TS Cleared -Senior SOC Analyst - 100% ONSITE -Top SECRET is required
On-siteHuntsville, Alabama, United States
Job Summary
Monitor and respond to alerts triggered in the SEIM tool, conducting detailed discovery and analysis of intrusion detection security events traversing the Federal Intel Agency's network. Support Information Assurance Engineers and the Shift Team Lead as a second-tier escalation point, ensuring incident reviews are accurate and constructing all email notification messaging. Investigate incidents using tools like Splunk ES, FireEye, and Wireshark to take immediate action or recommend courses of action safeguarding systems, while documenting all findings to create clear narratives supporting conclusions. Requires eight years of security intrusion detection examination experience, an active TOP SECRET clearance with ability to obtain SCI, and a Bachelor's degree.
Required Qualifications
- Active TOP SECRET clearance
- Ability to qualify and obtain SCI
- Eight (8) years of security intrusion detection examination experience
- Experience involving a range of security technologies that product logging data
- Wide area networks host and Network IPS/IDS/HIPs traffic event review
- Server web log analysis
- Raw data logs analysis
- Ability to communicate clearly both orally and in writing
- Splunk ES
- Splunk SIEM
- Fire Eye Wireshark
- Snort
- PCAP Analysis
- Top 10 OWASP Vulnerabilities
- 8 years at SOC Analyst level
- Bachelor's degree
- 100% ONSITE
- Must be willing to undergo and obtain SCI from the agency
Desired Qualifications
- Willingness to work other cyber security technology tools as well
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.