, applications & workloads, data, network & environments, automation & orchestration and visibility & analytics. Duties:• Maintain, organize,...

  • Senior Planner

    1 month ago


    Scott AFB, United States LMI Full time

    OverviewThe Senior Campaign Planner supports various campaign planning efforts at USTRANSCOM headquarters located on Scott AFB, IL. This individual provides on-site planning support and serves as a member of a consultant team performing tasks in support of the five Global Campaign Plans (GCP), the USTRANSCOM Combatant Command Campaign Plan (CCP), and DoD's...


  • Scott AFB, United States CSIOS Corporation Full time

    Boundary DefenseRequirement ID 10625CGrade Level Level IXGroup Cyberspace OperationsLocation Scott AFB, ILClearance Required Secret ● Provide technical and administrative supervision and guidance for all contractor personnel assigned to the Cybersecurity Boundary Defense and Security Solution Administration Support Tasks ● Supervise on- going technical...


  • Bolling AFB, United States IC-CAP Full time

    Security Incident Analyst Level 3: Job Description: You'll have the opportunity to build strong lines of cyber defense using cutting-edge technologies. Your work in cyber security at GDIT will have an impact on securing our clients' missions and ensuring we anticipate the threats of tomorrow.  The Security Incident Analyst (SIA) is responsible for the...


  • Lackland AFB, United States Apex Systems Full time

    Client Industry: Government/Professional Services and Information Technology Job Type: 6 month contract to hire Location: Remote to Start/After ~3-6 weeks, required to sit fully onsite in San Antonio, TX Schedule: Night shift (6:00pm-6:00am CST)Panama schedule: 2 days on, 2 days off, 3 days on, 2 days off, 2 days on, 3 days off. Works weekends and holidays....


  • Schriever AFB, United States P-11 Security Full time

    The Program Security Representative’s primary function is to provide multi-discipline security support for one or more of the customer’s Special Access Programs (SAPs). The position will provide “day-to-day” multi-discipline analysis for Collateral, Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities. Performance...


  • Scott AFB, United States TEKsystems co Allegis Group Full time

    **MUST HAVE AN ACTIVE COMPTIA SECURITY + CERTIFICATION & DOD SECRET/TOP SECRET CLEARANCE**The candidate(s) must be able to assist local and remote users with complex IT-related issues and support daily IT operations. The successful candidate(s) must possess solid interpersonal skills in addition to high technical aptitude. Position is designated as...


  • Lackland AFB, United States TEKsystems co Allegis Group Full time

    -Review all IDS/IPS alerts per AFCERT Operating Instruction (OI) and checklists at the AOL, COOP, or Ops Floor. Conduct host security monitoring, alert review, and intrusion detection analysis for the AFIN‐SOC mission. -Develop, Review and Maintain procedures related to the overall monitoring of Hosts/Systems. -Comply with 3rd party MOU/MOA monitoring and...


  • Hill AFB, United States BAE Systems Full time

    Job Description About BAE Systems Recognized annually as a Top Workplace in Utah consecutively since 2018, employees at BAE Systems enjoy an exceptional work culture, employment stability, growth opportunities, and job satisfaction knowing they are helping to protect the country through the development of the most technological advancements in our nation's...


  • Scott Air Force Base, United States Blue Sky Innovative Solutions LLC Full time

    SUMMARYBlue Sky is seeking highly skilled and experienced Political Military Analysts to support ourclient, USTRANSCOM. The successful candidate will be responsible for providing strategic all-source analysis products and assessments on political and military issues, including regionalstability, foreign military and security forces, insurgent organizations,...


  • Scott AFB, United States LMI Full time

    OverviewLMI is seeking a Senior Wargaming Specialist to provide expertise to the USTRANSCOM J5 Strategy, Strategic Engagement & Wargaming program at Scott AFB, IL. This is an onsite position and cannot be worked remotely.LMI is a consultancy dedicated to improving the business of government, drawing from deep expertise in advanced analytics, digital...


  • Scott AFB, United States LMI Full time

    OverviewLMI is seeking a Senior Wargaming Specialist to provide expertise to the USTRANSCOM J5 Strategy, Strategic Engagement & Wargaming program at Scott AFB, IL. This is an onsite position and cannot be worked remotely. Relocation assistance to be provided for interested candidates who reside out out of the area.LMI is a consultancy dedicated to improving...


  • Hill AFB, United States SAIC Full time

    Description SAIC, a leading provider of targeting & intelligence analysis, systems engineering & integration, systems development & deployment, and training capabilities and solutions for the Intelligence Community, is seeking creative and dedicated professionals to fulfill their career goals and objectives while delivering mission excellence on programs of...