Tier 1 SOC Analyst
GDH INC
North Bethesda, United States of America
yesterday
Role details
Contract type
Permanent contract Employment type
Full-time (> 32 hours) Working hours
Shift work Languages
English Experience level
Junior Compensation
$ 71KJob location
Remote
North Bethesda, United States of America
Tech stack
Microsoft Windows
Unix
Computer Security
Linux
Intrusion Detection and Prevention
Intrusion Detection Systems
Log Analysis
Packet Analyzer
Network Protocols
Security Information and Event Management
File Transfer Protocol (FTP)
Firewalls (Computer Science)
Splunk
Job description
- Monitor security alerts from SIEM platforms, firewalls, intrusion detection and prevention systems, and endpoint security solutions.
- Analyze security events and escalate issues according to established protocols.
- Investigate security incidents by reviewing logs, network captures, and other relevant data sources.
- Collaborate with team members to improve detection techniques and incident response processes.
- Maintain and update security incident documentation and reporting.
- Assist in the implementation and tuning of security monitoring tools and systems.
- Stay informed on current cybersecurity threats, vulnerabilities, and best practices.
- Support the security operations team during shift rotations and incident investigations.
- Ensure compliance with organizational security policies and procedures.
- Participate in security training and ongoing professional development activities.
Requirements
- 1-3 years of experience in a security operations center environment or recent college graduates holding industry certifications.
- Knowledge of security event monitoring and incident analysis.
- Experience with security information and event management (SIEM) tools such as Splunk or similar platforms.
- Familiarity with operating systems including Windows, Linux, or UNIX.
- Strong written and verbal communication skills to clearly articulate technical findings.
- This position requires eligibility for a U.S. Government security clearance. In accordance with federal law, U.S. citizenship is required.
- Certifications such as CSIS, CEH, GCFP, CISSP, GCIH, or related are preferred.
- Knowledge of IDS log analysis, packet capture tools, and common network protocols (FTP, HTTP, SSH, SMB, DAP).
- Availability for second shift (12:00 PM - 8:00 PM) or third shift (8:00 PM - 6:00 AM) as needed.