Coalfire

SOC Analyst - Secret Clearance Required

Coalfire$95K — $115K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in IT-related field from an accredited university.
  • At least five years of IT and cybersecurity experience, particularly in a SOC role.
  • Active Secret or Top Secret clearance is mandatory.
  • Certifications such as CISSP, CISA, CISM, Security+, or CAP are preferred.
  • Experience with specific cyber tools like Splunk, Tenable Nessus, and Cylance.

Responsibilities

  • Monitor and analyze potential threat activity.
  • Provide real-time alerting and monitoring by capturing and indexing data.
  • Support engineering, operations, and maintenance of security tools.
  • Utilize SIEM tools to identify security events and evaluate security measures.
  • Perform daily and ad-hoc vulnerability scanning on networks and systems.
  • Prepare vulnerability management metrics reports for senior leadership.
  • Conduct product evaluations and recommend security improvements.

Benefits

  • Full-time position with opportunities for advancement.
  • Work on-site with Coalfire Federal supporting a government customer.
  • Engage in a collaborative environment with an in-person team.
  • Engagement on critical projects for national security.
Full Job Description
We're currently seeking a skilled SOC Analyst with an active Secret or Top Secret clearance to support our on-site team in Crystal City (Arlington, VA).

Location Details

This is a full time on site position with our Coalfire Federal team supporting a government customer.
    • Open to local candidates in the DMV reporting to our in person team in Arlington, Virginia.
    • Also open to local candidates residing in Denver, Colorado to report to on client site location in CO.


What you'll do

  • Monitors and analyzes for potential threat activity.
  • Provides real-time alerting and monitoring by capturing, indexing, and correlating data in a searchable repository to generate graphs, reports, alerts and visualizations. Provides metrics, diagnoses security problems.
  • Provides engineering support, operations, and maintenance of security tools.
  • Utilizes Security, Information, and Event Monitoring (SIEM) tools to identify security events and incidents to evaluate the effectiveness of current security measures.
  • Maintains Tenable Security Center administrator responsibilities, routine maintenance of the front end including but not limited to user accounts, scan polices, and reports.
  • Conducts daily and ad-hoc vulnerability scanning on networks and systems.
  • Prepares reports of metrics for vulnerability management that is briefed to senior leadership to convey network security status.
  • Participates and contributes to weekly meetings with O&M team to discuss vulnerability patch management status.
  • Tracks, maintains, and verifies findings. Promote timely remediation before due date and/or work with stakeholders on extension request.
  • Conducts DISA STIG baseline configuration scanning of hardware and network devices and manually reviews CAT I and CAT II items that cannot be checked via automated scan.
  • Monitors incoming events and maintain Audit Log Management using Splunk Tool.
  • Validates hardware and software inventory for a portfolio of systems.
  • Uses advanced analytic tools to determine presence of emerging threat patterns and vulnerabilities.
  • Utilizes in-depth operational and technical knowledge of security concepts to provide technical support in the areas of vulnerability assessment, risk assessment, network security, product evaluation, and security implementation.
  • Provides technical evaluations of customer systems and assists with making security improvements.
  • Conducts product evaluations, and recommends products, technologies and upgrades to improve the customer's security posture.
  • Conducts testing and audit log reviews.


What you'll bring

In addition to the duties listed above, utilizes the following cyber tools or equivalents:
• Splunk Enterprise Security
• Q-Audit ICS-500-27 Splunk application
• Tenable Nessus Security Center
• Cylance
• Extrahop
• Burp Suite

Education

Completed Bachelor's degree from an accredited university, preferably in an IT related field.

Clearance / Suitability

An active Secret or Top Secret clearance is required.

Certifications
One or more of the following: CISSP, CISA, CISM, Security+, CAP

Years of Experience
    • At least five (5) years of information technology, cybersecurity experience for a consulting organization, including skills and responsibilities relative to the SOC role


Bonus Points

  • Previous DOJ experience
  • Military experience

About Coalfire

Coalfire is a cybersecurity company that provides advisory, audit, and assessment services. The company was founded in 2001 and is headquartered in Broomfield, Colorado. Coalfire's services include compliance and risk assessments, penetration testing, and cyber engineering services. The company serves clients in various industries, including healthcare, financial services, and government.
Learn more about Coalfire
Size
1,200 employees
Industry
Founded
2001
5 Year Trend
+20%
Revenue
$140 million

Similar Jobs

More Jobs at Coalfire

More Information Technology Jobs

Find similar SOC Analyst - Secret Clearance Required jobs: