SOC Analyst/Security Engineer Technical Specialist
4 weeks ago
Job DescriptionJob Description
Job Title: Sr. SOC Analyst/Security Engineer Technical Specialist
Location: Sterling, VA
Terms: Full-time
Requirements: Must be a U.S. Citizen with Active Secret Security Clearance
About us
Cyber Management is a rapidly growing Veteran Owned Small Business (VOSB). To us, Cyber is no buzzword…it is all of the technology supporting our business, government, and personal information, and we understand how vital it is to integrate security into the overall cyber management schema from design through operations. Information is one of the greatest resources of our time…keeping it flowing and keeping it safe is our mission. Come join us as we grow
We offer:
- Excellent compensation, benefits and financial incentive
- Opportunity to work with highly skilled and talented people
- A Company that understands and values what you do, and committed to mutual success
About the Role
Cyber Management International Corporation is actively recruiting a highly motivated Sr. SOC Analyst/Security Engineer Technical Specialist to support our client at the U.S. Department of State (DOS) Consular Affairs Enterprise Infrastructure Operations (CAEIO) Program, for the Bureau of Consular Affairs (CA).
Responsibilities
- Training and assisting JR SOC members
- Building out processes and procedures to include documenting work in SOPs
- Utilizing SIEM tools such as SPLUNK and EDR tools to enhance monitoring capabilities and perform monitoring duties as well as expanding on the security posture of the current environment
- Building out processes, procedures, and developing SOPs
- Coordinating with internal and external teams to address threats and risks via investigation and forensic analysis
- Advising management and team members of risks associated with technologies and implementation approaches and identify methods of risk mitigation
- Investigating alerts, threat hunting, and notify designated managers, cyber incident responders, and cybersecurity service provider team members of suspected cyber incidents and articulate the event's history, status, and potential impact in accordance with the organization's cyber incident response plan
- Characterize and analyze network traffic to identify anomalous activity and potential threats to network resources Writing advance ad-hoc SPL queries
- Training, assisting, and developing JR SOC members in investigations
- Ability to lead, manage, and write reports on investigations, incidents, and other security related matters
- Perform real-time cyber defense incident handling (e.g., forensic collections, intrusion correlation and tracking, threat analysis, and direct system remediation) tasks to support Incident Response Teams (IRTs)
- Developing and documenting configuration standards, policies, and procedures for operating, managing and ensuring the security of system infrastructure
- Performing analysis of log files from a variety of sources (g. Individual host logs, network traffic logs, firewall logs, and intrusion detection system {IDS} logs) to identify possible threats to network security
- Recommend and implement system enhancements that improved the performance, security, and reliability of the system
- Create, discuss and explain technical documentation
- Identifying different tactics and techniques of attacks
Qualifications: Basic Requirements
- US Citizenship required and an active SECRET clearance with the ability to obtain a Top Secret clearance
- BS degree and 5 to 7 years’, experience or MS degree with 3 to 5 years’, experience or a high school diploma/equivalent with minimum 9 years’, experience
- 5+ years of related systems engineering experience - primarily in a government environment
- Understanding of system, network, and application security threats and vulnerabilities with the ability to establish monitoring solutions
- 3+ years of experience with Splunk, Splunk dashboard and Microsoft Sentinel
- 5+ years SOC or Cybersecurity related
- 4+ years querying and manipulating data with at least 2+ experience with SPL (required) with knowledge of data types, conditions, and regular expressions
- Solid knowledge of cybersecurity incidents, anomaly analysis, log analysis, digital forensics, common threat vectors
- Understanding of Boolean logic and event correlation
- Strong experience with Splunk, Microsoft Sentinel, and EDR tools
- Strong ability to identify logging and monitoring requirements/gaps
- Understanding of TCP/IP and UDP protocols, network ports/protocols, and traffic flow.
- Security+ CE or other 8570 IAT level II certification
Qualifications: Preferred Requirements
- Scripting experience
- Experience writing regular expressions
- Splunk admin experience
- Data normalization with Splunk using/creating field aliases, calculated fields, field extractions
- Certified Splunk Power User or higher
- Knowledge of cybersecurity frameworks and standards
- Ability to track incidents using MITRE ATT&CK and Cyber Kill Chain methodology
- Knowledge of cloud security
- Knowledge of current IT security best practices
- Knowledge of system administration, networking, and operating system hardening techniques
- Mixed operating systems experience: (Linux, Windows)
- Experience troubleshooting issues related to storage
- Scripting/coding experience
- Knowledge of F5 Application Security Manager (ASM) concepts and techniques
Shift:
• First shift (7am-3pm), Saturday-Wednesday
For more information about our company, please visit www.cybermgt.com or email us at recruiting@cybermgt.com
-
Sterling, United States Cyber Management Full timeJob DescriptionJob Description Job Title: Sr. SOC Analyst/Security Engineer Technical Specialist Location: Sterling, VA Terms: Full-time Requirements: Must be a U.S. Citizen with Active Secret Security Clearance About us Cyber Management is a rapidly growing Veteran Owned Small Business (VOSB). To us, Cyber is no buzzword…it is all of the technology...
-
Sterling, United States Cyber Management International Corp Full timeJob DescriptionJob DescriptionJob Title: Sr. SOC Analyst/Security Engineer Technical SpecialistLocation: Sterling, VATerms: Full-timeRequirements: Must be a U.S. Citizen with Active Secret Security ClearanceAbout usCyber Management is a rapidly growing Veteran Owned Small Business (VOSB). To us, Cyber is no buzzword…it is all of the technology supporting...
-
Sterling, United States Base One Technologies Full timePrimary Responsibilities will include: Lead highly visible CBP SOC projects and initiatives to closure Lead key customer briefings and generally assisting the SOC leadership (Government and contractor in execution and strategy) Lead updates to Processes, SOPs, and Best Practices Ensure high quality of all contractual deliverables Facilitate quality comments...
-
VAT Analyst with Security Clearance
5 days ago
Sterling, United States Base One Technologies Full timePrimary ResponsibilitiesPerform research on current threats and vulnerabilities. Will be responsible for authoring security advisories. Manage enterprise vulnerability compliance and will conduct vulnerability assessments of IT systems. This position location is Ashburn, Virginia Basic QualificationsNEW REQUIREMENT as of 6/27/2022: In addition to uploading...
-
Splunk Engineers with Security Clearance
1 week ago
Sterling, United States Base One Technologies Full timeOur Ashburn VA based client is looking for Splunk Engineers. All Applicants must be US CITIZENS with active Secret /Top Secret Clearance. If you are qualified for these openings, please forward a copy of your updated resume in word format to Work location: Ashburn VA Must Have One of the Following J3 CertificationsCompTIA Advanced Security Practitioner...
-
Systems Engineer with Security Clearance
6 days ago
Sterling, United States Base One Technologies Full timeOur Ashburn VA based client is looking for a Systems Engineer. If you are qualified for this position, please email your updated resume in word format to Primary ResponsibilitiesPerform research on current threats and vulnerabilities. Will be responsible for authoring security advisories. Manage enterprise vulnerability compliance and will conduct...
-
Network Security Tools Engineer
4 days ago
Sterling, United States Novel Applications of Vital Information Full timeResidency Status: ALL Candidates Must Be A U.S. CitizenClearance: Candidates Must have an Active Secret clearance and the ability to obtain a TS/SCI security clearance.Time Type: Full-Time, Daytime Schedule - HybridRelocation Fees: NoCompany Overview:NAOVI is a premier technology services company that provides solutions in the areas of Cyber Security,...
-
Network Security Tools Engineer
3 days ago
Sterling, United States Northwood Mortgage Ltd. Full timeCareer Opportunities with Novel Applications of Vital Information A great place to work. Careers At Novel Applications of Vital Information, Inc Share with friends or Subscribe! Join the Novel Applications Family: At Novel Application, we’re focused on finding and keeping top talent. We are looking for highly motivated and experienced personnel who are...
-
Threat Hunt Analyst with Security Clearance
1 week ago
Sterling, United States Anonymous Employer Full timePrimary ResponsibilitiesThe ideal Cyber Threat Hunter is someone who is process driven, curious, and enjoys identifying patterns and anomalies in data that are not immediately obvious. The Cyber Threat Hunter will: Create Threat Models to better understand the Agency IT Enterprise, identify defensive gaps, and prioritize mitigations Author, update, and...
-
Cyber Security Specialist
2 weeks ago
Sterling, United States Ramtec Consulting LLC Full timeSr. Cyber Security Subject Matter Expert (SME) TS Required Ramtec in partnership with SSA LLC is supporting a U.S. Government customer on a large mission critical development and sustainment program to design, build, deliver, and operate a network operations environment including introducing new cyber capabilities to address emerging threats. SSA is seeking...
-
Data Engineer with Security Clearance
4 weeks ago
Sterling, United States Iamus Consulting, Inc. Full timeDescription We are looking for a talented Data Engineer to support the acquisition of mission critical and mission support data sets. The preferred candidate will have a background in supporting cyber and/or network related missions within the military spaces, as either a developer, analyst or engineer. Requirements Essential Job Responsibilities * The ideal...
-
Lead Splunk Engineer with Security Clearance
5 days ago
Sterling, United States Base One Technologies Full timeOur Ashburn VA based client is looking for Lead Splunk Engineers. If you are qualified for this position, please email your updated resume in word format to Primary Responsibilities Provide overall engineering, and administration in supporting a very large distributed clustered Splunk environment consisting of search heads, indexers, deployers, deployment...
-
Cyber Security Engineer
4 days ago
Sterling, United States Avid Technology Professionals Full timeThe Sr Cyber Security Engineer designs, develops, documents, analyzes, tests, integrates, debugs, conducts research and/or discovers and analyzes security flaws or vulnerabilities in software, networks, systems, and applications. The Sr Cyber Security Engineer ensures system security needs are established and maintained for various objects/matters....
-
Network Security Tools Engineer
3 days ago
Sterling, United States Argo Cyber Systems Full timeJob Description Job Description Network Security Tools Engineer Argo Cyber is supporting a U.S. Government customer on a large mission-critical development and sustainment program to design, build, deliver, and operate a network operations environment, including introducing new cyber capabilities to address emerging threats. The Network Security Tools...
-
Splunk Engineer with Security Clearance
1 week ago
Sterling, United States Anonymous Employer Full timeThe candidate should have experience deploying and configuring Universal Forwarders and possess demonstrable knowledge of data collection methods such as Syslog, JDBC, or API. This position requires solid experience developing Splunk search queries, and dashboards and reports. Nice to have skills include Unix administration, scripting, understanding of...
-
Network Security Tools Engineer
3 days ago
Sterling, United States Argo Cyber Systems Full timeJob DescriptionJob DescriptionNetwork Security Tools EngineerArgo Cyber is supporting a U.S. Government customer on a large mission-critical development and sustainment program to design, build, deliver, and operate a network operations environment, including introducing new cyber capabilities to address emerging threats. The Network Security Tools Engineer...
-
Project Engineer
5 days ago
Sterling Heights, United States Dato Technology Solutions Full timeJob DescriptionJob DescriptionWe are seeking a Project Engineer/Technical Support Specialist to join our team! You will be responsible for resolving IT-related issues for our clients, for the implementation of DTS Services for new and existing clients, and for the execution of IT Projects varying in complexity. This is an opportunity to join a dynamic,...
-
Sr. Splunk Engineer with Security Clearance
1 week ago
Sterling, United States Base One Technologies Full timeOur Ashburn VA based client is looking for a Senior Splunk Engineer. All applicants must be US CITIZENS with an active Secret or TS clearance. Must Have One of the Following J3 Certifications CompTIA Advanced Security Practitioner (CASP) GCIH - Incident Handler GCWN - Windows Security Administrator GISF - Security Fundamentals GISP - Security Professional...
-
Intelligence Analyst with Security Clearance
1 month ago
Sterling, United States A1C Partners Full timeAll Source Intel AnalystWe seek a highly motivated, career and customer oriented All Source Intel Analyst to join our team to begin an exciting and challenging career with A1C Partners, LLC.Job Description • Provides all-source intelligence analysis on topics related to homeland security, including, but not limited to, border security, counterterrorism,...
-
Software Engineer
5 days ago
Sterling, United States Northwood Mortgage Ltd. Full timeCareer Opportunities with Novel Applications of Vital Information A great place to work. Careers At Novel Applications of Vital Information, Inc Share with friends or Subscribe! Join the Novel Applications Family: At Novel Application, we’re focused on finding and keeping top talent. We are looking for highly motivated and experienced personnel who are...