Jr. Incident Response Analyst (Hybrid Remote - SOC)

Full Time
Rosslyn, VA 22209
Posted
Job description

Incident Response SOC Analyst (Junior/Intermediate)

Department of State

Location: 4 days remote, 1 day onsite in Arlington, VA

Hours: 3pm - 11pm (Mon - Friday)

The SOC Analyst performs Computer Network Defense monitoring, analytics, and incident responding via Splunk. Identifies and escalates incidents following document procedures and SOPs. Coordinates with internal and external teams to address threats and assists with the investigation and forensic analysis.

Responsibilities:

  • Perform real-time cyber defense incident handling (e.g., forensic collections, intrusion correlation and tracking, threat analysis, and direct system remediation) tasks to support Incident Response Teams (IRTs).
  • Log analysis to identify trends, abnormal behavior, correlate events, and detection of TTPs
  • Communicating with customers and teammates clearly and concisely.
  • Investigating alerts and threat hunting. Properly escalating all identified incidents following SOPs.
  • Characterize and analyze network traffic to identify anomalous activity and potential threats to network resources.
  • Notify designated managers, cyber incident responders, and cybersecurity service provider team members of suspected cyber incidents and articulate the event's history, status, and potential impact for further action in accordance with the organization's cyber incident response plan.
  • Perform analysis of log files from a variety of sources (e.g. individual host logs, network traffic logs, firewall logs, and intrusion detection system {IDS} logs) to identify possible threats to network security.

Qualifications:

  • BS degree and 2+ years SOC or Cybersecurity related experience or high school diploma/equivalent and 4 years’ experience.
  • US Citizenship and an active or Interim SECRET Government Security Clearance with the ability to obtain TOP SECRET if needed.
  • Experience configuring and utilizing monitoring/logging and security analysis solutions.
  • Strength in multitasking and prioritization to meet periodically changing deadlines.
  • Splunk experience

Desired:

  • Experience querying and manipulating data with Splunk SPL. Knowledge of data types, conditions, and regular expressions.
  • Understanding of MITRE ATT&CK framework or other TTP’s.
  • Knowledge of TCP/IP networking and various protocols such as DNS, HTTP.
  • Knowledge of data analysis
  • Security+ CE or equivalent Cybersecurity certification

Obsidian Global, LLC is an Equal Employment Opportunity and Affirmative Action Employer. All qualified applicants will receive consideration for employment without regards to that individual's race, color, religion or creed, national origin or ancestry, sex (including pregnancy), sexual orientation, gender identity, age, physical or mental disability, veteran status, genetic information, ethnicity, citizenship, or any other characteristic protected by law.

Job Type: Full-time

Pay: $90,000.00 - $120,000.00 per year

Benefits:

  • 401(k)
  • 401(k) matching
  • Dental insurance
  • Employee assistance program
  • Flexible schedule
  • Flexible spending account
  • Health insurance
  • Health savings account
  • Life insurance
  • Paid time off
  • Relocation assistance
  • Vision insurance

Schedule:

  • 8 hour shift
  • Evening shift

Ability to commute/relocate:

  • Rosslyn, VA 22209: Reliably commute or planning to relocate before starting work (Required)

Experience:

  • Incident Response: 1 year (Required)
  • Splunk: 1 year (Required)

Security clearance:

  • Secret (Required)

Work Location: Hybrid remote in Rosslyn, VA 22209

www.arclintfl.com is the go-to platform for job seekers looking for the best job postings from around the web. With a focus on quality, the platform guarantees that all job postings are from reliable sources and are up-to-date. It also offers a variety of tools to help users find the perfect job for them, such as searching by location and filtering by industry. Furthermore, www.arclintfl.com provides helpful resources like resume tips and career advice to give job seekers an edge in their search. With its commitment to quality and user-friendliness, www.arclintfl.com is the ideal place to find your next job.

Intrested in this job?

Related Jobs

All Related Listed jobs