Security Operations Center (SOC) Junior Analyst at ECS
United States
$65k - $80k
<p>ECS is seeking a <strong>Security Operations Center (SOC) Junior Analyst</strong><strong><em> </em></strong>to work <strong>remotely. </strong></p> <p> </p> <p>IronVine Security, an ECS company, is a rapidly growing information security and information technology company in Washington, DC. We are looking to hire a Junior Cyber Security Analyst to provide a full range of cyber security services on a long-term contract in Washington, DC. The position is full time/permanent and will support a Government Contract. The position is available immediately upon finding a qualified candidate with the appropriate background clearance.</p> <p> </p> <p><strong>Position Responsibilities:</strong></p> <ul> <li>Perform hunting for malicious activity across the network and digital assets</li> <li>Respond to computer security events, incidents and conduct threat analysis</li> <li>Identify and act on malicious or anomalous activity</li> <li>Conducts analysis using a variety of tools and data sets to identify indicators of malicious activity.</li> <li>Perform detailed investigation and response activities for security incidents</li> <li>Provide accurate and priority driven analysis on cyber activity/threats</li> <li>Perform payload analysis of packets</li> <li>Recommend implementation of countermeasures or mitigating controls</li> <li>Ensure all pertinent information is obtained to allow for the identification, containment, eradication, and recovery actions to occur in a time sensitive environment</li> <li>Collaborate with technical and threat intelligence analysts to provide indications and warnings, and contributes to predictive analysis of malicious activity</li> <li>Mentor junior staff in cybersecurity techniques and processes</li> <li>Create and continuously improve standard operating procedures used by the SOC</li> <li>Resolve or coordinate the resolution of cyber security events</li> <li>Monitor incoming event queues for potential security incidents</li> <li>Create, manage, and dispatch incident tickets</li> <li>Monitor external event sources for security intelligence and actionable incidents</li> <li>Maintain incident logs with relevant activity</li> <li>Document investigation results, ensuring relevant details are passed to SOC Lead, Incident Response team and stakeholders</li> <li>Participate in root cause analysis or lessons learned sessions</li> <li>Write technical articles for knowledge sharing</li> <li>Establish and maintain excellent working relationships/partnerships with the cyber security and infrastructure support teams throughout the Information Technology organization, as well as business units</li> </ul> <p> </p> <p><em>Salary Range: $65,000 - $80,000</em></p> <p><a href="https://ecstech.com/careers/benefits" target="_blank"><em>General Description of Benefits</em></a></p> <strong><span>Qualifications</span></strong> <ul> <li>Detailed understanding of NIST Special Publication 800-61 Revision 2, Computer Security Incident Handling Guide</li> <li>Excellent problem solving, critical thinking, and analytical skills</li> <li>Exceptional working knowledge of TCP/IP Networking and the OSI model</li> <li>In-depth knowledge of the Intelligence driven defense utilizing the Cyber Kill Chain (CKC) and MITRE ATT&CK frameworks.</li> <li>Experience analyzing endpoint, network, firewall and intrusion prevention logs</li> <li>Significant experience with packet analysis via Wireshark</li> <li>Strong working knowledge of Splunk and Web Application Firewall experience</li> <li>Working knowledge of Windows and Linux command-line tools</li> <li>Strong working knowledge Hypertext Transfer Protocol, DNS and business email compromise framework</li> </ul> <p><strong>Certifications/Licenses:</strong></p> <ul> <li><em><strong>Bachelor's degree in Computer Science or related field or equivalent work experience</strong></em></li> <li>CompTIA Security+</li> <li>EC Council Certified Ethical Hacker (CEH)</li> <li>Formal IT Security/Network Certification such as SANS GIAC Certified Intrusion Analyst (GCIA), SANS GIAC Network Forensic Analyst (GNFA) or SANS GIAC Certified Incident Handler (GCIH), preferred</li> </ul>
Apply Now