Soc Analyst

Leidos UK

Alexandria, VA, United States
Base: $87,100.00 - $157,450.00; bonus/equity: not ...
Utilize alerts from endpoints, ids/ips, netflow
Identify compromises on customer networks/endpoints
Perform log file review and data correlation
Utilize alerts from endpoints, IDS/IPS, netflow, and custom sensors to identify compromises on customer networks/endpoints

Job Summary

  • Utilize alerts from endpoints, IDS/IPS, netflow, and custom sensors to identify compromises on customer networks/endpoints.
  • Perform junior- to intermediate-level review of massive log files, pivot between data sets, and correlate evidence for incident investigations.
  • Our Cybersecurity team performs cyber defensive actions in support of J6, including monitoring network and end point data to prevent, detect, respond and recover from adversarial activities.

Matching Summary

Utilize alerts from endpoints, IDS/IPS, netflow, and custom sensors to identify compromises on customer networks/endpoints.

Salary

Base: $87,100.00 - $157,450.00; Bonus/Equity: Not specified; Benefits: Not specified

Skills & Requirements

Must-have

  • Utilize alerts from endpoints, IDS/IPS, netflow
  • Identify compromises on customer networks/endpoints
  • Perform log file review and data correlation
  • Pass triaged alerts to senior personnel
  • Document analysis, findings, and actions
  • Support incident report creation and distribution

Nice-to-have

  • Intelligence Driven Defense
  • Cyber Kill Chain methodology
  • MITRE ATT&CK framework
  • Think and work independently
  • Refuse to fail

Key Requirements

  • Active DoD Top Secret clearance with ability to obtain SCI
  • DoD 8570 IAT II or higher certification prior to starting
  • Obtain DoD 8570 CSSP-Analyst certification within 6 months
  • Bachelor's degree and 4+ years of prior relevant experience
  • 1+ years of incident handling/response experience
  • 1+ years of experience working in a SOC environment
  • CND experience (Protect, Detect, Respond and Sustain)
  • Demonstrated understanding of network threats and attack vectors
  • Demonstrated sound understanding of TCP/IP and networking protocols

Work Rights

Must have active DoD Top Secret clearance with ability to obtain SCI

Tailored Resume

Cover Letter