Jobs
>
Herndon

    Incident Response Analyst - Herndon, United States - Uvcyber

    Uvcyber
    Uvcyber Herndon, United States

    4 days ago

    Default job background
    Description
    Make a difference here.
    UltraViolet Cyber is a leading platform-enabled unified security operations company providing a comprehensive suite of security operations solutions.

    Founded and operated by security practitioners with decades of experience, the UltraViolet Cyber security-as-code platform combines technology innovation and human expertise to make advanced real-time cybersecurity accessible for all organizations by eliminating risks of separate red and blue teams.

    By creating continuously optimized identification, detection, and resilience from today's dynamic threat landscape, UltraViolet Cyber provides both managed and custom-tailored unified security operations solutions to the Fortune 500, Federal Government, and Commercial clients.

    UltraViolet Cyber is headquartered in McLean, Virginia, with global offices across the U.S. and in India.
    UltraViolet Cyber is seeking aSecurity Analyst


    who will monitor and analyze security events and alerts reported by the SIEM on a 24x7 basis to identify and investigate suspicious or malicious activity, or other cyber events which violate policy.

    The analyst will be responsible for analyzing logs and events from any other device types which may send logs or events to the SOC in the future.

    Non-traditional device feeds will deliver data to the SIEM architecture (e.g., Human Resources (HR) data, badging information, and physical security devices, etc.).

    The analyst will provide documentation detailing any additional information collected and maintained for each security investigation.
    The analyst will record all artifacts (i.e.

    emails, logs, documents, Uniform Resource Locators (URLs), screenshots, etc.) associated with all security events and incident investigations within the SOC incident and tracking application.

    Must be legally allowed to work in the US, and the work must be done in the US.
    No third-party candidates will be considered
    What You Have

    Years of Experience:
    At least three years of experience in working as a security analyst in a security operations center and/or in handling, responding and managing computer security incidents

    Must have the ability and prior experience with analyzing information technology security events to discern events that qualify as legitimate security incidents as opposed to non-incidents.

    This includes the identification of malicious code present within a computer system as well identification of malicious activities that are present within a computer system and/or enterprise network;
    Must possess excellent verbal and written communications skills and ability produce clear and thorough security incident reports and briefings;
    Must possess excellent organizational and attention to details skills;
    Must possess a working knowledge of the various operating systems (e.g. Windows, OS X, Linux, etc.) commonly deployed in enterprise networks. A conceptual understanding of Windows Active Directory is also required;
    Must possess a working knowledge of network communications and routing protocols (e.g.

    TCP, UDP, Internet Control Message Protocol (ICMP), Border Gateway Protocol (BGP), Multi-Protocol Label Switching (MPLS), etc.) and common internet applications and standards (e.g.

    Simple Mail Transfer Protocol (SMTP), DNS, DHCP, SQL, Hypertext Transfer Protocol (HTTP), Hypertext Transfer Protocol Secure (HTTPS), etc.);

    Must have experience working with various event logging systems and must be proficient in the review of security event log analysis.

    Previous experience with SIEM platforms that perform log collection, analysis, correlation, and alerting is also required;
    Must have proficiency in utilizing various Packet Capture (PCAP) applications/engines and in the analysis of PCAP data;
    Must have experience with the identification and implementation of counter-measures or mitigating controls for deployment and implementation in the enterprise network environment;
    $75,000 - $95,000 a year

    We sincerely thank all applicants in advance for submitting their interest in this position. We know your time is valuable.

    UltraViolet Cyber welcomes and encourages diversity in the workplace regardless of race, gender, religion, age, sexual orientation, gender identity, disability, or veteran status.

    If you want to make an impact, UltraViolet Cyber is the place for you

    #J-18808-Ljbffr


  • Leidos Ashburn, United States

    **Description** · Our Security Operations Center (SOC) Support Services is a US Government program responsible to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the government Enterprise. We have primary responsibility for monitoring ...


  • MindPoint Group Washington, United States

    MindPoint Group is seeking a Security Operations Center (SOC) Analyst that will collaborate with members of the SOC team to improve procedures for the SOC to enhance coordination and incident response operations. You must be willing to work in a 24x7x365 SOC environment demonstra ...


  • MindPoint Group Washington, United States

    MindPoint Group is seeking a Tier 2 Incident Response Analyst to support threat monitoring, detection, event analysis, and incident reporting. The Security Operations Center is a 24/7 environment. You will be responsible for monitoring enterprise networks and systems, detecting e ...


  • Oracle Reston, United States

    Job Description · *US Citizenship with preference for TS/SCI and FSP · Are you interested in securing a large-scale distributed SaaS environment? Oracle's SaaS Cloud Security team is building new technologies that operate at high scale in our broadly distributed multi-tenant clou ...


  • Oracle Reston, United States

    Job Description · *US Citizenship with preference for TS/SCI and FSP · Are you interested in securing a large-scale distributed SaaS environment? Oracle's SaaS Cloud Security team is building new technologies that operate at high scale in our broadly distributed multi-tenant clou ...


  • Oracle Reston, United States Regular Employee

    *US Citizenship with preference for TS/SCI and FSP · Are you interested in securing a large-scale distributed SaaS environment? Oracle's SaaS Cloud Security team is building new technologies that operate at high scale in our broadly distributed multi-tenant cloud environment. The ...


  • QinetiQ US Reston, United States

    We are a world-class team of professionals who deliver next generation technology and products in robotic and autonomous platforms, ground, soldier, and maritime systems in 50+ locations world-wide. Much of our work contributes to innovative research in the fields of sensor scien ...


  • QinetiQ Reston, United States

    Company Overview · We are a world-class team of professionals who deliver next generation technology and products in robotic and autonomous platforms, ground, soldier, and maritime systems in 50+ locations world-wide. Much of our work contributes to innovative research in the fie ...


  • QinetiQ Reston, United States

    Company Overview · We are a world-class team of professionals who deliver next generation technology and products in robotic and autonomous platforms, ground, soldier, and maritime systems in 50+ locations world-wide. Much of our work contributes to innovative research in the fi ...


  • Agile Defense Ashburn, United States

    Agile Defense · We are in the business of innovation through information technology and cybersecurity, delivered exceptionally. · View company page · Agile Defense provides leading-edge Digital Transformation solutions to support and advance our customers' mission. We deliver ...


  • QinetiQ Reston, United States

    You will need to login · before you can apply for a job. · Cyber Incident Response Analyst with Security Clearance · Company Overview We are a world–class team of professionals who deliver next generation technology and products in robotic and autonomous platforms, ground, sold ...


  • MindPoint Group Washington, United States

    Text code IRAWD to to apply · MindPoint Group delivers industry-leading cybersecurity solutions, services, and products. We are trusted cybersecurity advisors to key government and commercial decision-makers and support security operations for some of the most security-conscious ...


  • Leidos Ashburn, United States

    · Leidos is seeking an Incident Response Analyst to join our team on a highly visible cyber security single-award IDIQ vehicle that provides security operations center (SOC) support, cyber analysis, application development, and a 24x7x365 support staff. · Our Security Operations ...


  • Leidos Ashburn, United States

    Description · Leidos is seeking an Incident Response Analyst to join our team on a highly visible cyber security single-award IDIQ vehicle that provides security operations center (SOC) support, cyber analysis, application development, and a 24x7x365 support staff. · Our Securi ...


  • Leidos Ashburn, United States Full time

    Description · Leidos is seeking an Incident Response Analyst to join our team on a highly visible cyber security single-award IDIQ vehicle that provides security operations center (SOC) support, cyber analysis, application development, and a 24x7x365 support staff. · Our Securi ...


  • Piper Companies New Carrollton, United States

    Zachary Piper Solutions is seeking a Incident Response Analyst to join a long-term, classified federal program in New Carrollton, MD. This is a hybrid position that requires 1 day per week onsite. The Incident Response Analyst will be responsible for protecting the network and al ...


  • Computer World Services (CWS)Corporation Washington DC, United States

    · Job Description · The mission of the OFR is to support the Financial Stability Oversight Council (FSOC) in promoting financial stability by: collecting data on behalf of FSOC; providing such data to FSOC and member agencies; standardizing the types and formats of data report ...


  • Knewin Arlington, United States

    Detection & Response Analyst · We are looking for people with a passion for investigation and forensic analysis to join our MDR SOC team at Rapid7. As a Detection & Response Analyst, you will utilize Rapid7's advanced tools to investigate and triage security events and work side- ...


  • Edgewater Federal Solutions Bethesda, United States

    Overview: · Edgewater is seeking an Incident Response Analyst to provide support to an Edgewater Federal government contract. · Responsibilities: · As a Incident Response Analyst, you and team will be responsible for: · Manning a 24x7x365 cybersecurity operations center and r ...


  • XOR Security Arlington, United States

    Job Title: · Incident Response Analyst · Location: · 1110 N. Glebe Rd. Arlington, Virginia 22201 · Clearance Level: · Top Secret · SUMMARY: · XOR Security, An Agile Defense Company is currently seeking an · Incident Response Analyst · with advanced skillsets in Digital F ...