drjobs Digital Forensic SOC Analyst

Digital Forensic SOC Analyst

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Crownsville, MD - USA

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

  • Report to Director of Security Operations or his/her designee
  • Provide SOC Analyst Tier 3 escalation support
  • Plan initiate and conduct investigations for cybersecurity incidents response efforts
  • Perform forensic examinations on compromised systems
  • Understand and use forensic tools and techniques for cybersecurity incidents
  • Create forensic root cause and scope of impact analysis reports
  • Contribute to technical briefings on the details of forensics exams and report
  • Provide support in conducting malware analysis of attacker tools
  • Stay current on incident response and digital forensics skills best practices and tools
  • Train SOC analysts on usage of SIEM tools (Splunk) and basic event analysis
  • Develop rules and tune SIEM and related tools to streamline the event analysis done by the SOC
  • Assist developing new processes and procedures for SOC monitoring
  • Monitor networks for threats from external and internal sources
  • Analyze network traffic of compromised systems and networks
  • Correlate actionable security events from various sources
  • Review threat data and develop custom detection signatures
  • Gather and analyze threat intelligence data and conduct threat hunting
  • Understand cybersecurity attacks and tactics techniques and procedures (TTPs) associated with advanced threats
  • Communicate clearly with Government counterparts and SOC customers
  • Development and implementation and operational and technical incident response processes procedure guidance and standards
  • Ability to work outside of regular business hours the role may require oncall support after regular business hours or weekends.

Qualifications :

 

  • Bachelors degree from an accredited college or university with a major in Computer Science Information Systems Engineering or a related scientific or technical discipline and 4 years of experience. Associate degree and/or cyber courses/certifications or 5 years of experience in directly related fields may be substituted in lieu of bachelors degree
  • Handson experience with security monitoring and SIEMs tools Splunk Enterprise Security is preferred
  • Demonstrated working knowledge of cyber forensics and incident handling best practice processes procedures standards and techniques
  • Handson experience with forensics image capture tools i.e. FTK Imager and MAGNET ACQUIRE
  • Handson experience with system image/file system/registry forensics tools (i.e. Encase FTK XWays Magnet AXIOM Sleuthkit Access Data Registry Viewer Registry Recon or other)
  • Handson experience with PCAP analysis tools i.e. Wireshark TCP Dump Network Miner Xplico or other
  • Handson experience with memory forensics tools i.e. BlackLight Volatility SANS SIFT Magnet RAM Capture or FireEye Memoryze CrowdStrike Crowd Response
  • Handson experience with Endpoint Detection & Response solutions Tanium Threat Response McAfee or other


Additional Information :

Integres offers competitive salaries bolstered by a comprehensive benefits package which provides safety and security for our employees and their families.  Our generous benefits package includes:

  • Healthcare and Insurance: medical dental vision short and longterm disability protection basic life and AD&D insurance
  • 401(k) Savings Plan
  • Accrued Paid Time Off (PTO)
  • Employee Recognition and Rewards
  • Employee Referral Bonuses

Integres is an equal opportunity affirmativeaction employer.  We encourage Minority/Female/Protected Veteran/Disabled applicants to apply.  Integres LLC proactively fulfills its role as an equal opportunity employer.  We do not discriminate against any employee or applicant for employment because of race color sex religion age sexual orientation gender identity and expression national origin marital status physical or mental disability status as a Disabled Veteran Recently Separated Veteran Active Duty Wartime or Campaign Badge Veteran Armed Forces services Medal or any other characteristic protected by law.

All your information will be kept confidential according to EEO guidelines.


Remote Work :

Yes


Employment Type :

Contract

Employment Type

Remote

Company Industry

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.