SOC Analyst

Posted 5 Hours Ago
Be an Early Applicant
Washington, DC, USA
In-Office
Senior level
Information Technology • Consulting
The Role
Provides Tier 3 cybersecurity oversight for a government SOC, analyzing and correlating logs, alerts, and security events; detecting threats; leading incident escalation and remediation; tuning security tools; researching threat intelligence; ingesting indicators of compromise; developing SOC runbooks; and supporting enterprise technical teams.
Summary Generated by Built In
Company Description

Derex Technologies Inc specializes in providing IT consulting, staffing solutions and software services. Globally headquartered in Harrison New Jersey since 1996 Derex delivers the highest quality technology professionals and an array of customized IT talent solutions designed to improve productivity and drive results to global clients throughout North America.

With over two decades of unparalleled experience, Derex provides supports to its clientele, across such industries as Systems Integration, Banking and Finance, Telecommunications, Pharmaceutical and Life Sciences, Energy, Healthcare, Technology, Transportation, and local and federal Government agencies.

Job Description

Position: SOC Analyst (812392)

Location : 64 New York Ave, NE, Washington DC 20002

Interview :  Either Webcam or In Person

Job : Onsite

 

The SOC Analyst - Tier 3 is cybersecurity technical resource responsible for providing technical analytical oversight a team of SOC Analysts to monitor, detect, analyze, remediate, and report on cybersecurity events and incidents impacting the technology infrastructure of the Government of the District of Columbia. The ideal candidate will have an advanced technical background with significant experience in an enterprise successfully leading a SOC team or unit responsible for analysis and correlation of cybersecurity event, log, and alert data. The candidate will be skilled in understanding, recognition, and root-cause detection of cybersecurity exploits, vulnerabilities, and intrusions in host and network-based systems.

SPECIFIC TASKS
-Utilize advanced technical background and experience in information technology and incident response handling to scrutinize and provide corrective analysis to escalated cybersecurity events from Tier 2 analysts—distinguishing these events from benign activities, and escalating confirmed incidents to the Incident Response Lead.
-Provide in-depth cybersecurity analysis, and trending/correlation of large data-sets such as logs, event data, and alerts from diverse network devices and applications within the enterprise to identify and troubleshoot specific cybersecurity incidents, and make sound technical recommendations that enable expeditious remediation.
-Proactively search through log, network, and system data to find and identify undetected threats.
-Support security tool/application tuning engagements with analysts and engineers to develop/adjust rules and analyze/develop related response procedures, and reduce false-positives from alerting.
-Identify, verify, and ingest indicators of compromise and attack (IOC’s, IOA’s) (e.g., malicious IPs/URLs, etc.) into network security tools/applications to protect the Government of the District of Columbia network.
-Quality-proof technical advisories and assessments prior to release from SOC.
-Coordinate with and provide expert technical support to enterprise-wide technicians and staff to resolve confirmed incidents.
-Report common and repeat problems, observed via trend analysis, to SOC management and propose process and technical improvements to improve the effectiveness and efficiency of alert notification and incident handling.
-Formulate and coordinate technical best-practice SOPs and Runbooks for SOC Analysts.
-Respond to inbound requests via phone and other electronic means for technical assistance, and resolve problems independently. Coordinate escalations with Incident Response Lead and collaborate with internal technology teams to ensure timely resolution of issues.

MINIMUM QUALIFICATIONS
- Bachelor's Degree in Cyber Security or related area with minimum Five years of demonstrated operational experience as a cybersecurity analyst/engineer handling and coordinating cybersecurity incidents and response in critical environments, and/or equivalent knowledge in areas such as; technical incident handling and analysis, intrusion detection, log analysis, penetration testing, and vulnerability management.
-In-depth understanding of current cybersecurity threats, attacks and countermeasures for adversarial activities such as network probing and scanning, distributed denial of service (DDoS), phishing, ransomware, botnets, command and control (C2) activity, etc.
-In-depth hands-on experience analyzing and responding to security events and incidents with most of the following technologies and/or techniques; leading security information and event management (SIEM) technologies, intrusion detection/prevention systems (IDS/IPS), network- and host-based firewalls, network access control (NAC), data leak protection (DLP), database activity monitoring (DAM), web and email content filtering, vulnerability scanning tools, endpoint protection, secure coding, etc.
-Strong communication, interpersonal, organizational, oral, and customer service skills.
-Strong knowledge of TCP/IP protocols, services, and networking.
-Knowledge of forensic analysis techniques for common operating systems.
-Adept at proactive search, solicitation, and detailed analysis of threat intelligence (e.g., exploits, IOCs, hacking tools, vulnerabilities, threat actor TTPs) derived from open-source resources and external entities, to identify cybersecurity threats and derive countermeasures, not previously ingested into network security tools/applications, to apply to protect the Government of the District of Columbia network.
-Excellent ability to multi-task, prioritize, and manage time and tasks effectively.
-Ability to work effectively in stressful situations.
-Strong attention to detail.

PREFERRED EDUCATION/CERTIFICATION REQUIREMENTS
-Undergraduate degree in computer science, information technology, or related field.
-SANS GCIA, GCED, GPEN, GCIH or similar industry certification desired.
---------------------------------------------
Contract job description
Responsibilities:
1. Coordinates it project management, engineering, maintenance, qa, and risk management.
2. Plans, coordinates, and monitors project activities.
3. Develops technical applications to support users.
4. Develops, implements, maintains and enforces documented standards and procedures for the design, development, installation, modification, and documentation of assigned systems.
5. Provides training for system products and procedures.
6. Performs application upgrades.
7. Performs, monitoring, maintenance, or reporting on real- time databases, real-time network and serial data communications, and real-time graphics and logic applications.
8. Troubleshoots problems.
9. Ensures project life-cycle is in compliance with district standards and procedures.

Minimum education/certification requirements:
Bachelor’s degree in information technology or related field or equivalent experience.

Regards,

 

Manoj Goud

Derex Technologies INC

Contact : 973-834-5005 Ext 206

Additional Information

All your information will be kept confidential according to EEO guidelines.

Skills Required

  • Bachelor's degree in cybersecurity, computer science, information technology, or a related field
  • At least five years of operational experience as a cybersecurity analyst or engineer handling and coordinating cybersecurity incidents and response in critical environments, or equivalent experience
  • Experience with technical incident handling, intrusion detection, log analysis, penetration testing, and vulnerability management
  • In-depth knowledge of cybersecurity threats, attacks, and countermeasures, including DDoS, phishing, ransomware, botnets, and command-and-control activity
  • Hands-on experience with SIEM, IDS/IPS, firewalls, NAC, DLP, DAM, content filtering, vulnerability scanning, and endpoint protection technologies
  • Strong knowledge of TCP/IP protocols, services, and networking
  • Knowledge of forensic analysis techniques for common operating systems
  • Ability to research and analyze threat intelligence, indicators of compromise, vulnerabilities, and threat actor tactics, techniques, and procedures
  • Strong communication, interpersonal, organizational, oral, and customer service skills
  • Ability to multitask, prioritize, manage time effectively, and work under stressful conditions
  • Strong attention to detail
  • SANS GCIA, GCED, GPEN, GCIH, or similar industry certification
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Harrison, NJ
24 Employees
Year Founded: 1996

What We Do

DEREX Technologies, Inc. established in 1996 is engaged nationally in providing professional computer services, including management consulting firm. We provide expert services nationwide to Fortune 500 companies and other private and public organizations in the United States. Derex provides a multi-faceted portfolio of products and services to its clients, including complete IT solutions.

Similar Jobs

Dhaka Technologies Limited Company Logo Dhaka Technologies Limited Company

SOC Analyst

Information Technology • Software • Consulting • Cybersecurity
In-Office
Washington, DC, USA
8 Employees

Valiant Solutions Logo Valiant Solutions

SOC Analyst

Cloud • Information Technology • Cybersecurity
In-Office or Remote
2 Locations
142 Employees

hatch I.T. Logo hatch I.T.

SOC Analyst

Information Technology • Other • Software • Consulting
In-Office
Washington, DC, USA
24 Employees
100K-120K Annually

Amentum Logo Amentum

SOC / Incident Response Analyst

Security • Cybersecurity
In-Office
Washington, DC, USA
18261 Employees

Similar Companies Hiring

Axle Health Thumbnail
Artificial Intelligence • Healthtech • Information Technology • Logistics
Santa Monica, CA
25 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account