SOC Analyst Job at ManTech, Huntsville, AL

QW9vRkhkMy9JTXRLVHRzWWs3ck5QYlEwenc9PQ==
  • ManTech
  • Huntsville, AL

Job Description

ManTech seeks a **SOC Analyst** to support a 24x7x365 SOC. This position is located on customer site in **Huntsville, AL** . There are three (3) shifts available: Morning, Afternoon/Evening and Night with rotation to support to weekends/holidays. Your duties include analyzing relevant cyber security event data and other data sources for attack indicators and potential security breaches; produce reports, assist in coordination during incidents; and coordinate with the engineering team to ensure all security monitoring systems are on-line, up to date, and fully operational. **Responsibilities for this position include but are not limited to:**

  • Monitoring intrusion detection and prevention systems and other security event data sources daily.
  • Determining if security events monitored should be escalated to incidents and follow all applicable incident response and reporting processes and procedures.
  • Correlating data from SIEM / Splunk and Endpoint Detection and Response (EDR) systems with data from other sources such as firewall, web server, and Syslogs.
  • Tuning and filtering of events and information, creating custom views and content with the assistance of the Engineering and DevOps team.
  • Conducting hunting, monitoring, analyzing, and responding to threats, contribute to Computer Network Defense, and create solutions to augment Defensive Cyber Operations.
  • Coordinating with the DevOps and engineering team to ensure production SOC systems are operational and maintained.
  • Reviewing data with the Cyber Threat Intelligence Team, Incident Response Team and other appropriate groups to determine the risk and threat of an event.
  • Documenting procedures for handling each security event detected.
  • Creating custom queries and develop new use cases to better correlate security event information.
  • Identifying misuse, malware, or unauthorized activity on monitored networks and infrastructure.
  • Maintaining proficiency and skills through relevant training, on-the-job training, and self-study.
  • Developing and/or maintaining CSIRT Standard Operating Procedures (SOPs) and/or Playbooks, which define repeatable processes for activities such as analysis, reporting, and incident response.
**Minimum Qualifications:**
  • 5+ years of IT experience with 2+ years as a SOC analyst or other cyber related position.
  • Experience with using Splunk SIEM.
  • Experience with incident detection and response, security analysis and support for incident response and post incident analysis.
**Preferred Qualifications:**
  • Bachelor’s degree in computer science or related field.
  • 1+ year experience monitoring cloud environments
  • Experience using Microsoft Sentinel.
Prefer 1 or more of the following certifications:
  • GIAC Continuous Monitoring Certification (GMON)
  • GIAC Certified Incident Handler (GCIH)
  • GIAC Certified Forensic Analyst (GCFA)
  • GIAC Certified Intrusion Analyst (GCIA)
  • GIAC Network Forensic Analyst (GNFA)
  • GIAC Cloud Forensics Responder (GCFR)
  • GIAC Cloud Threat Detection (GCTD)
**Clearance Requirement:** + Must have an Active Top Secret with the ability to obtain SCI eligibility prior to starting this position. **Physical Requirements:**
  • Must be able to remain in a stationary position 50%
  • Constantly operates a computer and other office productivity machinery, such as a calculator, copy machine and computer printer
  • The person in this position frequently communicates with co-workers, management and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations.
ManTech International Corporation, as well as its subsidiaries proactively fulfills its role as an equal opportunity employer. We do not discriminate against any employee or applicant for employment. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. If you are a qualified individual with a disability and require a reasonable accommodation to apply for a position with ManTech through its online applicant system, please email us at careers@mantech.com and provide your name and contact information. #J-18808-Ljbffr ManTech

Job Tags

Holiday work, Shift work, Night shift, Weekend work, Day shift, Afternoon shift,

Similar Jobs

UCHealth

Diabetes Educator Job at UCHealth

 ...Anschutz Outpt Pavilion - Aurora, CO Department: Endocrine Diabetes FTE: Full Time, 1.0, 0.00 hours per pay period (2 weeks)...  ...relevant experience Summary: Provides diabetes self-management education and training (DSME/T), using assessment, goal setting,... 

iMedX, a Rapid Care Group company

Pathology Medical Transcriptionist Job at iMedX, a Rapid Care Group company

iMedX, a Rapid Care Group company, has an opening for a Pathology Medical Language Specialist using PowerPath, Epic Beaker, Winscribe & eScription One online pathology systems. This is a remote (work from home) position.Position: Medical Language SpecialistAccount/Client... 

MaidPro

Pro House Cleaner Job at MaidPro

 ...MaidPro - JobID: 100-158886154 [Housekeeper / Room Attendant] As a Cleaner at MaidPro, you'll: Perform home cleaning/housekeeping duties; Be making the lives of the customers easier; Drive your own vehicle to and from cleans; Be comfortable working in homes that have pets... 

Ursus Inc

Jira Administrator Job at Ursus Inc

Jira AdministratorJacksonville, FLContract to HireOnsite positionThe Jira Administrator will be responsible for the configuration, customization, and administration of Jira. As the primary point of contact for all Jira-related matters, the successful candidate will... 

Jefferson Healthcare

Part Time ED Tech Job at Jefferson Healthcare

 ...Job Description Job Description ED Tech Emergency Department Announcement #295727 Are you a skilled ED Technician? If so, join our Emergency Department team of professionals at Jefferson Healthcare! Under the guidance of an RN or physician, you will play a...