Freedom Consulting Group is seeking a motivated career and customer-oriented Cybersecurity Operations Specialist to perform on our Cybersecurity Data Analysis Services team in the Springfield VA area or Saint Louis MO.
The Cybersecurity Operations Specialist shall provide cybersecurity data analysis services which designs develops builds tests configures employs operates integrates sustains and refreshes the Security Information Events Management (SIEM) capability (i.e. Enterprise Audit) long-term analytics platform log aggregation platform and the cyber threat intelligence capability signature development and deployment and reputation management services.
Responsibilities:
- Provide all preventative and corrective maintenance to ensure consistent reliable and secure service availability.
- Maintain system availability and reliability with a threshold of 99.99%
- Detect and ticket degradations (volume/velocity) of all SIEM data flows within 60 minutes of the start of the degradation
- Perform day-to-day maintenance and specific scheduled maintenance activities that result from manufacturers recommended service intervals alerts bulletins available patches and updates according to agency approved change management processes.
- Execute emergency maintenance actions with sufficient urgency to preclude unacceptable outage durations approved by the Government prior to execution and coordinated through and approved by CSOC and ESC government management
- Perform all development engineering testing integration and implementation actions necessary for major vendor revisions
- Retain documentation regarding loss of event logs (e.g. June 5-7th DNS logs were not ingested from SBU and are lost)
- Configure all assets assigned to this service within the Government Furnished Information - Software Tools list in accordance with all Federal DoD IC and NGA laws directives orders polices guidance procedures etc.
- Utilize agency approved ticketing systems to document track assign update and coordinate all engineering integration configuration and maintenance actions
Required Qualifications:
- Active Security Clearance
- DoD 8570.01-M IAT Level II and CSSP Infrastructure Support certifications
- Experience developing and maintaining enterprise audit projects
- SIEM experience with one of the following ArcSight ElasticSearch Splunk Event Broker User Behavioral Analysis (UBA)
- Experience providing support to Cybersecurity Operations Cell (CSOC) in creating alerting rules
- Create SIEM playbooks
- Linux (RHEL) Expert (administration and engineering)
- Proficient in manipulating SIEM filters to better find and analyze potential
- malicious/atypical activity and reduce false positives
- Experience with content development within ArcSight and Kibana to facilitate Cyber Analysts ability to investigate malicious events
- Creation of ArcSight rules based on use cases of malicious events
Whats in It for You
Flexible work environment
A team mentality work with friendly like-minded professionals
Work with innovative cutting edge technologies
Enjoy extremely competitive compensation and benefits
A work-life balance you can count on
Opportunities to grow and advance your career on our dime
The Benefits You Get with Freedom
Amazing benefits including matching 401k fully paid medical and more
Generous paid time off including paid site closure days
Competitive salary offerings
Paid training and tuition reimbursement
Referral bonuses
Fully paid life and disability
Annual logo wear allowance
Company sponsored events (game nights holiday party summer party happy hours)
Interested in learning more about Freedom and our culture Contact us today! Were constantly hosting hiring events in our office and elsewhere to help you get a sense of what life is like at Freedom before joining the team.
As an Equal Opportunity Employer we do not discriminate on the basis of race color religion sex age marital status disability or veteran status
VEVRAA Federal Contractor
Accessibility: If you need an accommodation as part of the employment process please contact Human Resources at
Phone:
Email:
Equal Opportunity Employer including disabled and veterans.
If you want to view the Pay Transparency Policy Statement please click the link:English