Security Analyst

Ampcus Inc
Fort Bragg, NC, United States
4 days ago
Apply on www.careerjet.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
3 years minimum
Working hours
Shift work

Tech stack

Multitier Architecture Cisco PIX CompTIA Security+ Cyber Security Computer Networks IP Addressing Intrusion Detection Systems Pcap Packet Analyzer Computer Network Operations Connectivity Problems Malware
+2 more
Splunk Cisco

Job description

Your primary responsibility is to ensure GNOSC (Government Network Operations and Security Center) customers receive professional service and prompt response to their needs. You will support the 24x7 Floor Operations / working Incident Management tickets, responding to trouble calls/emails from customers, and security analytics of network traffic. Work will be required on all shifts (1st, 2nd and 3rd), weekday, weekends, evenings and Holidays as needed. * Security incident handling involves investigating issues to determine if there is a real security incident or a false positive, notifying customers as needed, and sending customers standardized emails specifying the steps they need to take to fix the problems. You are often the first to see an issue, or the issue may have been escalated from another team/management. * Device and health monitoring involves troubleshooting network connectivity problems concerning managed security devices, often time working with Advanced Support Team engineers and/or vendors/partner technology teams on device replacement/reconfiguration. * Respond to security threats raised through the correlation and analysis of security events from sources such as firewalls, IDS/IPS devices, packet captures and security logs to include blocking IP addresses at the perimeter firewalls with near real-time response. * Interpret and explain PCAP data and firewall logs * Work with a USARC customer assess network changes for vulnerabilities. Address Incidents/Scenarios dealing with PII, Information Spills and Stolen Assets. Address Insider Threat, Malware and Policy Violations following USARC Policy. * Performing security analytics of network traffic and providing Incident Response utilizing the following tools/appliances: o Payload analysis (packet analysis) o Health/alert monitoring (HM/AM) o Splunk o Cisco Client o BlueCoat o Fire Power Minimum Qualifications Security event analysis; experience dealing with customer service requests., SMX is seeking a Senior Information Security Analyst to serve as the Security Operations Center (SOC) Team Lead responsible for managing a team of cybersecurity professionals provi…

  • 10 days ago, SMX is seeking an Information Security Analyst to provide Tier II/Tier III cybersecurity operations supporting a 24x7 Security Operations Center. The analyst performs continuous mo…
  • 24 days ago

Requirements

Experience with Cisco Client, Splunk, Cisco ASA, packet capture/payload analysis, BlueCoat. Additional vendor technology experience a plus. 3-5 years’ experience in a Security Operations Center. Must be flexible to work in a 7 X 24 environment across all shifts including weekends and holidays. CompTia Security+ CE Certification, CASP, CEH, or CCNA Security Certification REQUIRED *** Must obtain to Impress? * Active technical certifications in the Security field: Certified Incident Handler, CCNA Cyber Ops, Splunk College degree (two or four year) * Knowledge of ITIL and/or previous work in an ISO operating environment

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerjet.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

14:14 min

Addressing audience inquiries on analytical implementation and career growth

Julian Joseph · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

1:29 min

Expanding practical knowledge with community sandboxes and resources

Stuart Clark · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

3:45 min

Prototyping deterministic agents with n8n and PyATS

Alfonso Sandoval Rosas Alfonso Sandoval Rosas · Europe 2026 Virtual

Videos

See all

Related articles

See all