Cyber Security Operations Specialist II/ III
Multiple Openings
Per Federal Govt Contract U.S. Citizenship Required
Active Top Secret/SCI Clearance Required
Full Time Direct Permanent Hire
St Louis, Missouri or Springfield, VA
Position Overview:
We are seeking seeking a Cyber Security Operations Specialist IIIto oversee and manage all aspects of Information Systems security. This role is responsible for ensuring data availability, integrity, authentication, confidentiality, and non-repudiation. The successful candidate will develop and implement security policies, plans, and procedures to maintain the integrity of network systems.
Key Responsibilities:
- Provide cyber threat intelligence services, including collection, analysis, and distribution of threat data from government sources, commercial feeds, open sources, and partners.
- Maintain situational awareness of the cyber threat landscape.
- Deliver services on a 12x5 schedule during core hours, with on-call support and a two-hour response time outside core hours.
- Develop and disseminate reports and alerts based on incidents affecting customer systems and networks.
- Implement and monitor security measures for communications systems and networks to ensure compliance with established standards and government regulations.
- Design and apply data network security measures, operate intrusion detection and forensics tools, and analyze system security incidents.
- Develop and maintain COOP/DR plans and support certification of systems and networks.
- Oversee the Electronic Key Management System (EKMS) and Public Key Infrastructure (PKI).
- Conduct detailed analysis of tickets from other cybersecurity sub-services to validate alerts or incidents.
- Investigate, categorize, and assess cybersecurity events to determine impact and extent.
- Document findings with sufficient detail to support future reconstruction of analysis.
- Collaborate across cybersecurity teams to submit tuning requests and custom signatures.
- Assist the C-IRT by evaluating incident activity and anticipating adversary behavior.
- Generate detailed metrics and reports, including incident trends, system availability, tool effectiveness, and service performance.
- Contribute to daily CSOC operational reports and weekly status updates.
- Support advanced analytics, coordinating with other cybersecurity teams to optimize detection rules and scripts.
Required Qualifications:- Bachelor’s degree in Information Technology, Information Systems, Computer Science, or a related technical field.
- 4+ years of experience in cybersecurity operations, including work with HBSS, firewalls, IPS/IDS, VPNs, and other security technologies.
- DoD 8570.01-M IAT Level II Certification and CSSP Analyst Certification.
- Experience utilizing SIEM platforms for 24/7 monitoring, detection, and triage of incidents.
- Background with Cyber Incident Response Team (C-IRT) services and ticket quality control.
- Familiarity with cyber threat intelligence, emulation, and hunt services.
- U.S. Citizenship and an active TS/SCI clearance.
Preferred Qualifications:- IAT Level III Certification.
- Master’s degree in a relevant technical field.
Ref: #850-Rockville (ALTA IT)