ECS

IT SOC Engineer I

ECS$100K — $120K *
US-AnywhereRemote in Virginia, US
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 3+ years in Cybersecurity with a strong focus on IT security policies and processes.
  • Ability to obtain a Secret clearance.
  • 8570.01/8140.03 Cybersecurity certification (CompTIA Security+ CE).
  • Hands-on experience with security control vulnerabilities and mitigation techniques.
  • Familiarity with frameworks such as STIG, NIST SP 800-53, and Cybersecurity Risk Management Framework.

Responsibilities

  • Conduct forensic analysis of digital media devices to identify malicious content.
  • Collaborate with security operations for cybersecurity communications and investigations.
  • Provide insights on cyber adversary capabilities and intentions regarding Computer Network Exploitation (CNE) and Computer Network Attack (CNA).
  • Perform onsite and remote vulnerability assessments as a part of a comprehensive security program.
  • Conduct penetration testing that simulates real-world attacks to uncover security vulnerabilities.
  • Assist in threat detection and response, prioritizing actionable intelligence.
  • Act as a subject matter expert in the evaluation and operation of SOC software tools.

Benefits

  • Opportunity to work remotely.
  • Access to technical training and development opportunities.
  • Working in a dynamic environment with a focus on cybersecurity advancements.
  • Engagement with a range of cybersecurity tools and technologies.
Full Job Description
IT SOC Engineer I to work remotely.

Responsibilities are:
  • Responsible for performance of forensic analysis on various digital media devices and mediums to identify, reverse engineer, and obfuscate content related to an incident, such as malicious content.
  • Consult with security operations regarding cybersecurity communications and deliver or request assistance or assist with investigations.
  • Provide technical expertise in cyber adversary capabilities and an assessment of the intentions of these groups to conduct Computer Network Exploitation (CNE) and Computer Network Attack (CNA) against U.S. private sector and Government networks and information systems.
  • Consult and provide onsite and remote vulnerability assessment capabilities as a sustained, full-time program independent of incident detection, recovery, or reporting activities.
  • Consult both internal and external penetration and security testing which mimics real-world attacks to identify methods for circumventing the security features of an application, system, and network.
  • Consult with teams to detect, prevent, and respond to threats posed by malicious, negligent, or compromised insiders by maintaining in-depth visibility into the DFC Enterprise and having a means of filtering and prioritizing threat data into concise, actionable intelligence.
  • Provide expert security engineering and subject matter expertise to conduct market research, product evaluation, testing, configuration, deployment, operations, and maintenance support for various SOC software tools and technologies.
  • Advise and assist with SOC architecture activities for all DFC SOC information systems initiatives supporting all SOC tools and capabilities.
  • Create procedures and documentation for maintaining SOC hardware and software.
  • Determine and document the security impact of proposed or actual changes to the information systems and their environment of operation.
  • Assess the technical, management, and operational security controls employed within and inherited by the information systems in accordance with the organization defined monitoring strategy.
  • Facilitate and perform remediation actions based on the results of ongoing monitoring activities and the outstanding items in the POA&M.
  • Update the System Security Plan, SAR, and POA&Ms. Key Deliverables: updated Residual Risk Statement and Risk Acceptance Recommendation Report.
  • Report the security status of information systems to appropriate organizational officials on an ongoing basis.
  • Review the reported security status of information systems ongoing Risk Determination and Acceptance.
  • Incident Assessment and Response Support; work with the DFC CIRT or any other pertinent parties (including external vendors) at any DFC location to recover from any incident.

Salary Range: $100,000 - $120,000

General Description of Benefits

  • Must possess or have the ability to obtain a Secret clearance.
  • 3+ years of technical experience in Cybersecurity, maintaining IT security policies, processes, and guidance.
  • 8570.01/8140.03 Cybersecurity certification. (CompTia Security+CE)
  • Experience with mitigation of security control vulnerabilities based on Cybersecurity principles and tenets. (e.g., STIG, NIST SP 800-53, Cybersecurity Risk Management Framework, etc.).
  • Experience with implementing security measures to resolve vulnerabilities, mitigate risks and recommend security changes to system or system components as needed.
    Implementing system security measures in accordance with established procedures to ensure confidentiality, integrity, availability, authentication, and non-repudiation.
  • Experience with mitigating/correcting security deficiencies identified during security/certification testing and/or recommend risk acceptance.

About ECS

ECS is a leading provider of digital solutions and services to the federal government. The company was founded in 2001 by Roy Kapani and has since grown to become a trusted partner to a wide range of government agencies. ECS offers a broad range of services, including cloud computing, cybersecurity, and artificial intelligence. The company has been recognized for its innovative solutions and has won numerous awards, including the AWS Public Sector Partner of the Year award.
Learn more about ECS
Size
2,000 employees
Industry

Similar Jobs

More Jobs at ECS

More Information Technology Jobs

Find similar IT SOC Engineer I jobs: