Security Operation Center (SOC) Analyst II
V2X Inc · Schofield Barracks, HI · 1 wk ago
Full-time
About the role
V2X is seeking a SOC Analyst II to support cybersecurity operations, incident response, and defensive cyber measures for the Warfighter Training Readiness Solutions (W-TRS) program under the U.S. Army PEO STRI. This role involves 24×7×365 monitoring, analysis, and response to cyber threats across centralized and distributed locations, ensuring adherence to best practices and DoD cybersecurity policies. The analyst will proactively implement defense strategies, maintain compliance and reporting metrics, and generate reports related to FISMA, RMF ConMon, and security incidents while operating and deploying enterprise cyber tools.
Responsibilities
- Support production of documentation and artifacts for Cybersecurity requirements as identified in DoDI 8510 and AR 25-2 under the Risk Management Framework (RMF).
- Operate workstations to collect, analyze, and assimilate data into usable formats.
- Execute Incident Responses for all incidents involving the system, prepare incident reports, and submit to appropriate IA personnel.
- Validate IA Vulnerability Alerts (IAVAs) for supported baselines via vulnerability scanning.
- Maintain and secure current and future baselines, ensuring all components have a documented security configuration.
- Perform continuous monitoring and compliance testing to validate configurations.
- Analyze and correlate audit records using Security Incident & Event Management (SIEM) tools.
- Analyze security requirements, perform functional and security testing, and prepare initial RMF documents for Assessment and Authorization (A&A).
- Monitor and control communications at external boundaries, including unauthorized software and mobile code.
- Notify site IA personnel immediately upon detection of unauthorized network services.
- Configure and enable required security features.
- Centrally review, analyze, correlate, and store audit records from multiple system components using SIEM tools.
- Perform auditing and audit review, including account management.
- Ensure weekly backups of audit logs.
- Support execution of annual FISMA requirements according to A&A and ATO guidelines.
Required Skills
- Hands-on experience in cybersecurity operations, including protection, detection, response, and sustainment.
- Extensive technical expertise in current cybersecurity technologies and emerging innovations.
- Knowledge of the lifecycle of cybersecurity threats and existing TTPs (Tactics, Techniques, and Procedures).
- Strong written and verbal communication skills, with the ability to create technical reports based on analytical findings.
Qualifications
- Bachelor’s degree in Cybersecurity and Information Assurance; advanced degree(s) preferred.
- Bachelor’s degree + 6 years of relevant experience, or Master’s degree + 6 years of relevant experience.
- Current U.S. DoD Secret Clearance.
Desired Skills
- 3+ years of incident handling experience.
- Experience working with DoD, U.S. Army, or Federal Government.
- Experience with tools: Assured Compliance Assessment Solution (ACAS), Splunk, Endpoint Security Solution (ESS), Cisco Adaptive Security Appliance (ASA) Firewalls and Firepower IPS, SRGs, STIGS, DISA STIG Viewer, SCC/SCAP, Evaluate STIG, Windows, Linux (RHEL).
- Experience as a SOC Analyst I or related Cyber position under CSSP.
- Desired certifications: CYSA+ or other CSSP certifications.