Tier 2 Incident Response Analyst

2 days ago


Washington, United States Tyto Athene, LLC Full time

Here at Tyto Athene, we believe our Incident Response Analyst analysts form the backbone of our cybersecurity services. Take your career to the next level and join us as a Tier 2 Incident Response Analyst. You will play a critical role in conducting in-depth analyses and responding to incidents of potential cyber threats facing our clients. In addition to being our initial point of contact for end users, you will serve as the escalation point for junior analysts, helping guide them through more complex and high-priority incidents.


One of the most critical tasks for our Tier 2 Incident Response Analyst. We provide a supportive environment for you to learn from senior SOC Incident Response Analysts, cross-train with other positions, and attend external training.



Responsibilities:

  • Utilize security tools to analyze, investigate, and triage security alerts
  • Monitor our customers environments, including cloud and SaaS solutions for evidence of adversarial activity
  • Perform in-depth analysis and investigation of high-priority cybersecurity incidents
  • Utilize advanced tools, such as host based digital forensics or malware analysis capabilities, to identify incidents’ root causes, scope, and impact
  • Collaborate with cyber threat hunting and cyber threat intelligence teams
  • Participate in the development, implementation, and tuning of the SOC tools detection content and alerting signatures.
  • Accurately document triage findings, and intake reports of external cybersecurity events from SOC customers via phone or email in the SOCs Incident Management System(IMS)
  • Learn new open and closed-source investigative techniques
  • Perform research into emerging threats and vulnerabilities to aid their prevention and mitigation
  • Help shape the evolution of processes and procedures of the SOC
  • Provide guidance and mentorship to Tier 1 SOC Analysts to enhance their skills and capabilities



Required:

  • Minimum of four (4) years of general work experience and three (3) years of relevant experience in functional responsibility
  • Bachelor’s Degree, or an equivalent combination of formal education, experience
  • eCPPT, OSCP, GCFW, GCIH, other relevant IT security certifications, or advanced vendor certifications such as Splunk Certified Architect or SourceFire Certified Administrator; Security+, GSEC, or other relevant IT security product certifications such as Tenable Certified Nessus Auditor, or SnortCP; CISSP, CISM, or ISO 27001.
  • Experience in some of the following tools and technologies:
  • Bro IDS
  • CrowdStrike EDR
  • Fidelis XPS
  • FireEye
  • RSA Netwitness
  • Sourcefire (Snort)
  • Splunk SIEM
  • Knowledge of common attacker tools, techniques and procedures (TTP)
  • Experience with major cloud service provider offerings
  • Knowledge of malware
  • Knowledge of enterprise architecture including zero trust principles
  • Knowledge of Windows and Unix operating systems
  • Knowledge of common phishing techniques and how to investigate them
  • Proficiency in technical writing
  • Able to accurately and succinctly convey information through speaking, email, and presentations
  • Comfortable in customer facing environments
  • Ability to maintain a positive customer service mentality



Desired:

  • Previous SOC or incident response experience
  • Working knowledge of regex and scripting languages
  • Understanding how EO14028 and OMB M-21-31 impact federal SOCs
  • Any SOC analyst relevant certifications such as those from GIAC or CompTIA
  • The initiative to ask for assistance and offer fresh ideas to improve the SOC’s performance



Clearance: Active Top Secret w/ SCI eligibility is required



Location: This is a hybrid role with expectations of being on the client site in Washington, DC, a few days a week



Shift Types: We are always looking for the best talent to support our 24X7 operation. We have Days, Swing, and Night shifts available depending on your preference



  • washington, United States Tyto Athene, LLC Full time

    Here at Tyto Athene, we believe our Incident Response Analyst analysts form the backbone of our cybersecurity services. Take your career to the next level and join us as a Tier 2 Incident Response Analyst. You will play a critical role in conducting in-depth analyses and responding to incidents of potential cyber threats facing our clients. In addition to...


  • Washington, United States Tyto Athene, LLC Full time

    Tyto Athene is searching for a Incident Response Analyst to support weekend shift activities. We believe our Security Operations Center (SOC) analysts form the backbone of our cybersecurity services. Take your career to the next level and join us as a Tier 2 SOC Analyst. You will play a critical role in conducting in-depth analyses and responding to...


  • Washington, United States Tyto Athene, LLC Full time

    Tyto Athene is searching for a Incident Response Analyst to support weekend shift activities. We believe our Security Operations Center (SOC) analysts form the backbone of our cybersecurity services. Take your career to the next level and join us as a Tier 2 SOC Analyst. You will play a critical role in conducting in-depth analyses and responding to...


  • Washington, United States GovStaff Full time

    GovStaff is seeking a Top Secret cleared Tier II Incident Response Analyst. Shift 1, M-F, 6am to 2:30pm. Hybrid role with expectations of working onsite most days of the week. Site location is in the NoMa area of Washington, DC, 20002 at 2CON Square. Excellent company sponsored benefits program, and an opportunity to establish stability and grow your cyber...

  • SOC Analyst

    4 weeks ago


    Washington, United States CyBourn Full time

    The Tier 1 Security Analyst is responsible for monitoring a 24x7x365 coordination center by responding to alerts, notifications, communications, and providing incident response activities such as tracking the incident, communication with stakeholders, remediation and recovery actions, and reporting pertaining to security incidents. The analysts follow...

  • Tier 2 SOC Lead

    4 weeks ago


    Washington, United States Tyto Athene, LLC Full time

    Tyto Athene is searching for a Tier 2 SOC Lead to support a law enforcement customer in Washington DC. We believe our Security Operations Center (SOC) analysts form the backbone of our cybersecurity services. This candidate will play a critical role in conducting in-depth analyses and responding to incidents of potential cyber threats facing our clients. In...

  • Tier 2 SOC Lead

    1 month ago


    Washington, United States Tyto Athene, LLC Full time

    Tyto Athene is searching for a Tier 2 SOC Lead to support a law enforcement customer in Washington DC. We believe our Security Operations Center (SOC) analysts form the backbone of our cybersecurity services. This candidate will play a critical role in conducting in-depth analyses and responding to incidents of potential cyber threats facing our clients. In...

  • Tier 2 SOC Lead

    2 months ago


    Washington, United States Tyto Athene, LLC Full time

    Tyto Athene is searching for a Tier 2 SOC Lead to support a law enforcement customer in Washington DC. We believe our Security Operations Center (SOC) analysts form the backbone of our cybersecurity services. This candidate will play a critical role in conducting in-depth analyses and responding to incidents of potential cyber threats facing our clients. In...


  • Washington, United States Crisis24 Full time

    About the Role:The Senior GSOC Analyst directs the activities within the day-to-day operations of the Headquarters Command Center (HQCC) and monitors performance for quality assurance. Using the Incident Command System, the Senior GSOC Analyst serves as the incident commander and directs the HQCC's response to incidents, until they are resolved or major...


  • Washington, United States Tyto Athene, LLC Full time

    Incident Response SpecialistAs an Incident Response Specialist at Tyto Athene, LLC, you will be responsible for conducting in-depth analyses and responding to incidents of potential cyber threats facing our clients. You will serve as the escalation point for junior analysts, helping guide them through more complex and high-priority incidents.We provide a...

  • Tier II IT Analyst

    1 month ago


    Washington, United States The Midtown Group Full time

    Our federal client is hiring a Tier 2 IT Support Analyst in Washington DC for $25/hr (W2). This is a federal position: You MUST be a US Citizen/Green Card holder to be eligible. We CANNOT accept C2C candidates at this time. Requirements: Minimum 2 years expertise in supporting desktop operating systems (Windows 7,8.X, 10 Mac OSX 10.10.X) 2 years of expertise...

  • Tier 3 SOC Analyst

    3 weeks ago


    Washington, United States Quadrant Inc Full time

    Job ID: 24-04287 Tier 3 SOC Analyst Washington DC Pay From: $125,000/yr MUST: 5+ years of related experience in a SOC environment CISSP or other IAM/IAT Level III certification required Required experience network technologies such as: Windows, Linux Operating Systems; Database security, Active Directory, Service Oriented Architectures,...

  • Tier I NOC Analyst

    1 month ago


    Washington, United States Versar Full time

    Who We Are: Headquartered in Washington, DC, Versar Global Solutions provides full mission lifecycle solutions for challenges faced by our government and commercial Customers in the natural, built, and digital environments. With nearly 2,000 team members around the world, and a rich legacy spanning more than 70 years, Versar Global Solutions delivers a broad...

  • Tier 3 SOC Analyst

    4 weeks ago


    Washington, United States Quadrant Full time

    Tier 3 SOC Analyst Washington DC Pay From: $125,000/yr MUST: 8+ years of related experience in a SOC environment CISSP or other IAM/IAT Level III certification required Required experience network technologies such as: Windows, Linux Operating Systems; Database security, Active Directory, Service Oriented Architectures, vulnerability testing, networking...

  • Tier 3 SOC Analyst

    3 weeks ago


    Washington, United States Quadrant Full time

    Tier 3 SOC Analyst Washington DC Pay From: $125,000/yr MUST: 5+ years of related experience in a SOC environment CISSP or other IAM/IAT Level III certification required Required experience network technologies such as: Windows, Linux Operating Systems; Database security, Active Directory, Service Oriented Architectures, vulnerability testing, networking...


  • Washington, United States Quadrant Inc Full time

    Job ID: 24-04287 Tier 3 SOC Analyst Washington, DC Pay From: $125,000 per year MUST: 5+ years of related experience in a SOC environment CISSP or other IAM/IAT Level III certification required Required experience network technologies such as: Windows, Linux Operating Systems; Database security, Active Directory, Service Oriented Architectures,...


  • Washington, United States Quadrant Inc Full time

    Job ID: 24-04287Make sure to read the full description below, and please apply immediately if you are confident you meet all the requirements.Tier 3 SOC Analyst Washington, DCPay From: $125,000 per yearMUST:5+ years of related experience in a SOC environmentCISSP or other IAM/IAT Level III certification requiredRequired experience network technologies such...


  • Washington, Washington, D.C., United States Critical Solutions Full time

    About the RoleCritical Solutions is seeking a Cyber Incident Response Analyst to support threat monitoring, detection, event analysis, and incident reporting in a 24/7 Security Operations Center environment.The ideal candidate will be responsible for monitoring enterprise networks and systems, detecting events, and reporting on any threats directed against...


  • Washington, Washington, D.C., United States Sev1Tech Full time

    Job Responsibilities:Sev1Tech is seeking a highly skilled Network Operations Security Center (NOSC) Tier 2 Technical Team Lead to provide daily management and oversight to a team of technicians providing support for a 24x7x365 NOSC on a large government program.The ideal candidate will have expertise in network protocols such as OSPF, BGP, and EIGRP, as well...


  • Washington, DC, United States DecisionPoint Corporation Full time

    Tier 2 Support Specialist - Mid ID: 2024-2661 Job Locations: US-DC-Washington | US-MD-Beltsville Category: Information Technology Type: Regular Full-Time Overview DecisionPoint Corporation is seeking a Tier 2 Support Specialist - Mid to provide in-depth technical support for the USDA Customer Experience Center (CEC). The role requires expertise in...