Search jobs > Durham, NC > Part-time > Operation analyst

Security Operations Center (SOC) Analyst

Procession Systems
Durham, North Carolina, USA
$85K a year
Part-time

Job Description

OVERVIEW :

We are seeking a SOC Resolution Analyst for the Security Operations Center (SOC). The Division of Security Operations (DSO) SOC is responsible for investigating all anomalous traffic across the agency and remediating malicious traffic, unauthorized software, network vulnerabilities, compliance issues, malware forensics and Security Policy violations.

Currently, the SOC monitors and detects anomalous activity and resolves findings. The SOC also receives security tickets on network vulnerabilities and compliance issues from Enterprise Testing & Web App Security Branch.

GENERAL DUTIES :

  • Respond to CAPRS / ServiceNow tickets, emails, and verbal reports of security vulnerabilities, insider threats, malware forensics and compliance issues.
  • Responsible for remediating those security vulnerabilities, insider threat, malware forensics and compliance issues.
  • Validate alerts from a variety of monitoring technologies.
  • Respond to and act on tickets opened by lower level security engineers or SOC analysts in Resilient / CAPRS.
  • Utilize various malware removal and remediation tools to investigate, contain and prevent the spread of malware to other agency devices.
  • Assist in the development of tools / scripts in order to respond more effectively to incidents.
  • Develop and document remediation strategies.
  • Coordinate with internal Office of Systems Operations and Hardware Engineering (OSOHE) and SITE LAN Coordinators on remediation of devices.
  • Determine if other infrastructure is also infected and correct.
  • Analyze RAM captures for security vulnerabilities and document findings in Resilient / CAPRS.
  • Perform a deep dive of the incident and forensically investigate where and when it first came from in accordance with the SOC Standard Operating Procedures and task manager direction.
  • Analyze data in ticketing systems for all network assets critical vulnerabilities and misconfigurations on the agency’s network.
  • Identify, troubleshoot, and resolve common patch deployment issues on all agency’s network assets.
  • Inform device administrators upon detection and at 30, 60 and 90 days for the need to take corrective action via phone, email and ticketing systems, and other communication methods.
  • Follow up on requests for corrective action via all relevant communication methods, and track progress and status using MS Excel spreadsheets, SharePoint / Confluence, Resilient ticketing, and other means, as needs arise.
  • Coordinate with other component’s technicians as needed to troubleshoot / correct vulnerabilities.
  • Provide technical support, guidance, and recommendations to system owners and SOC management.

Required Skills

REQUIRED QUALIFICATIONS :

  • Active CompTIA A+ and one of the following : CompTIA CySA+ or CompTIA Network+ or CompTIA Security+
  • 4+ years of direct network management experience.
  • Possess a working knowledge of Security Operations and the role the systems play in detecting intrusion attempts.
  • Experience responding to computer security incidents that requires comprehension of, and experience with, most viruses and worms that may infiltrate into and propagate throughout a large network.
  • Experience with Microsoft Windows Operating Systems (XP and higher) both desktop and server, as well as experience with Solaris (9 and higher), Unix and Linux, and HP-UX.
  • Strong subject matter experience in network characteristics analysis, design of network topologies and site configurations, installation, transition, and cutover of network components.
  • Demonstrate knowledge and experience configuring, and operating Network Management solutions.
  • Strong written and oral presentation skills, and the ability to articulate English in a clear and concise manner.
  • Must be able to obtain a client-sponsored Public Trust level of adjudication.

CLEARANCE :

US Citizenship required

Desired Skills

DESIRED QUALIFICATIONS :

Additional education considered includes bachelor or a master’s degree in computer science, cybersecurity, or information technology, or advanced certifications such as Certified Ethical Hacker (CEH) or Certified Information System Security Professional (CISSP).

About Procession Systems

About us

30+ days ago
Related jobs
Procession Systems
Durham, North Carolina

We are seeking a SOC Resolution Analyst for the Security Operations Center (SOC). The Division of Security Operations (DSO) SOC is responsible for investigating all anomalous traffic across the agency and remediating malicious traffic, unauthorized software, network vulnerabilities, compliance issue...

Promoted
Oracle
Raleigh, North Carolina

Who are we?We are a world class team of high calibre technical analysts operating critical security support operations. The Software Assurance organisation has the mission to make application security and software assurance, at scale, a reality. Work You’ll Do:Monitor incoming event queues using sec...

wolfspeed
Durham, North Carolina

The Global Security Operations Center (GSOC) Supervisor role is a member of Wolfspeed’s Global Protection team. Minimum of 5 years of experience working in the security industry, preferably in a physical security SOC/GSOC environment. Gather, maintain, and analyze data to identify potential threats/...

VF Corporation
North Carolina, US

Represent the Security Operations team in various SOC, Incident Response, and Cyber Security projects. Lead, Cyber Security Operations Center (VF Services, LLC, Greensboro, NC):. Review research performed by SOC Analysts related to security events and threat intelligence data. Provide leadership and...

Duke Health
Durham, North Carolina

The Service Operations Center (SOC) Analyst is responsible for receiving, prioritizing, documenting and actively resolving end user help requests in support of using information technologies. The SOC Analyst will provide IT technical and application support to the Duke Health community and is respon...

Procession Systems
Durham, North Carolina

We are seeking an Analyst for the Security Operations Center (SOC). Provide written reports to the SOC Manager detailing all security events related to network security matters and submit these reports according to the procedures and reporting requirements established in the SOP’s and guidelines. Se...

Promoted
Applied Research Associates (ARA)
Raleigh, North Carolina

IT Professional to serve as an Information Systems Security Officer (ISSO) for the Integrated Missions System (IMS) Sector on-site in our Raleigh, NC office. Performing vulnerability assessments using Tenable Nessus, Defense Information Systems Agency (DISA) Security Technical Implementation Guide (...

Promoted
FSA Federal
Raleigh, North Carolina

FSA Federal (FSA) is focused on delivering unsurpassed services in support of law enforcement and homeland security. We currently have a vacancy for a Records Examiner/Analyst. A Records Examiner/Analyst must meet the following qualifications:. ...

Promoted
restor3d
Durham, North Carolina

The Information Security Analyst will be responsible for developing and managing information integrity, confidentiality, and availability through the integration of security policies, security awareness, access controls, environmental controls, and the implementation of security-related technology. ...

Promoted
Pierce Technology Corp
Raleigh, North Carolina

Collaborate internally to expand our ongoing security awareness program that enhances our knowledge and understanding of threats and appropriate security protocols. Candidate must have at least 4 years of practical experience in Information Security, with relevant technology and infrastructure exper...