SOC Analyst

Koniag Services, Inc.
Lakewood, CO, United States
about 2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Compensation
$68,126.0 - $82,044.0
Working hours
Regular working hours
Languages
English
Job source

Tech stack

Microsoft Windows CompTIA Security+ Cyber Security Computer Networks Monitoring of Systems Issue Tracking Systems Information Security Management Instant Messaging Technology Intrusion Detection and Prevention Open Source Intelligence Security Information and Event Management Office365
+2 more
Information Technology Servicenow

Job description

Position Overview: Work in a Security Operations Center (SOC) environment, providing detailed documentation of reported incidents utilizing ServiceNow. The candidate will function as a SOC Analyst performing triage, investigations, and responding to a wide variety of alerts.

All employees are considered mission critical and are expected to report even during inclement weather conditions., * Providing 24/7/365 monitoring and analysis of security event alerts across the enterprise network.

  • Monitoring agency systems and daily log events to identify potential security threats. Sources include, but not limited to, sensor alert logs, firewall logs, content filtering logs, and Security Information and Event Management logs.
  • Reviewing incoming alerts, investigating, and ticketing all identified potential security threats using agency incident response ticketing platform.
  • Prioritize all incoming alerts and responds accordingly in a timely manner.
  • Validating traffic and/or network activity (per alerts/logs) as anomalous in accordance with agency standards and procedures.
  • Identifying, investigating, and escalating potential security threats to senior agency resources when needed.
  • Measuring and modeling traffic, while identifying patterns and ports.
  • Producing reports, both contractual and ad hoc, providing information on events, trends, issues, and activity as requested by the federal customer.
  • Providing data for inclusion in the agency’s CISA report.
  • Utilize OSINT tools to identify and mitigate potential cybersecurity threats to the customer’s network.
  • Identifying the necessity for, and implementation of, the creation of new intrusion detection signatures.

Requirements

Do you have experience in Windows?, Do you have a High school diploma or GED?, * Candidate must have a minimum of 2-4 years of experience as an analyst in a security operations center or similar environment.

  • Working knowledge of Security Operations Center systems and the role such systems play in detecting intrusion attempts.
  • Documented experience creating custom intrusion signatures to detect specific network traffic anomalies.
  • Demonstrated experience in populating sensors with newly available signatures when responding to events or management requests.
  • Knowledge of potential threat reporting and tracking by means of at least one large-scale ticketing system (ServiceNow, CAPRS, or other similar system).
  • Ability to utilize email, instant messaging, and other monitoring tools to effectively navigate through the incident response process.
  • Strong oral presentation skills and the ability to articulate English in a clear and concise manner.
  • Demonstrated experience with Windows Operating System and Microsoft 365 tools., * High School Diploma accompanied with related advanced training and certifications in cybersecurity or a related field. BS/BA degree preferred.
  • Required certifications include CompTIA Security+. Documented proof of certifications is required prior to the start of employment.
  • Experience with Windows Operating System and Microsoft 365 tools.
  • Great Written and Communication Skills - Must have the ability to convey information clearly and effectively
  • Must live within 2 hours travel of the designated Security Operations Center for which they are applying.
  • Must be able to obtain a Public Trust clearance.

Nice-to-haves

  • Bachelor’s or Master’s degree in computer science, or cybersecurity, or information technology.
  • Other advanced certifications such as Cybersecurity Analyst+ (CySA+), Certified Ethical Hacker (CEH), or Certified Information System Security Professional (CISSP)

Benefits & conditions

Pulled from the full job description

  • Tuition reimbursement
  • Parental leave
  • 401(k)
  • Health insurance
  • Retirement plan
  • 401(k) matching
  • Paid time off, We offer competitive compensation and an extraordinary benefits package including health, dental and vision insurance, 401K with company matching, flexible spending accounts, paid holidays, three weeks paid time off, and more., * 401(k)
  • Dental insurance
  • Parental leave
  • Retirement plan
  • Tuition reimbursement

About the company

Tuknik Government Services , LLC (TGS), a Koniag Government Services company, is seeking an experienced SOC Analyst to support TGSand our government customer in Durham, NC, Baltimore, MD or Denver, CO., Koniag Government Services (KGS) is an Alaska Native Owned corporation supporting the values and traditions of our native communities through an agile employee and corporate culture that delivers Enterprise Solutions, Professional Services and Operational Management to Federal Government Agencies. As a wholly owned subsidiary of Koniag, we apply our proven commercial solutions to a deep knowledge of Defense and Civilian missions to provide forward leaning technical, professional, and operational solutions. KGS enables successful mission outcomes for our customers through solution-oriented business partnerships and a commitment to exceptional service delivery. We ensure long-term success with a continuous improvement approach while balancing the collective interests of our customers, employees, and native communities. For more information, please visit www.koniag-gs.com.

Equal Opportunity Employer/Veterans/Disabled. Shareholder Preference in accordance with Public Law 88-352

Pay: $68,125.75 - $82,043.91 per year

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

56 sec

Integrating automated approval workflows into the portal

Markus Eisele Markus Eisele · WWC 2025

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · WWC 2022

14:14 min

Addressing audience inquiries on analytical implementation and career growth

Julian Joseph · LIVE

2:27 min

Establishing a simulated technical environment for the workflow demo

Tobias Dunn-Krahn · LIVE

4:23 min

Boosting security operations center productivity with intelligent data analysis

Chris Wysopal Chris Wysopal +2 · WWC 2024

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all