3 часа назад
Junior SOC Operations Analyst (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Junior SOC Operations Analyst (Cybersecurity): Monitoring enterprise networks and analyzing security alerts, incidents, and digital artifacts in a 24/7 SOC with an accent on threat detection, incident response, and forensic analysis. Focus on triaging SIEM alerts, investigating breaches, performing dynamic analysis, supporting vulnerability remediation, and developing incident timelines.
Location: Huntsville, Alabama, United States; rotating shifts supporting 24/7 SOC operations
Company
provides software, cybersecurity, operational, energy, modeling and simulation, data science, and programmatic services to government clients.
What you will do
- Monitor enterprise computer networks and security tools for suspicious activity and threats.
- Perform initial triage, investigate incidents, assess their scope and impact, and document security breaches.
- Conduct forensic analysis of disk images, logs, digital artifacts, and file signatures while developing investigation timelines.
- Support penetration testing, vulnerability assessments, remediation, and security hardening recommendations.
- Assist with the deployment and monitoring of firewalls, encryption tools, and other security technologies.
- Generate incident reports, contribute to root cause analysis and lessons learned, and support deployable Incident Response Team activities.
Requirements
- Hands-on experience or training with Splunk Enterprise Security.
- Strong knowledge of cybersecurity concepts, attack vectors, and mitigation strategies.
- Familiarity with network protocols, intrusion detection and prevention systems, and log analysis.
- Strong problem-solving and communication skills, with the ability to work in a fast-paced, high-stress environment on rotating shifts.
- Active Top Secret Clearance with SCI Eligibility required.
- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field.
Nice to have
- Experience with Microsoft Sentinel.
- GIAC certifications such as GMON, GCIH, GCFA, GCIA, or GNFA.
Culture & Benefits
- Work in a technical, self-organized environment focused on solving ill-defined problems.
- Develop technical solutions where requirements may be incomplete and the solution is not immediately obvious.
- Support government clients through people-focused collaboration, communication, connectivity, and teamwork.
- Access opportunities to learn new skills and keep up with current technology trends.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →