Coalfire Federal · 3 weeks ago
Security Operations Center Analyst
Coalfire Federal is a leading cybersecurity consultancy firm providing tailored advice and services to Federal agencies. The SOC Analyst will assist with vulnerability management, conduct incident response, and monitor security operations in a mixed environment.
Responsibilities
Monitor security operations in a mixed Windows and Linux environment across multiple enclaves
Conduct infrequent digital forensics and contribute to process development
Operate endpoint detection and response tools including managing exceptions and alerts
Incorporate threat intelligence into incident response through tools
Assist with audits/assessments including audit plan preparation, review of documentation and evidence, evaluation of procedures, and client interviews
Manage priorities, tasks and hours on projects in conjunction with the project manager to achieve delivery utilization targets
Ensures quality products and services are delivered on time
Escalates client and project issues to management in a timely manner to inform and engage the necessary resources to address the issue
Develop strong working relationships across the IT program to facilitate smooth operations and incident response activities
Qualification
Required
Active Secret Clearance
Bachelor's degree from an accredited university, preferably in an IT related field
At least one industry recognized cybersecurity/information security certification: CISSP, CISM, or CISA
Five (5) years' direct work experience providing support to implementing an organization's information security program and related SOC experience
Expertise in security operations and vulnerability management
Maintains strong depth of knowledge in one or more cybersecurity frameworks
Familiarity with Department of Defense STIGs and standard operating procedures associated with operating an air-gapped network
Understanding of Windows infrastructure and communication components
Basic understanding of Windows/Linux administration
Familiarity with web applications and awareness of web application vulnerability assessments
Preferred
Cyber Engineering background
Splunk experience and/or certification
ACAS, Nessus, or Tenable training
Familiarity with an Endpoint Detection and Response tool such as HBSS, Carbon Black, or Cylance Optics
Familiarity with a Network Based Intrusion Detection system
Familiarity with the Purple Team Lifecycle and continuous process improvement
Benefits
Paid parental leave
Flexible time off
Certification and training reimbursement
Digital mental health and wellbeing support memberships
Comprehensive insurance options
Company
Coalfire Federal
Coalfire Federal is one of the first Cybersecurity Maturity Model Certification Third Party Assessment Organization.