Massachusetts Institute of Technology

Cyber Security Analyst

Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 2+ years in information security, BS in IT preferred.
  • Experience with SIEM tools and log management.
  • Technical skills in Linux and Windows server management.
  • Understanding of vulnerability detection and risk assessment.
  • Familiarity with container security and DevSecOps.
  • Proficient in scripting (bash, PowerShell, python).
  • Security+ certification or higher is required.

Responsibilities

  • Monitor and protect laboratory information systems.
  • Maintain and operate cybersecurity tools in a classified environment.
  • Conduct vulnerability assessments and coordinate mitigations.
  • Provide briefings to management regarding security posture.
  • Research and respond to security incidents effectively.

Benefits

  • Comprehensive health, dental, and vision plans.
  • MIT-funded pension.
  • Matching 401K contributions.
  • Paid leave for various personal needs.
  • Tuition reimbursement and continuing education programs.
  • Access to mentorship programs.
  • Options for work-life balance.
Full Job Description
Position Description

The Digital Solutions(DS) Cyber Security Sector is responsible for monitoring and protecting Laboratory information systems. The sector operates and maintains computer network defense (CND) tools and data sources (network and host level) in support of incident response and mitigation processes. Services include briefings to management, advising them of issues that may affect the Laboratory's security posture. The sector also conducts vulnerability assessment scanning at the network, system, and application levels, and coordinates mitigations and communications to the Laboratory community.

DS Cyber Security Team supports a high side (classified) Cybersecurity Operations Center which manages the ongoing security of multiple classified networks. This position will augment the existing staff in managing and operating the tools specific to the HS CSOC. Candidate will maintain and operate ACAS(Tenable Nessus), ESS(Trellix ePO), Splunk and other CSOC tools specific to the classified environment. These tools require specific accreditation and training from the government and have specific and extensive domain knowledge about operations within a classified government network.

Minimum Qualifications

  • 2+ years' experience in the information security technology field; preferably a BS in an IT related field of study.
  • Knowledge and experience with SIEM tools and practices, log aggregation, vulnerability scanning, remediation, and management, and endpoint security protection. Training/Experience in Splunk, ACAS and/or ESS usage, administration and deployment is preferred.
  • Technical skills in Linux and Windows server management with a strong familiarity with operating system diagnostics, network design and troubleshooting, and how to diagnose security controls and logs for evidence and indicators of compromise. Ability to develop response to and communicate findings to groups.
  • Good understanding of vulnerabilities, how vulnerabilities are detected and mitigated, how to rate the risk associated with an emerging vulnerability. Nessus Security Center and Manager administration is preferred.
  • Basic threat management and how to do research across multiple sources to correlate and provide accurate scope to identify, contain, eradicate and recover from a security incident.
  • Familiarity and knowledge of containers, container security and DevSecOps.
  • Proficiency in scripting with languages such as bash, PowerShell, and python is highly preferred.
  • Security+ certification or higher with the demonstrated ability to achieve ongoing educational training to maintain currency.
  • Ability and desire to work 100% on site given the requirements of the position.
  • Ability to obtain and maintain a government security clearance.


Preferred Qualifications

  • Proficiency in scripting with languages such as bash, PowerShell, and python
  • Prefer skills in Splunk administration and maintenance and SOC operations as well as familiarity with DoD regulations, like STIGs and the operational processes that support them. Use of Splunk, ACAS and ESS as a consumer may be considered as a minimum requirement.
  • Demonstrated ability to work and communicate within a team.
  • Create and contribute to various teams in a collaborative and constructive manner.
  • Familiarity and knowledge of containers, container security and DevSecOps.
  • The ability to think critically and innovatively about the security solutions that can keep data safe while still allowing a business to flourish.
  • Ability to learn new technologies and disciplines quickly.


Hiring Range: $80,800-$105,100

Disclaimer: MIT Lincoln Laboratory provides a typical hiring range as a good faith estimate of what we reasonably expect to offer for this position at the time of posting. The final salary offered to a selected candidate will depend on various factors, including-but not limited to-the scope and responsibilities of the role, the candidate's experience, skills and education/training, internal equity considerations and applicable legal requirements. This range reflects base salary only and does not include additional forms of compensation or benefits.

At MIT Lincoln Laboratory, our exceptional career opportunities include many outstanding benefits to help you stay healthy, feel supported, and enjoy a fulfilling work-life balance. Benefits offered to employees include:

  • Comprehensive health, dental, and vision plans
  • MIT-funded pension
  • Matching 401K
  • Paid leave (including vacation, sick, parental, military, etc.)
  • Tuition reimbursement and continuing education programs
  • Mentorship programs
  • A range of work-life balance options
  • ... and much more!


Please visit our Benefits page for more information. As an employee of MIT, you can also take advantage of other voluntary benefits, discounts and perks.

Selected candidate will be subject to a pre-employment background investigation and must be able to obtain and maintain a Secret level DoD security clearance.

Requisition ID: 43348

About Massachusetts Institute of Technology

The Massachusetts Institute of Technology (MIT) is a private research university located in Cambridge, Massachusetts. MIT is a member of the Association of American Universities (AAU) and is classified among "R1: Doctoral Universities – Very high research activity". The university is known for its strong emphasis on scientific and technological research and its engineering programs. MIT was founded in 1861 and has a long history of innovation and entrepreneurship. The university has produced numerous Nobel laureates, Rhodes Scholars, and MacArthur Fellows.
Learn more about Massachusetts Institute of Technology
Size
13,000 employees
Industry

Similar Jobs

More Jobs at Massachusetts Institute of Technology

More Information Technology Jobs

Find similar Cyber Security Analyst jobs: