Threat Management Specialist (Tier 1)
Advance your career while impacting our national security as a Threat Management Specialist (Tier 1). Here, technologists have many paths to grow a meaningful career supporting cyber missions and operations across the federal government.
About the role
This position will support the United States Postal Service (USPS). GDIT is seeking a Threat Management Specialist (Tier 1). The Tier 1 Analyst receives all alerts from various sources, including SIEM, CSOC mailboxes, and phone calls directly from the central SIEM, and handles them as defined in Playbooks and SOPs. Tier 1 Analysts will escalate events to Tier 2 after initial triage, along with providing input and analysis on how to leverage Artificial Intelligence, Machine Learning, and SOAR capabilities to improve CSOC efficiency and accuracy.
Responsibilities
- Identify security problems which may require mitigating controls
- Interpret output from the SIEM, CSOC mailboxes, and phone calls to identify potential security incidents
- Collect basic information to support analysis such as IP address, location, affected asset(s), etc.
- Escalate items which require further investigation to other members of the Threat Management team
- Execute operational processes in support of response efforts to identified security incidents
- Utilize AI/ML-based tools and techniques to detect anomalies, automate incident triage, and improve threat intelligence
- Perform and analyze threat intelligence to assess risk and adapt defenses using ML-enhanced tools
- Stay current on the latest cybersecurity trends, threat actors, and AI/ML research relevant to the field
- Identify and support automation use cases, including the use of AI/ML to enhance SOC capabilities
- Collaborate across Operations to provide SOC enhancement capabilities through the use of automation and AI
Requirements
- BA or BS in Computer Science, Information Technology, or related field (or an additional 4 years of relevant work experience if no degree)
- 1+ years’ experience in IT Operations
- 1+ year experience in IT Security
- Working knowledge of:
- Platform Security Basics
- Threat Lifecycle Management
- TCP/IP
- Incident Management
- Control Frameworks and Risk Management techniques
- Excellent oral and written communication skills
- Excellent interpersonal and organizational skills
- Familiarity with the application of AI/ML techniques in cybersecurity, including but not limited to automated threat detection, incident response automation, and predictive analytics
- Experience in evaluating the effectiveness of AI/ML solutions in a SOC environment (a plus)
- Understanding of ethical AI principles and their implications in cybersecurity
- Familiarity with cloud security (AWS, Azure, GCP)
- Understanding and experience identifying and implementing automation use cases
One or more relevant certifications such as CEH, CISSP, CompTIA Security+, or GCIH are advantageous.
Security Clearance
This role requires obtaining and maintaining a Public Trust (MBI/T2) clearance. The investigation may review personal and criminal behavior, financial conduct, foreign influence, and other adjudications. Onsite fingerprinting at a designated facility is required.
This position has a U.S. residency requirement: candidates must have resided in the U.S. (including U.S. Territories) for the last five years. U.S. Citizens cannot have left the U.S. for longer than 6 months consecutively in the last 3 years (with certain exceptions). Non-U.S. Citizens cannot have left the U.S. for longer than 90 days consecutively in the last 3 years.
Pay
The likely salary range for this position is $72,877 - $98,599. Salary will be set based on experience, geographic location, and possibly contractual requirements.
Schedule
- Scheduled Weekly Hours: 40
- Travel Required: Less than 10%
- Telecommuting Options: Remote Work (Any Location / Remote)
Benefits
- 401K with company match
- Comprehensive health and wellness packages (medical, dental, vision)
- Internal mobility team dedicated to career growth
- Professional growth opportunities, including paid education and certifications
- Cutting-edge technology learning opportunities
- Paid vacation (15 days per calendar year, prorated based on hire date) and holidays (10 days per year, prorated)
- Paid sick and personal time
- Paid parental, military, bereavement, and jury duty leave
- GDIT Paid Family Leave program (up to 160 hours of paid leave in a rolling 12-month period)
- Short and long-term disability benefits
- Life, accidental death and dismemberment, personal accident, critical illness, and business travel and accident insurance