- Monitor and analyze security events and alerts from multiple sources, including security information and event management (SIEM) software, network and host-based intrusion detection systems, firewall logs, and system logs (Windows and Unix), and databases
- Separate true threats from false positives using network and log analysis and escalate possible intrusions and attacks
- Initiate tickets, document, and escalate to higher-level security analysts
- Serve as the technical escalation point and mentor for lower-level analysts
- Regularly communicate with customer IT teams to inform them of issues, help them remediate, and ensure that they continue to operate business as usual
- Perform triage of incoming issues (assess the priority, determine risk).
- Work with customers to deploy hardware and software monitoring systems
- Maintain a strong awareness of the current threat landscape.
- Excellent teamwork skills
- Knowledge of and experience with intrusion detection/prevention systems and SIEM software
- Strong knowledge and understanding of network protocols and devices.
- Strong experience with Mac OS, Windows, and Unix systems.
- Ability to analyze event logs and recognize signs of cyber intrusions/attacks
- Ability to handle high pressure situations in a productive and professional manner.
- Ability to work directly with customers to understand requirements for and feedback on security services
- Strong written and verbal communication skills and the ability to present complex technical topics in clear and easy-to-understand language
- Strong teamwork and interpersonal skills, including the ability to work effectively with a globally distributed team
- Able and willing to work in a 24/7/365 environment, including nights and weekends, on a rotating shift schedule
- Ability to provide tuning recommendations for security tools to tool administrators.
- Familiarity with tools such as Wireshark, TCP Dump, Security Onion, and Splunk
- SIEM
- Packet Analysis
- SSL Decryption
- Malware Detection
- HIDS/NIDS
- Network Monitoring Tools
- Case Management System
- Knowledge Base
- Web Security Gateway
- Email Security
- Data Loss Prevention
- Anti-Virus
- Experience in network/host vulnerability analysis, intrusion analysis, digital forensics, penetration testing, or related areas
• 2-4 years of hands-on SOC/TOC/NOC experience - GCIA required. GCIH, GCFE, CISSP, Security +, Network +, CEH, RHCA, RHCE, MCSA, MCP, or MCSE preferred
- Familiarity with tools such as IDA Pro, PEiD, PEview, Procmon, Snort, Bro, Kali Linux, Metasploit, NMAP, and Nessus
• Familiarity with GPO, Landesk, or other IT Infrastructure tools - Understanding of programming/scripting languages and ability to run basic database queries
- Minimum bachelor's degree in Information Security, Computer Science, or other IT-related field. Exceptional candidates with proven experience in security/network operations will also be considered.
-
Information Security Analyst
Found in: Lensa US 4 C2 - 3 days ago
SecuriGence LLC College Park, United StatesJob Title: Information Security AnalystLocation: College Park, MDSummaryWe deliver essential technology services to our customers in support of their missions to sustain the national security and economic interest of our nation. We are seeking qualified candidates in support of a ...
-
Information Security Analyst
Found in: Lensa US 4 C2 - 5 days ago
SecuriGence LLC College Park, United StatesJob Title: Information Security Analyst · Location: College Park, MD · Summary · We deliver essential technology services to our customers in support of their missions to sustain the national security and economic interest of our nation. We are seeking qualified candidates in sup ...
-
Information Security Analyst
Found in: One Red Cent US C2 - 13 hours ago
SecuriGence LLC College Park, United StatesJob Description · Job DescriptionJob Title: Information Security Analyst · Location: College Park, MD · Summary · We deliver essential technology services to our customers in support of their missions to sustain the national security and economic interest of our nation. We are se ...
-
Cyber Security Analyst
Found in: Dice One Red US C2 - 8 hours ago
Zachary Piper Solutions, LLC Landover Hills, MD, United StatesZachary Piper Solutions is seeking a Incident Response Analyst - Threat Hunter to join a long term project supporting the IRS in a Hybrid role (on site once a week) based in New Carrollton, MD. The Threat Hunter will work in the IRS Computer Security Response Center (CSIRC) to pr ...
-
Cyber Security Analyst
Found in: Dice One Red US C2 - 1 day ago
Base-2 Solutions Riverdale Park, United States Full timeRequired Security Clearance:Top Secret/SCI City:Riverdale State/Territory:Maryland Travel:None Potential for Teleworking:No Schedule:Full Time DoD 8570 IAT Requirement:IAT III (CASP+, CCNP Security, CISA, CISSP (or Associate), GCED, GCIH) DoD 8570 IAM Requirement:None DoD 8570 IA ...
-
Cyber Security Analyst
Found in: Lensa US 4 C2 - 1 day ago
Piper Companies Hyattsville, United StatesZachary Piper Solutions is seeking aIncident Response Analyst - Threat Hunterto join a long term project supporting the IRS in aHybridrole (on site once a week) based inNew Carrollton, MD.The Threat Hunter will work in the IRS Computer Security Response Center (CSIRC) to protect ...
-
Cyber Security Analyst with Security Clearance
Found in: Lensa US 4 C2 - 1 day ago
Base2 Solutions Riverdale Park, United StatesYou will need to login · before you can apply for a job. · Cyber Security Analyst with Security Clearance · Required Security Clearance: Top Secret/SCI City: Riverdale State/Territory: Maryland Travel: None Potential for Teleworking: No Schedule: Full Time DoD 8570 IAT Requirem ...
-
Cyber Security Analyst with Security Clearance
Found in: Careerbuilder One Red US C2 - 8 hours ago
Base-2 Solutions, LLC Riverdale, MD, United States Full timeRequired Security Clearance: Top Secret/SCI City: Riverdale State/Territory: Maryland Travel: None Potential for Teleworking: No Schedule: Full Time DoD 8570 IAT Requirement: IAT III (CASP+, CCNP Security, CISA, CISSP (or Associate), GCED, GCIH) DoD 8570 IAM Requirement: None DoD ...
-
Cyber Security Analyst
Found in: Lensa US 4 C2 - 5 days ago
Piper Companies New Carrollton, United StatesZachary Piper Solutions is seeking a · Incident Response Analyst - Threat Hunter · to join a long term project supporting the IRS in a · Hybrid · role (on site once a week) based in · New Carrollton, MD. · The Threat Hunter will work in the IRS Computer Security Response Ce ...
-
Research Analyst with Security Clearance
Found in: Dice One Red US C2 - 7 hours ago
SPA College Park, MD, United StatesOverview Systems Planning and Analysis, Inc · (SPA) delivers high-impact, technical solutions to complex national security issues · With over 50 years of business expertise and consistent growth, we are known for continuous innovation for our government customers, in both the US ...
-
SOC Security Analyst I
Found in: Lensa US 4 C2 - 3 days ago
BlueVoyant College Park, United StatesBlueVoyant is looking for a SOC Security Analyst I to help our global customers manage their IT security. You will be part of a fast-paced team that helps customers to reduce the impact of security incidents and ensures that critical business operations continue unhindered. · Thi ...
-
SOC Security Analyst I
Found in: One Red Cent US C2 - 13 hours ago
BlueVoyant College Park, United StatesJob Description · Job DescriptionBlueVoyant is looking for a SOC Security Analyst I to help our global customers manage their IT security. You will be part of a fast-paced team that helps customers to reduce the impact of security incidents and ensures that critical business oper ...
-
Cyber Security Analyst
Found in: Appcast US C2 - 5 days ago
Belcan Beltsville, United StatesJob Summary: · A(n) Cybersecurity Analyst job in Beltsville, MD is currently available through Belcan at one of our key Federal Civilian clients. To be considered for this role, you will have a bachelor's degree in computer science ore related discipline and 5 years of relevant e ...
-
SOC Security Analyst I
Found in: One Red Cent US C2 - 5 days ago
BlueVoyant College Park, United StatesJob Description · Job DescriptionBlueVoyant is looking for a SOC Security Analyst I to help our global customers manage their IT security. You will be part of a fast-paced team that helps customers to reduce the impact of security incidents and ensures that critical business oper ...
-
SOC Security Analyst I
Found in: Talent US C2 - 1 hour ago
BlueVoyant College Park, United States Full timeBlueVoyant is looking for a SOC Security Analyst I to help our global customers manage their IT security. You will be part of a fast-paced team that helps customers to reduce the impact of security incidents and ensures that critical business operations continue unhindered. · T ...
-
Cyber Security Fusion Analyst
Found in: Lensa US 4 C2 - 5 days ago
Leidos Riverdale Park, United StatesThe Leidos Defense Group has an opening for a · Cyber Security Fusion Analyst · on the DISA GSM-O II program supporting Joint Force Headquarters DODIN at Fort Meade. · Position Summary:GSM-O II provides network operations and cyber defense support to the Defense Information Sy ...
-
Information Security Analyst System Admin
Found in: Lensa US 4 C2 - 1 day ago
GAMA-1 Technologies College Park, United StatesProvide Information assurance support for NOAA Data Center operations work. Review system security posture and work with IBM system administration teams to either resolve or mitigate the findings. Create a weekly dashboard of Security posture of the NCEP environment · Task Descri ...
-
Information Security Analyst System Admin
Found in: Lensa US 4 C2 - 3 days ago
GAMA-1 Technologies Riverdale Park, United StatesProvide Information assurance support for NOAA Data Center operations work. Review system security posture and work with IBM system administration teams to either resolve or mitigate the findings. Create a weekly dashboard of Security posture of the NCEP environment · Task Descr ...
-
Information Security Analyst Level III
Found in: Lensa US 4 C2 - 5 days ago
Centuria Inc. College Park, United StatesTitle: Information Security Analyst/ System Admin Level III · Location: College Park, MD · Centuria, a Service-Disabled Veteran-Owned Small Business (SDVOSB), has been delivering IT, Engineering, and Scientific solutions to the Federal Government since 2002. During our two deca ...
-
Information Security Analyst System Admin
Found in: ZipRecruiter Test10P US C2 - 59 minutes ago
GAMA-1 Technologies Riverdale Park, United StatesJob Description · Job DescriptionProvide Information assurance support for NOAA Data Center operations work. Review system security posture and work with IBM system administration teams to either resolve or mitigate the findings. Create a weekly dashboard of Security posture of t ...
SOC Security Analyst - College Park, United States - BlueVoyant
Description
Job Description
Job DescriptionSOC Security Analyst (Level 2)
The preference is hybrid out of College Park, Maryland but remote US based candidates will be considered. Either way, the schedule will be a Panama schedule: (slow rotating shift pattern that uses 4 teams and two 12-hour shifts to provide 24/7 coverage. The working and non-working days follow this pattern: 2 days on, 2 days off, 3 days on, 2 days off, 2 days on, 3 days off)
Summary
BlueVoyant is looking for Security Operations Center (SOC) Analysts (Level 2) to help our global customers manage their IT security. You will be part of a fast-paced team that helps customers to reduce the impact of security incidents and ensures that critical business operations continue unhindered.
Key Responsibilities
Basic Qualifications
Strong knowledge of the following:
Preferred Qualifications
Education
About BlueVoyant
At BlueVoyant, we recognize that effective cyber security requires active prevention and defense across both your organization and supply chain. Our proprietary data, analytics and technology, coupled with deep expertise, works as a force multiplier to secure your full ecosystem. Accuracy Actionability Timeliness Scalability
Led by CEO, Jim Rosenthal, BlueVoyant's highly skilled team includes former government cyber officials with extensive frontline experience in responding to advanced cyber threats on behalf of the National Security Agency, Federal Bureau of Investigation, Unit 8200 and GCHQ, together with private sector experts. BlueVoyant services utilize large real-time datasets with industry leading analytics and technologies.
Founded in 2017 by Fortune 500 executives, including Executive Chairman, Tom Glocer, and former Government cyber officials, BlueVoyant is headquartered in New York City and has offices in Maryland, Tel Aviv, San Francisco, London, Budapest and Latin America.
All employees must be authorized to work in the United States. BlueVoyant provides equal employment opportunities to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability or genetics. In addition to federal law requirements, BlueVoyant complies with applicable state and local laws governing non-discrimination in employment in every location in which the company has facilities.
Disclaimer: Please note that pursuant to contractual requirements and applicable law, in order for employees to perform work on some of the company's federal contracts, U.S. citizenship is required. Accordingly, an employee's ability to perform work on such contracts is contingent upon the company's verification of the employee's citizenship status. Furthermore, individuals may be subject to additional background checks and fingerprinting.
BlueVoyant Candidate Privacy Notice
To understand how we secure and manage your personal data upon submitting a job application, please see our Candidate Privacy Notice, which can be found here - Candidate Privacy Notice
Powered by JazzHR
155N4Spphb