Назад
Company hidden
20 часов назад

CSOC Analyst T1 (Cybersecurity)

64 000 - 128 000$
Формат работы
remote (только USA)/onsite
Тип работы
fulltime
Грейд
junior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
CSOC Analyst T1 (Cybersecurity): Monitoring and triaging cybersecurity alerts from SIEM systems, CSOC mailboxes, and phone channels with an accent on incident identification, threat intelligence, and security operations automation. Focus on escalating incidents, applying AI/ML and SOAR techniques to improve detection and response, and analyzing cloud and network security threats.

Location: Falls Church, Virginia, USA, or remote within the United States

Salary: $64,000–$128,000 per year

Company

hirify.global provides cybersecurity, data operations, systems integration, and intelligence mission support services for U.S. government, defense, civil, and commercial customers.

What you will do

  • Monitor and interpret alerts from SIEM systems, CSOC mailboxes, and phone channels to identify potential security incidents.
  • Collect initial incident details, including IP addresses, locations, and affected assets.
  • Perform alert triage, execute response processes, and escalate events requiring further investigation to Tier 2 and the Threat Management team.
  • Use AI/ML-based tools and SOAR capabilities to detect anomalies, automate triage, and improve threat intelligence.
  • Analyze threats and risks, adapt defenses, and identify automation opportunities across SOC operations.
  • Collaborate with Operations teams to improve CSOC capabilities and stay current with cybersecurity trends, threat actors, and AI/ML research.

Requirements

  • U.S. citizenship and eligibility to obtain and maintain a U.S. government security clearance are required.
  • The position is contingent on funding, customer approval, an open position, and completion of a favorable background investigation.
  • At least 1 year of experience in IT Operations and at least 1 year of experience in IT Security.
  • Working knowledge of platform security, threat lifecycle management, TCP/IP, incident management, control frameworks, and risk management.
  • Strong understanding of IDS/IPS technologies and familiarity with cloud security across AWS, Azure, or GCP.
  • Bachelor of Science degree in Computer Science, Computer Engineering, Engineering, Science, or a related field; related work experience may substitute for degree-level education.

Nice to have

  • Splunk experience, including queries, data models, and dashboards.
  • Cloud monitoring experience.
  • Certifications such as CEH, CISSP, CompTIA Security+, or GCIH.
  • Experience evaluating AI/ML solutions in a SOC environment and implementing automation use cases.

Culture & Benefits

  • Collaborative environment focused on teamwork, innovation, and solving complex cybersecurity and intelligence challenges.
  • Medical, vision, and dental insurance.
  • 401(k) plan, paid time off, holidays, and additional insurance coverage.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →