Job Requirements
Reston, VA
Top Secret/SCI CI Polygraph
Mid Level Career (5+ yrs experience)
Salary not specified
Join Premium to unlock estimated salaries
Job Description
What You'll Be Doing
As a SOC Analyst at Mantis Security, you'll help protect critical customer environments by monitoring, investigating, and responding to cybersecurity threats across both traditional and AWS cloud infrastructure.
* Monitor and investigate security alerts across enterprise and AWS environments
* Triage potential threats, determine impact, and support incident response and remediation
* Analyze security activity using SIEM, EDR, and AWS security tools including GuardDuty, Security Hub, CloudTrail, and CloudWatch
* Investigate suspicious account activity, credential misuse, network traffic, malware, and other indicators of compromise
* Conduct threat hunting and correlate activity across multiple data sources to identify emerging or previously undetected threats
* Document investigations, communicate findings, and escalate incidents when necessary
* Help improve SOC detection capabilities, playbooks, processes, and alerting
What We're Looking For
* 3+ years of cybersecurity, SOC, incident response, or related experience
* Hands-on experience investigating security events in AWS environments
* Experience working with SIEM and endpoint detection and response (EDR) platforms
* Working knowledge of AWS IAM, EC2, S3, VPC, CloudTrail, GuardDuty, Security Hub, and related security concepts
* Strong understanding of network security, common attack techniques, and incident response
* Ability to analyze complex technical information and clearly communicate findings
* Familiarity with MITRE ATT&CK, threat intelligence, and vulnerability management
* Security+ or equivalent cybersecurity certification
Nice to Have
* Experience supporting DoD, Intelligence Community, or other federal environments
* AWS security or architecture certification
* Experience with Splunk and AWS GovCloud
* Basic Python, PowerShell, or Bash scripting experience
As a SOC Analyst at Mantis Security, you'll help protect critical customer environments by monitoring, investigating, and responding to cybersecurity threats across both traditional and AWS cloud infrastructure.
* Monitor and investigate security alerts across enterprise and AWS environments
* Triage potential threats, determine impact, and support incident response and remediation
* Analyze security activity using SIEM, EDR, and AWS security tools including GuardDuty, Security Hub, CloudTrail, and CloudWatch
* Investigate suspicious account activity, credential misuse, network traffic, malware, and other indicators of compromise
* Conduct threat hunting and correlate activity across multiple data sources to identify emerging or previously undetected threats
* Document investigations, communicate findings, and escalate incidents when necessary
* Help improve SOC detection capabilities, playbooks, processes, and alerting
What We're Looking For
* 3+ years of cybersecurity, SOC, incident response, or related experience
* Hands-on experience investigating security events in AWS environments
* Experience working with SIEM and endpoint detection and response (EDR) platforms
* Working knowledge of AWS IAM, EC2, S3, VPC, CloudTrail, GuardDuty, Security Hub, and related security concepts
* Strong understanding of network security, common attack techniques, and incident response
* Ability to analyze complex technical information and clearly communicate findings
* Familiarity with MITRE ATT&CK, threat intelligence, and vulnerability management
* Security+ or equivalent cybersecurity certification
Nice to Have
* Experience supporting DoD, Intelligence Community, or other federal environments
* AWS security or architecture certification
* Experience with Splunk and AWS GovCloud
* Basic Python, PowerShell, or Bash scripting experience
group id: 90933043