Role: SOC Analyst (W2 Position)
Location: Crownsville, MD (100% onsite) Day Shift/Night Shift
Duration: 6+ Months
Need Locals Only
Job Description:
Need 8+ years of experience as a SOC Analyst
CompTIA CySA+ certification/ or a CompTIA Security+ (or other relevant IAT Level II/III Certification) along with one of the following:
o CEH
o CFR
o CCNA Cyber Ops
o CCNA-Security
o GCIA
o GCIH
o GICSP
o Cloud+
o SCYBER
o PenTest+
Experience analyzing intrusion events such phishing emails, malware, privileges misuse, traffic indicating potential malicious activities such DoS/DDoS, brute force, data loss through exfiltration/ inadvertent disclosure.
Applied experience of threat analysis model/frameworks such Cyber Kill Chain, MITRE ATT&CK, Diamond Model, Pyramid of Pain etc.
Working knowledge of advanced threat Tactics, Techniques and Procedures (TTPs).
Applied experience with network traffic analysis with tools like Wireshark
Applied experience with a variety of Opensource threat research tools/platforms such as Virus Total
Working knowledge of network and security architecture principles such as defense-in-depth
Experience with proprietary security protection/detections tools such as Firewall, Host and Network IDS/IPS, Anti-Virus, EDR, URL Filtering Gateways, Email Filtering Gateways, DLP tools, and SIEM tools such as Splunk etc.
Capable of working independently, establishing priorities and managing task completion within set SLAs
Able to communicate effectively through writing, speaking, and presenting to client technical representatives.
Team player capable of productively contributing to the client mission by supporting fellow teammates in a dynamic growing and changing environment.
Desired Skills and Qualifications:
Experience with mid-to-advance level malware analysis
Experience creating detailed queries and scripts, such as regular expressions, for log, event and correlation analysis.
Experience scripting in Python, PowerShell, VBScript