SOC Tier II Analyst - Day Shift

Security, Computer, IT, TCP, IP, Network, Management, Risk Management
Full Time

Job Description

NikSoft is currently conducting a search for a professional and experienced SOC Tier II Analysts to add to its team in support of the United States Postal Service. The candidate will have expertise in managing cybersecurity risks and incidents in a large-scale enterprise environment.

  • Perform deep-dive incident analysis by correlating data from various sources and determine if a critical system or data set is affected.
  • Handle incidents as defined in Playbooks and SOPs, and advise on remediation actions.
  • Support a 24/7/365 Security Operations Center and monitor security tools and provide tier II response to security incidents.
  • Follow standard operating procedures for detecting, classifying, and reporting incidents under the supervision of Tier 3 staff.
  • Support day shift M-F personnel in Morrisville, NC
  • Identification of Cybersecurity problems which may require mitigating controls
  • Analyze network traffic to identify exploit or intrusion related attempts
  • Recommend detection mechanisms for exploit and or intrusion related attempts
  • Provide subject matter expertise on network based attacks, network traffic analysis, and intrusion methodologies
  • Conduct forensic analysis on systems which may have been compromised
  • Work with law enforcement if needed for handoff of forensic evidence
  • Execute operational processes in support of response efforts to identified security incidents

Required Qualifications:
  • Associate's Degree in Computer Science or related field
  • 3+ years IT security experience
  • 2+ years' experience in network traffic analysis
  • Strong working knowledge of:
    • Boolean Logic
    • TCP/IP Fundamentals
    • Network Level Exploits
    • Threat Management
    • Regular Expressions
  • Knowledge of Control Frameworks and Risk Management techniques
  • Excellent oral and written communication skills
  • Excellent interpersonal and organizational skills
  • Strong understanding of IDS/IPS technologies, trends, vendors, processes and methodologies
  • Strong understanding of common IDS/IPS architectures and implementations
  • Strong understanding of IDS/IPS signatures, content creation and signature characteristics including both signature and anomaly-based analysis and detection

****Candidates must be able to obtain a Postal Sensitive Clearance (ship or required). Additionally, candidates must not have traveled outside of the USA for a combined period exceeding 6 months within the last 5 years.***

Dice Id : RTL98238
Position Id : 1767082
Originally Posted : 2 months ago
Have a Job? Post it