SOC Analyst II
Washington, DC 
Share
Posted 1 day ago
Job Description
Job Title: SOC Analyst II

Location: 45 L Street NE, Washington, District of Columbia 20554

Clearance Level: Public Trust

Required Certification(s):
* CompTIA Security+ or CISSP is a must
* GIAC Certified Incident Handler (GCIH) or GIAC Certified Intrusion Analyst (GCIA) certification is required - one of these.

SUMMARY
This federal program has a Network Security Operations Center and requires a dedicated analyst to join the SOC team to perform analysis of cyber threats.
Monitor and analyze network traffic, Intrusion Detection Systems (IDS), security events and logs and provide a technical resource and escalation point for tier 1 analysts.

***Schedule: Monday - Friday 6am - 2pm or 10am - 6pm. On - site, 3 to 4 days a week in Washington, D.C.

JOB DUTIES AND RESPONSIBILITIES
* The candidate will Monitor and analyze network traffic, Intrusion Detection Systems (IDS), security events and logs and provide a technical resource and escalation point for tier 1 analysts. The candidate will perform incident response to investigate and resolve security incidents. The candidate will need to be able to determine between false and true positives events, prioritizing them appropriately and see them through from end to end. Additionally, the candidate will perform or review root cause analysis efforts following incident recovery. The candidate will compose security alert notifications and other communications on behalf of the SOC

QUALIFICATIONS

Required Certifications
* All NSOC personnel shall hold the CompTIA Security+ or CISSP certification at a minimum at all times during performance of this task order. Additionally, one EnCase Certified Examiner (EnCE) certification,
* one GIAC Certified Incident Handler (GCIH) or GIAC Certified Intrusion Analyst (GCIA) certification is required.

Education, Background, and Years of Experience
* Bachelor's Degree from an accredited college and 5+ years experience in the field of cyber security with demonstrated experience in protecting information; monitoring systems and network events; detecting security attacks and breaches; coordinating responses to security incidents; and reporting vulnerabilities.
* Demonstrated ability to work independently or under only general direction.

ADDITIONAL SKILLS & QUALIFICATIONS

Required Skills
* Understanding of command line scripting and implementation (e.g., Python, PowerShell)
* Ability to write new content/searches/scripts (e.g., Splunk dashboards, Splunk ES alerts, SNORT signatures, Python scripts, PowerShell scripts)
* Familiarity with Splunk Enterprise Security Strong understanding of networking (TCP Flags, TCP Handshake, IP addressing, Firewalls, Proxy, IDS, IPS)
* Ability to perform Netflow / packet capture (PCAP) analysis
* Experience with cyber threat hunting

WORKING CONDITIONS

Environmental Conditions
* Contractor site with 0%-10% travel possible. Possible off-hours work to support cyber-related incidents. General office environment. Work is generally sedentary in nature, but may require standing and walking for up to 10% of the time. The working environment is generally favorable. Lighting and temperature are adequate, and there are not hazardous or unpleasant conditions caused by noise, dust, etc. Work is generally performed within an office environment, with standard office equipment available.

Strength Demands
* Sedentary - 10 lbs. Maximum lifting, occasional lift/carry of small articles. Some occasional walking or standing may be required. Jobs are sedentary if walking and standing are required only occasionally, and all other sedentary criteria are met.

Physical Requirements
* Stand or Sit; Walk; Repetitive Motion; Use Hands / Fingers to Handle or Feel; Stoop, Kneel, Crouch, or Crawl; See; Push or Pull; Climb (stairs, ladders) or Balance (ascend / descend, work atop, traverse).

At Agile Defense, we know that our employees are our most important asset. We believe in our responsibility to our fellow employees, customers, company, and to our country. We promote teamwork, integrity, and creativity; we expect our fellow employees to also live these values.

Agile Defense, Inc. does not discriminate in practices or employment opportunities on the basis of an individual's race, color, national or ethnic origin, religion, age, sex, gender, sexual orientation, marital status, veteran status, disability, or any other proscribed category set forth in federal or state regulations.

 

Job Summary
Start Date
As soon as possible
Employment Term and Type
Regular, Full Time
Required Education
Bachelor's Degree
Required Experience
5+ years
Email this Job to Yourself or a Friend
Indicates required fields