SOC Cyber Security Analyst - Falls Church, United States - General Dynamics Information Technology

Mark Lane

Posted by:

Mark Lane

beBee recruiter


Description

Type of Requisition:
Regular


Clearance Level Must Currently Possess:
Secret

Clearance Level Must Be Able to Obtain:
Secret


Suitability:

Public Trust/Other Required:

Job Family:
Information Security


Job Qualifications:

Skills:
Cyber Defense, Cybersecurity, Information Assurance, Information Systems, Systems Security


Certifications:
Certified Ethical Hacker (CEH) - EC Council, Cisco Certified Network Associate (CCNA) Security - Cisco Systems, Security+, CE - CompTIA-Security+ CE


Experience:

4 + years of related experience


US Citizenship Required:
Yes


Job Description:

We are GDIT. The people supporting and securing some of the most complex government, defense, and intelligence projects across the country. We ensure today is safe and tomorrow is smarter. Our work has meaning and impact on the world around us, but also on us, and that's important. GDIT is your place. You make it your own by embracing autonomy, seizing opportunity, and being trusted to deliver your best every day. We think. We act. We deliver. There is no challenge we can't turn into opportunity.

At GDIT, people are our differentiator. We are seeking a Systems Operation Center Cyber Security Analyst to provide timely and professional cyber support. To be successful in this position you need to be collaborative and willing to work within a team.

While you will need to be a self-starter, completing tasks on your own, working together is critical in this role.

You will be interfacing with users and senior staff. Therefore, you should be articulate in your communications. You will need to explain technical intricacies to end users in a way that is easily understood. You will need to maintain a high-level customer service focus, exhibiting expertise, courtesy, timeliness, and professionalism.

Provide technical support and troubleshooting services for incoming queries and issues related to computer systems, software, and hardware and assist the Service Desk Manager as needed.


Work Location and Shift Schedule:
How the SOC Cyber Security Analyst will make an impact:

  • Performs forensic analysis of digital information and gathers and handles evidence. Identifies network computer intrusion evidence and perpetrators.
  • Uses data collected from a variety of cyber defense tools (e.g., IDS alerts, firewalls, network traffic logs) to analyze events that occur within their environments for the purposes of mitigating threats.
  • Interprets, analyzes, and reports all events and anomalies in accordance with computer network directives, including initiating, responding, and reporting discovered events.
  • Evaluates, tests, recommends, coordinates, monitors, and maintains cybersecurity policies, procedures, and systems, including access management for hardware, firmware, and software.
  • Ensures that cybersecurity plans, controls, processes, standards, policies, and procedures are aligned with cybersecurity standards.
  • Identifies security risks and exposures, determines the causes of security violations, and suggests procedures to halt future incidents and improve security.
  • Develops techniques and procedures for conducting cybersecurity risk assessments and compliance audits, the evaluation and testing of hardware, firmware, and software for possible impact on system security, and the investigation and resolution of security incidents such as intrusion, frauds, attacks, or leaks.
  • Correlates data feeds and logs to analyze with known threats and incidents, build, implement, and refine event correlation rules, logic, content, and analysis techniques that will enable SOC personnel to correlate events and security incidents with specific sources, such as individuals, threat actors, IT systems, devices, and IP addresses.
  • Responsible for performing correlation activities and trend analysis to discover attack patterns and assess the risks and potential exposure of assets and develop and enhance correlation rules, logic, and analysis techniques for associating data. Provides guidance to junior-level staff, as necessary.
  • May coach and provide guidance to less-experienced professionals.
  • May serve as a team or task lead.
  • Ensure cybersecurity inspections, tests, assessments, and reviews are synchronized and coordinated with all stakeholders.
  • Assists in the implementation, management, and administration of the organization's structure and workflow within eMASS.
  • Conduct reviews of cybersecurity information papers and plans with CYBERCOM, ARCYBER, Air National Guard Cyber, National Security Agency (NSA), Federal Bureau of Investigations (FBI), Department of Justice (DOJ), and Department of Homeland Security (DHS).
  • Assists in the enforcement of the DoD Cyberspace Workforce Framework (DCWF) and cybersecurity certification program to ensure training and certification requirements are enforced, managed, and reported.
  • Assists ARNG with the implementation of a documented and streamlined process for reviewing, processing, and approving systems access requests

More jobs from General Dynamics Information Technology