Summary
Fusion Technology LLC is a performance-driven HUBZone Small Business providing comprehensive IT services and solutions to US Government programs. The SOC Analyst role involves supporting cybersecurity infrastructure, monitoring systems for malicious activity, and responding to incidents while collaborating with various teams to enhance security measures.
Responsibilities
- Provide support for the administration, maintenance, configuration, patching, upgrades and optimization of security tools, devices, application systems, and servers and sensors within the cybersecurity infrastructure
- Maintain SIEM applications to collect and aggregate operating systems, IDS and IPS data from network sensors, raw data from collection agents, firewalls, proxy servers, DLP, antivirus, vulnerability scanner elements, and other security‐relevant devices
- Support and evolve the interfaces between operations, network, SOC, and operating systems information into the SIEM tool using information from and input from ISSOs; perform asset categorization and prioritization
- Monitor DHS S&T systems, networks, and applications for malicious activity and utilize security tools and technologies to detect, analyze potential threats, and respond to agency and component level security alerts
- Analyze cybersecurity systems to identify vulnerabilities and trends. They also analyze threat intelligence and data to identify computer attacks and probes
- Respond to cybersecurity incidents and provide incident response services
- Assist in developing play books and long-term security strategies and advise on cybersecurity policies
- Collaborate with other service areas within S&T to help analyze and solve common cybersecurity concerns and problems
- Assist in documenting incidents and actions taken by the SOC analyst team
- Prepare, provide, and discuss detailed reports with other teams and management
Skills
- Security-cleared Professional: You have the ability to obtain a Public Trust issued by the Department of Homeland Security (DHS)
- You have a Bachelor's Degree with 3 years of experience within an enterprise IT services environment, providing technical support with emphasis on cybersecurity
- Demonstrated experience with network and security management tool suites, with an emphasis on SIEM and growing towards SOAR solutions
- Knowledge of deploying, developing, and maintaining SOC oriented services and systems within a hybrid on premise and cloud-oriented enterprise class environment
- Working knowledge of a variety of security / networking technologies to communicate and collaborate with other engineers
- Ability to learn and understand complex and dynamically changing environments
- Self-starter, able to work independently, and able to manage time effectively
- Working knowledge of cloud platforms such as AWS/Azure
- Ability to communicate effectively with multiple levels of an organization from engineering, operations, and management
- Technologies: Splunk ES, Tenable, CrowdStrike, Lookout, Swimlane, Axonious, Windows and/or Linux admin experience desirable
Qualifications
Must Haves
- Security-cleared Professional: You have the ability to obtain a Public Trust issued by the Department of Homeland Security (DHS)
- You have a Bachelor's Degree with 3 years of experience within an enterprise IT services environment, providing technical support with emphasis on cybersecurity
- Demonstrated experience with network and security management tool suites, with an emphasis on SIEM and growing towards SOAR solutions
- Knowledge of deploying, developing, and maintaining SOC oriented services and systems within a hybrid on premise and cloud-oriented enterprise class environment
- Working knowledge of a variety of security / networking technologies to communicate and collaborate with other engineers
- Ability to learn and understand complex and dynamically changing environments
- Self-starter, able to work independently, and able to manage time effectively
- Working knowledge of cloud platforms such as AWS/Azure
- Ability to communicate effectively with multiple levels of an organization from engineering, operations, and management
Nice to Haves
- Technologies: Splunk ES, Tenable, CrowdStrike, Lookout, Swimlane, Axonious, Windows and/or Linux admin experience desirable
Benefits
- Best-in-class matching 401K program
- Comprehensive healthcare plan through Meritain
- Competitive employer contribution to a health savings account
- Vision and dental plans
- Life insurance
- Short- and long-term disability
- Personal leave
- Paid certifications and training