COLSA Corporation

Cybersecurity Operations Analyst (CSSP)

COLSA Corporation$75K — $95K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree or higher in a related field or equivalent experience with 3 related certifications
  • At least 4 years of relevant experience in cybersecurity
  • Active CompTIA Security+CE certification
  • Must be a US citizen and able to obtain/maintain an interim DoD Secret clearance
  • Strong written and verbal communication skills for varied technical audiences
  • Ability to adapt in a constantly changing environment and adjust priorities as needed
  • Basic knowledge of Cyber Defense activities including IDS, IPS, and network monitoring

Responsibilities

  • Analyze network data through packet and flow analysis to detect security incidents
  • Assist in resolving a variety of cybersecurity issues including vulnerabilities and cyber incidents
  • Provide recommendations for mitigating security incidents and verifying effectiveness
  • Generate monthly reports detailing cybersecurity posture and ongoing issues for customers
  • Review open vulnerabilities using security solutions, focusing on high-risk findings
  • Enforce endpoint quarantine policies for high-risk devices using security solutions
  • Assist customers in preparing for cybersecurity posture assessments and coordinate mitigation efforts

Benefits

  • Opportunities for professional development and continuous learning
  • Collaborative environment with exposure to diverse cybersecurity scenarios
  • Chance to work with cutting-edge technologies in cybersecurity
  • Access to a supportive team committed to best practices in security
  • Potential for external agency interactions, enhancing professional network
Full Job Description
Job Description

General Summary:
Performs system monitoring and analysis support for the detection of cyber incidents and provides recommendations on how to correct findings.

Principal Duties and Responsibilities (*Essential Functions):
  • Analyzes network data using packet capture analysis, network flow analysis, as well as Cloud Logs to identify and report on potential security incidents.
  • Assists customers with remediation of a wide range of cybersecurity issues including vulnerabilities, misconfigurations, cyber incidents, and non-compliance.
  • Provides analysis, recommendations, and verification to achieve acceptable mitigation of security incidents.
  • Generates and publishes monthly reports providing customers with a summary of their cyber security posture as well as tracking customers with consistent issues.
  • Conducts daily review of open vulnerabilities using both Network and Endpoint based security solutions, reporting on high risk findings and tracking mitigation efforts until resolved.
  • Enforces endpoint quarantine policies on extremely high risk devices using Endpoint Security Solution.
  • Assists customers in preparing for upcoming cyber security posture assessments by providing overview of topics covered by assessment, and coordinating with customer and other operational teams to mitigate potential high risk findings observed on the site's network.
  • May interface with external entities (e.g. law enforcement, intelligence/government agencies, etc.).

Required Experience

  • Bachelor's degree or higher in a related field (minimum of 3 related certifications may be used in place of related academic field)
  • Minimum of 4 years of related experience
  • Active CompTIA Security+CE certification
  • US Citizenship Required; must be able to obtain/maintain an interim DoD Secret clearance prior to starting
  • Strong written and verbal communication skills
  • Ability to communicate and present information to customers at varying levels of technical detail
  • Comfortable working in a constantly adapting and changing environment that may require learning new skills and the ability to adjust priorities
  • Basic knowledge of Computer Network Defense activities to include standard cyber-defense Intrusion Detection Systems (IDS), Intrusion Protection Systems (IPS), network monitoring, packet capture analysis, network flow analysis, network proxy operation, firewalls, and anti-virus capabilities
  • Basic knowledge of vulnerability and risk management techniques in a cyber security setting, including handling risk/severity-based prioritization and decision making
  • Familiar with encryption technology, penetration, and vulnerability analysis of various security technologies, and information technology security research

Preferred Qualifications
  • CySA+ or CEH certification
  • Active Secret Clearance
  • Experience analyzing alerts using PCAPs and/or cloud logs, as well as an understanding of network threats, potential network exploitation, and methods to defend against potential malicious activity
  • Proficiency in Office 365 tools at a professional level
  • Experience using vulnerability scanning solutions such as Tenable Nessus
  • Experience using data presentation/automation tools such as PowerBI or Tableau
  • Experience assessing Security Technical Implementation Guide (STIG) findings
  • Experience working with Endpoint Security Solutions such as Trellix or Microsoft Defender Endpoint
  • Experience handling risk/severity-based prioritization and decision making

Applicant selected will be subject to a government security investigation and must meet eligibility requirements for access to classified information.

About COLSA Corporation

COLSA Corporation is a technology services and solutions provider primarily serving the U.S. government and defense industry. The company offers a range of services including engineering, program management, cyber security, and information technology. COLSA Corporation was founded in 1980 and is headquartered in Huntsville, Alabama.
Learn more about COLSA Corporation
Size
2,000 employees
Industry

Similar Jobs

More Jobs at COLSA Corporation

More Information Technology Jobs

Find similar Cybersecurity Operations Analyst (CSSP) jobs: