IT SOC Engineer I

Posted 28 Days Ago
Be an Early Applicant
Homeland, VA, USA
In-Office
100K-120K Annually
Mid level
Artificial Intelligence • Cloud • Information Technology • Security • Software
The Role
Provide SOC support including digital forensics, threat intelligence, detection/response, vulnerability assessment, and penetration testing. Advise on SOC architecture and tools, maintain SOC procedures and security documentation (SSP, SAR, POA&M), assess and remediate security controls per NIST RMF/CSF, and support incident assessment and response across DFC locations.
Summary Generated by Built In
Job Summary & Responsibilities

Everforth ECS is seeking an IT SOC Engineer I to work remotely.  


Everforth ECS currently seeks a Cybersecurity professional to join our team in support of US International Development Finance Corporation's (DFC)’s Chief Information Security Officer (CISO) within the Office of Information Technology (OIT). This position will provide governance, risk management, compliance support, security architecture, standards and design, cybersecurity monitoring (Detection, Response, and Prevention), and threat intelligence. The functions provided will comply with the NIST RMF per Office of Management and Budget (OMB) guidance and the NIST Cybersecurity Framework (CSF) Functions aligned with proven industry standards and best practices.


Responsibilities are:

  • Responsible for performance of forensic analysis on various digital media devices and mediums to identify, reverse engineer, and obfuscate content related to an incident, such as malicious content.
  • Consult with security operations regarding cybersecurity communications and deliver or request assistance or assist with investigations.
  • Provide technical expertise in cyber adversary capabilities and an assessment of the intentions of these groups to conduct Computer Network Exploitation (CNE) and Computer Network Attack (CNA) against U.S. private sector and Government networks and information systems.
  • Consult and provide onsite and remote vulnerability assessment capabilities as a sustained, full-time program independent of incident detection, recovery, or reporting activities.
  • Consult both internal and external penetration and security testing which mimics real-world attacks to identify methods for circumventing the security features of an application, system, and network.
  • Consult with teams to detect, prevent, and respond to threats posed by malicious, negligent, or compromised insiders by maintaining in-depth visibility into the DFC Enterprise and having a means of filtering and prioritizing threat data into concise, actionable intelligence.
  • Provide expert security engineering and subject matter expertise to conduct market research, product evaluation, testing, configuration, deployment, operations, and maintenance support for various SOC software tools and technologies.
  • Advise and assist with SOC architecture activities for all DFC SOC information systems initiatives supporting all SOC tools and capabilities.
  • Create procedures and documentation for maintaining SOC hardware and software.
  • Determine and document the security impact of proposed or actual changes to the information systems and their environment of operation.
  • Assess the technical, management, and operational security controls employed within and inherited by the information systems in accordance with the organization defined monitoring strategy.
  • Facilitate and perform remediation actions based on the results of ongoing monitoring activities and the outstanding items in the POA&M.
  • Update the System Security Plan, SAR, and POA&Ms. Key Deliverables: updated Residual Risk Statement and Risk Acceptance Recommendation Report.
  • Report the security status of information systems to appropriate organizational officials on an ongoing basis.
  • Review the reported security status of information systems ongoing Risk Determination and Acceptance.
  • Incident Assessment and Response Support; work with the DFC CIRT or any other pertinent parties (including external vendors) at any DFC location to recover from any incident.

Salary Range: $100,000 - $120,000

General Description of Benefits

Preferred Qualifications
  • Must possess an Active Secret clearance.
  • 3+ years of technical experience in Cybersecurity, maintaining IT security policies, processes, and guidance.
  • 8570.01/8140.03 Cybersecurity certification. (CompTia Security+CE)
  • Experience with mitigation of security control vulnerabilities based on Cybersecurity principles and tenets. (e.g., STIG, NIST SP 800-53, Cybersecurity Risk Management Framework, etc.).
  • Hands-on experience supporting Security Operations Center (SOC) operations in an enterprise environment.
  • Experience performing Tier 1 security alert monitoring, triage, investigation, and escalation using SIEM platforms.
  • Experience managing and resolving SOC ticket queues, including documenting findings, escalating incidents, and tracking issues through resolution.
  • Experience performing phishing email triage and analysis, including supporting phishing investigations and campaigns.
  • Hands-on experience with security tools and platforms such as Microsoft Defender, Splunk, Security Onion, and Absolute, or similar technologies.
  • Ability to analyze security alerts and events, identify potential threats, and follow established incident response and escalation procedures.

Skills Required

  • Active Secret clearance
  • 3+ years technical experience in Cybersecurity maintaining IT security policies, processes, and guidance
  • 8570.01/8140.03 Cybersecurity certification (CompTIA Security+ CE)
  • Experience with mitigation of security control vulnerabilities using STIG, NIST SP 800-53, and RMF
  • Experience implementing security measures to resolve vulnerabilities and recommend security changes
  • Experience mitigating/correcting security deficiencies identified during security/certification testing and recommending risk acceptance

ECS Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about ECS and has not been reviewed or approved by ECS.

  • Healthcare Strength ECS advertises multiple national-network medical plan options with HSA eligibility alongside dental and vision coverage. Coverage generally begins quickly and is paired with company-paid short- and long-term disability, adding stability to the health package.
  • Retirement Support A 401(k) with Safe Harbor and immediate vesting on employer contributions is emphasized, with an employer match available. Access to an employee stock purchase plan via the parent company provides an additional savings avenue.
  • Parental & Family Support Paid parental leave up to 30 days, adoption assistance, and other family-oriented leaves are highlighted. Feedback suggests these offerings add meaningful value beyond base pay for many roles.

ECS Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Elkhorn, NE
2,129 Employees
Year Founded: 1993

What We Do

ECS, a segment of ASGN (NYSE: ASGN), delivers advanced solutions and services in cloud, cybersecurity, artificial intelligence (AI), machine learning (ML), application and IT modernization, and science and engineering. The company solves critical, complex challenges for customers across the U.S. public sector, defense, intelligence and commercial industries. ECS maintains partnerships with leading cloud, cybersecurity, and AI/ML providers and holds specialized certifications in their technologies. Headquartered in Fairfax, Virginia, ECS has more than 3,400 employees throughout the U.S. and has been recognized as a Top Workplace by The Washington Post for the last five years.

Similar Jobs

Cox Enterprises Logo Cox Enterprises

Customer Care Specialist (Cox Automotive Fleet Client Solutions Delivery)

Artificial Intelligence • Automotive • Greentech • Information Technology • Machine Learning • Software • Cybersecurity
Remote or Hybrid
United States
30000 Employees
18-27 Hourly

BAE Systems, Inc. Logo BAE Systems, Inc.

Design Engineer

Aerospace • Hardware • Information Technology • Security • Software • Cybersecurity • Defense
Hybrid
Chesapeake, VA, USA
40000 Employees
88K-150K Annually

BAE Systems, Inc. Logo BAE Systems, Inc.

Intelligence Analyst (FMV)

Aerospace • Hardware • Information Technology • Security • Software • Cybersecurity • Defense
Hybrid
McLean, VA, USA
40000 Employees
65K-110K Annually

BAE Systems, Inc. Logo BAE Systems, Inc.

Collection Manager - Mid

Aerospace • Hardware • Information Technology • Security • Software • Cybersecurity • Defense
Hybrid
Quantico, VA, USA
40000 Employees
97K-165K Annually

Similar Companies Hiring

Kepler  Thumbnail
Artificial Intelligence • Fintech • Software
New York, New York
9 Employees
Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel.io Thumbnail
Aerospace • Hardware • Robotics • Software
US
50 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account