Network Security Analyst 1

Austin, TX, US • Posted 7 hours ago • Updated 6 hours ago
Contract Corp To Corp
Contract Independent
Contract W2
On-site
Company Branding Image
Fitment

Dice Job Match Score™

🔢 Crunching numbers...

Job Details

Skills

  • UI
  • Information Technology
  • Tier 1
  • Recruiting
  • Training
  • Partnership
  • Communication
  • Event Management
  • Network Security
  • Intrusion Prevention
  • Authentication
  • Network
  • Reporting
  • Recovery
  • Team Leadership
  • Continuous Improvement
  • Vulnerability Assessment
  • Workflow
  • Knowledge Base
  • Firewall
  • Endpoint Protection
  • Malware Analysis
  • Microsoft Windows
  • Linux
  • Computer Networking
  • Active Directory
  • Security Controls
  • Documentation
  • Management
  • Apache Lucene
  • SPL
  • ESQL
  • Scripting
  • Windows PowerShell
  • Python
  • Bash
  • Collaboration
  • Leadership
  • SIEM
  • Netwitness
  • Splunk
  • IBM QRadar
  • ArcSight
  • LogRhythm
  • Microsoft Office
  • IDS
  • IPS
  • FireEye
  • Threat Analysis
  • Cisco
  • Vulnerability Management
  • Qualys
  • Email Security
  • IronPort
  • ESA
  • Artificial Intelligence
  • Cloud Security
  • Cloud Computing
  • Incident Management
  • Information Security
  • Computer Science
  • IT Management
  • Information Systems
  • Security+
  • GCIH
  • Intrusion Detection
  • GCIA
  • Microsoft
  • Cyber Security
  • System On A Chip
  • Oracle Linux

Summary

CCS Global Tech is a rapidly growing Information Technology company with a diverse portfolio of technology products and services and a large network of industry partnerships. With over 22 years of being a successful business with a global talent pool and presence, CCS is a certified Microsoft Gold Partner and specializes in delivering expert Microsoft based solutions for technical and business needs. We have been recognized by Inc. 500 Magazine as one of the fastest growing small companies in the Unites States.
we are a Tier 1 vendor for the City and County of San Francisco for Cloud Services, Staffing Services and Training Services. For this multi-year opportunity with a diverse set of needs to address, we are currently focusing on establishing partnerships with individuals as well as companies who can help us enhance our overall service portfolio, cut lead times, and ultimately help us deliver successfully. We currently hold sizable Government accounts in the San Francisco bay area including City and County of San Francisco, San Mateo County, and Santa Clara County.
We take great pride in our global reach and local influence. Your experience alongside our highly skilled and talented internal team who guide you along the way, offers key insights into what helps you stand out in a competitive job market.
If you are a partner company, please submit resumes with contact information of your own W2 Consultants only. Submitted consultants are expected to have excellent communication skills.

Roles/Responsibilities:

  • Monitors, analyzes, and triages cybersecurity alerts generated by Security Information and Event Management (SIEM), Endpoint Detection and Response (EDR), cloud security, email security, identity protection, and network security platforms.
  • Conducts initial investigations of detected and reported security events to determine severity, scope, impact, and potential risk to agency operations.
  • Identifies, validates, and prioritizes potential cybersecurity incidents, escalating confirmed threats to Incident Response, Threat Hunting, or SOC Engineering teams according to established procedures.
  • Correlates security events from multiple data sources, including endpoints (EDR), firewalls, intrusion detection systems (IDS), intrusion prevention systems (IPS), cloud services, authentication systems, and threat intelligence feeds.
  • Reviews and analyzes indicators of compromise (IOCs), suspicious network activity, phishing emails, malware detections, and anomalous user behavior.
  • Documents investigations, findings, and response actions in ticketing and case management systems to ensure accurate tracking and reporting.
  • Assists with incident containment, eradication, and recovery efforts by coordinating with technical teams and stakeholders.
  • Reports and escalates to the CSOC Team Lead and/or SOC Manager.
  • Supports the continuous improvement of threat detection capabilities through alert tuning, process refinement, threat intelligence integration, and identification of false-positive trends.
  • Performs vulnerability assessment reviews and evaluates identified vulnerabilities for potential risk and remediation prioritization.
  • Supports development and maintenance of operational procedures, playbooks, workflows, and knowledge base articles related to threat detection and incident response.
  • Researches emerging cyber threats, attack techniques, tactics, and procedures (TTPs) to improve detection and response effectiveness.

Knowledge, Skills, and Abilities

Knowledge of:

  • Cybersecurity Operations Center (CSOC/SOC) operations and best practices.
  • Security incident triage, analysis, investigation, and escalation procedures.
  • Security monitoring technologies, including SIEM, EDR/XDR, IDS/IPS, firewalls, endpoint security solutions, and cloud security platforms.
  • Common cyber threats, attack vectors, malware, phishing campaigns, insider threats, and advanced persistent threat (APT) techniques.
  • Threat intelligence concepts, indicators of compromise (IOCs), indicators of attack (IOAs), and MITRE ATT&CK methodologies.
  • Windows, Linux, networking protocols, Active Directory, Microsoft Entra ID, cloud environments, and enterprise security controls.
  • Incident response lifecycle and cybersecurity frameworks such as NIST Cybersecurity Framework, NIST Incident Response guidance, and PICERL.

Skill in:

  • Security event analysis and threat triage.
  • Correlating and interpreting data from multiple cybersecurity tools.
  • Investigating suspicious activity and identifying indicators of compromise.
  • Using SIEM, EDR/XDR, threat intelligence, vulnerability management, and case management platforms.
  • Producing clear documentation, incident reports, and technical communications.
  • Prioritizing and managing multiple investigations in a fast-paced operational environment for a large organization.
  • Knowledge of and experience with query languages such as KQL, Lucene, SPL, ESQL, etc.
  • Knowledge of and experience with scripting languages such as PowerShell, Python, Bash, etc.

Ability to:

  • Analyze complex security events and distinguish legitimate threats from false positives.
  • Make risk-based decisions during incident investigations.
  • Execute established incident response and escalation procedures.
  • Collaborate effectively with security engineers, incident responders, system administrators, CISO leadership, and business stakeholders.
  • Communicate technical information clearly to both technical and non-technical audiences.
  • Work independently and as part of a 24x7 cybersecurity operations team.

Mandatory Skills:

  1. Minimum of five (5) years of experience in cybersecurity operations, security monitoring, incident response, threat detection, security investigations, or related cybersecurity disciplines.
  2. Experience working with one or more of the following technologies:
  1. SIEM platforms (NetWitness, Microsoft Sentinel, Splunk, QRadar, ArcSight, LogRhythm, etc.)
  2. Microsoft Security (Microsoft 365 Defender XDR, Microsoft Sentinel)
  3. Endpoint Detection and Response (Microsoft Defender for Endpoint, CrowdStrike, SentinelOne, etc.)
  4. IDS/IPS technologies (Trellix/FireEye, Corelight)
  5. Threat intelligence platforms (VirusTotal, Google Threat Intelligence, Cisco Talos, Recorded Future, MISP)
  6. Vulnerability management tools (Tenable, Qualys, Rapid7)
  7. Email security platforms (IronPort ESA, Abnormal.ai, Proofpoint)
  8. Cloud security monitoring solutions (Google Wiz, MDCA, Cortex Cloud, Sysdig)
  9. Secure Access Service Edge (Zscaler, Prisma, Netskope)
  1. 3 years- Experience triaging security alerts, analyzing security events, and documenting incident investigations.
  2. 3 years- Experience with cybersecurity frameworks, incident response processes, and threat detection methodologies.

Desirable Skills:

  1. Graduation from an accredited four-year college or university with major coursework in cybersecurity, information security, computer science, computer information systems, management information systems, or a related field is preferred. Relevant education and experience may be substituted for one another.
  2. One or more of the following certifications are preferred:
  3. CompTIA Security+
  4. GIAC Certified Incident Handler (GCIH)
  5. GIAC Certified Intrusion Analyst (GCIA)
  6. Certified SOC Analyst (CSA)
  7. Microsoft Cybersecurity Analyst (SC-200)
  8. Other GIAC or SOC-related certifications

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10290999
  • Position Id: 2026-7988
  • Posted 7 hours ago

Company Info

About CCS Global Tech

Headquartered in Poway, California and eight international offices, CCS Global Tech is a Certified Minority Business Enterprise (MBE) and a leading provider of enterprise solutions. We provide solutions that cover the full business spectrum from application development, data warehouse software, real time data warehousing, business analysis software, and web-based application development. Our clients span the globe and benefit from our comprehensive support capabilities.

Our tools and technical expertise have repetitively proven to reduce the time and costs associated with software and custom solution development. CCS Global Tech begins each project with quality analysis and business due diligence in order to deliver quality solutions for our clients. Our team of international talent asks critical questions that illuminate the fine details of the project scope. Once we have a clear and comprehensive view of the objectives sought, we set to work to bring your vision to life.

We have a complementary matrix of skills and talents across multiple platforms that allow us to identify, target and bridge technical gaps. Regardless of the size and scope of your business application, data warehouse initiative, or enterprise-wide project, our team supports service, technical capabilities and cost effective solutions that are unmatched by our competition. We focus on delivering state-of-the-art technology, application development, warehousing and support to our clients. With the scope and flexibility to optimize development schedules and products to fit any budget requirements, CCS Global Tech is aptly positioned to not only meet unique, strategic IT objectives of diverse organization, but also complement organizational goals.

About_Company_One
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Austin, Texas

Today

Easy Apply

Contract, Third Party

Lansing, Michigan

Today

Easy Apply

Third Party, Contract

Washington, District of Columbia

Today

Easy Apply

Full-time, Contract

Bethesda, Maryland

Today

Easy Apply

Full-time, Contract

Compensation information provided in the description

Search all similar jobs