ECS

SOC CTIC Technician - Senior

ECS$85K — $110K *
Aerospace & Defense
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • U.S. Citizenship is required
  • Secret security clearance eligibility
  • DCWF Work Role 511-Cyber Defense Analyst certification or equivalent
  • 1+ years in cybersecurity; experience in threat indicators
  • Familiarity with continuous monitoring and compliance practices
  • Exposure to SIEM analysis workflows and security correlation
  • Working knowledge of MITRE ATT&CK analytic methods

Responsibilities

  • Collect, organize, and maintain cyber threat indicators for SOC operations
  • Assist senior analysts in enriching threat indicators for operational awareness
  • Update detection content under senior guidance for continuous monitoring
  • Produce reports and documentation to enhance SOC situational awareness
  • Support MITRE ATT&CK analysis by mapping behaviors to adversarial tactics
  • Contribute to USIEM analytics by organizing data and assisting correlation activities
  • Maintain awareness of data feeds from Zeek and Sysmon for effective detections
  • Coordinate with SOC personnel and cybersecurity teams in support of operations

Benefits

  • Support a critical mission impacting over 120,000 users
  • Engage with diverse teams across a broad array of cybersecurity tasks
  • Opportunity to work with advanced SIEM and analytic environments
  • Contribute to national defense and emergency response capabilities
  • Gain experience in both classified and unclassified network environments
Full Job Description
Position Summary

ECS is seeking a SOC CTIC Technician - Senior to support the Army National Guard (ARNG) Enterprise Network Operations and Cybersecurity Support (ENOCS) program. In this role, the candidate will support Task 3 - Cybersecurity Operations Support by assisting threat intelligence operations that strengthen Defensive Cyberspace Operations - Internal Defensive Measures (DCO-IDM) across the DoDIN-Army-NG area of responsibility. The SOC CTIC Technician will collect and organize indicators, assist with enrichment activities, update detection content under senior guidance, and produce summary reporting and analytic documentation that improve SOC situational awareness and continuous monitoring compliance. This position works as part of the broader cybersecurity operations team supporting SOC monitoring, incident analysis, and coordinated cyber defense activities.

The role directly supports ARNG's mission to deliver secure enterprise services to more than 120,000 users and approximately 141,000 endpoints across roughly 2,800 sites in 54 states and territories, including support to Title 10 and Title 32 missions and both classified and unclassified network environments. The SOC CTIC Technician contributes to operations aligned with the Security Operations Center and Unified Security Information & Event Management (USIEM) analytic environment, where integrated SIEM/C2C/DLP analytics, MITRE ATT&CK-based detections, and curated data sources such as Zeek metadata and Sysmon monitoring are used to improve enterprise visibility. This work helps sustain cyber readiness for ARNG operations, including mobilization readiness, domestic emergency response, and coordination with NETCOM Global Cyber Center and DISA DCDC.

Please Note: This position is contingent upon contract award.

Responsibilities

  • Collect, organize, and maintain cyber threat indicators, observables, and related analytic data to support SOC threat intelligence operations.
  • Assist senior analysts with enrichment of indicators and events to improve threat context, prioritization, and operational awareness.
  • Update and refine detection content under senior guidance to support continuous monitoring and threat-informed defense across ARNG network environments.
  • Produce summary reports, analytic notes, and supporting documentation that enhance SOC situational awareness and support continuous monitoring compliance.
  • Support MITRE ATT&CK-aligned analysis activities by helping map indicators and observed behaviors to adversary tactics, techniques, and procedures.
  • Contribute to USIEM analytic support by organizing relevant data inputs and assisting with correlation activities that improve detection quality.
  • Help maintain awareness of data feeds used in the ARNG cyber environment, including sources such as Zeek metadata and Sysmon-based monitoring, to support more effective detections.
  • Coordinate analytic support activities with SOC personnel and related cybersecurity teams operating in conjunction with NETCOM Global Cyber Center and DISA DCDC.
  • Assist with documentation and reporting that support 24x7x365 cybersecurity operations defending ARNG classified and unclassified enclaves across the DoDIN-Army-NG area of responsibility.


Required Qualifications

U.S. Citizenship is required

Security Clearance: Secret Eligible

Required Certifications: DCWF Work Role 511-Cyber Defense Analyst - Basic proficiency; must hold ONE OR MORE of the following: CC, CEH, GFACT, GISF

Experience: 1+ years of experience in cybersecurity
  • Experience collecting, organizing, and tracking threat indicators and related analytic artifacts in support of cyber defense operations.
  • Ability to assist with indicator enrichment and prepare concise summary reporting for SOC or cybersecurity operations teams.
  • Familiarity with continuous monitoring concepts and documentation practices used to support cybersecurity compliance activities.
  • Exposure to SIEM-driven analysis workflows and security event correlation in an enterprise environment.
  • Ability to follow senior guidance to update detection content and maintain supporting analytic documentation.
  • Working knowledge of MITRE ATT&CK-based analytic methods for organizing and interpreting threat activity.

About ECS

ECS is a leading provider of digital solutions and services to the federal government. The company was founded in 2001 by Roy Kapani and has since grown to become a trusted partner to a wide range of government agencies. ECS offers a broad range of services, including cloud computing, cybersecurity, and artificial intelligence. The company has been recognized for its innovative solutions and has won numerous awards, including the AWS Public Sector Partner of the Year award.
Learn more about ECS
Size
2,000 employees
Industry

Similar Jobs

More Jobs at ECS

  • ECS
    STO Programmatic SETA
    $120K — $150K *
    Arlington, VA 22204 (Arlington County)
    Aerospace & Defense
    In-Person
  • ECS
    AI Methodologist
    $120K — $150K *
    Fairfax, VA 22030 (Fairfax City County)
    Aerospace & Defense
    In-Person
  • ECS
    Software Engineer IV
    $100K — $130K *
    Moorestown, NJ 08057 (Burlington County)
    Aerospace & Defense
    In-Person
  • ECS
    Software Engineer III
    $100K — $130K *
    Moorestown, NJ 08057 (Burlington County)
    Aerospace & Defense
    In-Person
  • ECS
    Program Control Analyst Senior
    $90K — $120K *
    Fairfax, VA 22030 (Fairfax City County)
    Aerospace & Defense
    In-Person

More Aerospace & Defense Jobs

Find similar SOC CTIC Technician - Senior jobs: