Information System Security Officer

CareerCircle
Adelphi, MD, United States
1 day ago
Apply on www.careercircle.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
4 years minimum
Compensation
$87,100.0 - $157,450.0
Working hours
Shift work

Tech stack

Amazon Web Services Application Layers Microsoft Azure Unix Network Analysis Software as a Service Cloud Computing Security Configuration Management Signals Intelligence Communications Protocols CompTIA Security+ Cyber Security
+42 more
Information Systems Computer Networks Hardware Security Module Identity and Access Management Information Security Management Intrusion Detection and Prevention Intrusion Detection Systems OSI Models Key Management Network Security NetFlow Network Monitoring Packet Analyzer Open Source Intelligence Open Systems Interconnection (OSI) Software Maintenance ArcSight SIEM Tool SAP (Applications) Security Information and Event Management Software Engineering Software Systems Systems Integration TCP/IP Wireshark Software Vulnerability Management Network Switches Network Routing Data Processing Google Cloud Computer Network Operations Cloud Platform System Software Security Mitre Att&ck Malware Cyber Threat Analysis Firewalls (Computer Science) Information Technology Hardware Infrastructure Cyber Warfare Oracle Cloud Infrastructure User Identification Vulnerability Analysis

Job description

Our team protects a diverse, multi-tenant environment spanning on-premises infrastructure and leading cloud platforms, including AWS, Microsoft Azure, Google Cloud Platform (GCP), Oracle Cloud, and SaaS environments. If you thrive on investigating complex threats, analyzing network activity, and working alongside experienced cyber professionals to defend critical missions, we want to hear from you., * Lead and coordinate investigations throughout the Incident Response lifecycle, from initial detection through remediation.

  • Correlate and analyze security events, alerts, logs, and network data to determine the scope and impact of cyber incidents.
  • Acquire and analyze endpoint and network artifacts, including NetFlow and full packet capture, to identify malicious or suspicious activity.
  • Identify attacker tactics, techniques, and procedures (TTPs) and indicators of compromise (IOCs) to strengthen detection and response capabilities.
  • Tune and maintain SIEM and IDS technologies to reduce false positives and improve SOC detection effectiveness.
  • Develop and maintain Incident Response processes, procedures, workflows, and playbooks.
  • Document investigations and response actions in case management systems and prepare clear, actionable incident reports.
  • Collaborate with cyber professionals in a fast-paced operational environment to defend the DoD Information Network (DoDIN) against sophisticated threats and advanced persistent threat (APT) actors., Management Market Data Test Planning Insider Threat Ancient History Project Planning CompTIA Security+ Advanced Analytics Technical Analysis Information Systems Security Technology Security Engineering Information Assurance Information Technology Vulnerability Scanning Risk Management Framework Authorization (Computing) Verbal Communication Skills Assessment And Authorization Information Systems Security Customer Relationship Management Federal Information Security Management Act +0 Senior Information System Security Officer Leidos

Annapolis Junction, MD*On-Site

Firewall Equities Operations Management Purchasing Upskilling Encryption Market Data Cryptography Key Management Security Tools

Requirements

OSI Models Market Data Oracle Cloud Traffic Flow Investigation Cyber Security Cloud Security Attack Vectors Self-Motivation Microsoft Azure Law Enforcement Packet Analyzer Ancient History SAP Applications Event Management Defense In Depth Network Security Threat Detection Cyber Operations Incident Response Computer Networks Workflow Management Amazon Web Services Enterprise Security CompTIA Security+ CE System Administration Continuous Monitoring Exploitation Techniques Vulnerability Management Cyber Threat Intelligence Cyber Kill Chain Framework Verbal Communication Skills Google Cloud Platform (GCP) CSSP Infrastructure Support Software As A Service (SaaS) Multi-Tenant Cloud Environments Security Information And Event Management (SIEM) Top Secret-Sensitive Compartmented Information (TS/SCI Clearance), * Bachelor’s degree and 4-8 years of relevant cybersecurity experience.

  • Hands-on experience using an enterprise Security Information and Event Management (SIEM) platform.
  • Experience analyzing high volumes of security logs and network data, including NetFlow and/or full packet capture.
  • Experience with network traffic and packet analysis.
  • Strong understanding of TCP/IP, common ports and protocols, network traffic flows, the OSI model, system administration, defense-in-depth, and network security technologies.
  • Understanding of cloud security concepts and considerations.
  • Familiarity with Unix-based systems.
  • Ability to work effectively in a collaborative, mission-focused SOC environment.
  • Ability to work the 6:00 am to 2:00 p.m day shift.
  • Baseline certification (Security+ CE) and CSSP-Infrastructure Support certification at start.
  • U.S. citizenship with an active TS/SCI clearance with SAP Eligibility.

Preferred Qualifications: You don’t need to check every box below. We’d especially like to hear from candidates with experience in one or more of the following areas:

  • Cybersecurity experience across Protect, Detect, Respond, and Sustain functions within a Computer Incident Response or Security Operations organization.
  • Experience working in a 24x7 SOC or cyber operations environment.
  • Understanding of the cyber threat lifecycle, attack vectors, exploitation techniques, and adversary behavior.
  • Familiarity with intelligence-driven defense, Cyber Kill Chain methodology, and/or related threat frameworks.
  • Experience analyzing advanced attacker TTPs and indicators of compromise.
  • Strong written and verbal communication skills, including the ability to translate complex technical findings into clear, actionable reports.
  • A proactive, self-motivated approach with the ability to perform effectively in a fast-paced operational environment., Network Routing Ancient History Network Switches Software Systems Security Policies Software Security Hardware Security Solution-Oriented Analytical Method Life Cycle Support Security Solutions Systems Integration Information Systems Network Engineering Operations Security User Identification Time Off Management Security Engineering Software Development Software Maintenance Signals Intelligence Information Assurance Information Processing Application Development Configuration Management Communications Protocols Vulnerability Management IAT Level II Certification IAM Level II Certification Computer Network Operations Information Systems Security Security Requirements Analysis, NetFlow Equities Dashboard Wireshark Operations Leadership Automation Mitigation Market Data Risk Analysis Cyber Defense Cyber Security Trend Analysis Packet Analyzer Ancient History Threat Detection Malware Analysis Network Analysis Application Layers Network Monitoring Information Systems Exploitation Techniques Vulnerability Management Open Source Intelligence Cyber Threat Intelligence Cyber Kill Chain Framework Standard Operating Procedure Open Systems Interconnection ArcSight Enterprise Security Manager

Benefits & conditions

Pay and benefits are fundamental to any career decision. That’s why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits .

About the company

Your Impact This role gives you the opportunity to investigate real-world cyber activity, work with enterprise-scale security data and technologies, and directly strengthen defensive cyber capabilities.

At Leidos, you’ll work alongside a mission-focused team helping protect the digital infrastructure behind critical national security operations.

If you’re ready to bring your cybersecurity expertise to a mission that matters, apply today.

If you’re looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We’re not hiring followers. We’re recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We’re already at step 30 - and moving faster than anyone else dares., Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com .

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careercircle.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:23 min

Understanding the complexity of cybersecurity domains

Jennifer Reif · LIVE

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

2:03 min

Microsoft integrating native Unix coreutils into Windows environments

Chris Heilmann +2 · LIVE

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters · World Congress 2022

2:04 min

Defining timestamps and the international standard format

Denny Biasiolli Denny Biasiolli · Europe 2026 Virtual

52 sec

Defining application, pipeline, and security operations roles

Aarno Aukia · LIVE

Videos

See all

Related articles

See all