Cyber Security Operations 3

1 month ago


St Louis, United States GDIT Full time
Job Description:

TCS is hiring a new member to our Cyber Security Operations 3 - Hunt Services team. This role will proactively search for indicators of compromise on NCE systems through planned Hunt missions.
  • Assign the Cybersecurity Operations Manager to direct and oversee all Contractor support for this sub service and serve as the primary Contractor representative to the government CSOC Director for coordination, collaboration, planning, communication, status updates, and necessary approvals of all actions in support of this sub-service
  • Operate as an end user, the relevant Technical Services assets contained within the Government Furnished Information - Software Tools list in accordance with vendor instructions, industry best practice, and government directives, policies, procedures, etc.
  • Provide subject matter experts capable of conducting a deep analysis of raw data from assets supporting Network Security Services, Endpoint Security Services, and Cybersecurity Data Analysis Services
  • Proactively search and identify indicators of compromise and anomalous behavior which is indicative of malicious behavior that has not yet met the event/incident threshold, or has not been detected by automated security tools

    More About the Role:
  • Proactively search and identify indicators of compromise and anomalous behavior which is indicative of malicious behavior that has not yet met the event/incident threshold, or has not been detected by automated security tools.
  • Assess date from multiple sources and navigates the cyber terrain to identified suspicious behavior.
  • Obtain data for validating predictive models generated by advanced analytics.
  • Augment identification and tracking of incidents.
  • Create, update, and document tickets in the authorized ticketing system to initiate the incident response process any incidents discovered during the continuous hunt; tickets shall contain to contain sufficient information to meet the equivalent ticket created via Tier 1 and Tier 2 and shall include a level of detail
    sufficient to enable the Government and other contract services to systematically reconstruct the analysis and methodology and any conclusions reached.
  • Provide input to the daily CSOC Significant Activity Report, the daily CSOC Operations Update, and the Weekly CSOC Status Report.
  • Proactively investigate anomalous behavior which is indicative of malicious behavior but has not yet met the event/incident threshold and/or has not been detected by automated security tools
  • Assessing and validating predictive models as provided by other services to locate potential adversary intrusions and unauthorized activity.
  • Other duties as assigned
     

    You'll Bring These Qualifications:
  • Current TS/SCI and must obtain a CI Poly within 6 months of Start
  • Bachelor's Degree in a Technical Field
  • 5+ years' experience working in related Cyber area.
  • Current Security+ CERT to start work on program; however, will need to obtain  IAT Level III and CSSP Analyst Certification within six (6) months of your start date.  The cost of the certification(s) will be covered by CACI.  In the event that you do not obtain the required certification(s) within the 6-month timeframe, you will be asked to depart the program.

    These Qualifications Would be Nice to Have:
  • Master's Degree

Scheduled Weekly Hours:

40

Travel Required:

None

Telecommuting Options:

Onsite

Work Location:

USA VA Springfield



  • St Louis, United States SITEC Consulting LLC Full time

    Position Overview: Provide CSOC Tier 2 services, which is 24x7x365 coordination, execution, and implementation of all actions required for the containment, eradication, and recovery measures for events and incidents. CSOC Tier 2 services includes malware and implant analysis, and forensic artifact handling and analysis. When a CIRT is stood up, all...


  • Saint Louis, United States SITEC Consulting Full time

    Job DescriptionJob DescriptionAbout SITECSITEC is an employee and customer focused Information Technology and Professional Services Firm specializing in design, development, and delivery of state-of-the-art technology solutions, as well as cybersecurity, software and systems engineering services.SummaryThe Cyber Security Engineering Specialist provides...


  • St Louis, Missouri, United States QData Full time

    Required Qualifications Good hands on experience in configuring firewall policies VPN access Intrusion Prevention system (IPS) Intrusion detection system (IDS) Web application firewall. Experience on working in a global support environment experience of ticketing-tools and exposure to ITIL processes in context of service operations is a plus. Should have...


  • Saint Louis, United States SITEC Consulting Full time

    Job DescriptionJob DescriptionPosition Overview: Provide CSOC Tier 2 services, which is 24x7x365 coordination, execution, and implementation of all actions required for the containment, eradication, and recovery measures for events and incidents. CSOC Tier 2 services includes malware and implant analysis, and forensic artifact handling and analysis. When a...


  • St Louis, United States GuidePoint Security Full time

    GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation's top organizations, such as Fortune 500 companies and U.S. government agencies,...


  • Saint Louis, United States RISA Full time

    Job DescriptionJob DescriptionSkill Level: Mid-Senior LevelSecurity Clearance: Top Secret /SCIJob Type: Full-TimeRemote: NoAbout RISA:In this time of rapid change, as technologies expand at lightning speed, RISA seeks to remain at the forefront - applying them in unique ways to address our customers’ challenges and providing our employees with engaging...


  • St Paul, United States MedNet Global Healthcare Solutions LLC Full time

    MedNet Egypt is one of the leading managed care service organizations that caters to healthcare needs and offers financial protection against unforeseen health risks. As a Cyber Security Specialist, you are the front line of defense for the safety and integrity of the company’s digital information. Working closely with management, you will be responsible...

  • Endpoint Engineer

    12 hours ago


    St Louis, United States GuidePoint Security Full time

    GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation's top organizations, such as Fortune 500 companies and U.S. government agencies,...


  • St. Louis, Missouri, United States Block Full time

    Job Description Block is seeking an experienced Global Security Operations Center (GSOC) Lead to oversee security operations on a global scale. This role oversees the day to day operations of the GSOC, and will be responsible for leading a team of security professionals in monitoring, assessing, and responding to security incidents across our distributed...


  • St. Louis, United States Eighth Circuit Court of Appeals Full time

    Qualification s:  A bachelor’s degree in cyber security, computer science, or related field from an accredited four-year college or university and/or IT project management and/or cyber security certifications such as a Certified Information Systems Security Professional (CISSP), Certified Information System Auditor (CISA), Certified Ethical Hacker...


  • Saint Louis, United States RISA Full time

    Job DescriptionJob DescriptionAbout RISAIn this time of rapid change, as technologies expand at lightning speed, RISA seeks to remain at the forefront - applying them in unique ways to address our customers’ challenges and providing our employees with engaging career opportunities. We seek professionals excited by a challenge and focused on assisting our...


  • St Louis, United States Block USA Full time

    Company Description Block is one company built from many blocks, all united by the same purpose of economic empowerment. The blocks that form our foundational teams - People, Finance, Counsel, Hardware, Information Security, Platform Infrastructure Engineering, and more - provide support and guidance at the corporate level. They work across business groups...


  • St Louis, United States Concero Full time

    Job DescriptionSecurity Architect – Position Summary:We are seeking a talented Security Architect specializing in cloud and security technologies to join our dynamic team. The Security Architect will be responsible for designing, implementing, and maintaining robust security solutions for our cloud-based infrastructure. This role requires a strong...


  • St. Louis, United States Concero Full time

    Job DescriptionSecurity Architect – Position Summary:We are seeking a talented Security Architect specializing in cloud and security technologies to join our dynamic team. The Security Architect will be responsible for designing, implementing, and maintaining robust security solutions for our cloud-based infrastructure. This role requires a strong...


  • St Louis, United States Concero Full time

    Job DescriptionSecurity Architect – Position Summary:We are seeking a talented Security Architect specializing in cloud and security technologies to join our dynamic team. The Security Architect will be responsible for designing, implementing, and maintaining robust security solutions for our cloud-based infrastructure. This role requires a strong...


  • St Louis, United States Stifel Full time

    Summary The Application Security Engineer is responsible for the secure design and testing of internally developed software and deeply understands security principles, technologies, and methodologies. Application Security Engineers work with software development teams to ensure security is included in the complete software development life cycle. This role...

  • IT Specialist II

    3 weeks ago


    St Louis, United States CareerBuilder Full time

    Job Description Information Technology Under general direction, develop and enforce enterprise information security policies and standards across The District, IT and OT. Work involves coordinating and/or planning, implementing, and monitoring security measures for the protection of the district's information assets from unauthorized use, modification, or...


  • St Louis, United States Stifel Full time

    Summary The Sr. Application Security Engineer is responsible for the secure design and testing of internally developed software and deeply understands security principles, technologies, and methodologies. The Sr Application Security Engineer works with software development teams from design to code implementation, ensuring security is included in the...

  • Sr Infosec Analyst

    4 weeks ago


    St Louis, United States CareerBuilder Full time

    Must Have Qualifications: Completion of one of the following recognized professional certifications: QSA (Qualified Security Assessor), CISM (Certified Information Security Manager), CISSP (Certified Information Systems Security Professional), SSCP (Systems Security Certified Practitioner), Certified Ethical Hacker (CEH)Technical Expertise: Cisco Firepower,...


  • Saint Louis, United States SITEC Consulting Full time

    Job DescriptionJob DescriptionABOUT SITECSITEC is an employee and customer focused Information Technology and Professional Services Firm specializing in design, development, and delivery of state-of-the-art technology solutions, as well as cybersecurity, software and systems engineering services.Overview:Network Defense is at the forefront of integrating...