Security Operation Center (SOC) Analyst II

V2X Inc
Schofield Barracks, HI, United States
2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Working hours
Regular working hours
Job source

Tech stack

Microsoft Windows Audit Trail Cyber Security Linux Network Service Red Hat Enterprise Linux Security Content Automation Protocol Security Information and Event Management Cyber Threat Analysis Firewalls (Computer Science) Cybercrime Firepower
+4 more
Cyber Warfare Splunk Cisco Vulnerability Analysis

Job description

Security Operation Center (SOC) Analyst II “W-TRS”

Schofield Barracks Hawaii

Working across the globe, V2X builds smart solutions designed to integrate physical and digital infrastructure from base to battlefield. We bring 120 years of successful mission support to improve security, streamline logistics, and enhance readiness. Aligned around a shared purpose, our $3.9B company and 16,000 people work alongside our clients, here and abroad, to tackle their most complex challenges with integrity, respect, responsibility, and professionalism.

A SOC Analyst is responsible for cybersecurity operations, incident response, and defensive cyber measures across both centralized and distributed locations in support of the Warfighter Training Readiness Solutions (W-TRS) program under the U.S. Army PEO STRI. The role involves continuous 24×7×365 monitoring, analysis, and response to cyber threats, ensuring adherence to best practices and operational procedures for defensive cyber operations. The analyst proactively implements defense strategies, maintains compliance and reporting metrics, and ensures alignment with DoD cybersecurity policies. Additionally, they generate reports related to FISMA, RMF ConMon, and security incidents while operating, maintaining, and deploying enterprise cyber tools., + Shall support production of documentation and associated artifacts, the implementation of Cybersecurity requirements as identified in DoDI 8510 and AR 25-2 based upon the System Categorization under the Risk Management Framework (RMF)

  • Operate workstation, and collect, analyze, and assimilate data into usable

  • Execute Incident Responses for all incidents involving the system, prepare incident reports, and submit to appropriate IA personnel

  • Validate IA Vulnerability Alerts (IAVAs) for supported baselines via vulnerability scanning

  • Responsible for the maintenance and security of the current and future baseline.

  • Ensure all components have a representative security configuration baseline documented.

  • Continuous monitoring and compliance testing to validate the current configurations,

  • Analyze and correlate audit records using the Security Incident & Event Management (SIEM)

  • Analyze security requirements, perform functional and security testing, prepare initial RMF documents for system Assessment and Authorization (A&A), and present the security architecture.

  • Monitor and control communications at the external boundaries, including unauthorized software, to include mobile code.

  • Notify site IA personnel immediately upon detection of an unauthorized network service

  • Configure and enable required security features

  • Centrally review, analyze, correlate, and store audit records from multiple components within the system using the various SIEM tools and monitoring capabilities.

  • Perform necessary auditing and audit review

  • Perform / Monitor account management and account

  • Ensure backups of audit logs is performed weekly.

  • Support execution of annual FISMA according to the Assessment and Authorization (A&A) and ATO requirements

Requirements

  • Brings hands-on experience in cybersecurity operations (including protection, detection, response, and sustainment).

  • Possesses extensive technical expertise in current cybersecurity technologies and emerging innovations.

  • Demonstrates knowledge of the lifecycle of cybersecurity threats and use of existing TTPs.

  • Strong written and verbal communication skills, and the ability to create technical reports based on analytical findings., + 3+ years of Incident handling experience

  • Experience working with DoD / U.S. Army / Federal Government

  • Experience with software/tools: Assured Compliance Assessment Solution (ACAS), Splunk, Endpoint Security Solution (ESS), Cisco Adaptive Security Appliance (ASA) Firewalls and Firepower IPS, SRGs, STIGS, DISA STIG Viewer, SCC/SCAP, Evaluate STIG, Windows, Linux (RHEL)

  • Experience as a SOC Analyst I or related Cyber position under CSSP

Desired Certification: CYSA+* or other CSSP certifications

Education Requirements :

Bachelor’s degree in Cybersecurity and Information Assurance; Advanced degree(s) preferred.

Experience Requirements:

Bachelor’s degree + 6 years of relevant experience, Master’s degree + 6 years of relevant experience,

Clearance Requirements:

Current U.S. DoD Secret Clearance

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on juju.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

1:29 min

Expanding practical knowledge with community sandboxes and resources

Stuart Clark · LIVE

52 sec

Running persistent Linux environments directly on Windows

Ben Breard Ben Breard · WWC 2025

1:23 min

Understanding the complexity of cybersecurity domains

Jennifer Reif · LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

Videos

See all

Related articles

See all