SOC Analyst(s) with Security Clearance

3 weeks ago


Washington DC United States Peraton Full time
About Peraton Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy
As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies
Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace
The company serves as a valued partner to essential government agencies and supports every branch of the U.S
armed forces
Each day, our employees do the can't be done by solving the most daunting challenges facing our customers
Visit peraton.com to learn how we're keeping people around the world safe and secure.
Responsibilities Peraton is seeking Security Operations Center (SOC) Analysts to join our team of qualified and diverse individuals to identify, analyze, and report events within a cloud environment, providing cybersecurity monitoring and alerts
What you'll do: The SOC Analyst's will also be responsible for the following but not limited to:
* Conduct an analysis of current operations of the SOC, analyze how the work is being done, review alerts, and SOPs to make recommendations for proposed changes and improvements to SOC operations and response metrics.
* Develop and execute an Incident Response Plan and SOC Playbook.
* Utilize the authorized security tools to perform security analysis and triage security alerts and events to prevent, detect, contain, and remediate security and privacy incidents.
• Identify, analyze, triage, report, and coordinate with CSIRT and other stakeholders to remediate all information security incident types.
* Utilize the authorized Security Tool Set) to perform security analysis and triage security alerts and events to prevent, detect, contain, and remediate security and privacy incidents.
* Coordinate with the SIEM team to create and maintain security dashboards.
* Report all information security incidents through the proper authority.
* Investigate and positively identify anomalous events that are detected by security devices
or reported to the SOC from external entities, system administrators, and the user community, via security monitoring platform and tools, incoming phone calls, emails, and the Service Desk and Incident Tracking System.
* Conduct monitoring and analysis activities
* Utilize network-based intrusion detection systems and other Security Information tools such as Event Management solutions (SIEM/Splunk) and Network Security Management solutions (such as Skybox Security, CISCO IPS/IDS, and Nessus) for the assessment, identification, and remediation of the incidents.
* Support Incident Management and Response requirements across the security incident lifecycle phases.
* Perform ad-hoc searches for suspect activity and reverse engineering of malicious software.
* Provide investigation, review, and recommendation documentation as necessary.
* Support development of reports and documentation including SOC Improvement Plan, Security Incident Reports, Program Status Report with reporting against Objectives and SLAs, Shift Change Reports, Measurable Activities Report (WAR), SOC Playbook updates,Incident Escalation Reports, daily Monitoring Reports
* Cross-train with Network O&M/Telephony/Mobile Computing Management to assist the monitoring of all communications connectivity (e.g., VSAT, DTS-PO, VPN, SD-WAN, MPLS, and TICs), as well as the devices that terminate communications links, to ensure uninterrupted communications and in the event of a failure, provide rapid identification and resolution of problems per defined SLAs.
* Monitor the wireless network infrastructure; networks used by software development teams; bandwidth utilization and availability of communications links; and LAN device security logs, identifying and ascertaining the nature of potential security violations, and protocol configuration, route table maintenance, and alternate path mechanisms.
This role is contingent upon contract award
Qualifications Basic Qualifications:
• Must have minimum of 8 years with BS/BA; Minimum of 6 years with MS/MA; Minimum of 3 years with PhD; or years of direct experience may be substituted in lieu of degree.
* Certified SOC Analyst (CSA) designation by the EC-Council
* Experience and knowledge of networking, TCP/IP protocols, network topology, network directory services.
* Experience with server operating systems, and understanding of operating system fundamentals, including Windows and Linux
* Understanding of security controls for common platforms (Windows, Linux, & network equipment)
* Experience implementing and monitoring security controls.
* Experience configuring and utilizing monitoring/logging and security analysis solutions
* Ability to support an operational environment that operates 24x7x365
* U.S
Citizen; Ability to obtain and maintain a U.S
Secret Security ClearancePreferred Qualifications:
• Active Secret Security Clearance.
* At least 3 years' experience working in a SOC environments or cybersecurity-related environment
* Experience leading incident response activities (Prepare, Identify, Contain, Eradicate, Recover)
* Experience using Security Operations (Sec Ops) tools, including any of the following: MTIPS, E3a, CASB, Qualys, Palo Alto Firewall, Palo Alto Panorama, Trellix, ForeScout CounterAct, HoneyPots, Google DLP, Entrust Identity Guard, Infoblox, KeePass, McAfee Antivirus, McAfee EPolicy Orchestrator, Microsoft Active Directory Certificate Services, Microsoft System Center Configuration Manager (SCCM), RSA token, RSA Archer, SailPoint, Skybox, Splunk, Syslog, Tenable Nessus, Thales, Valimail Enforce, VMWare AirWatch, Zimperium, EntryPoint, Tanium
* Knowledge of scripting languages (e.g., PowerShell, Python, Yara, SNORT, EQL)
* Amazon Web Services Cloud experience
* Experience working programs using ITIL v
4 and/or Agile framework for Service Management
* Experience with the cloud-based workflow automation platform ServiceNowBenefits: At Peraton, our benefits are designed to help keep you at your best, beyond the work you do with us daily
We are fully committed to the growth of our employees
From fully comprehensive medical plans to tuition reimbursement, tuition assistance, and fertility treatment, we are there to support you all the way Target Salary Range $86,000 - $138,000
This represents the typical salary range for this position based on experience and other factors
SCA / Union / Intern Rate or Range EEO An Equal Opportunity Employer including Disability/Veteran
Our Values Benefits At Peraton, our benefits are designed to help keep you at your best beyond the work you do with us daily
We're fully committed to the growth of our employees
From fully comprehensive medical plans to tuition reimbursement, tuition assistance, and fertility treatment, we are there to support you all the way.
• Paid Time-Off and Holidays
* Retirement
* Life & Disability Insurance
* Career Development
* Tuition Assistance and Student Loan Financing
* Paid Parental Leave
* Additional Benefits
* Medical, Dental, & Vision Care
  • SOC Analyst Lead

    22 hours ago


    Washington, United States XOR Security Full time

    Job Title: SOC Analyst Lead Location: 1155 21st St NW Washington, District of Columbia 20581 - Onsite twice a week Clearance Level: Public Trust Required Certification(s): An industry technical certification such as GCIH, MS-SC200 or other MS cloud certifications SUMMARYXOR Security, An Agile Defense Company is currently seeking a talented and ambitious...


  • Washington, United States Big Impact Tech Full time

    SOC Analyst Job Description: Location: Onsite in Washington DC Clearance level: Public Trust Join our team at Big Impact Tech as a Tier 1 SOC Analyst. This role involves rotational shift work as part of our 24/7/365 Security Operations Center. As a SOC Analyst, you will monitor various security tools and handle first-tier responses to security incidents....


  • Washington, United States Bering Straits Native Corporation (BSNC) Full time

    Overview: **SUMMARY** The goal of the Security Operations Center (SOC) team is to proactively monitor, identify, and remediate information technology security vulnerabilities and intrusions. The team needs to ensure that all operational security controls are appropriately applied and managed and that systems within the control of the SOC have appropriate...


  • Washington, United States Bering Straits Native Corporation (BSNC) Full time

    Overview: - Job specifications are intended to present a descriptive list of the range of duties performed by employees. Specifications are _not_ intended to reflect all duties performed within the job._ **SUMMARY** The goal of the Security Operations Center (SOC) team is to proactively monitor, identify, and remediate information technology security...


  • Washington, United States Warriors Recruiting Full time

    Position Title: Cyber Network Defense Analyst - Part time Location: Washington DC - St. Elizabeth Campus - CGHQ Clearance: TS/SCI Shifts: 7 - 7 Sat sun. Program: US Coast Guard Cyber Command - Security Operations Center (SOC) Company Description: Our great client is a an 8(a), Service-Disabled Veteran-Owned Small Business (SDVOSB) who s pecializes in...


  • Washington, United States Base One Technologies Full time

    Our DC Metro based client is looking for Senior Incident Response Analyst . If you are qualified for this position, please email your updated resume in word format to Primary Responsibilities• In-depth knowledge of each phase of the Incident Response life cycle• Expertise of Operating Systems (Windows/Linux) operations and artifacts• Understanding of...


  • dc, United States Softek International Inc. Full time

    Job Type Full-time Description Supports the DHS Enterprise Engineering Division within the Office of the Chief Information Officer (OCIO) is responsible for the architecture, design, engineering, Tier 3 operations support, maintenance, and management of the network and security infrastructure. This program portfolio includes management and oversight of the...

  • Tier Ii SOC Analyst

    1 month ago


    Washington, United States Dhara Consulting Group Full time

    Yesterday - Unspecified - IT - Security - Remote/Hybrid-Small Business Admin, DC** (ON/OFF-SITE)** - Tier II SOC Analyst Washington D.C. / Hybrid Job Overview We are currently seeking a Tier II Cybersecurity Analyst to provide support to our client in Responsibilities and Duties - Provide Tier 2 support by analyzing network traffic and various log data to...


  • Washington, United States RAMPS International Inc. Full time

    Job DescriptionJob DescriptionRole: SOC Analyst/Security EngineerDuration: Long termLocation: Washington, D.C.   ESSENTIAL DUTIESThe position's essential duties include the following:• +/- 5-year experience as a qualified security analyst• Defines and implements security configurations for threat detection/prevention tools• Integrates threat,...


  • Washington, United States Base One Technologies Full time

    Required Education/ExperienceThe candidate must possess an active TS/SCI Clearance. In addition to clearance requirement, all DHS personnel must obtain an EOD. BS degree in Science, Technology, Engineering, Math or related field and 8+ years of prior relevant experience with a focus Primary Responsibilities• Create Threat Models to better understand the...


  • Washington, United States Warriors Recruiting Full time

    Position Title: Incident Response Analyst Location: Hybrid. One day a week onsite: Washington DC - St. Elizebeth's Campus - Coast Guard HQ Clearance: TS/SCI Program: Coast Guard Cyber Command - Security Operation Center Company Description: Our great client is a an 8(a), Service-Disabled Veteran-Owned Small Business (SDVOSB) who specializes in cybersecurity...


  • Quincy, MA, United States State Street Corporation Full time

    Who are we looking for: State Street seeks to recruit an Lead Cyber Security Operations Center (SOC) analyst that will assist in the detection, triage, analysis and response to cyber-attacks. The analyst will join our SOC team which will run a 24/7 coverage, 365 days a year model, with a partner team in Ireland. The SOC team is responsible for analyzing...

  • SOC Analyst

    3 weeks ago


    Washington, United States Serigor Inc. Full time

    Job DescriptionJob DescriptionJob Title: SOC Analyst - Tier 1 (Onsite)Location: Washington, DCDuration: 12 Months+Job Description:The client is the central technology organization of the client Government. It sets the standard for a number of information technology functions including the security policies and procedures for the District's IT footprint....


  • Washington, United States Base One Technologies Full time

    Our DC metro based client is looking for security Engineer. Must Have One of the Following J3 Certifications:CISSP, GCWN, GISF, GSSP, GICSP, CCSP, CSSLP, SSCP, CCSNP, CCIE-Security, ECSP, MCSE-Security Expert, or RHCSA/RHCE Certification. Job Description: The Security Engineer will need to be a self-starter with excellent analytical and problem-solving...


  • Quincy, MA, United States State Street Corporation Full time

    Who are we looking for: State Street seeks to recruit an Early Career Cyber Security Operations Center (SOC) analyst that will assist in the detection, triage, analysis and response to cyber-attacks. The analyst will join our SOC team which will run a 24/7 coverage, 365 days a year model, with a partner team in Ireland. The SOC team is responsible for...


  • Washington, United States MindPoint Group Full time

    MindPoint Group is seeking a Security Operations Center (SOC) Analyst that will collaborate with members of the SOC team to improve procedures for the SOC to enhance coordination and incident response operations. You must be willing to work in a 24x7x365 SOC environment demonstrate intuitive problem-solving skills and allow for flexible scheduling; monitor...


  • Washington, United States Base One Technologies Full time

    Our DC metro based client is looking for -Senior Security Engineers. Local candidates are preferred. In person meeting is required prior hiring. US CITIZENSHIP AND ACTIVE TS ARE required for these openings Must Have One of the Following J3 CertificationsCISSP, GCWN, GISF, GSSP, GICSP, CCSP, CSSLP, SSCP, CCSNP, CCIE-Security, ECSP, MCSE-Security Expert, or...


  • Washington, United States Warriors Recruiting Full time

    C4ISR Acquisition Analyst Location: Pentagon Our great client delivers high-impact, technical solutions to complex national security issues. As we enter our 50th year in business, we are known for continuous innovation for government customers, both long-established and newly acquired, as our capabilities expand around the globe. Our work is state-of-the-art...


  • Washington, United States UICGS and Bowhead Family of Companies Full time

    Overview ACQUISITION ANALYST/CONTRACT ANALYST(SIOP-2024-20367): Bowhead seeks Acquisition Analyst/Contract Analyst to join our team in providing program management support in a broad range of services to and assisting our US Navy clients. Responsibilities Job duties include but are not limited to: * Contract Management Support: The contractor shall provide...


  • Washington, United States vTech Solution Full time

    Job Details: Job Title : SOC Cyber Security Engineer Job Location : Washington, DC Job Duration : 12 Months + possibility of an extension Job Description: The client is looking for a skilled Cyber Security Engineer with expertise in cloud Security Operations Center (SOC) management. The ideal candidate will have a strong background in reviewing and...