Tier 1 SOC Analyst

GDHRockville, United States
InternshipOn-siteJuniorLimited info disclosed
53 views0 applications

Description

Role Summary This position involves analyzing and responding to security events and incidents within a security operations environment. It requires monitoring various security tools and data sources to identify potential threats and ensure the protection of information assets. The role is suited for individuals with a foundational understanding of cybersecurity operations, working closely with security teams to support incident response efforts. Responsibilities Monitor security alerts from SIEM platforms, firewalls, intrusion detection and prevention systems, and endpoint security solutions. Analyze security events and escalate issues according to established protocols. Investigate security incidents by reviewing logs, network captures, and other relevant data sources. Collaborate with team members to improve detection techniques and incident response processes. Maintain and update security incident documentation and reporting. Assist in the implementation and tuning of security monitoring tools and systems. Stay informed on current cybersecurity threats, vulnerabilities, and best practices. Support the security operations team during shift rotations and incident investigations. Ensure compliance with organizational security policies and procedures. Participate in security training and ongoing professional development activities. Qualifications 1-3 years of experience in a security operations center environment or recent college graduates holding industry certifications. Knowledge of security event monitoring and incident analysis. Experience with security information and event management (SIEM) tools such as Splunk or similar platforms. Familiarity with operating systems including Windows, Linux, or UNIX. Strong written and verbal communication skills to clearly articulate technical findings. This position requires eligibility for a U.S. Government security clearance. In accordance with federal law, U.S. citizenship is required. Certifications such as CSIS, CEH, GCFP, CISSP, GCIH, or related are preferred. Knowledge of IDS log analysis, packet capture tools, and common network protocols (FTP, HTTP, SSH, SMB, DAP). Availability for second shift (12:00 PM – 8:00 PM) or third shift (8:00 PM – 6:00 AM) as needed. Publishing Pay Range: $30.00 – $34.00 hourly This position offers a hybrid schedule, with time split between the office and remote work.