Job Requirements
Arlington, VA
Top Secret/SCI Polygraph not specified
Mid Level Career (5+ yrs experience)
$80,000 - $105,000
Job Description
SOC Analyst
Overview
We're seeking a SOC Analyst to serve as a frontline defender supporting national cyber defense operations. This role is ideal for a cyber threat intelligence, SOC, or incident response professional who can quickly assess cyber threats, investigate indicators of compromise (IOCs), and determine the appropriate response or escalation path. This is not an entry-level or developmental position.
Responsibilities
• Triage and assess incoming cyber threat reports, incident notifications, and IOC submissions.
• Analyze technical indicators including IP addresses, domains, file hashes, network traffic, and malware artifacts.
• Evaluate threat severity, credibility, and potential impact to critical infrastructure environments.
• Enrich IOCs using threat intelligence platforms, OSINT, and government resources.
• Develop concise reports and recommendations for escalation, mitigation, or further investigation.
• Route incidents to appropriate cybersecurity teams, government organizations, and interagency partners.
• Coordinate with analysts and stakeholders to gather additional context and intelligence.
• Maintain accurate documentation within ticketing and knowledge management systems.
• Participate in operational briefings, shift turnovers, and daily cyber reporting activities.
• Assist with the development of triage procedures, playbooks, and standard operating procedures.
• Monitor emerging threats, cyber campaigns, and adversary activity.
• Provide updates and feedback to reporting organizations and partners.
Requirements
• Active TS/SCI clearance required.
• Ability to obtain DHS Suitability.
• Active CompTIA Security+, or other IAT II certification.
• 2-4 years of experience in Threat Intelligence, SOC Operations, Cybersecurity Operations, or Incident Response.
• Experience analyzing:
○ IP addresses, Domain names. File hashes, Network traffic, Malware indicators and artifacts
• Experience conducting cyber incident triage and threat assessment.
• Ability to assess threat credibility, severity, and operational impact.
• Experience using threat intelligence resources and OSINT tools.
• Strong analytical, written, and verbal communication skills.
• Experience documenting findings and maintaining accurate records in ticketing systems.
• Ability to work effectively in a collaborative, multi-location environment.
Education
• Bachelor's degree OR High School Diploma/GED with 4+ years of cybersecurity experience.
Preferred Qualifications
• Previous experience supporting CISA, DHS, FBI, NSA, DoD, or other federal cybersecurity organizations.
• Knowledge of the National Cyber Incident Scoring System (NCISS).
• Understanding of the cyber attack lifecycle and adversary tactics, techniques, and procedures (TTPs).
• Experience identifying vulnerabilities and associated cyber attacks.
• Understanding of Computer Network Defense (CND) policies, procedures, and regulations.
• Knowledge of nation-state, criminal, and opportunistic threat actors.
• Familiarity with:
○ SIEM platforms
○ Threat Intelligence Platforms (TIPs)
○ Case management and ticketing systems
• Knowledge of critical infrastructure sectors and related cyber risks.
Familiarity with DHS/CISA cybersecurity products and services.
Compensation: $40-$45/hour
Overview
We're seeking a SOC Analyst to serve as a frontline defender supporting national cyber defense operations. This role is ideal for a cyber threat intelligence, SOC, or incident response professional who can quickly assess cyber threats, investigate indicators of compromise (IOCs), and determine the appropriate response or escalation path. This is not an entry-level or developmental position.
Responsibilities
• Triage and assess incoming cyber threat reports, incident notifications, and IOC submissions.
• Analyze technical indicators including IP addresses, domains, file hashes, network traffic, and malware artifacts.
• Evaluate threat severity, credibility, and potential impact to critical infrastructure environments.
• Enrich IOCs using threat intelligence platforms, OSINT, and government resources.
• Develop concise reports and recommendations for escalation, mitigation, or further investigation.
• Route incidents to appropriate cybersecurity teams, government organizations, and interagency partners.
• Coordinate with analysts and stakeholders to gather additional context and intelligence.
• Maintain accurate documentation within ticketing and knowledge management systems.
• Participate in operational briefings, shift turnovers, and daily cyber reporting activities.
• Assist with the development of triage procedures, playbooks, and standard operating procedures.
• Monitor emerging threats, cyber campaigns, and adversary activity.
• Provide updates and feedback to reporting organizations and partners.
Requirements
• Active TS/SCI clearance required.
• Ability to obtain DHS Suitability.
• Active CompTIA Security+, or other IAT II certification.
• 2-4 years of experience in Threat Intelligence, SOC Operations, Cybersecurity Operations, or Incident Response.
• Experience analyzing:
○ IP addresses, Domain names. File hashes, Network traffic, Malware indicators and artifacts
• Experience conducting cyber incident triage and threat assessment.
• Ability to assess threat credibility, severity, and operational impact.
• Experience using threat intelligence resources and OSINT tools.
• Strong analytical, written, and verbal communication skills.
• Experience documenting findings and maintaining accurate records in ticketing systems.
• Ability to work effectively in a collaborative, multi-location environment.
Education
• Bachelor's degree OR High School Diploma/GED with 4+ years of cybersecurity experience.
Preferred Qualifications
• Previous experience supporting CISA, DHS, FBI, NSA, DoD, or other federal cybersecurity organizations.
• Knowledge of the National Cyber Incident Scoring System (NCISS).
• Understanding of the cyber attack lifecycle and adversary tactics, techniques, and procedures (TTPs).
• Experience identifying vulnerabilities and associated cyber attacks.
• Understanding of Computer Network Defense (CND) policies, procedures, and regulations.
• Knowledge of nation-state, criminal, and opportunistic threat actors.
• Familiarity with:
○ SIEM platforms
○ Threat Intelligence Platforms (TIPs)
○ Case management and ticketing systems
• Knowledge of critical infrastructure sectors and related cyber risks.
Familiarity with DHS/CISA cybersecurity products and services.
Compensation: $40-$45/hour
group id: 10112344
Defining Company Culture