Senior SOC Analyst - Back-Half Night Shift
CCS, LLC
Washington, DC, United States
3 months ago
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Apply on www.clearancejobs.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$100,000.0 - $130,000.0
Working hours
Shift work
Job source
Tech stack
Microsoft Windows
Active Directory
Amazon Web Services
Command-Line Interface
Cloud Computing
Command Prompt
Cyber Security
Linux
Linux Commands
Networking Basics
Windows PowerShell
Scripting
+4 more
SC Clearance
SolarWinds (Software)
Encase
Splunk
Requirements
We are seeking SOC Analyst for multiple opportunities that are 100% onsite in Washington, DC. ALL APPLICANTS MUST HAVE AN ACTIVE TOP-SECRET CLEARANCE. NO EXCEPTIONS!!!!, * Must be currently supporting 24x7x365 SOC or Cyber Watch operations for a Federal Government agency.
- Must have the ability to assess complex environments, establish situational awareness, and immediately contribute to mission success.
- Must be a self-starter with the ability to quickly assume responsibilities and make an immediate positive impact on team objectives.
- Must be able to work with minimal to no supervision.
- Must be able to learn new technologies and techniques provided by the SOC Chief as well as “On your own”.
- Must be able to read, write, and comprehend at the advanced level.
- Must be able to read, comprehend, and apply standard operating procedures, playbooks, and directives provided by the SOC Chief.
- Must have applied knowledge of the full Triage & incident response process to determine if an event is a true positive or false positive.
- Must be able to hypothesize during an event to determine an outcome.
- Must have intermediate-advanced understanding of various cyber-attacks (new and old) across various platforms and environments including Active Directory, Windows, Linux. Cloud is a plus.
- Must know how to perform and create intermediate-advanced custom Splunk searches in Splunk Enterprise Security to obtain various information for various cyber investigations as needed and/or requested by senior leadership.
- Must know how to perform intermediate-advanced threat hunting in Splunk for various cyber-attacks including, but not limited to: Active Directory Attacks, User Behavior Analysis, Privileged User activity, Advanced Persistent Threat (APT) activity, and other ad hoc searches as needed and/or requested
- Must be able to perform intermediate-advanced level root-cause analysis using various native and security tools (Splunk Enterprise Security, Trellix, ACAS, SolarWinds, EnCase, AWS Guard Duty, AWS Security Hub)
- Must be able to perform intermediate-advanced level host-based log and registry analysis.
- Must be able to perform intermediate-advanced level log correlation to investigate various cyber events and incidents using native and security tools (Splunk Enterprise Security, Trellix, ACAS, SolarWinds, EnCase, AWS Guard Duty, AWS Security Hub)
- Must have intermediate-advanced understanding and applied knowledge of networking fundamentals to include, but not limited to most common ports and protocols, what they are, and how they work)
- Must have an intermediate-advanced understanding and applied knowledge of command line tools to obtain information needed for triage analysis including, but not limited to windows command line, Linux command line, PowerShell, etc.
- Must be able to assist junior level analysts with various investigations as needed.
- Prior Help desk and system administrators with ticket handling, Active Directory, and command line scripting experience preferred and are encouraged to apply.
Education Requirements A bachelors or higher degree is highly preferred and a DOD IAT III certification
Benefits & conditions
Must be willing to work the following 12-hour shift, including Holidays: 7 pm-7 am Thursday-Saturday and every other Wednesday
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on www.clearancejobs.com
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
LM
Luis Minvielle
over 2 years ago
CH
Chris Heilmann
Dev Digest 134 - Where pixels sing?
about 2 years ago
LM
Luis Minvielle
Top 6 Hackathons for Developers in 2023
about 3 years ago
LM
Luis Minvielle
Is Software Engineering Over-Saturated?
over 2 years ago
KD
Krissy Davis
Best Paying Jobs in Technology
over 3 years ago
AJ
Austin Joy
What Are The Top Skills Required For Azure Developers?
over 4 years ago