SOC Analyst

Posted Yesterday
Be an Early Applicant
Fairfax, VA, USA
In-Office
Senior level
Information Technology • Consulting
The Role
Performs network security monitoring, cybersecurity incident detection and response, SIEM and log analysis, intrusion detection, vulnerability assessment, threat hunting, and security tool management. Investigates compromises, validates indicators, supports containment and recovery, manages security configurations and access controls, coordinates incident reporting with government agencies, develops countermeasures, and prepares security reports and briefings. This is an onsite SOC role in Fairfax, Virginia, supporting classified and open-source threat data.
Summary Generated by Built In
SOC Analyst
KeenLogic is seeking to hire an Information Security Operation Analyst (SOC Analyst) to join our team. The Information Security Analyst is responsible for designing and implementing solutions for protecting the confidentiality, integrity, and availability of sensitive information.
This is a full-time position offering Fortune 500–level health, dental, and vision benefits, PTO, 401(k), and life insurance. This is an onsite role with a daily schedule from 10:00 AM to 6:00 PM, based in Fairfax, VA.
About the Role
This is a Security Operations Center (SOC) position focused primarily on cybersecurity incident detection and response. Other primary areas of focus include:
  • Zero-day events
  • Utilizing cybersecurity tools to conduct investigations and analysis of events
  • Utilizing the seven steps of the Incident Response process
All duties support one or more of the following cybersecurity-related functions: information security, SA&A, incident response, cybersecurity, insider threat, computer forensics, vulnerability assessment and management, network data capture, intrusion detection, log management, auditing, security incident and event management (SIEM), and penetration testing.
Personnel assigned to this role will primarily serve on the Operations & Response (O&R) Team and may also support the Vulnerability Assessment and Penetration Test (VAPT) and Engineering teams.
This position also coordinates with the Cybersecurity Services Section and other client divisions, including:
  • IT Operations
  • Engineering & Integration
  • Software Operations
  • Office of Investigative Technology
Required Qualifications
  • Must be a U.S. citizen with an active Secret or Top Secret clearance
    • Must be eligible for a Top Secret clearance if requested
  • Bachelor’s degree from an accredited college or university in one or more of the following disciplines (or equivalent documented formal training):
    • Computer Science
    • Information Systems
    • Engineering
    • Business
    • Physical Science
    • Other technology-related disciplines
  • 6+ years of documented work experience performing any combination of:
    • Information System Security
    • Security Assessment & Authorization
    • Cybersecurity
    • Computer Forensics
    • Insider Threat
Preferred Qualifications
  • CompTIA CySA+ cybersecurity analyst certification
  • Cybersecurity incident response and detection experience
  • Experience in cybersecurity event triaging using the seven steps of the Incident Response Process (IRP)
  • Security Operations Center (SOC) experience
  • Conducting cyber event investigations to determine root cause and identify true/false positives
  • Creating rules, thresholds, and policies for cybersecurity tools (IOCs/IOAs)
  • Verification and validation, containment, eradication, and recovery from incidents
  • Experience validating hashes, malicious IPs, and URLs
  • Experience investigating malicious emails and payloads
  • Requirements analysis, program development, architecture, engineering, integration, and deployment of IT products in an enterprise environment
  • Ability to create and monitor multiple cybersecurity tool dashboards
  • Open-source intelligence gathering experience
  • Threat hunting and vulnerability assessment experience
  • Knowledge of SIEM tools and query generation
Duties
  • Perform network security monitoring and incident response for a large organization
  • Coordinate with other government agencies to record and report incidents
  • Maintain records of security monitoring and incident response activities using case management and ticketing technologies
  • Monitor SIEM tools to identify security issues for remediation
  • Recognize intrusion attempts and compromises through detailed analysis of event data
  • Communicate alerts regarding intrusions and compromises to networks, applications, and operating systems
  • Assist with implementation of countermeasures or mitigating controls
  • Support threat data analysis from classified, proprietary, and open-source resources
  • Support Team Lead in developing recommendations for changes to Standard Operating Procedures
  • Monitor and review logs and create new security tool signatures
  • Perform intrusion detection, log and audit management, vulnerability assessment, compliance management, and security configuration
  • Install, configure, troubleshoot, and maintain server configurations (hardware and software)
  • Manage accounts, security devices, patches, access control, and passwords
  • Analyze collected data to identify vulnerabilities and exploitation potential
  • Support development of security countermeasures
  • Identify network and OS vulnerabilities and recommend countermeasures
  • Support deployment and integration of security tools
  • Prepare written reports and provide verbal information security briefings
  • Investigate, monitor, analyze, and report on security incidents
  • Respond to crisis or urgent situations to mitigate threats
  • Apply mitigation, preparedness, response, and recovery approaches
  • Provide incident handling support for detection, analysis, coordination, and response
  • Actively monitor and remediate unauthorized activities
  • Monitor intrusion detection sensors and log collection systems
  • Ensure security systems are operating at maximum performance and availability
  • Analyze computer security threat information from multiple sources and agencies

Skills Required

  • U.S. citizenship
  • Active Secret or Top Secret security clearance
  • Eligibility for a Top Secret clearance if requested
  • Bachelor's degree in Computer Science, Information Systems, Engineering, Business, Physical Science, or another technology-related discipline, or equivalent documented formal training
  • 6 or more years of documented experience in information system security, security assessment and authorization, cybersecurity, computer forensics, or insider threat
  • CompTIA CySA+ certification
  • Cybersecurity incident response and detection experience
  • SOC experience
  • SIEM tools and query generation knowledge
  • Threat hunting and vulnerability assessment experience
  • Experience investigating cyber events, determining root cause, and identifying true or false positives
  • Experience with incident response processes, including containment, eradication, and recovery
  • Experience validating hashes, malicious IP addresses, and URLs
  • Experience investigating malicious emails and payloads
  • Open-source intelligence gathering experience
  • Ability to create and monitor multiple cybersecurity tool dashboards
  • Experience creating cybersecurity tool rules, thresholds, policies, indicators of compromise, and indicators of attack
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Fredericksburg, VA
7 Employees
Year Founded: 2012

What We Do

Today’s government agencies must continually evolve to keep pace with the dynamic and rapidly changing technology landscape. To ensure continual innovation and improvement, these agencies must be able to anticipate all future needs while embracing technological advancements. At KeenLogic, we create value through differentiation, innovation, and technology to drive high-quality enterprise IT services such as help desk as a service — for government customers. We combine the latest states of “what is” with an unrealized yet needed version of “what could be.” KeenLogic operates two distinct lines of business: (1) Enterprise IT Services (Helpdesk/Service Desk) (2) Network/Internet Services (Fixed-Wireless Microwave Broadband) We have a 10-year track record of high-quality performance and service delivery and a reputation for taking exceptional care of our team. The company is well funded and capitalized to support new project ramp-up and overhead costs, has a highly experienced executive and management team, and a board of directors with over 20 years of management and operations experience. We aim to provide the highest standard of customer service to government agencies by leveraging a corporate foundation that is built on CMMI Level III business processes, leadership, and financial strength. Key attributes: • 10-year history of providing quality, customer-focused IT solutions • Excellent past performance and track record • 95% employee retention rate • Small business agility with large business resources • Secret facility clearance • Well capitalized for project ramp-up • KeenLogic is a reputed enterprise IT services and help desk solutions provider that answers today’s problems while anticipating the needs of tomorrow.

Similar Jobs

JCS Solutions LLC Logo JCS Solutions LLC

Operations Analyst

Information Technology • Software
In-Office
Alexandria, VA, USA
48 Employees
105K-150K Annually
In-Office
2 Locations
99K-225K Annually

SWIFT Logo SWIFT

Lead SOC Analyst/Threat Hunter

Fintech • Payments • Software • Financial Services
In-Office
Culpeper, VA, USA
4765 Employees
122K-226K Annually

ECS Logo ECS

SOC Analyst IV

Artificial Intelligence • Cloud • Information Technology • Security • Software
In-Office
Homeland, VA, USA
2129 Employees
120K-140K Annually

Similar Companies Hiring

Standard Template Labs Thumbnail
Artificial Intelligence • Information Technology • Software
New York, NY
25 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account