Logo
ClearanceJobs

Information Security Analyst - I

ClearanceJobs, Ashburn, Virginia, United States, 22011

Save Job

Information Security Analyst - I / Cybersecurity Analyst

Job Title: Cyber Security Analyst Location: Ashburn, VA (Hybrid) Duration: Long-term contract Job Description: Security Analysts play a crucial role in the Security Operations Center. Tier-2 Security Analysts, with a background in enterprise security, handle a wide range of tasks across different platforms. Their responsibilities include day-to-day tasks, short-notice ad-hoc work, and independent task completion with minimal supervision. Key duties of Tier-2 Senior Security Analysts include: Providing near real-time security monitoring in a 24x7 environment by monitoring security infrastructure and alarm devices for Indicators of Compromise (IoCs) using a proprietary SIEM and cybersecurity tools. Performing near real-time security monitoring of alerts and escalating critical alerts according to the service level agreement. Detecting security incidents and analyzing threats, especially complex or escalated events. Responding to customer Requests For Information, including using Linux command line skills to query raw logs for IoCs, answering questions about the MSS infrastructure, and explaining features of the SIEM, including the correlation engine. Developing internal and external documentation, such as detailed procedures, playbooks, and runbooks, while reviewing operational metrics reports. Perform level 2 assessment of incoming alerts, assessing alert priorities, determining severity in the customer environment, and coordinating with tier III for critical priority incidents, if necessary. Perform incident response activities utilizing customer SIEM and cybersecurity toolkits. Assist with quality control during onboarding of new customers to verify validity of Use Cases and generated alerts. Utilize the SOC Knowledge Base and provide input on revisions as needed. Required Education/Certifications: Bachelors or higher degree in Computer Science, Information Security, or similar discipline Industry certification(s) such as CISSP, SANS GIAC or GCIH, CompTIA Security+, CCNP-Security, Palo Alto CNSE, Fortinet NSE, CySA+, GCED, CEH, or comparable security-related certification Logistics: Shift work required, including nights and weekends Team members work 5x8 hour shifts per week.