NOSC Analyst
BAE Systems, a top-ten prime contractor to the U.S. Department of Defense, enables the U.S. government to transform data into intelligence and provides engineering, integration, and sustainment support for critical military platforms and systems. Intelligence & Security provides services and products to the Department of Defense, the intelligence community, federal law enforcement officials, and troops deployed around the world. At BAE Systems, we promote a strong, collaborative culture and provide our employees with the tools, skills, and training they need to succeed.
About the role
We are looking for a Cybersecurity Analyst to serve as a TIER III analyst in a Network Operations and Security Center (NOSC) for a program that delivers cloud and on-prem services across multiple classification levels and remote locations.
Responsibilities
- Support in maintaining a Network Operations and Security Center (NOSC) conducting continuous monitoring, incident response, and threat hunting activities.
- Work closely and cross-train with co-located NOC analysts to provide relevant artifacts and analysis to assist troubleshooting network transport-related incidents.
- Assist the Program Management staff with prioritization and milestone tracking for efforts related to the SOC and NOC Operations and Maturity governance.
- Manage the security information and event management (SIEM) platform to monitor for error conditions, security alerts, and coordinate vulnerability assessments and artifact collection across the enterprise.
- Evaluate network structures and device configurations for security risks, offering recommendations based on best practices, and gather data to identify and respond to network intrusions.
- Analyze network traffic (both CLOUD and on-prem) and system logs to identify error conditions, malicious activities, vulnerabilities exploited, and methods used, and develop processes to enhance SOC and NOC response and efficiency.
- Conduct comprehensive technical analyses of computer evidence, research and integrate new security tools into the SOC, and synthesize findings into reports for both technical and non-technical audiences in accordance with established policies/procedures and applicable regulations.
- Capable of attack reconstruction based on network traffic, integrating Threat Intelligence, and familiar with MITRE ATT&CK framework, with the ability to collaborate effectively across multiple locations.
Requirements
- Bachelor's degree in computer science, information systems, or other technology-related field.
- 5+ years of experience in security operations, demonstrating leadership in customer-facing roles.
- CASP+, Certified Ethical Hacker (CEH), GIAC Certified Incident Handler (GCIH), or relevant DoDM 8140.03 AIM / AIT III qualified certifications.
- Proficient in analyzing cyber-attacks, with a deep understanding of attack classifications, stages, system/application vulnerabilities, and compliance with Department of Defense (DoD) policies and procedures.
- Extensive knowledge of network topologies, protocols (e.g., TCP/IP, ICMP, HTTP/S, DNS, SSH, SMTP, SMB), and experience with tools/systems including AWS, Cisco, Splunk SIEM, Splunk Forwarders, IDS/IPS, VMware, SSL Decryption, proxy and DLP operations, Windows and Linux-based endpoints.
- Deep understanding of Threat Intelligence integration and associated integration throughout the enterprise at multiple layers.
Pay
Full-Time Salary Range: $97,008 - $164,914. Please note: This range is based on our market pay structures. However, individual salaries are determined by a variety of factors including, but not limited to: business considerations, local market conditions, and internal equity, as well as candidate qualifications, such as skills, education, and experience.
Benefits
- Health, dental, and vision insurance.
- Health savings accounts.
- 401(k) savings plan.
- Disability coverage.
- Life and accident insurance.
- Employee assistance program.
- Legal plan.
- Paid time off, paid holidays, and other types of leave, including paid parental, military, bereavement, and any applicable federal and state sick leave.
- Company recognition program to receive monetary or non-monetary recognition awards.
- Other incentives may be available based on position level and/or job specifics.