Soc Tier 3 Analyst

Posted 8 Days Ago
Be an Early Applicant
Crownsville, MD, USA
Hybrid
Expert/Leader
Other • Productivity
The Role
Leads advanced SOC operations, including incident response, digital forensics, malware and tool analysis, threat hunting, alert triage, detection engineering, and root-cause investigations. Provides technical guidance to Tier 1 and Tier 2 analysts, develops monitoring and escalation processes, supports cybersecurity initiatives, creates forensic reports and procedures, and delivers technical briefings. Requires on-call availability for critical incidents and hybrid work in Crownsville, Maryland.
Summary Generated by Built In

Job Title: SOC Tier 3 Analyst

Location: Crownsville, MD – Local Candidates Only
Onsite Address: DoIT HQ, 100 Community Place, Crownsville, MD
Employment Type: Full-Time
Work Arrangement: Hybrid

Criteria- Need US citizenship because of federal regulations and the sensitive nature of the work involved

Summary of Key Responsibilities

  • Incident Response & Forensics: Plan, initiate, and conduct forensic investigations on compromised systems; perform root cause and scope-of-impact analysis; create detailed forensic reports.
  • Malware & Tool Analysis: Support malware analysis of attacker tools and techniques; identify and analyze malicious payloads.
  • Tool & Process Development: Train SOC analysts on SIEM tools (e.g., Sentinel), develop and tune detection rules, and assist in creating new SOC monitoring processes.
  • Threat Intelligence & Hunting: Correlate actionable security events, review threat data, develop custom detection signatures, and conduct threat hunting to identify advanced threats.
  • Technical Leadership: Contribute to technical briefings, develop incident response procedures, and ensure adherence to operational and technical standards.
  • On-Call Support: May require availability outside regular hours or on weekends to respond to critical incidents.

Additional Job Description

  • Assists with the development of Security Operation Center (SOC) tiered monitoring and escalation processes.
  • Provides support for SOC Analyst Tier 1 & 2 personnel.
  • Provides technical expertise in the development of existing Cybersecurity projects and initiatives to include but not limited to: End Point Protection and Response, Vulnerability Management, Security Operations Expansion.
  • Provides technical expertise & support in Cybersecurity monitoring and analysis tool engineering and implementation.
  • Reviews, evaluates, and triages security alerts in Sentinel using dashboards, reports, and custom queries.
  • Uses tools, such as captured network traffic, intrusion detection software and Sentinel instrumentation to investigate possible cyber incidents.
  • Other security program development, documentation, security monitoring, threat hunting, vulnerability management, technical and risk assessment, and security engineering duties assigned by OSM SOC and senior management.

Required Qualifications

Education:

  • Bachelor’s degree in Computer Science, Information Systems, Engineering, or a related technical/scientific discipline.

Experience:

  • 10+ years of relevant experience in cybersecurity, digital forensics, or incident response.

Skills:

  • Proficiency with forensic tools.
  • SIEM platforms (Sentinel).
  • Malware analysis.
  • Network traffic analysis.
  • Threat intelligence gathering.

Certifications:

  • GREM, CEH, CHFI, GCFE, GIAC, or similar cybersecurity/forensics credentials are preferred.

Additional Requirements

  • Hybrid position – Must be able to work at the Crownsville office 2–3 times a week or rotation schedule with other Tier 3 Analysts.
  • Strong leadership and communication skills.
  • If interested in applying for the position, please reach out to me at [email protected] 

Skills Required

  • Bachelor’s degree in Computer Science, Information Systems, Engineering, or a related technical or scientific discipline
  • 10+ years of relevant experience in cybersecurity, digital forensics, or incident response
  • Proficiency with forensic tools
  • Experience with SIEM platforms, particularly Microsoft Sentinel
  • Experience with malware analysis
  • Experience with network traffic analysis
  • Experience gathering threat intelligence
  • U.S. citizenship
  • Ability to work onsite at the Crownsville office two to three times per week or according to a rotation schedule
  • GREM, CEH, CHFI, GCFE, GIAC, or similar cybersecurity or digital forensics certification
  • Strong leadership and communication skills
  • Availability outside regular hours or on weekends for critical incidents
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Columbia, MD

Similar Jobs

Pluralsight Logo Pluralsight

Senior Graphic Designer

Edtech • Information Technology • Software
Remote or Hybrid
USA
1000 Employees
76K-120K Annually
In-Office or Remote
3 Locations
121228 Employees
110K-145K Annually

Hilton Logo Hilton

Director, Sales Strategy

Software • Hospitality
Remote or Hybrid
4 Locations
121228 Employees
120K-160K Annually
In-Office or Remote
2 Locations
121228 Employees
100K-130K Annually

Similar Companies Hiring

Credal.ai Thumbnail
Software • Security • Productivity • Machine Learning • Artificial Intelligence
Brooklyn, NY
Rosendin Thumbnail
Other • Manufacturing
San Jose, CA
6219 Employees
OmniCable Thumbnail
Other
Houston, Texas
815 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account