1

Assistant Security Operations Center Analyst Jobs in Virginia

As a Sr. Operations Center Analyst at GDIT, you'll power innovation to drive mission impact and ... The Global Watch Team (GWT) is primarily situated in the Diplomatic Security Command Center (DSCC ...

The Security Operations Center Analyst will be responsible for monitoring and analyzing security ... Manage incident response efforts and assist in investigations into security breaches * Manage and ...

next page

Showing results 1-20

Assistant Security Operations Center Analyst information

What is the difference between Assistant Security Operations Center Analyst vs Security Operations Center Analyst?

AspectAssistant Security Operations Center AnalystSecurity Operations Center Analyst
CertificationsCompTIA Security+, CEH, or similarCompTIA Security+, CEH, or similar
Work EnvironmentSupport role in SOC, assisting senior analystsPrimary role in monitoring and analyzing security threats
ResponsibilitiesMonitoring alerts, basic incident response, reportingThreat detection, incident analysis, escalation

The Assistant Security Operations Center Analyst typically supports senior analysts by monitoring alerts and handling basic tasks, while the Security Operations Center Analyst takes on more complex threat analysis and incident response responsibilities. Both roles require similar certifications and work in the same environment, but the Security Operations Center Analyst has a more advanced scope of duties.

What cities in Virginia are hiring for Assistant Security Operations Center Analyst jobs?

Cities in Virginia with the most Assistant Security Operations Center Analyst job openings:

Security Operations Center Analyst

Arlington, VA • On-site

Coalfire Federal
Network Security • 51 - 200 employees

Other

Posted 21 days ago


Job description

About Coalfire


Coalfire Federal is a market leading cybersecurity consultancy firm that provides independent and tailored advice, assessments, technical testing and a full suite of cyber engineering services to Federal agency customers. Coalfire Federal along with its parent company, Coalfire, has an unparalleled client list with deep customer relationships with leading cloud and technology providers including Amazon, Microsoft, IBM, Google and Oracle and Federal agencies. Coalfire has been a cybersecurity thought leader for over 20 years and has offices throughout the United States and Europe and is committed to making the world a safer place by solving our clients’ toughest security challenges.

But that’s not who we are – that’s just what we do.


We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference.


We’re currently seeking a skilled SOC Analyst with an active Secret or Top Secret clearance to support our on-site team in Crystal City (Arlington, VA), or in Denver, Colorado.


Location Details

This is a full time on site position with our Coalfire Federal team supporting a government customer.

  • Open to local candidates in the DMV reporting to our in person team in Arlington, Virginia.
  • Also open to local candidates residing in Denver, Colorado to report to on client site location in CO.


Summary

The SOC Analyst will be responsible for assisting with the vulnerability management program and maintaining the vulnerability scanning tool, conducting incident response to include contributing to process improvement, and assist with monitoring existing alerts and security dashboards


What you'll do

  • Monitors and analyzes for potential threat activity.
  • Provides real-time alerting and monitoring by capturing, indexing, and correlating data in a searchable repository to generate graphs, reports, alerts and visualizations. Provides metrics, diagnoses security problems.
  • Provides engineering support, operations, and maintenance of security tools.
  • Utilizes Security, Information, and Event Monitoring (SIEM) tools to identify security events and incidents to evaluate the effectiveness of current security measures.
  • Maintains Tenable Security Center administrator responsibilities, routine maintenance of the front end including but not limited to user accounts, scan polices, and reports.
  • Conducts daily and ad-hoc vulnerability scanning on networks and systems.
  • Prepares reports of metrics for vulnerability management that is briefed to senior leadership to convey network security status.
  • Participates and contributes to weekly meetings with O&M team to discuss vulnerability patch management status.
  • Tracks, maintains, and verifies findings. Promote timely remediation before due date and/or work with stakeholders on extension request.
  • Conducts DISA STIG baseline configuration scanning of hardware and network devices and manually reviews CAT I and CAT II items that cannot be checked via automated scan.
  • Monitors incoming events and maintain Audit Log Management using Splunk Tool.
  • Validates hardware and software inventory for a portfolio of systems.
  • Uses advanced analytic tools to determine presence of emerging threat patterns and vulnerabilities.
  • Utilizes in-depth operational and technical knowledge of security concepts to provide technical support in the areas of vulnerability assessment, risk assessment, network security, product evaluation, and security implementation.
  • Provides technical evaluations of customer systems and assists with making security improvements.
  • Conducts product evaluations, and recommends products, technologies and upgrades to improve the customer’s security posture.
  • Conducts testing and audit log reviews.


In addition to the duties listed above, utilizes the following cyber tools or equivalents:

• Splunk Enterprise Security

• Q-Audit ICS-500-27 Splunk application

• Tenable Nessus Security Center

• Cylance

• Extrahop

• Burp Suite


Education

Completed Bachelor’s degree from an accredited university, preferably in an IT related field.


Clearance / Suitability

An active Secret or Top Secret clearance is required.


Certifications

One or more of the following: CISSP, CISA, CISM, Security+, CAP


Years of Experience

  • At least five (5) years of information technology, cybersecurity experience for a consulting organization, including skills and responsibilities relative to the SOC role


Bonus Points

  • Previous DOJ experience
  • Military experience


Why you'll want to join us


Our people make Coalfire Federal great. We work together on interesting things and achieve exceptional results. We act as trusted advisors to our customers and are committed to client-focused innovation as well as innovation in the industries that we serve.

Coalfire offers our people the chance to grow professionally with colleagues they like and respect while tackling challenges that stretch their minds and expand their skill sets. Regardless of location, you’ll experience a company that prioritizes connection and wellbeing and be part of a team where people care about each other and our communities. You’ll have opportunities to join employee resource groups, participate in in-person and virtual events, and more.

You’ll enjoy competitive perks and benefits to support you and your family, like paid parental leave, flexible time off, certification and training reimbursement, digital mental health and wellbeing support memberships, and comprehensive insurance options.


Coalfire is an EEO employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.


Salary Range and Description : 96,404.00 - 154,247.00 USD Annual

The salary range listed is a reasonable estimate of the compensation range for this role based on national salary averages. The actual salary offer to the successful candidate will be based on job-related education, geographic location, training, licensure and certifications and other factors. You may also be eligible to participate in annual incentive, commission, and/or recognition programs.