Security Operations Center Analyst
About the role
Quantum Sky is searching for a Security Operations Center (SOC) Analyst to support threat monitoring, detection, event analysis, and incident reporting. You will monitor enterprise networks and systems, detect events, and report threats directed against those systems. The client’s sensor grid acquires millions of events per day, which are analyzed and categorized in accordance with the Cyber Security Incident Response Plan. The role involves comprehensive analytical activities supporting external threat monitoring, detection, event analysis, and incident reporting, including presentation reviews, threat reporting, analysis of internet traffic, suspicious emails, administering access requests, and coordinating event characterization and response.
Responsibilities
- Provide support for complex computer network exploitation and defense techniques, including deterring, identifying, and investigating computer and network intrusions; delivering incident response and remediation support.
- Perform comprehensive computer surveillance and monitoring, identify vulnerabilities, provide recommendations to improve security posture, and maintain the agency's incident response plan and associated artifacts.
- Support cybersecurity training efforts and national security exercises, such as table-top exercises, functional exercises, and scenario-based exercises.
- Provide technical support for a comprehensive risk management program identifying mission-critical processes and systems, current and projected threats, and system vulnerabilities.
Requirements
- Bachelor’s Degree or an equivalent combination of formal education and experience.
- Minimum of one (1) year of general work experience and two (2) years of relevant experience.
- Minimum one (1) year of experience as a Security/Network Administrator.
- Experience with some of the following tools and technologies:
- Trellix Endpoint Security
- CrowdStrike EDR
- Splunk Enterprise Security, SOAR, and UBA
- Cisco Secure IPS/NGFW IPS
- Cisco Secure Network Analytics
- Strong analytical and organizational skills.
- Strong verbal and written communication skills.
- Experience with MS Word and other MS Office applications.
Qualifications
- Experience working in a SOC and doing incident response is preferred.
- Experience with securing various environments preferred.
Clearance
Active Top Secret clearance required.
Location
This is a hybrid role with expectations of being on-site in Columbia, SC a few days a week.