Summary
CSEngineering is a Service-Disabled Veteran-owned small business dedicated to providing premier engineering and services. They are seeking a CSOC Tier 1 Analyst who will be responsible for the initial assessment of alerts and notifications to determine incident escalation within the Cyber Security Operations Center.
Responsibilities
- Provide Level I technical support in CSOC operations and activities. (CSOC is a 24/7 operations center environment.)
- Provide daily/weekly updates to CSOC Level II support on CSOC operations and developments
- Perform initial triage and response of CSOC events, notifications, and alerts
- Identify security incidents and distinguish them from non-security-related issues and escalate to the appropriate tier within the CSOC hierarchy, while maintaining clear documentation
- Operate within the CSOC ticketing system and participate in the development and optimization of efficient incident reporting procedures
- Maintain awareness of the IT infrastructure and changes that may impact national cybersecurity or predicator detection
- Recommend procedures to Security Operations Center (CSOC) Level II support for improvement of the level one CSOC duties and activities
- Maintain up to date information about the comprehensive security tool suite available within the organization to effectively develop and escalate security incidents
- Participate in ongoing informal as well as formal knowledge-sharing sessions within CSOC and IT departments
- Assist, as required, with the forensic analysis of less complex digital media devices
- Assist with the documentation required for the findings and recommendations for digital media analysis
Skills
- Bachelor's degree and 1 to 3 years of cyber operation experience
- Additional work experience and certifications will be considered in lieu of a bachelor's degree
- Certifications: Splunk Core Certified User, Security+, and A+
- Ability to work a day or night shift rotational schedule
- ITIL
- SNOW
- HHS experience
Qualifications
Must Haves
- Bachelor's degree and 1 to 3 years of cyber operation experience
- Additional work experience and certifications will be considered in lieu of a bachelor's degree
- Certifications: Splunk Core Certified User, Security+, and A+
- Ability to work a day or night shift rotational schedule
Nice to Haves
Benefits
- Medical
- Dental
- Life
- Disability
- 401k
- Paid time off