Coalfire · 1 month ago
SOC Analyst - Top Secret Clearance Required
Coalfire Federal is a market leading cybersecurity consultancy firm that provides independent and tailored advice, assessments, technical testing and a full suite of cyber engineering services to Federal agency customers. They are currently seeking an experienced SOC Analyst to monitor and analyze potential threat activity, provide engineering support for security tools, and conduct vulnerability assessments.
Information Technology & Services
Responsibilities
Monitors and analyzes for potential threat activity
Provides real-time alerting and monitoring by capturing, indexing, and correlating data in a searchable repository to generate graphs, reports, alerts and visualizations
Provides metrics, diagnoses security problems
Provides engineering support, operations, and maintenance of security tools
Utilizes Security, Information, and Event Monitoring (SIEM) tools to identify security events and incidents to evaluate the effectiveness of current security measures
Maintains Tenable Security Center administrator responsibilities, routine maintenance of the front end including but not limited to user accounts, scan polices, and reports
Conducts daily and ad-hoc vulnerability scanning on networks and systems
Prepares reports of metrics for vulnerability management that is briefed to senior leadership to convey network security status
Participates and contributes to weekly meetings with O&M team to discuss vulnerability patch management status
Tracks, maintains, and verifies findings. Promote timely remediation before due date and/or work with stakeholders on extension request
Conducts DISA STIG baseline configuration scanning of hardware and network devices and manually reviews CAT I and CAT II items that cannot be checked via automated scan
Monitors incoming events and maintain Audit Log Management using Splunk Tool
Validates hardware and software inventory for a portfolio of systems
Uses advanced analytic tools to determine presence of emerging threat patterns and vulnerabilities
Utilizes in-depth operational and technical knowledge of security concepts to provide technical support in the areas of vulnerability assessment, risk assessment, network security, product evaluation, and security implementation
Provides technical evaluations of customer systems and assists with making security improvements
Conducts product evaluations, and recommends products, technologies and upgrades to improve the customer’s security posture
Conducts testing and audit log reviews
Qualification
Required
Experience, charisma, and enthusiasm to lead teams, build capabilities, and ability to serve as a trusted advisor
Experience with NIST 800-37, NIST 800-53, and FISMA
Knowledge of cloud security
Enterprise security and consulting experience
Flourishes in a fast-paced, collaborative work environment
Excellent communication and client-facing skills
Completed Bachelor's degree from an accredited university, preferably in an IT related field
An active Secret or Top Secret clearance is required
One or more of the following: CISSP, CISM, or CISA
+ Eight (8) years of information technology, cybersecurity experience for a consulting organization
+ A minimum of three (3) years of team lead support or management experience
Preferred
Previous DOJ experience
Military experience
Benefits
Paid parental leave
Flexible time off
Certification and training reimbursement
Digital mental health and wellbeing support memberships
Comprehensive insurance options