SIEM and SOAR Analyst
4 days ago
SIEM and SOAR Analyst
The Opportunity:
As a security operations center analyst, you're in the middle of the action, responding to and mitigating threats in real time. You're the first line of cyber defense for your organization, and they look to you for guidance on best practices and security measures. We need a Tier 2 SOC analyst like you to help us secure critical infrastructure from the constant onslaught of cyber attacks for the mission partner.
As a SOC analyst on our team, you'll monitor and analyze threats, using state-of-the-art tools.
You'll work with the team to understand, mitigate, and respond to threats quickly, restoring operations and limiting the impact. You'll analyze incidents to figure out just how many systems are affected and assist recovery efforts. You'll combine threat intelligence, event data, and assessments from recent events, and identify patterns to understand attackers' goals to stop them from succeeding. This is a great opportunity to hone your cyber security skills with hands on experience in threat assessment and incident response.
Work with us as we secure our mission partner from malicious actors.
Join us. The world can't wait.
You Have:
- 3+ years of experience in Security information and event management (SIEM) administration, configuration, or correlation-rule development within the DoD
- Experience with SIEM platforms such as Splunk ES, Elastic SIEM, QRadar, ArcSight, or Microsoft Sentinel
- Experience in log parsing, normalization, and the creation of correlation searches, dashboards, and alerts
- Experience with enterprise security data sources such as Windows event logs, NetFlow, firewall, IDS/IPS, and endpoint telemetry
- Experience analyzing and triaging security events to identify potential incidents and reduce false positives
- TS/SCI clearance
- HS diploma or GED
- DoD 8140 baseline certification such as Security+, CySA+, or CISSP
Nice If You Have:
- Experience supporting Air Force defensive cyber operations
- Experience developing custom automation scripts
- Experience working in Agile DevSecOps environments
- Experience with MITRE ATT&CK framework, Kill Chain analysis, and threat correlation methodologies
- Experience tuning SIEMs for performance optimization, index management, and data retention strategies
- Possession of strong written and verbal communication skills for developing dashboards, briefings, and incident reports
- Bachelor's degree
- Certifications such as Splunk Core Certified Power User, Elastic Certified Engineer, or IBM QRadar Specialist certification
- SAFe Agile certification
Clearance
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; TS/SCI clearance is required.
Compensation
At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen's benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.
Salary at Booz Allen is determined by various factors, including but not limited to location, the individual's particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $69,400.00 to $158, annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen's total compensation package for employees. This posting will close within 90 days from the Posting Date.
Identity Statement
As part of the application process, you are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.
Work Model
Our people-first culture prioritizes the benefits of flexibility and collaboration, whether that happens in person or remotely.
- If this position is listed as remote or hybrid, you'll periodically work from a Booz Allen or client site facility.
- If this position is listed as onsite, you'll work with colleagues and clients in person, as needed for the specific role.
Commitment to Non-Discrimination
All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.
-
Cybersecurity Analyst
2 hours ago
San Antonio, Texas, United States Bridgewater Consulting Group Full time $60,000 - $120,000 per yearPosition: Cybersecruity Analyst (1487)Location: Onsite - San Antonio, TX - LOCAL CANDIDATES ONLY**NO 3rd PARTIES or C2C CONSULTANTS** W2 ONLY APPLICANTSCompany OverviewBridgewater Consulting Group, Inc. is a full-service management consulting company dedicated to serving clients in the Utilities industry. We pride ourselves on delivering dynamic solutions...
-
IT SPECIALIST
4 days ago
San Antonio, Texas, United States Southwest Research Institute Full time $60,000 - $120,000 per yearWho We Are:Cybersecurity Operations' mission is to secure the enterprise by evaluating, implementing, and operating a full suite of tools and services. We are responsible for configuring, engineering, administering, and supporting network and endpoint security systems. Operations include firewalls, intrusion prevention and incident response as well as...
-
Water Resources Engineer
2 hours ago
San Antonio, Texas, United States Freese and Nichols Full time $104,000 - $170,000 per yearFreese and Nichols, Inc.(FNI) is currently searching for a highly-motivated, passionate and experienced Water Resources Engineer to join our Central Texas Stormwater Group preferably in San Antonio, Texas . This team member will be responsible for leading production of flood risk and mitigation planning and design projects for public sector clients.Primary...
-
Landscape Architect
2 days ago
San Antonio, Texas, United States Freese and Nichols Full time $80,000 - $120,000 per yearFreese and Nichols, Inc. (FNI) is currently searching for a highly-motivated, passionate and energetic Landscape Architect to grow the Urban Planning+Design practice in one of the following offices:Greenville, SCRaleigh, NCCharlotte, NCAustin, TXSan Marcos, TXSan Antonio, TXIf you're seeking an exciting opportunity to advance the practice of landscape...
-
SIEM and SOAR Analyst
2 weeks ago
San Antonio, United States Booz Allen Hamilton Full timeSIEM and SOAR AnalystThe Opportunity:As a security operations center analyst, you’re in the middle of the action, responding to and mitigating threats in real time. You’re the first line of cyber defense for your organization, and they look to you for guidance on best practices and security measures. We need a Tier 2 SOC analyst like you to help us...
-
SIEM and SOAR Engineer
2 weeks ago
San Antonio, United States Booz Allen Hamilton Full timeJob Number: R0229377SIEM and SOAR Engineer The Opportunity: As a security operations center engineer, you're in the middle of the action, responding to and mitigating threats in real time. You're the first line of cyber defense for your organization, and they look to you for guidance on best practices and security measures. We need a Tier 2 SOC engineer like...
-
Sr Security Engineer
2 weeks ago
San Antonio, United States H-E-B Full timeResponsibilities H-E-B is a leading innovator in technology, and we continue to invest in our customers' digital experience. Our Digital Technology Partners collaborate to design, construct, implement, and support technology solutions, using the best available technologies to deliver modern engagement, reliability, and scalability to meet customer needs. As...
-
Sr Security Engineer
2 weeks ago
San Antonio, TX, United States H-E-B Full timeResponsibilities H-E-B is a leading innovator in technology, and we continue to invest in our customers' digital experience. Our Digital Technology Partners collaborate to design, construct, implement, and support technology solutions, using the best available technologies to deliver modern engagement, reliability, and scalability to meet customer needs. As...
-
Sr Security Engineer
3 days ago
San Antonio, TX, United States H-E-B Full timeResponsibilities H-E-B is a leading innovator in technology, and we continue to invest in our customers' digital experience. Our Digital Technology Partners collaborate to design, construct, implement, and support technology solutions, using the best available technologies to deliver modern engagement, reliability, and scalability to meet customer needs. As...
-
Sr Security Engineer
7 days ago
San Antonio, TX, United States H-E-B Full timeResponsibilities H-E-B is a leading innovator in technology, and we continue to invest in our customers' digital experience. Our Digital Technology Partners collaborate to design, construct, implement, and support technology solutions, using the best available technologies to deliver modern engagement, reliability, and scalability to meet customer needs. As...
-
Content Developer
6 days ago
San Antonio, TX, United States Bristol Bay Native Corporation Full timeSTS Systems Support, LLC. (SSS) is seeking a Content Developer (SIEM Cyber Security) at Lackland AFB in San Antonio, TX. What You'll Do: Analyze DCO events. Apply current industry SIEM best-practices. Use security alerts correlated with log enrichment data to enhance the operator's ability to identify real attacks. Establish security control effectiveness...
-
Content Developer
6 days ago
San Antonio, TX, United States Bristol Bay Native Corporation Full timeSTS Systems Support, LLC. (SSS) is seeking a Content Developer (SIEM Cyber Security) at Lackland AFB in San Antonio, TX. What You'll Do: Analyze DCO events. Apply current industry SIEM best-practices. Use security alerts correlated with log enrichment data to enhance the operator's ability to identify real attacks. Establish security control effectiveness...
-
Senior Cyber Analyst
3 days ago
San Diego, United States Shield AI Full timeFounded in 2015, Shield AI is a venture-backed deep-tech company with the mission of protecting service members and civilians with intelligent systems. Its products include the V-BAT and X-BAT aircraft, Hivemind Enterprise, and the Hivemind Vision product lines. With nine offices and facilities across the , Europe, the Middle East, and the Asia-Pacific,...
-
SOC Analyst
2 weeks ago
San Diego, United States DeepSeas Full timeSOC AnalystWith 30 years of experience in cyber defense, DeepSeas is trusted by nearly 1,000 clients around the world, including Fortune 100 enterprises and mid-market organizations, higher education institutions, municipality and local governments, and federal agencies. Known for its programmatic approach to continuously transforming cyber defense programs,...