Security Operations Center Analyst

Everwatch

$120K — $139K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 5-7 years of incident response experience or 2+ years with a Bachelor's degree
  • Proficiency with SIEM tools, especially Splunk
  • Familiarity with network fundamentals and configurations
  • Experience with Bro (Zeek), Suricata, or Snort
  • Ability to analyze and interpret security logs
  • TS/SCI clearance with polygraph requirement
  • Competence in Linux system navigation and analysis

Responsibilities

  • Analyze logs and forensic data to detect advanced cyber threats
  • Utilize threat intelligence for complex incident response
  • Investigate patterns in network data to discern attacker strategies
  • Provide advice on improving network security postures
  • Identify gaps in detection capabilities of SEIM systems
  • Enhance defenses against cyber adversaries through strategic analysis

Benefits

  • Opportunities for professional development in cyber defense
  • Engagement in mission-critical operations to protect U.S. infrastructure
  • Collaboration with experienced professionals in cybersecurity
  • Dynamic work environment focused on national security
Full Job Description
Job Title

Security Operations Center Analyst

Responsibilities

Are you ready to take a strategic role in cyber defense for U.S Cyber Command? Do you want to use your experience-based knowledge to protect critical warfighter infrastructure from the constant onslaught of cyber threats? If you want a position that uses your extensive threat analysis skills to perform advanced threat identification and complex incident response, you want to be a SOC analyst. As an analyst on our SOC team, you'll analyze logs, forensic data, and threat intelligence to find the advanced threats that are escaping detection. Using your deep understanding of your customer's networks, combined with your cybersecurity experience, you'll analyze patterns to understand attackers' goals and stop them from succeeding. Once you find the adversary in the SEIM's blind spot, you'll advise on ways to close the gaps and harden their network. Let's outsmart malicious actors and protect U.S. Cyber Command.

Join us. The world can't wait.

Qualifications

You Have:
  • Experience with SIEM Fundamentals, including Splunk
  • Knowledge of basic networking fundamentals
  • Knowledge of the basic functions and configurations of Bro (Zeek)
  • Knowledge of Suricata or Snort
  • Ability to review Nessus scans and Firewall configurations
  • Ability to review Linux hosts for indicators of compromise and hardening of Linux systems
  • Ability to navigate *nix based systems via CLI
  • Ability to find, read, and analyze various logs
  • TS/SCI clearance with a polygraph
  • HS diploma or GED and 6+ years of experience with incident response procedures and analysis, or Bachelor's degree and 2+ years of experience with incident response procedures and analysis


Nice If You Have:
  • Experience with correlating threat intelligence (INTEL) to determine the threat actor, the attack's scope, and the affected systems
  • Experience with AI Fundamentals
  • Knowledge of Splunk Phantom or SOAR


Clearance:
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information; TS/SCI clearance with polygraph is required.

Compensation at EverWatch is determined by various factors, including but not limited to location, the individual's particular combination of education, knowledge, skills, competencies, and experience, as well as contract-specific affordability and organizational requirements. The projected compensation range for this position is $57.69 to $67.30 per hour. The estimate displayed represents the typical compensation range for this position and is just one component of EverWatch's total compensation package for employees.

Job Locations

US-MD-Annapolis Junction

Skills

cyber threat, SIEM, Networking, suricata, snort, Linux, *nix

Similar Jobs

More Jobs at Everwatch

  • Software Engineer
    $200K — $230K *
    San Antonio, TX 78228 (Bexar County)
    Information Technology
    In-Person
  • CI/HUMINT Language Analyst (Russian)
    $115K — $130K *
    Annapolis Junction, MD 20701 (Howard County)
    Aerospace & Defense
    In-Person
  • Policy Analyst, Mid
    $130K — $150K *
    Springfield, VA 22153 (Fairfax County)
    Education, Government & Non-Profit
    In-Person
  • Junior Engineer
    $100K — $120K *
    Annapolis Junction, MD 20701 (Howard County)
    Information Technology
    In-Person
  • Junior Engineer
    $100K — $120K *
    Annapolis, MD 21401 (Anne Arundel County)
    Information Technology
    In-Person

More Information Technology Jobs

Find similar Security Operations Center Analyst jobs: