20 часов назад
CSOC Analyst T1 (Cybersecurity)
64 000 - 128 000$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
CSOC Analyst T1 (Cybersecurity): Monitoring and triaging cybersecurity alerts from SIEM systems, CSOC mailboxes, and phone channels with an accent on incident identification, threat intelligence, and security operations automation. Focus on escalating incidents, applying AI/ML and SOAR techniques to improve detection and response, and analyzing cloud and network security threats.
Location: Falls Church, Virginia, USA, or remote within the United States
Salary: $64,000–$128,000 per year
Company
provides cybersecurity, data operations, systems integration, and intelligence mission support services for U.S. government, defense, civil, and commercial customers.
What you will do
- Monitor and interpret alerts from SIEM systems, CSOC mailboxes, and phone channels to identify potential security incidents.
- Collect initial incident details, including IP addresses, locations, and affected assets.
- Perform alert triage, execute response processes, and escalate events requiring further investigation to Tier 2 and the Threat Management team.
- Use AI/ML-based tools and SOAR capabilities to detect anomalies, automate triage, and improve threat intelligence.
- Analyze threats and risks, adapt defenses, and identify automation opportunities across SOC operations.
- Collaborate with Operations teams to improve CSOC capabilities and stay current with cybersecurity trends, threat actors, and AI/ML research.
Requirements
- U.S. citizenship and eligibility to obtain and maintain a U.S. government security clearance are required.
- The position is contingent on funding, customer approval, an open position, and completion of a favorable background investigation.
- At least 1 year of experience in IT Operations and at least 1 year of experience in IT Security.
- Working knowledge of platform security, threat lifecycle management, TCP/IP, incident management, control frameworks, and risk management.
- Strong understanding of IDS/IPS technologies and familiarity with cloud security across AWS, Azure, or GCP.
- Bachelor of Science degree in Computer Science, Computer Engineering, Engineering, Science, or a related field; related work experience may substitute for degree-level education.
Nice to have
- Splunk experience, including queries, data models, and dashboards.
- Cloud monitoring experience.
- Certifications such as CEH, CISSP, CompTIA Security+, or GCIH.
- Experience evaluating AI/ML solutions in a SOC environment and implementing automation use cases.
Culture & Benefits
- Collaborative environment focused on teamwork, innovation, and solving complex cybersecurity and intelligence challenges.
- Medical, vision, and dental insurance.
- 401(k) plan, paid time off, holidays, and additional insurance coverage.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
22 часа назад
Cyber Security Analyst
100 000 - 130 000$
23 часа назад
Signals & Defense Engineer, Junior (Cybersecurity)
55 200 - 126 000$
7 дней назад
Information Security Analyst (Cybersecurity)
85 200 - 115 000$
3 дня назад
Senior Security Analyst, Detection & Response (Cybersecurity)
100 000 - 130 000$
4 часа назад
Senior Cybersecurity Specialist
85 730 - 98 500$
4 дня назад
Cybersecurity Engineer (Cloud)
130 200 - 195 400$