SOC Analyst/Security Engineer Technical Specialist

4 weeks ago


Sterling, United States Cyber Management Full time

Job DescriptionJob Description

Job Title: Sr. SOC Analyst/Security Engineer Technical Specialist
Location: Sterling, VA
Terms: Full-time
Requirements: Must be a U.S. Citizen with Active Secret Security Clearance

About us
Cyber Management is a rapidly growing Veteran Owned Small Business (VOSB). To us, Cyber is no buzzword…it is all of the technology supporting our business, government, and personal information, and we understand how vital it is to integrate security into the overall cyber management schema from design through operations. Information is one of the greatest resources of our time…keeping it flowing and keeping it safe is our mission. Come join us as we grow

We offer:

  • Excellent compensation, benefits and financial incentive
  • Opportunity to work with highly skilled and talented people
  • A Company that understands and values what you do, and committed to mutual success

About the Role
Cyber Management International Corporation is actively recruiting a highly motivated Sr. SOC Analyst/Security Engineer Technical Specialist to support our client at the U.S. Department of State (DOS) Consular Affairs Enterprise Infrastructure Operations (CAEIO) Program, for the Bureau of Consular Affairs (CA).

Responsibilities

  • Training and assisting JR SOC members
  • Building out processes and procedures to include documenting work in SOPs
  • Utilizing SIEM tools such as SPLUNK and EDR tools to enhance monitoring capabilities and perform monitoring duties as well as expanding on the security posture of the current environment
  • Building out processes, procedures, and developing SOPs
  • Coordinating with internal and external teams to address threats and risks via investigation and forensic analysis
  • Advising management and team members of risks associated with technologies and implementation approaches and identify methods of risk mitigation
  • Investigating alerts, threat hunting, and notify designated managers, cyber incident responders, and cybersecurity service provider team members of suspected cyber incidents and articulate the event's history, status, and potential impact in accordance with the organization's cyber incident response plan
  • Characterize and analyze network traffic to identify anomalous activity and potential threats to network resources Writing advance ad-hoc SPL queries
  • Training, assisting, and developing JR SOC members in investigations
  • Ability to lead, manage, and write reports on investigations, incidents, and other security related matters
  • Perform real-time cyber defense incident handling (e.g., forensic collections, intrusion correlation and tracking, threat analysis, and direct system remediation) tasks to support Incident Response Teams (IRTs)
  • Developing and documenting configuration standards, policies, and procedures for operating, managing and ensuring the security of system infrastructure
  • Performing analysis of log files from a variety of sources (g. Individual host logs, network traffic logs, firewall logs, and intrusion detection system {IDS} logs) to identify possible threats to network security
  • Recommend and implement system enhancements that improved the performance, security, and reliability of the system
  • Create, discuss and explain technical documentation
  • Identifying different tactics and techniques of attacks

Qualifications: Basic Requirements

  • US Citizenship required and an active SECRET clearance with the ability to obtain a Top Secret clearance
  • BS degree and 5 to 7 years’, experience or MS degree with 3 to 5 years’, experience or a high school diploma/equivalent with minimum 9 years’, experience
  • 5+ years of related systems engineering experience - primarily in a government environment
  • Understanding of system, network, and application security threats and vulnerabilities with the ability to establish monitoring solutions
  • 3+ years of experience with Splunk, Splunk dashboard and Microsoft Sentinel
  • 5+ years SOC or Cybersecurity related
  • 4+ years querying and manipulating data with at least 2+ experience with SPL (required) with knowledge of data types, conditions, and regular expressions
  • Solid knowledge of cybersecurity incidents, anomaly analysis, log analysis, digital forensics, common threat vectors
  • Understanding of Boolean logic and event correlation
  • Strong experience with Splunk, Microsoft Sentinel, and EDR tools
  • Strong ability to identify logging and monitoring requirements/gaps
  • Understanding of TCP/IP and UDP protocols, network ports/protocols, and traffic flow.
  • Security+ CE or other 8570 IAT level II certification

Qualifications: Preferred Requirements

  • Scripting experience
  • Experience writing regular expressions
  • Splunk admin experience
  • Data normalization with Splunk using/creating field aliases, calculated fields, field extractions
  • Certified Splunk Power User or higher
  • Knowledge of cybersecurity frameworks and standards
  • Ability to track incidents using MITRE ATT&CK and Cyber Kill Chain methodology
  • Knowledge of cloud security
  • Knowledge of current IT security best practices
  • Knowledge of system administration, networking, and operating system hardening techniques
  • Mixed operating systems experience: (Linux, Windows)
  • Experience troubleshooting issues related to storage
  • Scripting/coding experience
  • Knowledge of F5 Application Security Manager (ASM) concepts and techniques

Shift:

• First shift (7am-3pm), Saturday-Wednesday

For more information about our company, please visit www.cybermgt.com or email us at recruiting@cybermgt.com



  • Sterling, United States Cyber Management Full time

    Job DescriptionJob Description Job Title: Sr. SOC Analyst/Security Engineer Technical Specialist Location: Sterling, VA Terms: Full-time Requirements: Must be a U.S. Citizen with Active Secret Security Clearance About us Cyber Management is a rapidly growing Veteran Owned Small Business (VOSB). To us, Cyber is no buzzword…it is all of the technology...


  • Sterling, United States Cyber Management International Corp Full time

    Job DescriptionJob DescriptionJob Title: Sr. SOC Analyst/Security Engineer Technical SpecialistLocation: Sterling, VATerms: Full-timeRequirements: Must be a U.S. Citizen with Active Secret Security ClearanceAbout usCyber Management is a rapidly growing Veteran Owned Small Business (VOSB). To us, Cyber is no buzzword…it is all of the technology supporting...


  • Sterling, United States Base One Technologies Full time

    Primary Responsibilities will include: Lead highly visible CBP SOC projects and initiatives to closure Lead key customer briefings and generally assisting the SOC leadership (Government and contractor in execution and strategy) Lead updates to Processes, SOPs, and Best Practices Ensure high quality of all contractual deliverables Facilitate quality comments...


  • Sterling, United States Base One Technologies Full time

    Primary ResponsibilitiesPerform research on current threats and vulnerabilities. Will be responsible for authoring security advisories. Manage enterprise vulnerability compliance and will conduct vulnerability assessments of IT systems. This position location is Ashburn, Virginia Basic QualificationsNEW REQUIREMENT as of 6/27/2022: In addition to uploading...


  • Sterling, United States Base One Technologies Full time

    Our Ashburn VA based client is looking for Splunk Engineers. All Applicants must be US CITIZENS with active Secret /Top Secret Clearance. If you are qualified for these openings, please forward a copy of your updated resume in word format to Work location: Ashburn VA Must Have One of the Following J3 CertificationsCompTIA Advanced Security Practitioner...


  • Sterling, United States Base One Technologies Full time

    Our Ashburn VA based client is looking for a Systems Engineer. If you are qualified for this position, please email your updated resume in word format to Primary ResponsibilitiesPerform research on current threats and vulnerabilities. Will be responsible for authoring security advisories. Manage enterprise vulnerability compliance and will conduct...


  • Sterling, United States Novel Applications of Vital Information Full time

    Residency Status: ALL Candidates Must Be A U.S. CitizenClearance: Candidates Must have an Active Secret clearance and the ability to obtain a TS/SCI security clearance.Time Type: Full-Time, Daytime Schedule - HybridRelocation Fees: NoCompany Overview:NAOVI is a premier technology services company that provides solutions in the areas of Cyber Security,...


  • Sterling, United States Northwood Mortgage Ltd. Full time

    Career Opportunities with Novel Applications of Vital Information A great place to work. Careers At Novel Applications of Vital Information, Inc Share with friends or Subscribe! Join the Novel Applications Family: At Novel Application, we’re focused on finding and keeping top talent. We are looking for highly motivated and experienced personnel who are...


  • Sterling, United States Anonymous Employer Full time

    Primary ResponsibilitiesThe ideal Cyber Threat Hunter is someone who is process driven, curious, and enjoys identifying patterns and anomalies in data that are not immediately obvious. The Cyber Threat Hunter will: Create Threat Models to better understand the Agency IT Enterprise, identify defensive gaps, and prioritize mitigations Author, update, and...


  • Sterling, United States Ramtec Consulting LLC Full time

    Sr. Cyber Security Subject Matter Expert (SME) TS Required Ramtec in partnership with SSA LLC is supporting a U.S. Government customer on a large mission critical development and sustainment program to design, build, deliver, and operate a network operations environment including introducing new cyber capabilities to address emerging threats. SSA is seeking...


  • Sterling, United States Iamus Consulting, Inc. Full time

    Description We are looking for a talented Data Engineer to support the acquisition of mission critical and mission support data sets. The preferred candidate will have a background in supporting cyber and/or network related missions within the military spaces, as either a developer, analyst or engineer. Requirements Essential Job Responsibilities * The ideal...


  • Sterling, United States Base One Technologies Full time

    Our Ashburn VA based client is looking for Lead Splunk Engineers. If you are qualified for this position, please email your updated resume in word format to Primary Responsibilities Provide overall engineering, and administration in supporting a very large distributed clustered Splunk environment consisting of search heads, indexers, deployers, deployment...


  • Sterling, United States Avid Technology Professionals Full time

    The Sr Cyber Security Engineer designs, develops, documents, analyzes, tests, integrates, debugs, conducts research and/or discovers and analyzes security flaws or vulnerabilities in software, networks, systems, and applications. The Sr Cyber Security Engineer ensures system security needs are established and maintained for various objects/matters....


  • Sterling, United States Argo Cyber Systems Full time

    Job Description Job Description Network Security Tools Engineer Argo Cyber is supporting a U.S. Government customer on a large mission-critical development and sustainment program to design, build, deliver, and operate a network operations environment, including introducing new cyber capabilities to address emerging threats. The Network Security Tools...


  • Sterling, United States Anonymous Employer Full time

    The candidate should have experience deploying and configuring Universal Forwarders and possess demonstrable knowledge of data collection methods such as Syslog, JDBC, or API. This position requires solid experience developing Splunk search queries, and dashboards and reports. Nice to have skills include Unix administration, scripting, understanding of...


  • Sterling, United States Argo Cyber Systems Full time

    Job DescriptionJob DescriptionNetwork Security Tools EngineerArgo Cyber is supporting a U.S. Government customer on a large mission-critical development and sustainment program to design, build, deliver, and operate a network operations environment, including introducing new cyber capabilities to address emerging threats. The Network Security Tools Engineer...

  • Project Engineer

    5 days ago


    Sterling Heights, United States Dato Technology Solutions Full time

    Job DescriptionJob DescriptionWe are seeking a Project Engineer/Technical Support Specialist to join our team! You will be responsible for resolving IT-related issues for our clients, for the implementation of DTS Services for new and existing clients, and for the execution of IT Projects varying in complexity. This is an opportunity to join a dynamic,...


  • Sterling, United States Base One Technologies Full time

    Our Ashburn VA based client is looking for a Senior Splunk Engineer. All applicants must be US CITIZENS with an active Secret or TS clearance. Must Have One of the Following J3 Certifications CompTIA Advanced Security Practitioner (CASP) GCIH - Incident Handler GCWN - Windows Security Administrator GISF - Security Fundamentals GISP - Security Professional...


  • Sterling, United States A1C Partners Full time

    All Source Intel AnalystWe seek a highly motivated, career and customer oriented All Source Intel Analyst to join our team to begin an exciting and challenging career with A1C Partners, LLC.Job Description • Provides all-source intelligence analysis on topics related to homeland security, including, but not limited to, border security, counterterrorism,...

  • Software Engineer

    5 days ago


    Sterling, United States Northwood Mortgage Ltd. Full time

    Career Opportunities with Novel Applications of Vital Information A great place to work. Careers At Novel Applications of Vital Information, Inc Share with friends or Subscribe! Join the Novel Applications Family: At Novel Application, we’re focused on finding and keeping top talent. We are looking for highly motivated and experienced personnel who are...