IT Security Operations Specialist
Washington, DC - USA
Job Summary
Position Overview
RiVidium Inc. is seeking an experienced IT Security Operations Specialist to support day-to-day cybersecurity operations and security monitoring activities within a federal environment.
The IT Security Operations Specialist will help protect enterprise systems networks applications and infrastructure by monitoring security events identifying potential threats supporting vulnerability management investigating security issues and assisting with implementation of cybersecurity controls.
The ideal candidate will have a strong foundation in information security operations and the ability to work collaboratively with cybersecurity infrastructure network systems and compliance teams.
Key Responsibilities
- Monitor enterprise IT environments for potential cybersecurity threats vulnerabilities and security events.
- Analyze security alerts logs and events to identify suspicious or potentially malicious activity.
- Support investigation and analysis of cybersecurity incidents and security events.
- Escalate suspected incidents in accordance with established incident response procedures.
- Assist with incident response containment remediation and recovery activities.
- Monitor security tools dashboards and security operations platforms.
- Support vulnerability identification analysis tracking and remediation.
- Review vulnerability scan results and coordinate remediation activities with system and infrastructure teams.
- Assist with security configuration and system hardening activities.
- Monitor systems for compliance with established security policies standards and baselines.
- Support implementation and maintenance of cybersecurity controls.
- Assist with endpoint network application and infrastructure security operations.
- Analyze security logs and other technical data to identify anomalous activity.
- Support threat intelligence and cybersecurity research activities.
- Investigate potential indicators of compromise and assist with determining their impact.
- Document security events incidents findings and remediation activities.
- Maintain accurate cybersecurity operational records and reports.
- Support continuous monitoring and security assessment activities.
- Coordinate with ISSOs ISSMs system administrators network engineers security engineers and other IT personnel.
- Assist with security audits assessments inspections and compliance activities.
- Prepare cybersecurity metrics reports and operational status updates.
- Assist with development and maintenance of security procedures standards and operational documentation.
- Stay current with emerging cybersecurity threats vulnerabilities attack techniques and defensive technologies.
Required Qualifications
- Bachelors degree in Cybersecurity Information Technology Information Systems Computer Science or a related field.
- Experience in IT security cybersecurity operations information assurance security monitoring or a related discipline.
- Working knowledge of cybersecurity principles security controls and defensive security practices.
- Experience analyzing security events alerts logs or other cybersecurity data.
- Understanding of vulnerability management and security remediation processes.
- Knowledge of network endpoint operating system and application security concepts.
- Familiarity with security monitoring and cybersecurity operations tools.
- Ability to investigate technical issues and identify potential security risks.
- Strong analytical and problem-solving skills.
- Strong written and verbal communication skills.
- Ability to work effectively in a team-oriented operational environment.
- Ability to prioritize multiple security tasks and respond effectively to changing requirements.
Preferred Certification
- CompTIA Security
Additional cybersecurity certifications such as CySA SSCP CEH GSEC or CISSP are also desirable.
Preferred Qualifications
- Experience supporting federal civilian or Department of Defense (DoD) cybersecurity programs.
- Experience working in a Security Operations Center (SOC) or similar cybersecurity operations environment.
- Experience with Security Information and Event Management (SIEM) platforms.
- Familiarity with Splunk Microsoft Sentinel QRadar or similar security monitoring technologies.
- Experience with endpoint detection and response (EDR) technologies.
- Experience with vulnerability management platforms such as Tenable/Nessus Qualys or Rapid7.
- Knowledge of incident response processes and procedures.
- Experience analyzing network traffic and security logs.
- Familiarity with threat intelligence and indicators of compromise.
- Knowledge of NIST cybersecurity frameworks NIST SP 800-53 and FISMA.
- Experience supporting the Risk Management Framework (RMF).
- Familiarity with continuous monitoring and security control assessment activities.
- Experience with cloud security operations including AWS Azure Google Cloud or Microsoft 365.
- Familiarity with security automation scripting or SOAR technologies.
Technical Skills
- Security Operations
- Security Monitoring
- SOC Operations
- Security Event Analysis
- Incident Response
- Threat Detection
- Threat Intelligence
- Log Analysis
- SIEM
- EDR
- Vulnerability Management
- Vulnerability Scanning
- Security Incident Investigation
- Network Security
- Endpoint Security
- Application Security
- System Hardening
- Security Configuration
- Risk Management
- Continuous Monitoring
- NIST Cybersecurity Framework
- NIST SP 800-53
- FISMA
- RMF
- Security Controls
- Cybersecurity Reporting
- Security Metrics
- Security Documentation
RiVidium Inc is seeking a IT Security Operations Specialist to support a federal client. This position is contingent upon contract award and funding approval. As such this job posting is intended to identify qualified candidates for a potential future opportunity and does not represent a currently available position. Compensation has not yet been determined and will be established based on contract requirements candidate qualifications experience and applicable market conditions.
Required Experience:
IC
About Company
Established in 2008, RiVidium, Inc. (dba TripleCyber) is a VA-Verified SDVOSB and an SBA-Certified 8(a) company. To prepare our clients for the future, RiVidium has balanced all parts of our organization to attract the finest employees in order to 'Strive to be the missing element def ... View more