Security Operation Center (SOC) Analyst Lead Job at General Dynamics Information Technology, Washington DC

UGVYSndvQTNOTGpNWFlqUXVNK3d0M2dpbUE9PQ==
  • General Dynamics Information Technology
  • Washington DC

Job Description

Public Trust: None
Requisition Type: Regular
Your Impact

Own your opportunity to work alongside federal civilian agencies. Make an impact by providing services that help the government ensure the well being of U.S. citizens.

Job Description

SOC Analyst Lead:

Lead SOC Analyst’s primary function is to research relevant threat intelligence from open source, unclassified, and classified resources, providing analysis through research and correlating actionable information against log results. This position is responsible for leading the team to provide  24×7×365 real-time cyber-security real-time monitoring of government systems, apply intelligence, aggregate, prioritize, target, communicate and escalate monitoring and analysis of potential threat activity targeting the enterprise. Additionally, this candidate must be familiar with intrusion detection systems, intrusion analysis, security information event management platforms, endpoint threat detection tools, and security operations ticket management.

Performance shall include:

• Must have strong analytical and technical skills in computer network defense operations, ability to lead efforts in Incident Handling (Detection, Analysis, Triage), Hunting (anomalous pattern detection and content management) and Malware Analysis

• Experience and ability to with analyzing information technology security events to discern events that qualify as legitimate security incidents as opposed to non-incidents. This includes security event triage, incident investigation, implementing countermeasures, and conducting incident response.

• Must be knowledgeable and have hands-on experience with a Security Information and Event Monitoring (SIEM) platforms and/or log management systems that perform log collection, analysis, correlation, and alerting

• Strong logical/critical thinking abilities, especially analyzing security events (windows event logs, network traffic, IDS events for malicious intent)

• Excellent organizational and attention to details in tracking activities within various Security Operation workflows

• A working knowledge of the various operating systems (e.g. Windows, OS X, Linux, etc.) commonly deployed in enterprise networks, a conceptual understanding of Windows Active Directory is also required, and a working knowledge of network communications and routing protocols (e.g. TCP, UDP, ICMP, BGP, MPLS, etc.) and common internet applications and standards (e.g. SMTP, DNS, DHCP, SQL, etc.)

• Experience with the identification and implementation of counter-measures or mitigating controls for deployment and implementation in the enterprise network environment

• Experience with one or more of the following technologies Network Threat Hunting, Big Data Analytics, Endpoint Threat Detection and Response, SIEM, workflow and ticketing, and Intrusion Detection System

• Knowledge of NIST SP 800-53 Rev. 5, 800-37, 800-171, FedRAMP, FISMA, and NIST AI RMF standards.

Experience:

• 5-8 years related experience

• Prior performance in roles such as ISSO, ISSM, or SOC analyst

Certifications:

• CISSP preferred  

Security Clearance:

• Current Secret, Top Secret,  DOE L, or DOE Q clearance required

• US citizenship required

GDIT IS YOUR PLACE:

401K with company match

Comprehensive health and wellness packages

Internal mobility team dedicated to helping you own your career

Professional growth opportunities including paid education and certifications

Cutting-edge technology you can learn from

Rest and recharge with paid vacation and holidays

Work Requirements

Years of Experience

5 + years of related experience

* may vary based on technical training, certification(s), or degree

Certification

Certified Information Systems Security Professional (CISSP) | International Information System Security Certification Consortium (ISC2) - International Information System Security Certification Consortium (ISC2)

Travel Required

Less than 10%

Citizenship

U.S. Citizenship Required

Job Tags

Similar Jobs

American Income Life

Virtual Coverage Agent / Assistant - Entry Level Job at American Income Life

 ...exceptional service. Key Responsibilities Client Engagement: Assist new and existing clients with product inquiries, policy options...  ...from the comfort of your home, apply today to become a Virtual Insurance Specialist! Well support your growth every step of... 

Journey Beyond

Salesforce Platform Administrator | Journey Beyond Job at Journey Beyond

 ...connecting guests to the land, and to each other. Headquarters in Adelaide, Journey Beyonds impressive tourism brands include iconic trains The Ghan, Indian Pacific, Great Southern and The Overland; premium small-group outback operator Outback Spirit; the historic... 

Princess Cruises

Intern, Paid Media Job at Princess Cruises

 ...activation of media campaigns across digital and traditional channels, including display, paid search, paid social, video, TV, and radio. This role ensures that creative assets and media placements align with strategic plans and are delivered accurately. Here is a summary... 

SunEnergy1

Class C Lineman Job at SunEnergy1

 ...POSITION SUMMARY : Assists other line personnel in connection with construction, maintenance, and repair of the electric system. A class C lineman must already understand and be able to perform the required functions of an apprentice lineman. Work involves moderate... 

Heartland Women's Health

Phlebotomist Job at Heartland Women's Health

 ...warm and welcoming environment. Our team of Doctors, Certified Nurse Midwives and Nurse Practitioners offer a full range of...  ...their families. Learn more at: ( Please Note: COVID-19 and Flu vaccination or an approved request for accommodation is required as a condition...