Security Operations Center

3 weeks ago


Annapolis Junction, United States EverWatch Full time

Overview

EverWatch is a government solutions company providing advanced defense, intelligence, and deployed support to our country’s most critical missions. We are a full-service government solutions company. Harnessing the most advanced technology and solutions, we strengthen defenses and control environments to preserve continuity and ensure mission success.

EverWatch is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy), gender identity, sexual orientation, national origin, age (40 or older), disability, genetic information, citizenship or immigration status, and veteran status or any other factor prohibited by applicable law.

EverWatch employees are focused on tackling the most difficult challenges of the US Government. We offer the best salaries and benefits packages in our industry - to identify and retain the top talent in support of our critical mission objectives. 

Responsibilities

We are looking for an experienced Security Operations Center (SOC) Tier II Analyst to improve monitoring strategies and analyze threats to safeguard infrastructure supporting global missions focused on seeking out and eliminating cyberspace threats to defend the United States and its Allies. You will guide the team on best practices and security measures. You'll configure defense tools, create reports, and dashboards and build custom queries. You will make recommendations to leadership on best practices to harden infrastructure and improve alerting. You'll lead incident response and remedy potential incidents escalated from Tier 1 SOC Analysts. You'll work with the team to understand, mitigate, and respond to threats quickly, restoring operations and limiting the impact. You will guide efforts to assess how many systems are affected and assist recovery efforts. You'll combine threat intelligence, event data, and assessments from recent events to identify patterns and provide mitigation techniques and strategies. Finally, you will apply knowledge of attacker techniques to uncover threats by analyzing log data, and building and tuning detections. 

Qualifications

Qualifications:

6+ years of experience in modeling, cyber security, anomaly detection, Security Operations Center (SOC) detection, threat analytics, security incident and event management (SIEM), information technology (IT), and operations incident response Experience with writing detections within SIEM solutions, including Splunk, ArcSight, ElasticSearch, or Azure Sentinel Experience with Intrusion Detection System or Intrusion Prevention System (IDS/IPS) monitoring Knowledge of the basic functions and configurations of Bro or Zeek Knowledge of OS internals, including Windows, Linux, or Mac Knowledge of common security threats and vulnerabilities Ability to perform Nessus scans and review results, firewall configurations, and Linux hosts for indicators of compromise and hardening of Linux systems TS/SCI clearance with a polygraph Bachelor's degree IAT Level II Certifications

Nice If You Have:

Experience in creating and debugging Splunk Dashboards and creating Snort rules  Experience with security subjects and trends, including digital forensics, reverse engineering, and penetration testing Experience with security principles in virtual and hosting software, including MISP, HIVE, CORTEX, WikiJS, VPN, and SecurityOnion Experience with leading teams in a technical capacity Experience with leveraging common scripting languages, including PowerShell or Python to parse logs and automate repeatable tasks Ability to use Splunk to hunt for indicators of compromise, create Splunk Dashboards, and review logs Ability to code or script using any language Ability to partner and collaborate with teams, both internal and external, including developers, vendors, analysts, tech leads, and project managers DOD 8570 CSSP Analyst Certification  GCIA, GSLC, GCIH, CISM, CISSP, or- CEH Certifications

Clearance Level

TS/SCI polygraph

Job Locations

US-MD-Annapolis Junction

Skills

SIEM, Intrusion Detection

  • Annapolis, Maryland, United States EverWatch Full time

    Job Title Senior Security Operations Center (SOC) Analyst About the CompanyAt EverWatch, we are dedicated to providing cutting-edge defense, intelligence, and support services to the government's most crucial missions. Our focus is on leveraging advanced technology and solutions to enhance security measures and ensure mission success.We are committed to...


  • Annapolis Junction, United States Transportation Security Administration Full time

    Summary Securing Travel, Protecting People - At the Transportation Security Administration, you will serve in a high-stakes environment to safeguard the American way of life. In cities across the country, you would secure airports, seaports, railroads, highways, and/or public transit systems, thus protecting America's transportation infrastructure and...


  • Annapolis, United States EverWatch Full time

    Job Title Security Operations Center (SOC) Analyst, Senior Overview EverWatch is a government solutions company providing advanced defense, intelligence, and deployed support to our country's most critical missions. We are a full-service government solutions company. Harnessing the most advanced technology and solutions, we strengthen defenses and control...


  • Annapolis, United States EverWatch Full time

    Job Title Security Operations Center (SOC) Analyst, Senior Overview EverWatch is a government solutions company providing advanced defense, intelligence, and deployed support to our country's most critical missions. We are a full-service government solutions company. Harnessing the most advanced technology and solutions, we strengthen defenses and control...


  • Annapolis, United States EverWatch Full time

    Job Title Security Operations Center (SOC) Analyst, Senior Overview EverWatch is a government solutions company providing advanced defense, intelligence, and deployed support to our country's most critical missions. We are a full-service government solutions company. Harnessing the most advanced technology and solutions, we strengthen defenses and control...


  • Annapolis Junction, United States TSA (Transportation Security Administration) Full time

    Overview Intelligence Operations Specialist Open & closing dates - 04/12/2024 to 04/19/2024 - Pay scale & grade - SV H - Appointment type Salary - $99,200.00 to $153,354.00 PA - Work schedule Location - Annapolis Junction, MarylandDuties Summary - Securing Travel, Protecting People - At the Transportation Security Administration, you will serve in a...


  • Annapolis Junction, United States Orbis Operations Full time

    Job DescriptionJob DescriptionDescriptionOrbis Operations is seeking Virtualization Consultant to support its government customer in Annapolis Junction, MD.  Required Clearance:  Active Security Clearance required at the Top Secret (TS)/Special Compartmented Information (SCI) level and appropriate level Polygraph Role Description:We are in search of a...


  • Annapolis Junction, United States Orbis Operations Full time

    Job DescriptionJob DescriptionDescriptionOrbis Operations is seeking Virtualization Consultant to support its government customer in Annapolis Junction, MD.  Required Clearance:  Active Security Clearance required at the Top Secret (TS)/Special Compartmented Information (SCI) level and appropriate level Polygraph Role Description:We are in search of a...


  • Annapolis Junction, United States MITRE Full time

    Why choose between doing meaningful work and having a fulfilling life? At MITRE, you can have both. That's because MITRE people are committed to tackling our nation's toughest challenges—and we're committed to the long-term well-being of our employees. MITRE is different from most technology companies. We are a not-for-profit corporation chartered to work...


  • Annapolis Junction, United States Orbis Operations Full time

    Job DescriptionJob DescriptionDescriptionORBIS Operations is seeking a Storage Solutions Specialist In Annapolis Junction, MD.The Storage Solutions Specialist is responsible for the effective operation, maintenance, and management of our client's storage environments, encompassing a broad range of DellEMC products. This role demands a highly skilled...


  • Annapolis Junction, United States Orbis Operations Full time

    Job DescriptionJob DescriptionDescriptionORBIS Operations is seeking a Storage Solutions Specialist In Annapolis Junction, MD.The Storage Solutions Specialist is responsible for the effective operation, maintenance, and management of our client's storage environments, encompassing a broad range of DellEMC products. This role demands a highly skilled...


  • Annapolis Junction, United States MITRE Full time

    Why choose between doing meaningful work and having a fulfilling life? At MITRE, you can have both. That's because MITRE people are committed to tackling our nation's toughest challenges—and we're committed to the long-term well-being of our employees. MITRE is different from most technology companies. We are a not-for-profit corporation chartered to work...


  • Annapolis, United States Arcetyp LLC Full time

    Arcetyp LLC is a growing small business that provides a broad range of consulting services to US Federal Government, US Military, and Commercial clients. Services include Management & IT Consulting, Program & Project Management, and Professional & Admin Services. We are recruiting to fill a position to lead business development activities for a small...


  • Annapolis Junction, United States M.C. Dean, Inc. Full time

    Key Responsibilities Drives, in coordination with the Program Manager and O&M Deputy Program Manager, successful execution of Operations & Maintenance activities, including manpower estimation and allocation, daily review and prioritization of activities based on current situation and requirements, planning and schedule estimation for new operations...


  • Annapolis Junction, United States MITRE Full time

    Why choose between doing meaningful work and having a fulfilling life? At MITRE, you can have both. That's because MITRE people are committed to tackling our nation's toughest challenges—and we're committed to the long-term well-being of our employees. MITRE is different from most technology companies. We are a not-for-profit corporation chartered to work...


  • Annapolis Junction, United States MITRE Full time

    Why choose between doing meaningful work and having a fulfilling life? At MITRE, you can have both. That's because MITRE people are committed to tackling our nation's toughest challenges—and we're committed to the long-term well-being of our employees. MITRE is different from most technology companies. We are a not-for-profit corporation chartered to work...


  • Annapolis Junction, United States MITRE Full time

    Why choose between doing meaningful work and having a fulfilling life? At MITRE, you can have both. That's because MITRE people are committed to tackling our nation's toughest challenges—and we're committed to the long-term well-being of our employees. MITRE is different from most technology companies. We are a not-for-profit corporation chartered to work...

  • Security Officer

    1 week ago


    Annapolis, United States Security Firm Full time

    We are seeking a Security Officer to become an integral part of our team. The selected individual will patrol and secure assigned premises as well as identify risks to staff and patrons. **Responsibilities**: - Monitor premises to prevent theft, violence, or infractions of rules - Thoroughly examine doors, windows, and gates to ensure proper function and...

  • Security Officer

    1 week ago


    Annapolis, Maryland, United States Security Firm Full time

    We are seeking a Security Officer to become an integral part of our team. The selected individual will patrol and secure assigned premises as well as identify risks to staff and patrons.Responsibilities: Monitor premises to prevent theft, violence, or infractions of rules Thoroughly examine doors, windows, and gates to ensure proper function and security...


  • Annapolis Junction, United States Orbis Operations Full time

    Orbis Operations is seeking a Software Integration Engineer to support its government customer in Annapolis Junction, MD. Required Clearance: Active Security Clearance required at the Top Secret (TS)/Special Compartmented Information (SCI) level and appropriat e level Polygraph Role Description: The successful candidate will provide expertise in...