Today
Secret
Unspecified
Unspecified
IT - Security
McLean, VA (On-Site/Office)
Job Number: R0222369
Enterprise Cybersecurity Security Operations Center Analyst, Mid
Key Role:
Serve as a mid-level Incident Responder and the first line of the company's cyber defense, who is responsible for identifying and responding to security threats. Operate in an operations center environment, responsible for incident confirmation, response, data collection, investigation, and analysis. Contribute to the development of innovative principles and ideas, work on unusually complex problems, and provide solutions that are highly creative. Assist with investigations that form part of a wider team of analysts, and conduct event detection, incident triage, incident handling, and remediation. Handle cybersecurity incidents, generate clear, concise recommendations, and coordinate activities and professional communications across a range of stakeholders. Work closely with security teams to develop, tune, automate, and enhance network and host-based security devices, support the Security Operations Center (SOC) with managing the response to Cyber intrusions, perform extensive network and host triage, maintain strict chain-of-custody protocols, analyze documentation and reports, and perform remediation, as required.
Basic Qualifications:
Additional Qualifications:
Clearance:
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information.
Compensation
At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen's benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.
Salary at Booz Allen is determined by various factors, including but not limited to location, the individual's particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $69,400.00 to $158,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen's total compensation package for employees. This posting will close within 90 days from the Posting Date.
Identity Statement
As part of the application process, you are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.
Work Model
Our people-first culture prioritizes the benefits of flexibility and collaboration, whether that happens in person or remotely.
Commitment to Non-Discrimination
All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.
Enterprise Cybersecurity Security Operations Center Analyst, Mid
Key Role:
Serve as a mid-level Incident Responder and the first line of the company's cyber defense, who is responsible for identifying and responding to security threats. Operate in an operations center environment, responsible for incident confirmation, response, data collection, investigation, and analysis. Contribute to the development of innovative principles and ideas, work on unusually complex problems, and provide solutions that are highly creative. Assist with investigations that form part of a wider team of analysts, and conduct event detection, incident triage, incident handling, and remediation. Handle cybersecurity incidents, generate clear, concise recommendations, and coordinate activities and professional communications across a range of stakeholders. Work closely with security teams to develop, tune, automate, and enhance network and host-based security devices, support the Security Operations Center (SOC) with managing the response to Cyber intrusions, perform extensive network and host triage, maintain strict chain-of-custody protocols, analyze documentation and reports, and perform remediation, as required.
Basic Qualifications:
- 2+ years of experience providing cyber incident response as part of a Computer Incident Response Team (CIRT), Computer Emergency Response Team (CERT), Computer Security Incident Response Center (CSIRC), or SOC
- Experience with best practices, security tools, and techniques used by Cybersecurity teams
- Experience with performing host-based analysis of Windows, Linux, and Mac
- Experience analyzing data from a variety of security tools and sources, including Intrusion Detection System (IDS) alerts, firewall logs, web logs, and network traffic logs to identify Indicators of Compromise (IOCs) or malicious Tactics, Techniques and Procedures (TTPs)
- Ability to review alerts to determine relevancy and urgency, and provide feedback and tuning recommendations
- Ability to identify, detect, respond to, and mitigate sophisticated threats to the enterprise environment
- Ability to obtain a Top Secret clearance
- Associate's degree
- Cyber Security Analyst+ (CySA+) Certifications
Additional Qualifications:
- Experience creating Splunk dashboards
- Experience with Microsoft Excel
- Ability to discover and support new analytic methods for detecting threats
- Ability to work with auditors to respond to and resolve identified issues in the IR processes
- Ability to create reports for leadership
- Possession of excellent verbal and written communication skills
- IAM Level II or IAT Level II Certification
Clearance:
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information.
Compensation
At Booz Allen, we celebrate your contributions, provide you with opportunities and choices, and support your total well-being. Our offerings include health, life, disability, financial, and retirement benefits, as well as paid leave, professional development, tuition assistance, work-life programs, and dependent care. Our recognition awards program acknowledges employees for exceptional performance and superior demonstration of our values. Full-time and part-time employees working at least 20 hours a week on a regular basis are eligible to participate in Booz Allen's benefit programs. Individuals that do not meet the threshold are only eligible for select offerings, not inclusive of health benefits. We encourage you to learn more about our total benefits by visiting the Resource page on our Careers site and reviewing Our Employee Benefits page.
Salary at Booz Allen is determined by various factors, including but not limited to location, the individual's particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $69,400.00 to $158,000.00 (annualized USD). The estimate displayed represents the typical salary range for this position and is just one component of Booz Allen's total compensation package for employees. This posting will close within 90 days from the Posting Date.
Identity Statement
As part of the application process, you are expected to be on camera during interviews and assessments. We reserve the right to take your picture to verify your identity and prevent fraud.
Work Model
Our people-first culture prioritizes the benefits of flexibility and collaboration, whether that happens in person or remotely.
- If this position is listed as remote or hybrid, you'll periodically work from a Booz Allen or client site facility.
- If this position is listed as onsite, you'll work with colleagues and clients in person, as needed for the specific role.
Commitment to Non-Discrimination
All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, local, or international law.
group id: booz
At Booz Allen, you’ll work at the forefront of advanced technology to uncover and solve the emerging challenges of our time. Change is within reach—and it starts with you.