user avatar

SOC Analyst

ASRC Federal

Posted today
Secret
Unspecified
Unspecified
Alexandria, VA (On-Site/Office)

ASRC Federal is a leading government contractor furthering missions in space, public health and defense. As an Alaska Native owned corporation, our work helps secure an enduring future for our shareholders. Join our team and discover why we are a top veteran employer and Certified Great Place to Work™

ASRC Federal is seeking a Cybersecurity Analyst to support the Department of Defense Education Activity (DoDEA) Enterprise Cyber Program. The SOC Analyst role will support enterprise cybersecurity operations for a federal customer, assisting with Risk Management Framework (RMF) compliance, vulnerability management, security monitoring, and incident response activities, collaborating with other cybersecurity personnel.

SOC Analyst

Key Responsibilities:

● Monitor and analyze network traffic, system logs, and other security data for signs of
malicious activity
● Leverage Security Information and Event Management (SIEM) tools to view and
investigate security alerts and notable events
● Handle incidents through their lifecycle; analyze, triage, contain, and remediate security incidents, as well as recommend improvements to prevent future security incidents, and ways to expedite response to security incidents based on lessons learned
● Communicate effectively with technical and non-technical users in a timely manner
● Preparing situational awareness reports for the customer, its constituent bureaus, and/or Department management
● Developing and maintaining response manual and automated response playbooks
● Facilitating development of SIEM detection and ingestion strategies to improve SOC
visibility
● Conduct forensic analysis on hosts and logs as malware analysis as deemed necessary
● Perform threat hunting based off new techniques
● Develop and implement security procedures to prevent future incidents.
● Provide technical support to other members of the security team.
● Stay up-to-date on the latest security threats and trends.

Required Skills /Education/ Certifications & Qualifications:
  • Requires a Bachelor's degree and 0-2 years of experience or equivalent.
  • Must hold and maintain IAT 8140 certification, one of each of the following lists:

○ CASP+ CE, CCNP Security, CISA, CISSP (or Associate), GCED, GCIH, CCSP
○ CEH, CFR, CCNA Cyber Ops, CCNA-Security, CySA+, GCIA, GCIH, GICSP, Cloud+, SCYBER, PenTest+
  • Experience with SIEM tools, like Microsoft Sentinel.
  • Experience leading and managing SOC operations.
  • Subject matter expertise in analyzing network packets, SIEM alerts, and server and application logs to investigate incidents for anomalous/malicious activities.
  • Experience tracking incidents against a framework such as MITRE ATT&CK or Cyber Kill Chain methodology.
  • Able to perform advanced analysis on advanced persistent threats and map out the threat lifecycle


Desired Skills:

● Experience with Microsoft Sentinel
● Forensic investigation and malware analysis experience
● Inquisitive, problem-solving oriented
● Can-do attitude with a strong sense of ownership

Active Secret Clearance Required

We invest in the lives of our employees, both in and out of the workplace, by providing competitive pay and benefits packages. Benefits offered may include health care, dental, vision, life insurance; 401(k); education assistance; paid time off including PTO, holidays, and any other paid leave required by law. The salary offered will depend on several factors including, but not limited to, relevant experience, skills, education, geographic location, internal equity, business needs, and other factors permitted by law. Posted pay ranges are a general guideline only and are not a guarantee of compensation or salary.

EEO Statement

ASRC Federal and its Subsidiaries are Equal Opportunity employers. All qualified applicants will receive consideration for employment without regard to race, gender, color, age, sexual orientation, gender identification, national origin, religion, marital status, ancestry, citizenship, disability, protected veteran status, or any other factor prohibited by applicable law.
group id: RTL208333
N
Name Hidden

ASRC Federal Building Careers

job ad image
Find ASRC Federal on Social Media
Network Employers
user avatar
About Us
ASRC Federal’s family of companies help federal civilian, defense and intelligence agencies achieve mission success. Our teams offer highly technical expertise in digital operations and IT modernization, software development, facilities management, engineering solutions, professional services, and infrastructure operations across the national security, defense and intel, health, civilian, and space markets. Inspired by the Iñupiat culture, we embrace stewardship and using every resource effectively; teamwork when striving to achieve goals and building a collaborative environment; integrity in adhering to high moral principles and professional standards; high performance in striving to deliver superior business results and exceptional customer value; and citizenship by taking care of our employees, shareholders and the communities where we work and live. Explore purpose driven career opportunities with ASRC Federal: http://www.asrcfederal.com/careers
job ad2 image

ASRC Federal Jobs


Clearance Level
Secret
Employer
ASRC Federal