Senior Cyber Security Threat Analyst

Hatch IT
Reston, VA, US
Full-time

About the role :

Neovera is seeking a seasoned Senior Cyber Security Threat Analyst to perform threat intelligence client services, research, security automation, and mentoring of SOC Analysts in our MSSP business.

The senior level threat analyst will report directly to the Senior Vice President of Cyber Security Services.

The senior threat analyst will triage and analyze security alerts and events from Neovera’s MSSP platform with other SOC Analysts and engineers.

You will be responsible for analyzing, identifying and eliminating customer security alerts. You will require good analytical skills, good communication skills (written and verbal) and highly technical skills.

In addition, we are looking for the senior level threat analyst to work on automating our SecOps processes and procedures.

Examples of ongoing automation tasks you will perform are listed below.

  • Writing security alert rules for our SIEM and logging tools
  • Building Integration with our SIEM tools, 3rd security tools, and service management tools to streamline the incident to resolution process and remediation processes
  • Build Sentinel Workbooks, Playbooks & Logic Apps

The senior threat analyst will also perform Neovera global threat research and coordination with other threat exchange labs around the globe to continue to build the threat intelligence, correlation directives, into our Cyber Security solution.

About the Company :

At Neovera we use a combination of commercial and open-source tools to solve our client’s problems. Are you looking to work with other highly technical engineers, analysts, and architects without the red tape and be technically challenged?

Then you have found the right place at Neovera.

Benefits :

The overall well-being of our employees and their families is important, and Neovera provides many valuable benefits, programs and tools to help manage the various phases, developments, and priorities in your life which include :

  • Medical and dental insurance coverage
  • FSA- health and dependent care expenses
  • Telecommuting and work-life balance
  • Life insurance
  • Short and long-term disability insurance
  • Generous paid time off (vacation, sick, floating holidays)
  • 401(k) retirement plan
  • Competitive base salary

Essential Duties and Responsibilities :

  • Lead and manage the cyber security threat analysts
  • Provide first and second level technical resolution for security alerts and SOC service requests in coordination with SOC Analysts
  • Engage with clients around our SOC services and Cyber Security Monitoring solution
  • Continuously look to streamline and reduce costs via improving processes and security automation
  • Mentor SOC Analyst team members
  • Continuous Global Threat research to add intelligence and correlation directives to our Cyber Security SIEM solution
  • Work with our Cyber Security partners on integrating their feeds / logs into our systems, especially our partner threat intelligence exchange
  • Log and record all alerts with integrated ticketing
  • Identify weaknesses in customer infrastructures and suggest improvements
  • Technical and analytical skills to handle security incidents and threats
  • Resolve or escalate incidents
  • Provide timely and reliable service to customers
  • Inform himself about the latest vulnerabilities, exploits and other threat information
  • Operation of the Security Monitoring and ticketing systems platform
  • Integrate customer environments
  • Mentor and train customers using and operating the client portal portions of the security Monitoring and ticketing system platform
  • Document solutions, process, or procedures and present in written document, verbally on the phone, or in person

Qualifications :

  • 10-15 years of information security experience
  • 5+ years of experience doing IT Security automation with scripting and / or programming languages
  • 24x7 SOC experience working with or for a MSSP is highly desirable
  • Security experience with Microsoft Azure environments and security tools such as Microsoft Sentinel, Security Center, Defender
  • Experience with Microsoft Azure automation tools such as Sentinel Playbooks, logic apps
  • Experience with Microsoft Kusto Query Language (KQL)
  • Experience with using AT&T USM Central & Anywhere (Formerly Alienvault)
  • Programming / shell scripting experience highly desirable (Powershell, Python, Java, shell scripts, etc.)
  • Experience as a Linux and / or Windows System Administrator a plus
  • Experience as a Network Administrator a plus
  • Knowledge of configuring and implementing technical security solutions (Firewalls, NIDS, HIDS, OSSEC, SIEM, Antivirus, Antispam, etc.)
  • Curiosity and strong desire to constantly learn
  • Bachelor’s degree in Computer Science, Cyber Security, or equivalent demonstrated experience and knowledge.
  • Solid understanding of application, operating system, and networking security
  • Requirement for on-call work and working in a 24x7x365 environment
  • TCP / IP protocols such as SMTP, HTTP, POP3, IMAP
  • Command line interfaces
  • Linux user and administrator experience a plus
  • Keen ability to troubleshoot technical and security problems

J-18808-Ljbffr

6 days ago
Related jobs
Promoted
Arcfield
Chantilly, Virginia

Arcfield was purpose-built to protect the nation and its allies through innovations in digital transformation, space mission engineering and launch assurance, miniaturized sensors and satellites, advanced modeling and simulation, cybersecurity, and conventional and hypersonic missile support. Headqu...

Promoted
ANSER
Arlington, Virginia

This position is for a Senior Analyst and Writer to support the Washington Headquarters Service (WHS) Facilities Services Directorate (FSD). ANSER enhances national and homeland security by strengthening public institutions. Independently author draft decision and directive memoranda for senior lead...

Promoted
Patricio Enterprises
Arlington, Virginia

Seeking a Senior CBRN Defense Requirements Analyst (Support to Command and Control (CSC2). This CBRND Analyst (senior-level) will support the JRO-CBRND as  the UNDERSTAND Capability Area Integrator. The senior CBRN Analyst additionally assists the Chief, CBRN Defense Equipment Requirements Branch to...

Promoted
ANSER
Arlington, Virginia

This position is for a Senior Policy Management Analyst and Writer to support the Washington Headquarters Service (WHS) Immediate Office (IO). ANSER enhances national and homeland security by strengthening public institutions. This position requires knowledge of responsibilities, functions, and oper...

Promoted
BAE Systems
Herndon, Virginia

Experience with program security and information systems security best practices - familiarity with security accreditation process. We are actively seeking a Cyber Security System Engineer (ISSE/ISSO) with a minimum of 6 years' experience. BAE Systems plc, an international defense, aerospace and sec...

Promoted
CareFirst BlueCross BlueShield
Herndon, Virginia
Remote

ESSENTIAL FUNCTIO Security Analyst, Security, Information Technology, Audit Manager, Systems Control, Cybersecurity, Healthcare. To advocate for and execute the processes and practices of the Cybersecurity team while supporting business and customer needs. ...

Center for Internet Security
Arlington, Virginia

The primary purpose of this position is to be a subject matter expert in network detection and threat analysis while working as a member of the CIS Security Operations Center (SOC) to help respond to cyber incidents impacting State, Local, Tribal, and Territorial (SLTT) governments in conjunction wi...

ST2 ManTech Advanced Systems Intl
McLean, Virginia

Have detailed knowledge of Intelligence Community Directives (ICDs), Agency Cyber Security Policy, and Agency Guidance related to cybersecurity. Investigate and analysis of all data sources, to include Internet, Intelligence Community reporting, security events, firewall logs, forensic hard-drive im...

Leidos
Ashburn, Virginia

Responsible for maintaining a comprehensive understanding of the cyber threat landscape, including identifying and analyzing cyber threats actors and/or activities to enhance cybersecurity posture of an the organization’s IT operating environment. Bring a comprehensive understanding, analyzing and t...

Marathon TS
Arlington, Virginia

Marathon TS is hiring a Senior Financial Analyst in Arlington, VA to support our client's contract. Use of the following systems and operations: Microsoft Excel, Microsoft Project, Microsoft Word, Microsoft PowerPoint, Microsoft Access, Computer Optimized Batch Reconciliation Application (COBRA), St...