CSOC Analyst T1

Nightwing

$64K — $128K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 1+ years of experience in IT Operations and IT Security
  • Working knowledge of Platform Security Basics, Threat Lifecycle Management, and TCP/IP
  • Familiarity with AI/ML techniques in cybersecurity
  • Strong understanding of IDS/IPS technologies
  • Bachelor's degree in Computer Science or a related field, or equivalent experience

Responsibilities

  • Identify cybersecurity problems that require mitigating controls
  • Interpret alerts from SIEM and other sources to identify security incidents
  • Collect basic information to aid in the analysis of incidents
  • Escalate issues requiring further investigation to the Threat Management team
  • Execute operational processes to support incident response efforts
  • Utilize AI/ML tools to detect anomalies and automate incident triage
  • Stay informed on current cybersecurity trends and threat actors

Benefits

  • Medical, vision, and dental insurance coverage
  • 401k plan
  • Paid time off (PTO)
  • Holidays
  • Additional insurance options
Full Job Description

This position is CONTINGENT upon funding, an open position, customer approval, completion of a favorable background investigation, and the ability to obtain and maintain our customer's sensitive clearance.

Job Requisition: JR101963 CSOC Analyst T1 6 Falls Church, VA or Remote

Tier 1 CSOC Analyst Job Description

This position is CONTINGENT upon funding, an open position, customer approval, completion of a favorable background investigation, and the ability to obtain and maintain our customer's sensitive clearance.

Nightwing is seeking to hire a Tier 1 CSOC Analyst. Candidates should have some work experience in Security Operations Centers (SOC), Cyber Security Operations Centers (CSOC), and Cyber Incident Response Team (CIRT). The Tier 1 Analysts receive all alerts from various sources, including SIEM, CSOC mailboxes, and phone calls directly from the central SIEM and handle as defined in Playbooks and SOPs. Tier 1 Analyst will escalate the events to Tier 2 after initial triage, along with providing input and analysis on how to leverage Artificial Intelligence, Machine Learning, and SOAR capabilities to improve CSOC efficiency and accuracy

Responsibilities

 Identification of Cybersecurity problems which may require mitigating controls

 Interpret output from the SIEM, CSOC mailboxes, and phone calls to identify potential security incidents

 Collect basic information to support analysis such as IP address, location, affected asset(s), etc.

 Escalate items which require further investigation to other members of the Threat Management team

 Execute operational processes in support of response efforts to identify security incidents

 Utilize AI/ML-based tools and techniques to detect anomalies, automate incident triage, and improve threat intelligence

 Performing and analyzing threat intelligence to assess risk and adapt defenses using ML enhance tools

 Stay current on the latest cybersecurity trends, threat actors, and AI/ML research relevant to the field

 Identify and support automation use cases, including the use of AI/ML to enhance SOC capabilities.

 Collaborate across Operations to provide SOC enhancement capabilities with automation and AI.

Requirements

 Must be eligible to obtain a sensitive clearance 6 Position of Public Trust 6 and may be required to obtain a higher security clearance

 Must have 1+ years9 experience in IT Operations

 Must have 1+ year experience in IT Security

 Working knowledge of:

o Platform Security Basics

o Threat Lifecycle Management

o TCP / IP

o Incident Management

 Knowledge of Control Frameworks and Risk Management techniques

 Excellent oral and written communication skills

 Excellent interpersonal and organizational skills

 Strong understanding of IDS/IPS technologies, trends, vendors, processes and methodologies

 Familiarity with the application of AI/ML techniques in cybersecurity, including but not limited to automated threat detection, incident response automation, and predictive analytics. Experience in evaluating the effectiveness of AI/ML solutions in a SOC environment is a plus.

 Understanding of ethical AI principles and their implications in cybersecurity.

 Familiarity with cloud security (AWS, Azure, GCP)

 Understanding and experience identifying and implementing automation use cases.

Desired Skills

 Splunk experience, developing queries, data models, and dashboards

 Cloud monitoring experience is a plus

 Excellent writing skills

Required Education

Bachelor of Science Degree with a major in Computer Science/Computer Engineering, Engineering, Science or a related field. Two years of related work experience may be substituted for each year of degree-level education.

Certifications (one or more desired)

One or more relevant certifications such as CEH, CISSP, CompTIA Security+, or GCIH are advantageous.

The ability to obtain and maintain a U.S. government issued security clearance is required.U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance.

Previously part of a leading Fortune 100 company and headquartered in Dulles, VA; Nightwing became independent in 2024 but continues to support the nation9s most mission impactful initiatives.

When we formed Nightwing, we brought a deep set of credentials and an unfaltering commitment to the mission. For over four decades, our team has been providing some of the world9s most technically advanced full-spectrum cyber, data operations, systems integration and intelligence support services to the U.S. government on its most important missions.

At Nightwing, we value collaboration and teamwork. You9ll have the opportunity to work alongside talented individuals who are passionate about what they do. Together, we9ll leverage our collective expertise to drive innovation, solve complex problems, and deliver exceptional results for our clients.

Thank you for considering joining us as we embark on this new journey and shape the future of cybersecurity and intelligence together as part of the Nightwing team.


Salary & Benefits

The salary associated with this position ($64,000-$128,000) is commensurate with the selected candidate9s qualifications, years of relevant experience, and demonstrated level of expertise. Compensation will be determined based on these factors to ensure alignment with skills, responsibilities, and market standards.


Nightwinga0offers medical, vision and dental insurance coverage in addition to a 401k plan, PTO, Holidays, and additional insurances.

Similar Jobs

More Jobs at Nightwing

  • Deputy Program Manager
    $122K — $253K *
    Sterling, VA 20164 (Loudoun County)
    Aerospace & Defense
    In-Person
  • UX Expert
    $122K — $253K *
    San Antonio, TX 78228 (Bexar County)
    Aerospace & Defense
    In-Person
  • Scrum Master
    $99K — $206K *
    Fort George G Meade, MD 20755 (Anne Arundel County)
    Technical Services
    In-Person
  • Scrum Master
    $99K — $206K *
    San Antonio, TX 78228 (Bexar County)
    Technical Services
    In-Person
  • Technical Lead.
    $122K — $253K *
    San Antonio, TX 78228 (Bexar County)
    Information Technology
    In-Person

More Information Technology Jobs

Find similar CSOC Analyst T1 jobs: