Summary
NikSoft Systems Corporation is seeking a SOC Tier II Analyst to support the United States Postal Service in a large-scale enterprise environment. The role is responsible for monitoring security tools, analyzing and responding to cybersecurity incidents, conducting network traffic and forensic analysis, and supporting a 24/7/365 Security Operations Center on the night shift.
Responsibilities
- Perform deep-dive incident analysis by correlating data from various sources and determine if a critical system or data set is affected
- Handle incidents as defined in Playbooks and SOPs, and advise on remediation actions
- Support a 24/7/365 Security Operations Center and monitor security tools and provide tier II response to security incidents
- Follow standard operating procedures for detecting, classifying, and reporting incidents under the supervision of Tier 3 staff
- Support night shift M-F personnel in Morrisville, NC
- Identification of Cybersecurity problems which may require mitigating controls
- Analyze network traffic to identify exploit or intrusion related attempts
- Recommend detection mechanisms for exploit and or intrusion related attempts
- Provide subject matter expertise on network based attacks, network traffic analysis, and intrusion methodologies
- Conduct forensic analysis on systems which may have been compromised
- Work with law enforcement if needed for handoff of forensic evidence
- Execute operational processes in support of response efforts to identified security incidents
Skills
- Associate's Degree in Computer Science or related field
- 3+ years IT security experience
- 2+ years' experience in network traffic analysis
- Boolean Logic
- TCP/IP Fundamentals
- Network Level Exploits
- Threat Management
- Regular Expressions
- Knowledge of Control Frameworks and Risk Management techniques
- Excellent oral and written communication skills
- Excellent interpersonal and organizational skills
- Strong understanding of IDS/IPS technologies, trends, vendors, processes and methodologies
- Strong understanding of common IDS/IPS architectures and implementations
- Strong understanding of IDS/IPS signatures, content creation and signature characteristics including both signature and anomaly-based analysis and detection
- Candidates must be able to obtain a Postal Sensitive Clearance (US Citizenship or Green Card required)
- Candidates must not have traveled outside of the USA for a combined period exceeding 6 months within the last 5 years
Qualifications
Must Haves
- Associate's Degree in Computer Science or related field
- 3+ years IT security experience
- 2+ years' experience in network traffic analysis
- Boolean Logic
- TCP/IP Fundamentals
- Network Level Exploits
- Threat Management
- Regular Expressions
- Knowledge of Control Frameworks and Risk Management techniques
- Excellent oral and written communication skills
- Excellent interpersonal and organizational skills
- Strong understanding of IDS/IPS technologies, trends, vendors, processes and methodologies
- Strong understanding of common IDS/IPS architectures and implementations
- Strong understanding of IDS/IPS signatures, content creation and signature characteristics including both signature and anomaly-based analysis and detection
- Candidates must be able to obtain a Postal Sensitive Clearance (US Citizenship or Green Card required)
- candidates must not have traveled outside of the USA for a combined period exceeding 6 months within the last 5 years