user avatar

Network Operations Center Cyber Security Lead

Powder River Industries, LLC

Posted 3 weeks ago

Job Requirements

Washington, DC
Top Secret/SCI Polygraph
Senior Level Career (10+ yrs experience)
Salary not specified
Join Premium to unlock estimated salaries

Job Description

<br><br>> Network Operations Center Cyber Security Lead<br><br>Powder River Industries, LLC<br><br>Network Operations Center Cyber Security Lead<br><br>Description<br><br>We are seeking a highly skilled and mission-focused SOC Lead to oversee the daily operations of the Security Operations Center and guide a team of cybersecurity analysts in defending the organization against evolving threats. This role requires a blend of technical expertise, leadership presence, and the ability to translate complex cybersecurity issues into clear, actionable insights for stakeholders at all levels. <br><br>Requirements<br><br><strong>Leadership and Team Management:</strong> <br><ul><li>Lead, manage, and mentor the SOC team, ensuring day-to-day operations run smoothly and efficiently. </li><li>Provide guidance, feedback, and training to SOC analysts to improve their performance and skillset. </li><li>Ensure 24/7 operational readiness of the SOC, including shift coverage and resource management. </li></ul><br><strong>Incident Response and Management:</strong> <br><ul><li>Lead the SOC team in the identification, analysis, and response to cybersecurity incidents (attempted or successful intrusions, malware, data breaches, etc.). </li><li>Reconstruct timelines of events based on network defense data to analyze network intrusions and attacks. </li><li>Serve as the escalation point for complex or high-priority incidents, ensuring proper incident handling and resolution. </li><li>Support enterprise-wide incident response, collaborating with IT and cybersecurity teams to manage and mitigate threats. </li><li>Continuously strengthen incident response methodologies to improve response times and effectiveness. </li></ul><br><strong>Threat Detection and Mitigation:</strong> <br><ul><li>Develop and support threat detection capabilities to proactively identify emerging risks and vulnerabilities. </li><li>Analyze large volumes of network traffic, system logs, and threat intelligence data to uncover potential threats. </li><li>Use network operations expertise to predict potential attack vectors and devise proactive defense strategies. </li><li>Provide recommendations on improving threat data collection and ensuring high-quality data is available for analysis. </li></ul><br><strong>Cybersecurity Risk Analysis:</strong> <br><ul><li>Analyze cybersecurity risks and communicate these risks to key decision-makers in a clear, concise manner to support informed decision-making. </li><li>Translate complex technical risks into actionable insights for non-technical stakeholders, including management and senior leadership. </li><li>Assist in identifying areas for continuous improvement in the organization’s cybersecurity practices based on analysis of incidents and risk data. </li></ul><br><strong>Intellectual Property Protection:</strong> <br><ul><li>Play a critical role in safeguarding the organization’s intellectual property, identifying potential threats and vulnerabilities that could put valuable data at risk. </li><li>Develop and implement strategies to mitigate risks to intellectual property and other sensitive assets. </li></ul><br><strong>Collaboration and Communication:</strong> <br><ul><li>Collaborate with internal teams (IT, network security, and engineering) to ensure cohesive and effective threat response strategies. </li><li>Serve as the subject matter expert for security incidents, threat analysis, and response processes within the SOC. </li><li>Ensure the organization’s leadership and relevant stakeholders are kept informed of critical cybersecurity events and decisions. </li></ul><br><strong>Security Tool Management and Optimization:</strong> <br><ul><li>Oversee the configuration, optimization, and management of security tools such as SIEM (Security Information and Event Management), IDS/IPS (Intrusion Detection/Prevention Systems), endpoint protection, and other monitoring solutions. </li><li>Ensure that security tools are appropriately tuned to detect relevant threats and are providing effective coverage across all systems. </li></ul><br><strong>Reporting and Documentation:</strong> <br><ul><li>Maintain accurate and detailed documentation of security incidents, including analysis, findings, and mitigation steps. </li><li>Prepare incident reports, post-mortem analyses, and regular updates to senior management on the SOC’s performance, emerging threats, and ongoing mitigation efforts. </li><li>Ensure compliance with industry standards and regulatory requirements in incident documentation and reporting. </li></ul><br><strong>Continuous Improvement and Best Practices:</strong> <br><ul><li>Foster a culture of continuous improvement within the SOC by assessing performance metrics, conducting after-action reviews, and implementing process improvements. </li><li>Stay up-to-date with the latest cybersecurity threats, trends, and best practices to ensure the SOC operates effectively and remains aligned with industry standards. </li></ul><br><strong>Required Qualifications:</strong> <br><ul><li><strong>Experience</strong>: 10+ years of experience in cybersecurity, with at least 4 years in a leadership role within a SOC or security operations environment. </li><li><strong>Certifications</strong>: Certifications in cybersecurity analysis such as <strong>OSCP,</strong> or equivalent certifications are strongly preferred. <strong>CISSP,</strong> <strong>CISM,</strong> <strong>GCIH,</strong> <strong>GCIA</strong> or equivalent certifications are nice to have. </li><li><strong>Technical Expertise</strong>: Proven expertise in network defense, incident response, threat detection, vulnerability management, and security operations. </li><li><strong>Incident Response</strong>: Strong experience leading incident response efforts, including network intrusions, malware infections, and data breaches. </li><li><strong>Data Analysis</strong>: Experience with analyzing large volumes of data (network traffic, logs, threat intelligence) to identify cybersecurity risks and respond effectively. </li><li><strong>Leadership Skills</strong>: Proven ability to lead and mentor a team, manage operations, and communicate complex security issues to both technical and non-technical stakeholders. </li><li><strong>Communication</strong>: Exceptional written and verbal communication skills, with the ability to clearly present technical information to senior leadership. </li></ul><br><br>A notification to prospective applicants that reviews, and tests for the absence of any illegal drug as defined in 10 CFR 707.4, will be conducted by the employer and a background investigation by the Federal government may be required to obtain an access authorization prior to employment, and that subsequent reinvestigations may be required. The position is covered by the Counterintelligence Evaluation Program regulations at 10 CFR part 709, the announcement should also alert applicants that successful completion of a counterintelligence evaluation may include a counterintelligence-scope polygraph examination. <br><br>As a federal contractor, we are committed to fair and equitable employment practices. We make employment decisions based on job-related qualifications, merit, contract requirements, and legitimate business needs, and prohibit unlawful discrimination in all employment practices <br><br>As a federal contractor, we comply with Section 503 of the Rehabilitation Act and VEVRAA. No disability-related inquiries will be made prior to a conditional offer of employment, except as permitted by applicable law <br><br>Employee Rights Under the National Labor Relations Act (NLRA): As a federal contractor, the Company complies with Executive Order 13496 and informs employees of their rights under the National Labor Relations Act. Information regarding these rights is available at the workplace and from the National Labor Relations Board. <br><br>This position is covered by the Service Contract Labor Standards (SCLS). Compensation and fringe benefits will be provided in accordance with the applicable U.S. Department of Labor wage determination and any applicable collective bargaining agreement. <br><br>Medical, dental, vision, and 401k benefits are included with this position. <br><br><em>Powered by </em><br>
<a>
Privacy Policy
</a>
|
<a>
Payroll &amp; HR Software
</a><br>
<a>
Powder River Industries, LLC: Privacy Policy
</a><br><br><!-- OneTrust Cookies Consent Notice --><br><br>By clicking “Accept All Cookies”, you agree to the storing of cookies on your device to enhance site navigation, analyze site usage, and assist in our marketing efforts. <br><br>Cookies Settings Accept All Cookies<br><br><!-- Close Button --><br><br><!-- Close Button END--><br><br><!-- Close Button --><br><br><!-- Logo Tag --><br><br><!-- Close Button --><br><br>Privacy Preference Center<br><br>When you visit any website, it may store or retrieve information on your browser, mostly in the form of cookies. This information might be about you, your preferences or your device and is mostly used to make the site work as you expect it to. The information does not usually directly identify you, but it can give you a more personalized web experience. Because we respect your right to privacy, you can choose not to allow some types of cookies. Click on the different category headings to find out more and change our default settings. However, blocking some types of cookies may impact your experience of the site and the services we are able to offer.
<br><a>More information</a><br>Allow All<br><br> Manage Consent Preferences<br><br><!-- Accordion header --><br><br>Targeting Cookies<br><br> Targeting Cookies <br><br><!-- accordion detail --><br><br>These cookies may be set through our site by our advertising partners. They may be used by those companies to build a profile of your interests and show you relevant adverts on other sites. They do not store directly personal information, but are based on uniquely identifying your browser and internet device. If you do not allow these cookies, you will experience less targeted advertising. <br><br><!-- Accordion header --><br><br>Strictly Necessary Cookies<br><br>Always Active<br><br><!-- accordion detail --><br><br>These cookies are necessary for the website to function and cannot be switched off in our systems. They are usually only set in response to actions made by you which amount to a request for services, such as setting your privacy preferences, logging in or filling in forms. You can set your browser to block or alert you about these cookies, but some parts of the site will not then work. These cookies do not store any personally identifiable information. <br><br><!-- Accordion header --><br><br>Performance Cookies<br><br> Performance Cookies <br><br><!-- accordion detail --><br><br>These cookies allow us to count visits and traffic sources so we can measure and improve the performance of our site. They help us to know which pages are the most and least popular and see how visitors move around the site. All information these cookies collect is aggregated and therefore anonymous. If you do not allow these cookies we will not know when you have visited our site, and will not be able to monitor its performance. <br><br><!-- Groups sections starts --><!-- Group section ends --><!-- Accordion Group section starts --><!-- Accordion Group section ends --><br><br>Performance Cookies<br><br>Clear<br><br>checkbox label label<br><br>Apply Cancel<br><br>Consent Leg.Interest<br><br>Switch Label label<br><br> Switch Label label<br><br> Switch Label label<br><br>Reject All Confirm My Choices<br><!-- Footer logo --><br><a></a><br><br><!-- Cookie subgroup container --><!-- Vendor list link --><!-- Cookie lost link --><!-- Toggle HTML element --><!-- Checkbox HTML --><!-- plus minus--><!-- Arrow SVG element --><!-- Accordion basic element --><!-- Vendor Service container and item template --><br><br>
group id: 91130559