Cybersecurity Ops Associate at SAIC
United States
<p style="background-color: white; line-height: normal; margin-bottom: 0in; margin-top: 0in; vertical-align: middle;"><span style="color: black; font-family: Arial, sans-serif;"><span style="font-size: 10.5pt;">SAIC has an opening for a Cybersecurity Ops Associate. <strong>This position can be worked 100% remotely for the right candidates. This position is for third shift (10:00 p.m. to 8:00 a.m. )</strong></span></span></p><p style="background-color: white; line-height: normal; margin-bottom: 0in; margin-top: 0in; vertical-align: middle;"> </p><p style="background-color: white; line-height: normal; margin-bottom: 0in; margin-top: 0in; vertical-align: middle;"><span style="color: black; font-family: Arial, sans-serif;"><span style="font-size: 10.5pt;">The Cybersecurity Ops Associate role is responsible for monitoring and analysis of identified security events in support of the real-time 24/7/365 Enterprise Security Operations Center's Detection & Response team’s monitoring capability. The Cybersecurity Ops Associate will perform daily operations utilizing a SIEM and monitoring events from multiple sources including but not limited to firewall logs, system logs, network and host-based intrusion detection systems, applications, databases, cloud infrastructure, and other security information monitoring tools. The associate will work as part of the ESOC team to ensure that our information assets are protected from unauthorized access or alterations and will help in the detection, analysis, and mitigation of potential threats.</span></span></p><p style="background-color: white; line-height: normal; margin-bottom: 0in; margin-top: 0in; vertical-align: middle;"><span style="color: black; font-family: Arial, sans-serif;"><span style="font-size: 10.5pt;"> </span></span></p><p style="background-color: white; line-height: normal; margin-bottom: 0in; margin-top: 0in; vertical-align: middle;"><span style="color: black; font-family: Arial, sans-serif;"><span style="font-size: 10.5pt;"><strong>Job Duties: </strong></span></span></p><ul style="list-style-type: disc; padding-left: 18px;"><li><p style="background-color: white; line-height: normal; margin-bottom: 0in; margin-right: 0in; margin-top: 0in; vertical-align: bottom;"><span style="color: black; font-family: Arial, sans-serif;"><span style="font-size: 10.5pt;">Responds and reacts to events in the SAIC monitored environment and escalates for further analysis as needed.</span></span></p></li><li><p style="background-color: white; line-height: normal; margin-bottom: 0in; margin-right: 0in; margin-top: 0in; vertical-align: bottom;"><span style="color: black; font-family: Arial, sans-serif;"><span style="font-size: 10.5pt;">Continuously monitor security event systems by utilizing the Enterprise Security Operation Center’s security information and event management (SIEM) tool.</span></span></p></li><li><p style="background-color: white; line-height: normal; margin-bottom: 0in; margin-right: 0in; margin-top: 0in; vertical-align: bottom;"><span style="color: black; font-family: Arial, sans-serif;"><span style="font-size: 10.5pt;">Provide initial response and support to potential intrusion or security breach alerts.</span></span></p></li><li><p style="background-color: white; line-height: normal; margin-bottom: 0in; margin-right: 0in; margin-top: 0in; vertical-align: bottom;"><span style="color: black; font-family: Arial, sans-serif;"><span style="font-size: 10.5pt;">Collect and compile historical data on security incidents for trend analysis and security measures improvement.</span></span></p></li><li><p style="background-color: white; line-height: normal; margin-bottom: 0in; margin-right: 0in; margin-top: 0in; vertical-align: bottom;"><span style="color: black; font-family: Arial, sans-serif;"><span style="font-size: 10.5pt;">Assist in containment measures during an incident to prevent further unauthorized access or data loss.</span></span></p></li><li><p style="background-color: white; line-height: normal; margin-bottom: 0in; margin-right: 0in; margin-top: 0in; vertical-align: bottom;"><span style="color: black; font-family: Arial, sans-serif;"><span style="font-size: 10.5pt;">Investigate and approve/deny IP/URL block requests.</span></span></p></li><li><p style="background-color: white; line-height: normal; margin-bottom: 0in; margin-right: 0in; margin-top: 0in; vertical-align: bottom;"><span style="color: black; font-family: Arial, sans-serif;"><span style="font-size: 10.5pt;">Contribute to the development of signature patterns based on known or anticipated threats to enhance detection capabilities.</span></span></p></li><li><p style="background-color: white; line-height: normal; margin-bottom: 0in; margin-right: 0in; margin-top: 0in; vertical-align: bottom;"><span style="color: black; font-family: Arial, sans-serif;"><span style="font-size: 10.5pt;">Provide feedback on signature tuning for better detection of anomalies.</span></span></p></li><li><p style="background-color: white; line-height: normal; margin-bottom: 0in; margin-right: 0in; margin-top: 0in; vertical-align: bottom;"><span style="color: black; font-family: Arial, sans-serif;"><span style="font-size: 10.5pt;">Create and maintain incident tickets as needed.</span></span></p></li><li><p style="background-color: white; line-height: normal; margin-bottom: 0in; margin-right: 0in; margin-top: 0in; vertical-align: bottom;"><span style="color: black; font-family: Arial, sans-serif;"><span style="font-size: 10.5pt;">PCAP Analysis and correlation of events.</span></span></p></li><li><p style="background-color: white; line-height: normal; margin-bottom: 0in; margin-right: 0in; margin-top: 0in; vertical-align: bottom;"><span style="color: black; font-family: Arial, sans-serif;"><span style="font-size: 10.5pt;">Determining urgency and potential impact.</span></span></p></li><li><p style="background-color: white; line-height: normal; margin-bottom: 0in; margin-right: 0in; margin-top: 0in; vertical-align: bottom;"><span style="color: black; font-family: Arial, sans-serif;"><span style="font-size: 10.5pt;">Assist with analysis of actions taken by malicious actors to determine initial infection vectors as well as establish a timeline of activity and any data loss associated with incidents.</span></span></p></li><li><p style="background-color: white; line-height: normal; margin-bottom: 0in; margin-right: 0in; margin-top: 0in; vertical-align: bottom;"><span style="color: black; font-family: Arial, sans-serif;"><span style="font-size: 10.5pt;">Develop and maintain security documentation including SOPs, incident reports, and policies.</span></span></p></li><li><p style="background-color: white; line-height: normal; margin-bottom: 0in; margin-right: 0in; margin-top: 0in; vertical-align: bottom;"><span style="color: black; font-family: Arial, sans-serif;"><span style="font-size: 10.5pt;">Communicate and escalate issues and alerts as required by process or management.</span></span></p></li><li><p style="background-color: white; line-height: normal; margin-bottom: 0in; margin-right: 0in; margin-top: 0in; vertical-align: bottom;"><span style="color: black; font-family: Arial, sans-serif;"><span style="font-size: 10.5pt;">Additional responsibilities including the support of various Enterprise Security Operations Center activities.</span></span></p></li></ul><p style="background-color: white; line-height: normal; margin-bottom: 0in; margin-top: 0in; vertical-align: bottom;"> </p> <br><a href="http://www.saic.com/" target="_blank" rel="nofollow">SAIC®</a> is a premier mission integrator focused on advancing the power of technology and innovation to serve and protect our world. Our robust portfolio of offerings across the defense, space, intelligence, and civilian markets includes secure high-end solutions in mission IT, enterprise IT, engineering services, and professional services. We integrate emerging technology, rapidly and securely, into mission critical operations that modernize and enable critical national imperatives. <div> <br> We are approximately 23,000 strong; driven by mission, united by purpose, and inspired by opportunities. SAIC is an Equal Opportunity Employer. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $7.3 billion. For more information, visit <a href="http://www.saic.com/" target="_blank" rel="nofollow">saic.com</a>. For ongoing news, please visit our <a href="http://www.saic.com/who-we-are/newsroom/" target="_blank" style="margin-bottom:0px" rel="nofollow">newsroom</a>. </div>
Apply Now