drjobs Cybersecurity Analyst Watch Floor Operations

Cybersecurity Analyst Watch Floor Operations

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Huntsville, AL - USA

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

Responsibilities & Qualifications

TEAM SUMMARY

Supports the cybersecurity watch floor playing a crucial role in a government agencys cybersecurity defense strategy. Operating around the clock 24/7 365 days a year this dynamic team ensures the timely detection and resolution of potential security incidents thereby minimizing the impact of cyber threats on the organization. Comprising of skilled security professionals the watch floor team is responsible for actively detecting monitoring preventing and analyzing realtime cybersecurity information events and threats. Serving as the operational hub the watch floor plays a critical role in safeguarding the confidentiality integrity and availability of the organizations information assets.

ACTIVITIES & RESPONSIBILITIES

  • Monitor cybersecurity dashboards and alerts on a 24/7/365 watch floor
  • Analyze security events to identify suspicious behavior or potential incidents
  • Escalate and coordinate response efforts for active threats
  • Maintain situational awareness of current threats and vulnerabilities
  • Assist in tuning and improving alerting thresholds in SIEM tools
  • Create and maintain standard operating procedures (SOPs)
  • Participate in cybersecurity drills and incident response exercises
  • Collaborate with intelligence and threat analysis teams to enhance detection capabilities
  • Document incidents and contribute to afteraction reviews and reports
  • Provide input on improving cybersecurity architecture and tooling

SKILLS

  • Cybersecurity & Threat Intelligence
    • Realtime threat monitoring and incident detection
    • Security information and event management (SIEM) expertise (especially Splunk Enterprise Security)
    • Knowledge of threat actors tactics techniques and procedures (TTPs)
    • Familiarity with threat intelligence feeds and correlation
  • Security Operations & Incident Response
    • Incident triage and escalation procedures
    • Conducting forensic analysis and evidence collection
    • Threat hunting and anomaly detection
    • Root cause analysis and postincident reporting
  • Technical & Analytical Proficiency
    • Network traffic analysis and packet capture interpretation
    • Endpoint detection and response (EDR) tools and techniques
    • Log analysis (system application network firewall)
    • Knowledge of intrusion detection/prevention systems (IDS/IPS)
  • Scripting or automation with Python PowerShell or Bash (bonus)
  • Security Frameworks & Compliance Familiarity with frameworks such as NIST MITRE ATT&CK or ISO 27001
  • Understanding of government cybersecurity regulations and FISMA compliance
  • Communication & Collaboration
    • Clear written and verbal communication for incident reports and briefings
    • Coordinating with crossfunctional teams and stakeholders
    • Ability to communicate technical risks and impact to nontechnical leadership

REQUIRED QUALIFICATIONS

  • Bachelors degree preferably in an ITrelated field
  • 10 years of experience in IT with a minimum of 4 years in Cybersecurity
  • Active TS Clearance
  • Experience with Splunk Enterprise Security

PREFERRED QUALIFICATIONS & COMPETENCIES

  • Experience with Microsoft Sentinel
  • Related certifications such as GIAC IAC Continuous Monitoring Certification (GMON) Certified Incident Handler (GCIH) Certified Forensic Analyst (GCFA) Certified Intrusion Analyst (GCIA) Network Forensic Analyst (GNFA) Cloud Threat Detection (GCTD) and/or Cloud Forensics Responder (GCFR)

Overview

We are seeking an experienced Cybersecurity Analyst/Watch Floor Operations in support of a government customer to join our team. The Program Manager will be responsible for ensuring the successful of multiple IT initiatives ensuring alignment with customer objectives and managing project scope schedule budget and risk. This role requires strong leadership communication and problemsolving skills to drive efficiency and deliver results.

TekSynap is a fastgrowing hightech company that understands both the pace of technology today and the need to have a comprehensive well planned information management environment. Technology moving at the speed of thought embodies these principles the need to nimbly utilize the best that information technology offers to meet the business needs of our Federal Government customers.

We offer our fulltime employees a competitive benefits package to include health dental vision 401K life insurance shortterm and longterm disability plans vacation time and holidays.

Visit us at .

Apply now to explore jobs with us!

The safety and health of our employees is of the utmost importance. Employees are required to comply with any contractually mandated Federal COVID19 requirements. More information can be found here.

Additional Job Information

WORK ENVIRONMENT AND PHYSICAL DEMANDS

The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of the job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions.

PHYSICAL DEMANDS

The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

WORK AUTHORIZATION/SECURITY CLEARANCE

OTHER DUTIES

Please note this job description is not designed to cover or contain a comprehensive listing of activities duties or responsibilities that are required of the employee for this job. Duties responsibilities and activities may change at any time with or without notice.

EQUAL EMPLOYMENT OPPORTUNITY

In order to provide equal employment and advancement opportunities to all individuals employment decisions will be based on merit qualifications and abilities. TekSynap does not discriminate against any person because of race color creed religion sex national origin disability age genetic information or any other characteristic protected by law (referred to as protected status). This nondiscrimination policy extends to all terms conditions and privileges of employment as well as the use of all company facilities participation in all companysponsored activities and all employment actions such as promotions compensation benefits and termination of employment.


Required Experience:

IC

Employment Type

Full-Time

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.