The Judge Group - Reston, VA

posted 11 days ago

Full-time - Entry Level
Remote - Reston, VA
Administrative and Support Services

About the position

The Information Security Analyst - II position is a long-term contract role focused on providing security monitoring and incident response within a Security Operations Center (SOC). The analyst will work in shifts, either from 4pm to 12am EST or 12am to 8am EST, and will be responsible for real-time monitoring of security infrastructure, assessing alerts, and coordinating with senior analysts for high-priority incidents. This role serves as the entry point into the SOC, requiring strong communication and problem-solving skills to effectively manage security events and incidents.

Responsibilities

  • Provide real-time security monitoring in a 24x7 environment using SIEM and cybersecurity tools.
  • Perform level 1 assessment of incoming alerts, determining their priority and severity.
  • Open tickets in designated ticketing systems within SLO and/or SLA guidelines for security events.
  • Evaluate reports and SIEM dashboards as part of administrative routines in the SOC.
  • Handle incoming calls and initiate trouble tickets as necessary.
  • Identify recurring incidents for problem management purposes and coordinate with Senior Analysts for high-priority incidents.

Requirements

  • Associate degree in Computer Science, Information Security, or a similar discipline.
  • Strong documentation and communication skills.
  • Exceptional problem-solving skills.
  • Proactive engagement with customers and client management teams.
  • Basic knowledge of network technologies and TCP/IP.
  • Knowledge of Microsoft Windows and Server Operating Systems.
  • Basic understanding of the threat landscape and indicators of compromise.
  • 1-3 years of security-related experience.
  • Clear and concise written and oral English.

Nice-to-haves

  • Bachelor's degree in Computer Science, Information Security, or similar discipline.
  • IT security-related certifications like CompTIA A+, Network+, Security+, Linux, Cisco CCNA, Microsoft Certified Azure Fundamentals, AWS Cloud Practitioner, or SANS GSEC.
  • Understanding of command line scripting and implementation (e.g., Python, PowerShell, Bash Shell).
  • Ability to write new content/searches/scripts for various security tools.
  • Experience with tools such as Active Directory, Cisco IOS, MS Server, AMP, Splunk ES, SNORT, Yara, IronPort, Firepower, SOAR, etc.
  • Strong understanding of networking concepts like TCP Flags, TCP Handshake, IP addressing, Firewalls, Proxy, IDS, IPS.
  • Ability to perform NetFlow/packet capture (PCAP) analysis.
  • Experience with basic cyber threat hunting.

Benefits

  • Competitive hourly salary ranging from $40.00 to $45.00 USD.
  • Remote work options available.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service