CSOC Analyst T1

Nightwing

Falls Church (VA)

Remote

USD 64,000 - 128,000

Full time

44 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

401(k) plan
PTO
Holidays
health, dental, vision insurance

Job summary

Nightwing seeks a Tier 1 CSOC Analyst to monitor alerts, perform initial triage, and escalate to Tier 2. The role supports AI/ML and SOAR–driven improvements in a fast-paced SOC environment. Candidates should have 1+ years in IT operations and IT security, and be eligible for a U.S.

government security clearance. Location options include Falls Church, VA or remote work, with a preference for those able to contribute to threat intelligence and incident response activities.

Qualifications

  • Experience in Security Operations Centers (SOC) or CSOC environments.
  • Familiarity with AI/ML and SOAR in cybersecurity.
  • Cloud security knowledge (AWS, Azure, GCP).
  • Understanding of incident management and threat lifecycle management.
  • Knowledge of IDS/IPS technologies and threat intelligence.
  • Excellent written and verbal communication skills.

Responsibilities

  • Identify cybersecurity problems requiring mitigating controls.
  • Interpret SIEM outputs and report potential incidents.
  • Collect information supporting analysis (IP, location, assets).
  • Escalate items needing further investigation to Threat Management team.
  • Support automated response efforts and AI/ML tools in SOC operations.
  • Collaborate to enhance SOC capabilities with automation and AI.

Skills

SOC experience
AI/ML in cybersecurity
Cloud security
Incident management
Threat intelligence
Communication skills
IDS/IPS knowledge

Education

Bachelor of Science in Computer Science/Engineering/Science

Tools

Splunk

Job description

Nightwing provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers’ most demanding challenges. Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical surveillance, data intelligence, lifecycle mission enablement, and software modernization. Nightwing brings disruptive technologies, agility, and competitive offerings to customers in the intelligence community, defense, civil, and commercial markets.

This position is CONTINGENT upon funding, an open position, customer approval, completion of a favorable background investigation, and the ability to obtain and maintain our customer's sensitive clearance.

Job Requisition: JR101963 CSOC Analyst T1 – Falls Church, VA or Remote

Tier 1 CSOC Analyst Job Description

This position is CONTINGENT upon funding, an open position, customer approval, completion of a favorable background investigation, and the ability to obtain and maintain our customer's sensitive clearance.

Nightwing is seeking to hire a Tier 1 CSOC Analyst. Candidates should have some work experience in Security Operations Centers (SOC), Cyber Security Operations Centers (CSOC), and Cyber Incident Response Team (CIRT). The Tier 1 Analysts receive all alerts from various sources, including SIEM, CSOC mailboxes, and phone calls directly from the central SIEM and handle as defined in Playbooks and SOPs. Tier 1 Analyst will elevate the events to Tier 2 after initial triage, along with providing input and analysis on how to leverage Artificial Intelligence, Machine Learning, and SOAR capabilities to improve CSOC efficiency and accuracy

Responsibilities
  • Identification of Cybersecurity problems which may require mitigating controls
  • Interpret output from the SIEM, CSOC mailboxes, and phone calls to identify potential security incidents
  • Collect basic information to support analysis such as IP address, location, affected asset(s), etc.
  • Escalate items which require further investigation to other members of the Threat Management team
  • Execute operational processes in support of response efforts to identify security incidents
  • Utilize AI/ML-based tools and techniques to detect anomalies, automate incident triage, and improve threat intelligence
  • Performing and analyzing threat intelligence to assess risk and adapt defenses using ML enhance tools
  • Stay current on the latest cybersecurity trends, threat actors, and AI/ML research relevant to the field
  • Identify and support automation use cases, including the use of AI/ML to enhance SOC capabilities.
  • Collaborate across Operations to provide SOC enhancement capabilities with automation and AI.
Requirements
  • Must be eligible to obtain a sensitive clearance – Position of Public Trust – and may be required to obtain a higher security clearance
  • Must have 1+ years’ experience in IT Operations
  • Must have 1+ year experience in IT Security
  • Working knowledge of:
  • Platform Security Basics
  • Threat Lifecycle Management
  • TCP / IP
  • Incident Management
  • Knowledge of Control Frameworks and Risk Management techniques
  • Excellent oral and written communication skills
  • Excellent interpersonal and organizational skills
  • Strong understanding of IDS/IPS technologies, trends, vendors, processes and methodologies
  • Familiarity with the application of AI/ML techniques in cybersecurity, including but not limited to automated threat detection, incident response automation, and predictive analytics. Experience in evaluating the effectiveness of AI/ML solutions in a SOC environment is a plus.
  • Understanding of ethical AI principles and their implications in cybersecurity.
  • Familiarity with cloud security (AWS, Azure, GCP)
  • Understanding and experience identifying and implementing automation use cases.
Desired Skills
  • Splunk experience, developing queries, data models, and dashboards
  • Cloud monitoring experience is a plus
  • Excellent writing skills

Required Education
Bachelor of Science Degree with a major in Computer Science/Computer Engineering, Engineering, Science or a related field. Two years of related work experience may be substituted for each year of degree-level education.

Certifications (one or more desired)
One or more relevant certifications such as CEH, CISSP, CompTIA Security+, or GCIH are advantageous.

The ability to obtain and maintain a U.S. government issued security clearance is required. U.S. citizenship is required, as only U.S. citizens are eligible for a security clearance.

Previously part of a leading Fortune 100 company and headquartered in Dulles, VA; Nightwing became independent in 2024 but continues to support the nation’s most mission impactful initiatives.

When we formed Nightwing, we brought a deep set of credentials and an unfaltering commitment to the mission. For over four decades, our team has been providing some of the world’s most technically advanced full-spectrum cyber, data operations, systems integration and intelligence support services to the U.S. government on its most important missions.

At Nightwing, we value collaboration and teamwork. You’ll have the opportunity to work alongside talented individuals who are passionate about what they do. Together, we’ll leverage our collective expertise to drive innovation, solve complex problems, and deliver exceptional results for our clients.

Thank you for considering joining us as we embark on this new journey and shape the future of cybersecurity and intelligence together as part of the Nightwing team.

Salary & Benefits

The salary associated with this position ($64,000-$128,000) is commensurate with the selected candidate’s qualifications, years of relevant experience, and demonstrated level of expertise. Compensation will be determined based on these factors to ensure alignment with skills, responsibilities, and market standards.

Nightwing offers medical, vision and dental insurance coverage in addition to a 401k plan, PTO, Holidays, and additional insurances.

Nightwing is An Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age or any other federally protected class.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Information Systems Security Specialist
Senior Information Systems Security Specialist

Nightwing • Sterling (VA)

On-site
USD 99,000 - 206,000
Medical insurance
Vision insurance
Dental insurance
+4
Cyber Network Forensic Analyst IV
Cyber Network Forensic Analyst IV

Nightwing • Arlington (VA)

On-site
USD 122,000 - 253,000
401k plan
Medical, vision and dental insurance
Cyber Network Defense Analyst III
Cyber Network Defense Analyst III

Nightwing • Sterling (VA)

On-site
USD 100,000 - 130,000
Equal Opportunity Employer
Collaboration and teamwork environment
(Cyber) Incident Management Analyst - Hybrid
(Cyber) Incident Management Analyst - Hybrid

Nightwing • Arlington (VA)

On-site
USD 90,000 - 130,000
Cyber Network Defense Analyst IV AP
Cyber Network Defense Analyst IV AP

Nightwing • Arlington (VA)

On-site
USD 90,000 - 120,000
Opportunity for professional growth
Collaborative work environment
Competitive salary
Senior Information Systems Security Specialist
Senior Information Systems Security Specialist

Nightwing Intelligence Solutions, LLC • Sterling (VA)

On-site
USD 99,000 - 206,000
Medical insurance
Vision insurance
Dental insurance
+4
Action Officer
Action Officer

Nightwing • Arlington (VA)

On-site
USD 75,000 - 120,000
Collaborative work environment
Opportunity for innovation and problem-solving
Equal Opportunity Employer
Cyber Network Defense Analyst II
Cyber Network Defense Analyst II

Nightwing • Sterling (VA)

On-site
USD 70,000 - 100,000
Cyber Network Defense Analyst II
Cyber Network Defense Analyst II

Nightwing • Arlington (VA)

On-site
USD 85,000 - 110,000
Equal Opportunity Employer
Team collaboration environment
Competitive salaries
Remote CSOC Analyst I - Tier 1, AI-Driven Security
Remote CSOC Analyst I - Tier 1, AI-Driven Security

Nightwing • Falls Church (VA)

Remote
USD 64,000 - 128,000
401(k) plan
PTO
Holidays
+1