SOC Analyst

careers-dminc

Crownsville (MD)

On-site

USD 85,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Healthcare coverage
Annual performance reviews
Tuition assistance
401(k) match
Wellness programs

Job summary

DMI, LLC is seeking a Security Operations Center (SOC) Analyst to monitor, detect, and analyze threats across client environments, developing alarms and conducting threat hunting using event data and logs. This role supports the Incident Response Team and contributes to SOC SOPs and CONOPS.

The ideal candidate has hands-on experience with SIEMs, threat models, and tools such as Wireshark and VirusTotal, plus relevant certifications. This is a 100% onsite role located in Crownsville, MD.

Qualifications

  • Bachelor's degree in a technical field or a related discipline; Master's preferred.
  • CompTIA CySA+ or Security+ plus a listed certification (CEH, CFR, CCNA Cyber Ops, CCNA-Security, GCIA, GCIH, GICSP, Cloud+, SCYBER, PenTest+).
  • Experience analyzing intrusion events such as phishing, malware, and data exfiltration.
  • Knowledge of cyber kill chains and MITRE ATT&CK frameworks.
  • Experience with network traffic analysis using Wireshark and threat intel tools.
  • Experience with SIEMs and security tooling (Splunk, IDS/IPS, EDR).
  • Ability to work independently, prioritize, and meet SLAs.
  • Strong written and verbal communication with clients.

Responsibilities

  • Monitor, detect, and analyze security events to identify intrusions.
  • Develop SIEM alarms and correlate events for threat hunting.
  • Escalate alerts to clients and prepare incident reports.
  • Support Incident Response with monitoring and analysis during engagements.
  • Develop and maintain SOC SOPs/CONOPS and contribute to lessons learned.
  • Collaborate with security engineering to refine correlation rules and playbooks.
  • Provide security recommendations and threat briefings for management.

Skills

Threat hunting
Threat analysis
Scripting
MITRE ATT&CK
Communication
Team collaboration
Writing reports

Education

Bachelor's degree in CS/IS/Engineering
Master's degree preferred

Tools

Splunk
Firewall
EDR
IDS/IPS
URL Filtering Gateways
DLP tools
VirusTotal
Wireshark

Job description

About DMI

DMI is a leading provider of digital services and technology solutions, headquartered in Tysons Corner, VA. With a focus on end-to-end managed IT services, including managed mobility, cloud, cybersecurity, network operations, and application development, DMI supports public sector agencies and commercial enterprises around the globe. Recognized as a Top Workplace, DMI is committed to delivering secure, efficient, and cost-effective solutions that drive measurable results. Learn more at www.dminc.com

About the Opportunity

DMI, LLC is looking for a Security Operations Center (SOC) Analyst with hands-on experience monitoring, detecting, and analyzing threats and cybersecurity events to identify and defend against validated intrusion events. Daily work includes monitoring network and system security events, conducting threat hunting through event data and activity logs, developing alarms for suspicious or malicious activity, escalating alerts to clients, and preparing reports to summarize detected activities.

The SOC Analyst executes and helps to create operational processes for consistent monitoring of client environments and should be familiar with a variety of security tools and technologies. The SOC Analyst additionally works to support the Incident Response Team by conducting monitoring and analysis during incident management engagements.

Duties and Responsibilities:

  • The shift is day, evening, or night shift.
  • Monitor, protect, and defend the enterprise perimeter against malicious network traffic.
  • Monitor, protect, and defend internal networks and hosts against ongoing and emerging threats.
  • Enrich monitoring logs with contextual operation data from functional areas correlate events and identify security issues, threats, and vulnerabilities
  • Conduct security event analysis and validation, triage validated incidents, perform initial containment where feasible, research incident and enrich incident case documentation, and elevate the incident for further analysis, containment, and eradication.
  • Review and analyze threat intelligence information and proactively search application, system, network logs to hunt for and thwart relevant threats identified threats.
  • Prepare and perform shift handover briefing to communicate completed and pending activities, and relay situational awareness information.
  • Contribute to the development and maintenance of SOC Standard Operating Procedures (SOPs) and Concept of Operations (CONOPS) to establish and continuously improve organization's operating knowledge base.
  • Participate in post-incident activities and contribute to lessons learned to improve security operations.
  • Provide support in preparation of management threat reports and briefings, and recommendations.
  • Provide sound technical recommendations that enable remediation of security issues.
  • Partner with security engineering to develop and refine SIEM correlation rules.
  • Utilize advanced threat models, SIEM use cases, and incident response playbooks.
Qualifications

Education and Years of Experience:

  • Bachelor's degree from an accredited college or university with a major in computer science, information systems, engineering, business, or a related scientific or technical disciplines. Master's Degree is preferred.
  • CompTIA CySA+ certification/ or a CompTIA Security+ (or other relevant IAT Level II/III Certification) along with one of the following:
    • CEH
    • CFR
    • CCNA Cyber Ops
    • CCNA-Security
    • GCIA
    • GCIH
    • GICSP
    • Cloud+
    • SCYBER
    • PenTest+
  • Experience analyzing intrusion events such phishing emails, malware, privileges misuse, traffic indicating potential malicious activities such DoS/DDoS, brute force, data loss through exfiltration/ inadvertent disclosure.
  • Applied experience of threat analysis model/frameworks such Cyber Kill Chain, MITRE ATT&CK, Diamond Model, Pyramid of Pain etc.
  • Working knowledge of advanced threat Tactics, Techniques and Procedures (TTPs).
  • Applied experience with network traffic analysis with tools like Wireshark
  • Applied experience with a variety of Opensource threat research tools/platforms such as Virus Total
  • Working knowledge of network and security architecture principles such as defense-in-depth
  • Experience with proprietary security protection/detections tools such as Firewall, Host and Network IDS/IPS, Anti-Virus, EDR, URL Filtering Gateways, Email Filtering Gateways, DLP tools, and SIEM tools such as Splunk etc.
  • Capable of working independently, establishing priorities and managing task completion within set SLAs
  • Able to communicate effectively through writing, speaking, and presenting to client technical representatives.
  • Team player capable of productively contributing to the client mission by supporting fellow teammates in a dynamic growing and changing environment.

Desired Skills and Qualifications:

  • Experience with mid-to-advance level malware analysis
  • Experience creating detailed queries and scripts, such as regular expressions, for log, event and correlation analysis.
  • Experience scripting in Python, PowerShell, VBScript

Background Requirements: Successful completion of a Fingerprint background investigation.

Citizenship Status Required: Must be a U.S. Citizen

Physical Requirements: None requiredfor this position.

Location: Crownsville, MD (100% onsite) Day Shift/Night Shift

Working at DMI

DMI is a diverse, prosperous, and rewarding place to work. Our culture is shaped by five core values that guide how we work, grow, and succeed together:

  • Do What's Right- We lead with honesty and integrity.
  • Own the Outcome- We take responsibility and deliver.
  • Deliver for Our Customers- We are relentless about delivering value.
  • Think Bold, Act Smart- We innovate with purpose.
  • Win Together - We collaborate and celebrate our success.

These values aren't just ideals—they show up in how we support every part of your well-being:

  • Convenience/Concierge- Virtual health visits, commuter perks, pet insurance, and entertainment discounts that make life easier.
  • Development- Annual performance reviews, tuition assistance, and internal career growth opportunities to help you thrive.
  • Financial- Generous 401(k) matches, life and disability insurance, and financial wellness tools to support your future.
  • Recognition- Annual awards, service anniversaries, referral bonuses, and peer-to-peer shoutouts that spotlight your achievements.
  • Wellness - Healthcare coverage, wellness programs, flu shots, and biometric screenings to support your health.

DMIvalues employeesfor their talents and contributions, and we take pride in helping our customers achieve their goals. Because when we live our values, we all win together.

Applicants selected may be subject to a government security investigation and must meet eligibility requirements for access to classified information. US citizenship may be required for some positions.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SOC Analyst
SOC Analyst

DMI • Crownsville (MD)

On-site
USD 90,000 - 130,000
SOC Analyst
SOC Analyst

DMI (Digital Management, Inc.) • Crownsville (MD)

On-site
USD 70,000 - 100,000
Senior Information Security Analyst, SME
Senior Information Security Analyst, SME

DMI • Atlanta (GA)

On-site
USD 120,000 - 160,000
Convenience/Concierge benefits
Tuition assistance
Generous 401k matches
+1
Data Center and Enterprise IT Operations Lead
Data Center and Enterprise IT Operations Lead

DMI • Virginia (MN)

On-site
USD 120,000 - 180,000
Virtual health visits
Tuition assistance
401(k) matching
+2
Senior Information Security Analyst, SME
Senior Information Security Analyst, SME

DMI (Digital Management, Inc.) • Atlanta (GA)

On-site
USD 57,000 - 63,000
Health insurance
Career development
401k match
+2
Network Engineer
Network Engineer

Digital Management Llc • Tysons (VA)

Hybrid
USD 80,000 - 110,000
Tuition assistance
401(k) matching
Commuter perks
+1
Senior Cyber Manager
Senior Cyber Manager

Peraton • Washington

On-site
USD 120,000 - 170,000
IT Help Desk Specialist
IT Help Desk Specialist

Digital Management Llc • Tysons (VA)

Hybrid
USD 52,000 - 63,000
Unix/Linux Administrator
Unix/Linux Administrator

DMI (Digital Management, Inc.) • Washington

Hybrid
USD 121,000 - 180,000
Virtual health visits
Commuter perks
Pet insurance
+6
Dover, DE - IT - DTI - Security Office - Information Security Analyst 1
Dover, DE - IT - DTI - Security Office - Information Security Analyst 1

Expedite Technology Solutions LLC • Dover (DE)

On-site
USD 70,000 - 90,000