Security Operation Center

4 weeks ago


Colorado Springs, United States General Dynamics Information Technology Full time

Type of Requisition:RegularClearance Level Must Currently Possess:Top Secret/SCIClearance Level Must Be Able to Obtain:Top Secret SCI + PolygraphSuitability:Public Trust/Other Required:NoneJob Family:Cyber SecurityJob Qualifications:Skills:Cyber Incident Response, Cybersecurity, Incident HandlingCertifications:Experience:8 + years of related experienceUS Citizenship Required:YesJob Description:RQ166630 Security Operation Center (SOC) Analyst LeadLead SOC Analyst’s primary function is to develop, implement, and evaluate a SOC teams’ ability to provide comprehensive Computer Network Defense and Response support through 24×7×365 monitoring and analysis of potential threat activity targeting the enterprise. This position is responsible leading the team responsible for monitoring the organization's network and devices for security breaches, maintain software such as log management; research latest security trends; Conduct security assessments, and compliance reviews of the SOC operations and assists with Security Policy and Procedure maintenance and training of all SOC personnel. This position requires a solid understanding of cyber threats and information security in the domains of TTP's, Threat Actors, Campaigns, and Observables. Additionally, this candidate must be familiar with intrusion detection systems, intrusion analysis, security information event management platforms, endpoint threat detection tools, and security operations ticket management. This position will support activities within Special Access Programs (SAPs) supporting Department of Defense (DoD) agencies, such as HQ Air Force, Office of the Secretary of Defense (OSD) and Military Compartments efforts. The position will provide “day-to-day” support for Collateral, Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities.Performance shall include:Must have strong analytical and technical skills in computer network defense operations, ability to lead efforts in Incident Handling (Detection, Analysis, Triage), Hunting (anomalous pattern detection and content management) and Malware AnalysisExperience and ability to with analyzing information technology security events to discern events that qualify as legitimate security incidents as opposed to non-incidents. This includes security event triage, incident investigation, implementing countermeasures, and conducting incident responseMust be knowledgeable and have extensive hands-on experience with a Security Information andEvent Monitoring (SIEM) platforms and/or log management systems that perform log collection,analysis, correlation, and alertingStrong logical/critical thinking abilities, especially analyzing security events (windows event logs, network traffic, IDS events for malicious intent)Excellent organizational and attention to details in tracking activities within various SecurityOperation workflowsA working knowledge of the various operating systems (e.g. Windows, OS X, Linux, etc.) commonly deployed in enterprise networks, a conceptual understanding of Windows Active Directory is also required, and a working knowledge of network communications and routing protocols (e.g. TCP, UDP, ICMP, BGP, MPLS, etc.) and common internet applications and standards (e.g. SMTP, DNS, DHCP, SQL, HTTP, HTTPS, etc.)Experience with the identification and implementation of counter-measures or mitigating controls for deployment and implementation in the enterprise network environmentExperience with one or more of the following technologies Network Threat Hunting, Big DataAnalytics, Endpoint Threat Detection and Response, SIEM, workflow and ticketing, and Intrusion Detection SystemSupport the design, implementation, operation and maintenance of security applications and tools based upon the established security architectureExpert knowledge on SIEM technologies, content filtering/ firewall technology, and cloudtechnologyPrepare, validate, and maintain security documentation including, but not limited to cybersecurity incident response plan, risk assessments, legal investigationsDevelop and implement SOC processes and proceduresExcellence in communicating business risk from cybersecurity issuesExpresses information to individuals or groups effectively, considering the audience and nature of the information while making clear and convincing oral presentations; listens to others, and responds appropriatelyExperience:8-10 years related experiencePrior performance in roles such as ISSO, ISSM, or SOC analyst2+ years SAP experience requiredEducation:Bachelor’s degree in a related area or equivalent experience (4 years)Certifications:IAT Level 3 or IAM Level 3 or CND Auditor or Incident Responder - within 6 months of hire (CEH, CFR, CCNA Cyber Ops, CySA+**, GCIA, GCIH, GICSP, SCYBER)Clearance Required to Start:TS/SCI requiredMust be able to Attain – TS/SCI with CI PolygraphOther Requirements:Must have demonstrated strong knowledge of NIST 800-53 and other NIST guidelines and standards and how they relate to and compliment a System Development Life-Cycle (SDLC).Strong background in distributed client/server environment, windows server/desktop environment, IP networking, required.Ability to develop rules, filters, views, signatures, countermeasures and operationally relevantapplications and scripts to support analysis and detection efforts.Robust knowledge of common attack methodologies, tactics and protocolsAn understanding in researching Emerging Threats and recommending monitoring content within security tools.Knowledge on standard and advanced defense & remediation techniques and processes.Experience in analyzing NetFlow data and packet capture (PCAP).Knowledge of the TCP and IP protocol suite, security architecture, DNS and remote access security techniques and products.Technical experience in the information security field utilizing a mix of security technology such as: Intrusion Detection & Prevention Systems (IDS/IPS), Firewalls & Log Analysis. SIEM, Network Behavior Analysis tools, Antivirus, and Network Packet Analyzers, Digital Forensics tools in an Enterprise environment, Cyber Incident Response activities in an Enterprise environment.#AirforceSAPopportunitiesThe likely salary range for this position is $129,370 - $175,030. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.Scheduled Weekly Hours:40Travel Required:10-25%Telecommuting Options:OnsiteWork Location:USA CO Colorado SpringsAdditional Work Locations:Total Rewards at GDIT:Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.We are GDIT. A global technology and professional services company that delivers consulting, technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 30,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 30 countries worldwide, offering leading capabilities in digital modernization, AI/ML, Cloud, Cyber and application development. Together with our clients, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology.We connect people with the most impactful client missions, creating an unparalleled work experience that allows them to see their impact every day. We create opportunities for our people to lead and learn simultaneously. From securing our nation’s most sensitive systems, to enabling digital transformation and cloud adoption, our people are the ones who make change real.GDIT is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status, or any other protected class.



  • Colorado Springs, United States P-11 Security Inc Full time

    Job DescriptionJob DescriptionDescription:P-11 Security, based in Southern California, is a certified Economically-Disadvantaged Women-Owned Small Business (EDWOSB) with over 25 years of expertise in the security field. Specializing in Security in Depth (SiD) services, we deliver an integrated suite of 360 Security Services, Cyber Security, and Information...


  • Colorado Springs, Colorado, United States Chenega Corporation Full time

    OverviewThe Security Operations Center Specialist plays a vital role in supporting the MDA Security and Emergency Management Directorate (DSS) by executing various Security Operations Services at MDA facilities across the United States. This position is focused on ensuring that emergencies and security breaches are promptly identified and reported to the...


  • Colorado Springs, United States Chenega Corporation Full time

    Summary The Security Control Center Operator supports the MDA Security and Emergency Management Directorate (DSS) in executing multiple Security Operations Services at MDA facilities in the United States. Carries out instructions primarily oriented toward ensuring that emergencies and security violations are readily discovered and reported to the appropriate...


  • Colorado Springs, United States Chenega Corporation Full time

    Overview The Security Control Center Operator supports the MDA Security and Emergency Management Directorate (DSS) in executing multiple Security Operations Services at MDA facilities in the United States. Carries out instructions primarily oriented toward ensuring that emergencies and security violations are readily discovered and reported to the...


  • Colorado Springs, United States Transportation Security Administration Full time

    This Supervisory Transportation Security Specialist position is located Intelligence and Analysis (I&A) Vetting Analysis Division (VAD) Analytics & Support Branch (ASB), Transportation Security Administration, Department of Homeland Security (DHS). Duties include but are not limited to: Manages the Mission Support section responsible for providing support...


  • Colorado Springs, United States gTANGIBLE Corporation Full time

    Job DescriptionJob DescriptiongTANGIBLE Corporation (gTC), www.gtangible.com, is a S corporation and a registered Government contractor that provides services and solutions in:National Security ProgramsProfessional, Administrative, and Management SupportMission and Warfighter SupportWe are a Service Disabled Veteran Owned Small Business (SDVOSB) and the...


  • Colorado Springs, Colorado, United States Transportation Security Administration Full time

    This Supervisory Security Assistant position is located in Intelligence and Analysis, Vetting Analysis Division, Transportation Security Administration, Department of Homeland Security (DHS).Duties include but are not limited to:Supervises and manages a team of highly effective security assistants in a 24x7 watch setting by assigning work, setting team...


  • Colorado Springs, United States Isys Technologies Full time

    Minimum Clearance Required TS/SCI Responsibilities I2X Technologies is a reputable technology services company to the Federal Government. Whether the focus is on space exploration, national security, cyber security, or cutting-edge engineering applications, I2X is ready to offer you the chance to make a real-world impact in your field and for your...

  • Security Assistant

    7 days ago


    Colorado Springs, United States Transportation Security Administration Full time

    This Security Assistant position is located Operations Support (OS), Intelligence & Analysis, Transportation Security Administration, Department of Homeland Security (DHS). Duties include but are not limited to: Adheres to security procedures and protocols while determining passenger vetting status, conducting watchlist checks, and verifying passenger...


  • Colorado Springs, United States Isys Technologies Full time

    Minimum Clearance Required: TS/SCI Responsibilities: I2X Technologies is a reputable technology services company to the Federal Government. Whether the focus is on space exploration, national security, cyber security, or cutting-edge engineering applications, I2X is ready to offer you the chance to make a real-world impact in your field and for your country....


  • Colorado Springs, Colorado, United States Chenega Corporation Full time

    Job SummaryThe Security Control Center Operator supports the MDA Security and Emergency Management Directorate (DSS) in executing multiple Security Operations Services at MDA facilities in the United States. Carries out instructions primarily oriented toward ensuring that emergencies and security violations are readily discovered and reported to the...


  • Colorado Springs, Colorado, United States Jacobs Full time

    Your Contribution:Embracing Challenges. Shaping the Future.At Jacobs, we are dedicated to your growth and achievements. Our work transcends mere projects; it embodies our collective human endeavor. We adopt a collaborative and thoughtful approach in every partnership we engage in.We strive to challenge conventional methods and innovate solutions to address...


  • Colorado Springs, Colorado, United States General Dynamics Information Technology Full time

    Position Overview:The Cybersecurity Operations Center (SOC) Lead plays a pivotal role in shaping the effectiveness of a SOC team dedicated to delivering robust Computer Network Defense and Response capabilities. This includes continuous monitoring and analysis of potential threats targeting the organization. Key Responsibilities:This role involves leading a...


  • Colorado Springs, Colorado, United States IC-CAP, LLC Full time

    Cybersecurity Operations Center (CSOC) Analyst Lead: Position Overview: The primary responsibility of the Lead CSOC Analyst is to design, execute, and assess the effectiveness of a CSOC team's capability to deliver comprehensive Computer Network Defense and Response services through vigilant monitoring and analysis of potential threat activities aimed at the...


  • Colorado Springs, Colorado, United States Securitas Security Services USA Full time

    Position: Site Security SpecialistJoin our dedicated team at Securitas Security Services USA, where we pride ourselves on delivering exceptional security solutions across various sectors.Location: Colorado Springs, COCompensation: $17.50 per hourAs a Site Security Specialist, you will be responsible for:Ensuring the safety and security of assigned...


  • Colorado Springs, Colorado, United States Securitas Security Services USA Full time

    Safety and Security Specialist - Full TimeJoin our team at Securitas Security Services USA, where we excel in providing comprehensive security solutions across various sectors. We are seeking dedicated individuals to uphold safety standards and ensure the protection of our clients' assets.Location: Colorado Springs, COCompensation: $16.55 per hourAs a Safety...


  • Colorado Springs, Colorado, United States P-11 Security Inc Full time

    Job OverviewThe role of the Program Security Representative is essential in delivering comprehensive security support across various Special Access Programs (SAPs). This position entails providing daily multi-faceted analysis for Collateral, Sensitive Compartmented Information (SCI), and SAP activities.Key Responsibilities:Compliance Assurance: Uphold strict...


  • Colorado Springs, Colorado, United States P-11 Security Inc Full time

    Job OverviewThe role of the Program Security Representative is to deliver comprehensive security support across various Special Access Programs (SAPs). This position is responsible for the daily multi-faceted analysis of Collateral, Sensitive Compartmented Information (SCI), and SAP operations.Key Responsibilities:Compliance Assurance: Uphold strict...


  • Colorado Springs, Colorado, United States P-11 Security Inc Full time

    Job OverviewThe role of the Program Security Representative is essential in delivering comprehensive security assistance for various Special Access Programs (SAPs). This position entails providing ongoing multi-faceted analysis for Collateral, Sensitive Compartmented Information (SCI), and SAP operations.Key Responsibilities:• Uphold strict compliance with...


  • Colorado Springs, United States P-11 Security Inc Full time

    Job DescriptionJob DescriptionDescription:The Program Security Representative’s primary function is to provide multi-discipline security support for one or more of the customer’s Special Access Programs (SAPs). The position will provide “day-to-day” multi-discipline analysis for Collateral, Sensitive Compartmented Information (SCI) and Special Access...