Nightwing
• $64K — $128K *Qualifications
Responsibilities
Benefits
This position is CONTINGENT upon funding, an open position, customer approval, completion of a favorable background investigation, and the ability to obtain and maintain our customer's sensitive clearance.
Job Requisition: JR101963 CSOC Analyst T1 6 Falls Church, VA or Remote
Tier 1 CSOC Analyst Job Description
This position is CONTINGENT upon funding, an open position, customer approval, completion of a favorable background investigation, and the ability to obtain and maintain our customer's sensitive clearance.
Nightwing is seeking to hire a Tier 1 CSOC Analyst. Candidates should have some work experience in Security Operations Centers (SOC), Cyber Security Operations Centers (CSOC), and Cyber Incident Response Team (CIRT). The Tier 1 Analysts receive all alerts from various sources, including SIEM, CSOC mailboxes, and phone calls directly from the central SIEM and handle as defined in Playbooks and SOPs. Tier 1 Analyst will escalate the events to Tier 2 after initial triage, along with providing input and analysis on how to leverage Artificial Intelligence, Machine Learning, and SOAR capabilities to improve CSOC efficiency and accuracy
Responsibilities
Identification of Cybersecurity problems which may require mitigating controls
Interpret output from the SIEM, CSOC mailboxes, and phone calls to identify potential security incidents
Collect basic information to support analysis such as IP address, location, affected asset(s), etc.
Escalate items which require further investigation to other members of the Threat Management team
Execute operational processes in support of response efforts to identify security incidents
Utilize AI/ML-based tools and techniques to detect anomalies, automate incident triage, and improve threat intelligence
Performing and analyzing threat intelligence to assess risk and adapt defenses using ML enhance tools
Stay current on the latest cybersecurity trends, threat actors, and AI/ML research relevant to the field
Identify and support automation use cases, including the use of AI/ML to enhance SOC capabilities.
Collaborate across Operations to provide SOC enhancement capabilities with automation and AI.
Requirements
Must be eligible to obtain a sensitive clearance 6 Position of Public Trust 6 and may be required to obtain a higher security clearance
Must have 1+ years9 experience in IT Operations
Must have 1+ year experience in IT Security
Working knowledge of:
o Platform Security Basics
o Threat Lifecycle Management
o TCP / IP
o Incident Management
Knowledge of Control Frameworks and Risk Management techniques
Excellent oral and written communication skills
Excellent interpersonal and organizational skills
Strong understanding of IDS/IPS technologies, trends, vendors, processes and methodologies
Familiarity with the application of AI/ML techniques in cybersecurity, including but not limited to automated threat detection, incident response automation, and predictive analytics. Experience in evaluating the effectiveness of AI/ML solutions in a SOC environment is a plus.
Understanding of ethical AI principles and their implications in cybersecurity.
Familiarity with cloud security (AWS, Azure, GCP)
Understanding and experience identifying and implementing automation use cases.
Desired Skills
Splunk experience, developing queries, data models, and dashboards
Cloud monitoring experience is a plus
Excellent writing skills
Required Education
Bachelor of Science Degree with a major in Computer Science/Computer Engineering, Engineering, Science or a related field. Two years of related work experience may be substituted for each year of degree-level education.
Certifications (one or more desired)
One or more relevant certifications such as CEH, CISSP, CompTIA Security+, or GCIH are advantageous.
The ability to obtain and maintain a U.S. government issued security clearance is required.U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance.
Previously part of a leading Fortune 100 company and headquartered in Dulles, VA; Nightwing became independent in 2024 but continues to support the nation9s most mission impactful initiatives.
When we formed Nightwing, we brought a deep set of credentials and an unfaltering commitment to the mission. For over four decades, our team has been providing some of the world9s most technically advanced full-spectrum cyber, data operations, systems integration and intelligence support services to the U.S. government on its most important missions.
At Nightwing, we value collaboration and teamwork. You9ll have the opportunity to work alongside talented individuals who are passionate about what they do. Together, we9ll leverage our collective expertise to drive innovation, solve complex problems, and deliver exceptional results for our clients.
Thank you for considering joining us as we embark on this new journey and shape the future of cybersecurity and intelligence together as part of the Nightwing team.
Salary & Benefits
Nightwinga0offers medical, vision and dental insurance coverage in addition to a 401k plan, PTO, Holidays, and additional insurances.
Similar Jobs

More Jobs at Nightwing
More Information Technology Jobs