SOC Analyst

Posted 4 Days Ago
Be an Early Applicant
Washington, DC, USA
In-Office
Expert/Leader
Information Technology • Software • Consulting • Cybersecurity
The Role
Provides Tier 3 cybersecurity operations support for the District of Columbia government. Responsibilities include advanced incident analysis and escalation, threat hunting, log and alert correlation, SIEM and security-tool tuning, IOC ingestion, incident remediation support, technical advisory review, threat intelligence analysis, and development of SOC procedures and runbooks. The role also supports incident response coordination, enterprise technical assistance, trend reporting, and cybersecurity process improvements.
Summary Generated by Built In

Job Title: SOC Analyst

Work Arrangement:
Location: Washington, DC 20003
Employment Type: Contract
Engagement Type: W2 or 1099 (No C2C)
Final Interview: In Person
Position Summary

Dhaka Technologies Limited Company (DTLC) is hiring a Tier 3 SOC Analyst on behalf of the District of Columbia Office of the Chief Technology Officer (OCTO).

Monitoring, detecting, analyzing, remediating, and reporting on cyber events and incidents impacting the tech infrastructure of the District of Columbia. Serves as advanced escalation point.

The SOC Analyst - Tier 3 is a cybersecurity technical resource responsible for providing technical analytical oversight to a team of SOC Analysts to monitor, detect, analyze, remediate, and report on cybersecurity events and incidents impacting the technology infrastructure of the Government of the District of Columbia. The ideal candidate will have an advanced technical background with significant experience in an enterprise successfully leading a SOC team or unit responsible for analysis and correlation of cybersecurity event, log, and alert data. The candidate will be skilled in understanding, recognition, and root-cause detection of cybersecurity exploits, vulnerabilities, and intrusions in host and network-based systems.

Specific Tasks
  • Utilize advanced technical background and experience in information technology and incident response handling to scrutinize and provide corrective analysis to escalated cybersecurity events from Tier 2 analysts, distinguishing these events from benign activities, and escalating confirmed incidents to the Incident Response Lead.
  • Provide in-depth cybersecurity analysis, and trending/correlation of large data-sets such as logs, event data, and alerts from diverse network devices and applications within the enterprise to identify and troubleshoot specific cybersecurity incidents, and make sound technical recommendations that enable expeditious remediation.
  • Proactively search through log, network, and system data to find and identify undetected threats.
  • Support security tool/application tuning engagements with analysts and engineers to develop/adjust rules and analyze/develop related response procedures, and reduce false-positives from alerting.
  • Identify, verify, and ingest indicators of compromise and attack (IOC's, IOA's) (e.g., malicious IPs/URLs, etc.) into network security tools/applications to protect the Government of the District of Columbia network.
  • Quality-proof technical advisories and assessments prior to release from SOC.
  • Coordinate with and provide expert technical support to enterprise-wide technicians and staff to resolve confirmed incidents.
  • Report common and repeat problems, observed via trend analysis, to SOC management and propose process and technical improvements to improve the effectiveness and efficiency of alert notification and incident handling.
  • Formulate and coordinate technical best-practice SOPs and Runbooks for SOC Analysts.
  • Respond to inbound requests via phone and other electronic means for technical assistance, and resolve problems independently. Coordinate escalations with Incident Response Lead and collaborate with internal technology teams to ensure timely resolution of issues.

Requirements
Minimum Qualifications
  • Bachelor's Degree in Cyber Security or related area with minimum five years of demonstrated operational experience as a cybersecurity analyst/engineer handling and coordinating cybersecurity incidents and response in critical environments, and/or equivalent knowledge in areas such as: technical incident handling and analysis, intrusion detection, log analysis, penetration testing, and vulnerability management.
  • In-depth understanding of current cybersecurity threats, attacks and countermeasures for adversarial activities such as network probing and scanning, distributed denial of service (DDoS), phishing, ransomware, botnets, command and control (C2) activity, etc.
  • In-depth hands-on experience analyzing and responding to security events and incidents with most of the following technologies and/or techniques: leading security information and event management (SIEM) technologies, intrusion detection/prevention systems (IDS/IPS), network- and host-based firewalls, network access control (NAC), data leak protection (DLP), database activity monitoring (DAM), web and email content filtering, vulnerability scanning tools, endpoint protection, secure coding, etc.
  • Strong communication, interpersonal, organizational, oral, and customer service skills.
  • Strong knowledge of TCP/IP protocols, services, and networking.
  • Knowledge of forensic analysis techniques for common operating systems.
  • Adept at proactive search, solicitation, and detailed analysis of threat intelligence (e.g., exploits, IOCs, hacking tools, vulnerabilities, threat actor TTPs) derived from open-source resources and external entities, to identify cybersecurity threats and derive countermeasures, not previously ingested into network security tools/applications, to apply to protect the Government of the District of Columbia network.
  • Excellent ability to multi-task, prioritize, and manage time and tasks effectively.
  • Ability to work effectively in stressful situations.
  • Strong attention to detail.
Preferred Education/Certification Requirements
  • Undergraduate degree in computer science, information technology, or related field.
  • SANS GCIA, GCED, GPEN, GCIH or similar industry certification desired.
Contract Job Description Responsibilities
  • Coordinates IT project management, engineering, maintenance, QA, and risk management.
  • Plans, coordinates, and monitors project activities.
  • Develops technical applications to support users.
  • Develops, implements, maintains and enforces documented standards and procedures for the design, development, installation, modification, and documentation of assigned systems.
  • Provides training for system products and procedures.
  • Performs application upgrades.
  • Performs monitoring, maintenance, or reporting on real-time databases, real-time network and serial data communications, and real-time graphics and logic applications.
  • Troubleshoots problems.
  • Ensures project life-cycle is in compliance with District standards and procedures.
Minimum Education/Certification Requirements
  • Bachelor's degree in information technology or related field or equivalent experience.
Required and Desired Skills
  • Hands-on operational experience as a cybersecurity analyst/engineer in a security operations center, or equivalent knowledge. (Required, 5 years)
  • In-depth understanding of cybersecurity attack countermeasures for adversarial activities such as malicious code, DDOS, and phishing. (Required, 5 years)
  • In-depth hands-on experience analyzing and responding to security events and incidents with Security Information and Event Management system (SIEM). (Required, 5 years)
  • Strong knowledge of cybersecurity attack methodology to include tactics and techniques, and associated countermeasures. (Required, 5 years)
  • Strong knowledge of TCP/IP protocols, services, networking, and experience identifying, analyzing, containing, and eradicating cybersecurity threats. (Required, 5 years)
  • 11-15 yrs implementing, administering, and operating IS tech such as firewalls, IDS/IPS, SIEM, antivirus, net traffic analyzers, and malware analysis. (Required, 11 years)
  • 11-15 yrs utilizing advanced experience with scripting and tool automation such as Perl, PowerShell, Regex. (Required, 11 years)
  • 11-15 yrs developing, leading and executing information security incident response plans. (Required, 11 years)
  • 11-15 yrs developing standard and complex IT solutions and services, driven by business requirements and industry standards. (Required, 11 years)
  • BS Degree in IT, Cybersecurity, Engineering or equivalent experience. (Highly desired)
How to Apply

Qualified candidates should email their resume to [email protected] with "Tier 3 SOC Analyst (812392)" in the subject line.



Skills Required

  • Bachelor's degree in cybersecurity, information technology, computer science, engineering, or a related field, or equivalent experience.
  • At least 5 years of operational experience as a cybersecurity analyst or engineer in a security operations center or equivalent environment.
  • At least 5 years of experience handling and coordinating cybersecurity incidents and response in critical environments.
  • In-depth knowledge of cybersecurity threats, attacks, countermeasures, incident handling, intrusion detection, log analysis, penetration testing, and vulnerability management.
  • At least 5 years of hands-on experience analyzing and responding to security events using SIEM technologies.
  • Strong knowledge of TCP/IP protocols, services, networking, and identifying, containing, and eradicating cybersecurity threats.
  • At least 11 years of experience implementing, administering, and operating firewalls, IDS/IPS, SIEM, antivirus, network traffic analyzers, and malware analysis technologies.
  • At least 11 years of experience with scripting and tool automation using Perl, PowerShell, and Regex.
  • At least 11 years of experience developing, leading, and executing information security incident response plans.
  • At least 11 years of experience developing standard and complex IT solutions and services.
  • Knowledge of forensic analysis techniques for common operating systems.
  • Experience researching threat intelligence, exploits, IOCs, vulnerabilities, hacking tools, and threat actor TTPs.
  • Strong communication, interpersonal, organizational, oral, customer service, multitasking, prioritization, and time-management skills.
  • Ability to work effectively in stressful situations with strong attention to detail.
  • SANS GCIA, GCED, GPEN, GCIH, or similar industry certification.
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
8 Employees
Year Founded: 2019

What We Do

Dhaka Technologies Limited is a Washington, D.C.-based IT solutions and staff augmentation provider serving government and private-sector organizations. It supplies IT staffing, recruiting, consulting, hardware and software solutions, application development, cloud and infrastructure services, cybersecurity, data engineering, and software testing. The company helps clients build and manage secure, scalable technology environments while connecting them with skilled technical professionals across diverse industries.

Similar Jobs

Derex Technologies Inc Logo Derex Technologies Inc

SOC Analyst

Information Technology • Consulting
In-Office
Washington, DC, USA
24 Employees

Valiant Solutions Logo Valiant Solutions

SOC Analyst

Cloud • Information Technology • Cybersecurity
In-Office or Remote
2 Locations
142 Employees

hatch I.T. Logo hatch I.T.

SOC Analyst

Information Technology • Other • Software • Consulting
In-Office
Washington, DC, USA
24 Employees
100K-120K Annually

Amentum Logo Amentum

SOC / Incident Response Analyst

Security • Cybersecurity
In-Office
Washington, DC, USA
18261 Employees

Similar Companies Hiring

Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel Thumbnail
Aerospace • Hardware • Robotics • Software
Marina Del Rey, California
70 Employees
Blee Thumbnail
Artificial Intelligence • Marketing Tech • Software
New York, New York
30 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account