ASRC

Senior Cyber Security Engineer

ASRC$100K — $130K *
US-AnywhereRemote in Myrtle Point, OR
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • U.S. Citizen or Permanent Resident required.
  • Bachelor's degree in relevant field or equivalent experience.
  • 7+ years in cybersecurity operations and incident response.
  • Experience with Tier II/Tier III SOC investigations.
  • Strong background in SIEM, EDR/XDR, and network security tools.
  • Proficiency in PowerShell or Python scripting.
  • Solid understanding of TCP/IP and enterprise networking.

Responsibilities

  • Act as Tier II/Tier III point of escalation for SOC investigations.
  • Investigate phishing, malware, and credential compromise incidents.
  • Engage in proactive threat hunting with various security data sources.
  • Monitor security alerts to manage and remediate malicious activity.
  • Analyze cybersecurity threats and system vulnerabilities.
  • Conduct incident response including triage and recovery efforts.
  • Develop detection rules to enhance SOC capabilities.

Benefits

  • Comprehensive health care, dental and vision insurance.
  • Life insurance and 401(k) plan.
  • Education assistance for further learning.
  • Paid time off including holidays and mandated leave.
Full Job Description
ASRC Federal is looking for an experienced Senior Cyber Security Analyst (Incident Response & Threat Operations) to join our team in a government contracting (GovCon) environment. This is a full-timeremote position with occasional on-site support (Beltsville, MD or Reston, VA).

The Senior Cyber Security Analyst is responsible for advanced incident response, threat detection, and Tier II/Tier III Security Operations Center (SOC) support within an enterprise environment. This role focuses on investigating security events, identifying malicious activity, responding to cyber incidents, and improving detection capabilities across the organization.

The ideal candidate has strong hands-on experience in intrusion detection, threat hunting, phishing investigations, endpoint and network analysis, and operational cybersecurity support.

Key Responsibilities
  • Serve as a Tier II/Tier III escalation point for complex SOC investigations and cybersecurity incidents.
  • Investigate and respond to security alerts involving phishing, malicious URLs, malware activity, credential compromise, suspicious authentication activity, and endpoint threats.
  • Conduct proactive threat hunting activities using SIEM, EDR/XDR, firewall, DNS, email security, and network telemetry data.
  • Monitor security tools, logs, alerts, and reports to identify suspicious or malicious activity and coordinate appropriate response and remediation actions.
  • Identify, analyze, and mitigate cybersecurity threats, vulnerabilities, and system weaknesses to reduce organizational risk exposure.
  • Analyze security events and logs to identify indicators of compromise, attack patterns, and unauthorized activity.
  • Perform incident response activities including triage, containment, eradication, recovery, and root cause analysis for security incidents.
  • Support and enhance enterprise security monitoring and detection capabilities across SIEM, EDR/XDR, IDS/IPS, email security, and firewall platforms.
  • Develop and tune detection rules, alerting logic, and threat detection use cases to improve SOC effectiveness and reduce false positives.
  • Create scripts and automation solutions using PowerShell, Python, or similar tools to streamline investigations and response activities.
  • Collaborate with infrastructure, networking, cloud, and endpoint teams during investigations and remediation efforts.
  • Evaluate emerging threats, vulnerabilities, attack techniques, and security technologies to strengthen enterprise detection and response capabilities.
  • Provide technical guidance and support for escalated cybersecurity investigations and operational issues.
  • Document investigative findings, incident timelines, and remediation recommendations.
  • Participate in on-call incident response support as required.

Required Qualifications
  • Must be a U.S. Citizen or Permanent Resident (Green Card Holder).
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or equivalent professional experience.
  • 7+ years of hands-on experience in cybersecurity operations, incident response, or SOC environments.
  • Experience supporting Tier II/Tier III SOC investigations and incident handling.
  • Strong experience with:
    • SIEM platforms
    • EDR/XDR technologies
    • IDS/IPS systems
    • Email security platforms
    • Firewall and network security tools
  • Experience investigating phishing attacks, URL click alerts, malware infections, and account compromise activity.
  • Strong understanding of TCP/IP, DNS, HTTP/S, VPNs, Active Directory, and enterprise networking concepts.
  • Experience supporting Windows and Linux environments.
  • Proficiency in PowerShell, Python, or similar scripting languages.
  • Strong analytical, troubleshooting, and communication skills.
  • Ability to work independently in a fast-paced operational environment.

Preferred Qualifications
  • Certifications such as CISSP, GCIH, GCIA, CEH, Security+, or equivalent (at least one is required).
  • Experience with MITRE ATT&CK, threat intelligence platforms, or SOAR technologies.
  • Familiarity with cloud security monitoring and enterprise-scale security operations.

Additional Information
  • Reports to: Cybersecurity Governance, Risk & Compliance Leadership
  • Travel: None
  • Clearance: Secret clearance preferred but not required; may be required based on project needs.

We invest in the lives of our employees, both in and out of the workplace, by providing competitive pay and benefits packages. Benefits offered may include health care, dental, vision, life insurance; 401(k); education assistance; paid time off including PTO, holidays, and any other paid leave required by law. The salary offered will depend on several factors including, but not limited to, relevant experience, skills, education, geographic location, internal equity, business needs, and other factors permitted by law. Posted pay ranges are a general guideline only and are not a guarantee of compensation or salary.

About ASRC

Arctic Slope Regional Corporation (ASRC) is an Alaska Native corporation that was established in 1972 under the Alaska Native Claims Settlement Act (ANCSA). The company is owned by approximately 13,000 Iñupiat shareholders who live primarily in eight villages on Alaska's North Slope. ASRC is a diversified company with subsidiaries involved in oil and gas exploration and production, government services, construction, and resource development. The company has a strong commitment to sustainability and environmental stewardship, and has implemented a number of initiatives to reduce its environmental impact.
Learn more about ASRC
Size
3,500 employees
Industry
Founded
2003

Similar Jobs

More Jobs at ASRC

More Information Technology Jobs

Find similar Senior Cyber Security Engineer jobs: