SAIC

Cybersecurity Ops Analyst

SAIC$95K — $115K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in a related field with 2 years of experience required; 4 years preferred.
  • Certifications such as CySA+, SecurityX+, or GIAC Security Essentials (GSEC) are preferred.
  • Ability to pass necessary background checks, including LiveScan.
  • Must pass a drug screening.
  • Proficiency in programming languages like Python, C++, and JavaScript.

Responsibilities

  • Proactively monitor security events across networks and systems.
  • Mentor and guide Tier 1 SOC Analysts.
  • Identify, investigate, and report potential Security Incidents.
  • Support risk and vulnerability assessments at various levels.
  • Assist in the development and reporting of cyber metrics.
  • Contribute to cyber threat intelligence initiatives.
  • Implement automation tasks to enhance operational efficiency.
  • Develop security controls and assist in security awareness programs.

Benefits

  • Hybrid working model with flexible onsite and remote days.
  • Opportunities for continuous learning and professional development in cybersecurity.
  • Exposure to a variety of cybersecurity technologies and tools.
  • Chance to influence security practices and protocols in a governmental setting.
Full Job Description
Job Description

SAIC is seeking a Senior Cyber Security Analyst to join our County of Orange Security Operations Center (SOC) team. The core mission of the SOC is to protect County assets, systems, and data against cyber threats. The Tier 2 Security Analyst will create, tune, monitor, and investigate Security Information and Event Management (SIEM) alerts and assist with other SOC functions such as incident response, digital forensics, data loss prevention, and vulnerability management actions.

Important notes:
  • Since the SOC is a 7/24/365 operations center, it is expected that this person will work during some holidays.
  • The SOC operates a hybrid shift model, with some days onsite and some days remote.
  • Shift Rotation is to be expected based on operational needs, remaining on the same shift is not guaranteed. Reasonable notice time will be provided prior to any shift changes.

Responsibilities:
  • Proactively monitor security events for networks and systems.
  • Mentor and guide T1 SOC Analysts.
  • Identify, investigate, and report on potential Security Incidents.
  • Support risk and vulnerability assessment at the network, system, and application level.
  • Support cyber metrics development, maintenance, and reporting.
  • Support cyber threat intelligence development and reporting.
  • Support routine identification, development and implementation of automation tasks.
  • Proactively develop, recommend, and implement security controls and formulate operational risk mitigations along with assisting in security awareness programs.
  • Research, evaluate, and recommend new security tools, techniques, and technologies and introduces them to the enterprise in alignment with IT security strategy.
  • Utilizes COTS/GOTS and custom tools and processes/procedures to scan, identify, contain, mitigate and remediate vulnerabilities, and intrusions.
  • Assists in the implementation of the required government policy (i.e., NIST) and makes recommendations on process tailoring.
  • Performs analyses to validate established security requirements and to recommend additional security requirements and safeguards.
  • Periodically conducts a review of each system's audits and monitors corrective actions until all actions are closed.
  • Routinely provide briefings to senior staff.


Qualifications

Required Education and Experience:
  • A Bachelor's degree in related field and 2 years of related experience required; 4 years of related experience is highly preferred. Additional experience can be substituted in lieu of education.
  • Preferred Certifications: CySA+, SecurityX+, GIAC Security Essentials (GSEC), or similar industry related certification(s).
  • Must be able to pass the LiveScan background check, CSS Department review, and Probation Department review.
  • Must be able to pass a Drug Screen.

Required Skills:
  • Programming languages such as Python, C++, JavaScript.
  • Security Information and Event Management (SIEM) technologies.
  • IDS/IPS, Firewalls, and Anti-Virus/Anti-Malware technologies.
  • Incident Response.
  • Vulnerability Management.
  • Demonstrated experience in analyzing security alerts via Sentinel Security Information and Event Management (SIEM) (experience with other SIEM tools would be acceptable).
  • Demonstrated response, exposure to and partial or full ownership of Security Incidents.
  • Demonstrated knowledge of the full Incident Response cycle: Identification, Protection, Detection, Response, Recover.
  • Adherence to Standard Operating Procedures for the SOC.


About SAIC

Science Applications International Corporation (SAIC) is a technology integrator in the technical, engineering, intelligence, and enterprise information technology markets. SAIC has approximately 26,000 employees and operates in more than 70 countries. The company was founded in 1969 and is headquartered in Reston, Virginia. SAIC provides services to the U.S. government, including the Department of Defense, the intelligence community, and civilian agencies. The company also serves commercial customers in the healthcare, energy, and financial services sectors.
Learn more about SAIC
Size
26,000 employees
Market Cap
$6 billion
Industry
Net Income
$206 million
Founded
1969
5 Year Trend
+10.7%
Revenue
$6.8 billion
NASDAQ

Similar Jobs

More Jobs at SAIC

More Information Technology Jobs

Find similar Cybersecurity Ops Analyst jobs: