Clark Construction Group
Cybersecurity Analyst Job at Clark Construction Group in Mc Lean
Clark Construction Group, Mc Lean, VA, US, 22107
Cybersecurity Analyst – Clark Construction Group
Clark Construction Group is looking for a skilled and motivated Cybersecurity Analyst to join our growing cybersecurity team. This role is a critical component of our security operations, bridging the gap between front‑line detection and advanced threat response. The ideal candidate will be responsible for both proactive and reactive cybersecurity measures, including in‑depth incident analysis, threat hunting, and the development of new security protocols to strengthen our defenses.
Reactive Security (Incident Response)
Incident Investigation: Act as a primary escalation point for security alerts and incidents from Tier 1 analysts. Conduct in‑depth analysis of security events, logs, and network traffic to determine the scope, impact, and root cause of security incidents.
Containment & Remediation: Lead and execute containment and remediation efforts for confirmed incidents, including malware removal, system isolation, and compromised account deactivation.
Documentation & Reporting: Maintain meticulous documentation of all security incidents, including a timeline of events, actions taken, and lessons learned. Prepare and present detailed reports for management and stakeholders.
Forensic Analysis: Conduct basic digital forensics to gather and preserve evidence related to security breaches.
Proactive Security (Threat & Vulnerability Management)
Threat Hunting: Proactively search for signs of compromise, new attack techniques, and adversary tactics that may have bypassed initial security controls.
Vulnerability Management: Assist with vulnerability scanning, assessment, and prioritization. Work with system owners to ensure timely patching and remediation of identified vulnerabilities.
Security Tool Optimization: Continuously tune and refine security tools, such as our SIEM (Security Information and Event Management) system, IDS/IPS, and EDR platforms, to reduce false positives and enhance detection capabilities.
Protocol Development: Develop and improve incident response playbooks, standard operating procedures, and other security documentation to enhance the team's efficiency and readiness.
Basic Qualifications
5+ years of experience in a security operations center (SOC), incident response, or a similar cybersecurity role.
Strong understanding of TCP/IP protocols, networking concepts, and security principles.
Experience with a range of security tools, including vulnerability scanners, endpoint protection, and firewalls.
Good understanding of networking, traffic analysis, and network security technologies.
Proficiency in log analysis across various platforms (Windows, Linux, network devices).
Solid analytical and problem‑solving skills with the ability to correlate data from multiple sources.
Excellent communication and interpersonal skills.
Ability to participate in an on‑call rotation to provide 24/7 support for critical systems.
Alignment with Clark Standards of Excellence: Self‑Motivated, Results Oriented, Adaptable, Team Player, Accountable, Ethical, Innovative, Resilient, Builds Relationships, Builds People / Teams & Followership, Sets Direction & Executes.
Preferred Qualifications
Knowledge of cloud security principles and platforms (AWS, Azure, or GCP).
Experience in a large, enterprise‑level environment.
Familiarity with industry security frameworks (e.g., NIST, ISO 27001).
Security Clearance preferred, not required.
Physical and Work Environment Requirements
The work environment includes a professional office setting and occasional visits to active construction sites. The role requires prolonged periods of focused computer work, effective communication, and the ability to lift and move objects up to 25 pounds in some circumstances.
Culture and Expectations
This is a demanding, high‑performance environment. Candidates should be energized by challenge and ready to work extended hours during critical project phases. You are expected to monitor and respond to communications as required during business needs.
A Drug‑Free Workplace
Clark promotes a drug free workplace. A pre‑employment drug “fitness for duty” screening is required, and the company conducts random quarterly drug “fitness for duty” tests.
#J-18808-Ljbffr