This position supports the US Army Command, performing network defense 24/7 in a high-visibility DOD Security Operations Center (SOC).
Requirements
- Coordinate investigation and response efforts throughout the Incident Response lifecycle
- Correlate and analyze events and data to determine scope of Cyber Incidents
- Acquire and analyze endpoint and network artifacts to determine impact direct remediation efforts for affected subscribers
- Recognize attacker tactics, techniques, and procedures as potential indicators of compromise (IOCs)
- Develop, document, and maintain Incident Response process, procedures, workflows, and playbooks
- Tune and maintain security tools (IDS and SIEM) to reduce false positives and improve SOC detection capabilities
- Document Investigation and Incident Response actions taken in Case Management Systems and prepare formal Incident Reports for affected subscribers
Benefits
- Generous Paid Time Off
- 401k Matching
- Retirement Plan
- Visa Sponsorship
- Four Day Work Week
- Generous Parental Leave
- Tuition Reimbursement
- Relocation Assistance