Junior Network Security Operations Center (NSOC) Analyst with Security Clearance
Quick Overview
Job Description
TIAG is now hiring a Junior Network Security Operations Center (NSOC) Analyst to join our team in support of the Office of Naval Research (ONR) in Arlington, VA. Candidates must possess an active Secret Clearance or interim Secret Clearance and meet DoD IAWF IAT Level II qualifications to be considered. This is a 100% onsite position in Arlington, VA. The Junior NSOC Analyst will support ONR's Network Security Operations Center (NSOC) and work closely with senior NSOC personnel, the Information Assurance (IA)/Cybersecurity/Computer Network Defense (CND) Team, and IT Operations.
The Analyst will assist with security monitoring, Security Information and Event Management (SIEM), incident identification and response, vulnerability management, network security operations, and cybersecurity compliance activities.
Responsibilities
- Monitors security events, alerts, and network activity using SIEM and cybersecurity monitoring tools.
- Assists with analyzing and triaging security alerts to identify potential threats, vulnerabilities, and anomalous activity.
- Supports threat reconnaissance and threat monitoring activities using available cybersecurity tools and information sources.
- Uses security tools and technologies such as Trellix ESM/SIEM, Trellix ePO/HBSS, Splunk, Microsoft Defender for Endpoint (MDE), SolarWinds, and Tenable/ACAS/Nessus.
- Assists senior analysts with investigating SIEM events and executing established Incident Response and Incident Handling procedures.
- Generates, monitors, documents, and tracks cybersecurity incidents through resolution. Escalates significant or suspicious cybersecurity events to senior NSOC analysts and appropriate Government personnel.
- Assists with reviewing Indicators of Compromise (IOCs), threat intelligence, and MITRE ATT&CK information to identify potential threats within the ONR environment.
- Supports the collection, correlation, and analysis of security logs from network devices, endpoints, servers, and enterprise applications.
- Assists the IA team with validating system logging, log retention, and audit trail requirements in accordance with NIST and DoD requirements.
- Supports continual assessment of network device configurations and assists with identifying unauthorized or rogue devices.
- Assists with reviewing and validating implementation of applicable DISA Security Technical Implementation Guide (STIG) requirements.
- Supports vulnerability management activities, including reviewing vulnerability scan results and coordinating remediation with technical teams.
- Creates and maintains cybersecurity tickets and supporting documentation using ServiceNow, Azure Boards, and other ITSM tools.
- Assists with the development and maintenance of NSOC Standard Operating Procedures (SOPs), incident response documentation, and operational processes.
- Supports the development of security metrics, dashboards, reports, and trend analysis used to assess ONR's cybersecurity posture and NSOC performance.
- Participates in cybersecurity incident response exercises, vulnerability remediation efforts, and other NSOC operational activities.
- Coordinates with NSOC, IA, Network Operations, Systems Engineering, and other technical teams to resolve cybersecurity issues.
- Continues developing technical knowledge of SIEM, Endpoint Detection and Response (EDR), vulnerability management, threat intelligence, and security automation technologies. Qualifications
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Information Systems, or a related technical discipline.
- 1-3 years of experience in cybersecurity, information assurance, security operations, network operations, or a related technical field.
- Basic understanding of cybersecurity concepts, including security monitoring, incident response, vulnerability management, network security, and endpoint security.
- Experience or familiarity with SIEM technologies, such as Trellix ESM/SIEM or Splunk.
- Experience or familiarity with endpoint security and Endpoint Detection and Response (EDR) technologies such as Microsoft Defender for Endpoint (MDE) or Trellix ePO/HBSS.
- Familiarity with vulnerability scanning technologies such as Tenable, ACAS, or Nessus.
- Familiarity with NIST cybersecurity guidance, DISA STIGs, and DoD cybersecurity requirements.
- Experience or familiarity with ticketing and work management platforms such as ServiceNow or Azure Boards.
- Strong analytical, troubleshooting, documentation, and communication skills.
- Ability to work collaboratively with cybersecurity, infrastructure, network, and systems engineering teams. IAT Level II certification (Security+ CE or equivalent) and required Operating System (OS)/Computing Environment (CE) certification. Active Secret Clearance or interim Secret Clearance.
Preferred Qualifications Experience supporting a Security Operations Center (SOC), Network Security Operations Center (NSOC), or DoD cybersecurity environment.
- Familiarity with MITRE ATT&CK, Indicators of Compromise (IOCs), threat intelligence, and security event correlation.
- Exposure to Security Orchestration, Automation, and Response (SOAR) technologies.
- Understanding of TCP/IP, firewalls, IDS/IPS, Access Control Lists (ACLs), endpoint security, and enterprise network architecture.
- Familiarity with DoD Risk Management Framework (RMF) and cybersecurity compliance activities.
- CompTIA Sec+, Computing Environment Certification
- Secret security clearance TIAG is an equal opportunity employer and federal contractor or subcontractor.
Consequently, the parties agree that, as applicable, they will abide by the requirements of 41 CFR 60-1.4(a), 41 CFR 60-300.5(a), and 41 CFR 60-741.5(a) and employment decisions shall be based solely on merit and without regard disability, or protected veteran status, or any other characteristic protected by local, state, or federal laws, rules, or regulations. TIAG takes proactive steps to employ and advance in employment qualified individuals without regard to disability or protected veteran status.
The parties also agree that, as applicable, they will abide by the requirements and may be subject and required to take action pursuant to the following laws and accompanying regulations: The Vietnam Era Veterans Readjustment Assistance Act of 1974, as amended (and its implementing regulations at 41 C.F.R. 60-300); Section 503 of the Rehabilitation Act of 1973, as amended (and its implementing regulations at 41 C.F.R 60-741); and Executive Order 13496 (and its implementing regulations at 29 C.F.R. part 471, Appendix A to Subpart A).
Similar jobs
- EL
Senior Incident Response Engineer
NewElsevier
Pennsylvania🇺🇸$89.0k - $142.2k/yrHybrid9 minutes agoTechnology - LE
Cyber Security Engineer-Technical Lead
NewLeidos
Bethesda, Maryland🇺🇸$154.1k - $278.5k/yrHybrid9 minutes agoOracleAWSSonarQube+7Technology - BB
Senior Threat Hunter
NewBrown Brothers Harriman
Philadelphia, Pennsylvania🇺🇸$110k - $160k/yrHybrid9 minutes agoSwiftSplunkPenetration Testing+2Technology - SP
Sr. Security Engineer - GRC Frameworks & AI Governance
NewSpaceXAI
New York🇺🇸$152k - $258k/yrHybrid9 minutes agoGCPAWSEncryption+5Technology - SP
Sr. Security Engineer - GRC Frameworks & AI Governance
NewSpaceXAI
Washington, Washington DC🇺🇸$152k - $258k/yrHybrid9 minutes agoGCPAWSEncryption+5Technology - CG
Sr. Information Security Engineer (Systems Engineer)
NewCboe Global Markets
Kansas City, Missouri🇺🇸$119k - $154k/yrOn-site9 minutes agoActive DirectoryTechnology