Today
Top Secret
Unspecified
Unspecified
IT - Security
Fairfax, VA (On-Site/Office)
Position Overview:
The Senior SOC Analyst is a critical member of a 24/7/365 Security Operations Center, responsible for advanced threat detection, incident response, and proactive threat hunting across enterprise IT, cloud, and OT environments. This role leads investigations, applies frameworks like MITRE ATT&CK, and collaborates with SOC teams, engineers, and leadership to strengthen cybersecurity posture.
Key Responsibilities:
Qualifications:
Preferred Skills:
The Senior SOC Analyst is a critical member of a 24/7/365 Security Operations Center, responsible for advanced threat detection, incident response, and proactive threat hunting across enterprise IT, cloud, and OT environments. This role leads investigations, applies frameworks like MITRE ATT&CK, and collaborates with SOC teams, engineers, and leadership to strengthen cybersecurity posture.
Key Responsibilities:
- Lead detection and response for advanced cybersecurity incidents.
- Perform deep forensic investigations and threat analysis.
- Apply MITRE ATT&CK and kill-chain models to identify adversary tactics.
- Conduct proactive threat hunting and analyze logs for indicators of compromise.
- Guide containment, eradication, and recovery efforts.
- Refine SOC playbooks, detection rules, and automation workflows.
- Mentor junior analysts and lead training exercises.
- Collaborate with engineering and IT teams to remediate vulnerabilities.
- Maintain documentation, incident reports, and executive briefings.
Qualifications:
- Education: Master's in IT, Cybersecurity, or related field (ABET/CAE accredited) or equivalent experience.
- Experience: Minimum 8 years in IT/Information Security.
- Certifications: At least one DoD 8140 certification (e.g., CySA+, CASP+CE, GCIA, CCNA Security, CISSP).
- Must be eligible for Top Secret clearance and pass DEA background check.
Preferred Skills:
- Experience with SIEM, SOAR, EDR, IDS/IPS, and forensic tools.
- Familiarity with cloud security, DevSecOps, penetration testing, and incident response.
- Strong knowledge of NIST 800-53, RMF, STIGs, and vulnerability management.
group id: 91091699