SOC Analyst

KeenLogic

Fairfax (CA)

On-site

USD 100,000 - 130,000

Full time

8 days ago
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Health benefits
PTO
401(k)
Life insurance

Job summary

KeenLogic is seeking a skilled SOC Analyst to join our Security Operations Center team based in Fairfax, VA. The role focuses on cybersecurity incident detection, analysis, and response, coordinating with internal teams and government agencies as needed.

The ideal candidate will have 6+ years in information security, a relevant degree, and active clearance eligibility. Onsite work schedule supports a 10:00 AM–6:00 PM day.

Qualifications

  • U.S. citizen with active Secret or Top Secret clearance; eligible for TS clearance if requested.
  • Bachelor’s degree in a technology-related field or equivalent formal training.
  • 6+ years of work experience in information security, security assessment, cybersecurity, forensics, or insider threat.

Responsibilities

  • Perform network security monitoring and incident response for a large organization.
  • Monitor SIEM tools to identify security issues for remediation.
  • Coordinate with other agencies to record and report incidents.
  • Maintain records of security monitoring and incident response activities.

Skills

Incident response
SIEM
Threat hunting
Network monitoring
Forensics
Communication

Education

Bachelor’s degree in Computer Science / Information Systems / Engineering

Tools

SIEM tools
IOC/IOA rule creation

Job description

SOC Analyst

KeenLogic is seeking to hire an Information Security Operation Analyst (SOC Analyst) to join our team. The Information Security Analyst is responsible for designing and implementing solutions for protecting the confidentiality, integrity, and availability of sensitive information. This is a full-time position offering Fortune 500-level health, dental, and vision benefits, PTO, 401(k), and life insurance. This is an onsite role with a daily schedule from 10:00 AM to 6:00 PM, based in Fairfax, VA.

About the Role

This is a Security Operations Center (SOC) position focused primarily on cybersecurity incident detection and response. Other primary areas of focus include:

  • Zero-day events
  • Utilizing cybersecurity tools to conduct investigations and analysis of events
  • Utilizing the seven steps of the Incident Response process

All duties support one or more of the following cybersecurity-related functions: information security, SA&A, incident response, cybersecurity, insider threat, computer forensics, vulnerability assessment and management, network data capture, intrusion detection, log management, auditing, security incident and event management (SIEM), and penetration testing.

Personnel assigned to this role will primarily serve on the Operations & Response (O&R) Team and may also support the Vulnerability Assessment and Penetration Test (VAPT) and Engineering teams.

This position also coordinates with the Cybersecurity Services Section and other client divisions, including:

  • IT Operations
  • Engineering & Integration
  • Software Operations
  • Office of Investigative Technology
Required Qualifications
  • Must be a U.S. citizen with an active Secret or Top Secret clearance
    • Must be eligible for a Top Secret clearance if requested
  • Bachelor's degree from an accredited college or university in one or more of the following disciplines (or equivalent documented formal training):
    • Computer Science
    • Information Systems
    • Engineering
    • Business
    • Physical Science
    • Other technology-related disciplines
  • 6+ years of documented work experience performing any combination of:
    • Information System Security
    • Security Assessment & Authorization
    • Cybersecurity
    • Computer Forensics
    • Insider Threat
Preferred Qualifications
  • CompTIA CySA+ cybersecurity analyst certification
  • Cybersecurity incident response and detection experience
  • Experience in cybersecurity event triaging using the seven steps of the Incident Response Process (IRP)
  • Security Operations Center (SOC) experience
  • Conducting cyber event investigations to determine root cause and identify true/false positives
  • Creating rules, thresholds, and policies for cybersecurity tools (IOCs/IOAs)
  • Verification and validation, containment, eradication, and recovery from incidents
  • Experience validating hashes, malicious IPs, and URLs
  • Experience investigating malicious emails and payloads
  • Requirements analysis, program development, architecture, engineering, integration, and deployment of IT products in an enterprise environment
  • Ability to create and monitor multiple cybersecurity tool dashboards
  • Open-source intelligence gathering experience
  • Threat hunting and vulnerability assessment experience
  • Knowledge of SIEM tools and query generation
Duties
  • Perform network security monitoring and incident response for a large organization
  • Coordinate with other government agencies to record and report incidents
  • Maintain records of security monitoring and incident response activities using case management and ticketing technologies
  • Monitor SIEM tools to identify security issues for remediation
  • Recognize intrusion attempts and compromises through detailed analysis of event data
  • Communicate alerts regarding intrusions and compromises to networks, applications, and operating systems
  • Assist with implementation of countermeasures or mitigating controls
  • Support threat data analysis from classified, proprietary, and open-source resources
  • Support Team Lead in developing recommendations for changes to Standard Operating Procedures
  • Monitor and review logs and create new security tool signatures
  • Perform intrusion detection, log and audit management, vulnerability assessment, compliance management, and security configuration
  • Install, configure, troubleshoot, and maintain server configurations (hardware and software)
  • Manage accounts, security devices, patches, access control, and passwords
  • Analyze collected data to identify vulnerabilities and exploitation potential
  • Support development of security countermeasures
  • Identify network and OS vulnerabilities and recommend countermeasures
  • Support deployment and integration of security tools
  • Prepare written reports and provide verbal information security briefings
  • Investigate, monitor, analyze, and report on security incidents
  • Respond to crisis or urgent situations to mitigate threats
  • Apply mitigation, preparedness, response, and recovery approaches
  • Provide incident handling support for detection, analysis, coordination, and response
  • Actively monitor and remediate unauthorized activities
  • Monitor intrusion detection sensors and log collection systems
  • Ensure security systems are operating at maximum performance and availability
  • Analyze computer security threat information from multiple sources and agencies
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SOC Analyst
SOC Analyst

KeenLogic • Fairfax (VA)

On-site
USD 90,000 - 130,000
Health, dental, vision benefits from a
PTO
401(k) with company match
+1
Security Operations Center (SOC) Analyst
Security Operations Center (SOC) Analyst

10xTalents • Washington

On-site
USD 80,000 - 110,000
SOC Analyst 2
SOC Analyst 2

Mbi Llc • Harrisburg

On-site
USD 60,000 - 90,000
Senior Cyber Manager
Senior Cyber Manager

Peraton • Washington

On-site
USD 120,000 - 170,000
SOC Operations Analyst - Senior / Public Trust
SOC Operations Analyst - Senior / Public Trust

Peraton • Warrenton (VA)

On-site
USD 90,000 - 130,000
SOC Analyst
SOC Analyst

PSG Global Solutions • Dallas (TX)

On-site
USD 90,000 - 120,000
SOC Analyst I
SOC Analyst I

SOClogix, Inc. • Catonsville (MD)

Hybrid
USD 55,000 - 75,000
Health insurance
Dental insurance
Vision insurance
+6
SOC Analyst
SOC Analyst

Tactibit • Suitland (MD)

On-site
USD 85,000 - 110,000
Security Operations Center Analyst
Security Operations Center Analyst

Diligente Technologies • San Jose (CA)

On-site
USD 80,000 - 100,000
SOC Analyst 2
SOC Analyst 2

JPS Tech Solutions • Harrisburg

On-site
USD 70,000 - 90,000