Security Operation Center (SOC) Analyst II Job at gTANGIBLE Corporation, Colorado Springs, CO

bkhBMXRnZWMrck1SR2dUZ2paNHpEV01JV1E9PQ==
  • gTANGIBLE Corporation
  • Colorado Springs, CO

Job Description

Job Description

Job Description

gTANGIBLE Corporation (gTC), is a S corporation and a registered Government contractor that provides services and solutions in:

  • National Security Programs
  • Professional, Administrative, and Management Support
  • Mission and Warfighter Support

We are a Service Disabled Veteran Owned Small Business (SDVOSB) and the founder has years of successful experience in the Government contracting arena. Our leadership team is an exceptional group of Government contracting professionals. gTANGIBLE is in the process of identifying candidates for the following position.

Requisition Type: Contingent (Open)

Position Status: Full Time

Position Title: Security Operation Center (SOC) Analyst 2

Location: Colorado Spring, CO

Security Clearance Level: Top Secret/SCI, SAP Information eligible, consent for Counterintelligence polygraph

Duties and Responsibilities

The Air Force (AF) Special Access Program (SAP) Security Support Services (SSS) assists the AF cognizant security authority in oversight of enhanced National Security Objectives supporting AF SAP interests through active and integrated security operations, processes, mechanisms, and management. This support provides multi- disciplinary security support, including specialized analytical/program protection support, while being responsive and flexible to dynamic SAP security situations.

SOC Analyst's primary function is to provide comprehensive Computer Network Defense and Response support through 24×7×365 monitoring and analysis of potential threat activity targeting the enterprise. This position will conduct security event monitoring, advanced analytics and response activities in support of the government's

mission. This position requires a solid understanding of cyber threats and information security in the domains of TTP's, Threat Actors, Campaigns, and Observables. Additionally, this candidate must be familiar with intrusion detection systems, intrusion analysis, security information event management platforms, endpoint threat detection

tools, and security operations ticket management. This position will support activities within Special Access Programs (SAPs) supporting Department of Defense (DoD) agencies, such as HQ Air Force, Office of the Secretary of Defense (OSD) and Military Compartments efforts. The position will provide "day-to-day" support for Collateral, Sensitive Compartmented Information (SCI) and Special Access Program (SAP) activities. Performance shall include the following:

  • Must have strong analytical and technical skills in computer network defense operations, ability to lead efforts in Incident Handling (Detection, Analysis, Triage), Hunting (anomalous pattern detection and content management) and Malware Analysis.
  • Experience and ability to with analyzing information technology security events to discern events that qualify as legitimate security incidents as opposed to non-incidents. This includes security event triage, incident investigation, implementing countermeasures, and conducting incident response.
  • Must be knowledgeable and have hands-on experience with a Security Information and Event Monitoring (SIEM) platforms and/or log management systems that perform log collection, analysis, correlation, and alerting.
  • Strong logical/critical thinking abilities, especially analyzing security events (windows event logs, network traffic, IDS events for malicious intent).
  • Excellent organizational and attention to details in tracking activities within various Security Operation workflows.
  • A working knowledge of the various operating systems (e.g. Windows, OS X, Linux, etc.) commonly deployed in enterprise networks, a conceptual understanding of Windows Active Directory is also required, and a working knowledge of network communications and routing protocols (e.g. TCP, UDP, ICMP, BGP, MPLS, etc.) and common internet applications and standards (e.g. SMTP, DNS, DHCP, SQL, etc.).
  • Experience with the identification and implementation of counter-measures or mitigating controls for deployment and implementation in the enterprise network environment.
  • Experience with one or more of the following technologies Network Threat Hunting, Big Data Analytics, Endpoint Threat Detection and Response, SIEM, workflow and ticketing, and Intrusion Detection System.

Knowledge and Qualifications

  • Bachelor's degree in a related area and 5-7 years of experience or 9-11 years of experience without a degree.
  • Prior performance in roles such as ISSO or ISSM.
  • Must meet position and certification requirements outlined in DoD Directive 8570.01-M for Information Assurance Technician Level 2 or Information Assurance Manager Level 2 or CND Auditor or Incident Responder certification within 6 months of the date of hire.
  • Ability to develop rules, filters, views, signatures, countermeasures and operationally relevant applications and scripts to support analysis and detection efforts.
  • An understanding in researching Emerging Threats and recommending monitoring content within security tools.
  • Experience in analyzing NetFlow data and packet capture (PCAP).
  • Robust knowledge of common attack methodologies, tactics and protocols.
  • Knowledge of the TCP and IP protocol suite, security architecture, DNS and remote access security techniques and products.
  • Technical experience in the information security field utilizing a mix of security technology such as: Intrusion Detection & Prevention Systems (IDS/IPS), Firewalls & Log Analysis. SIEM, Network Behavior Analysis tools, Antivirus, and Network Packet Analyzers, Digital Forensics tools in an Enterprise environment, Cyber Incident Response activities in an Enterprise environment.
  • SAP experience required.
  • Prior Air Force experience a plus.

Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, pregnancy, genetic information, disability, status as a protected veteran, or any other protected category under applicable federal, state, and local laws.

Job Tags

Full time, For contractors, Local area, Flexible hours,

Similar Jobs

BJC HealthCare

Physical Therapist - Outpatient Job at BJC HealthCare

 ...offers a diverse patient population that includes opportunities for experience in orthopedic, sports medicine, neurologic, vestibular/balance...  ...day of the month after hire date ~ Disability insurance* paid for by BJC ~ Pension Plan*/403(b) Plan funded by BJC ~401(k... 

Mayo Clinic

Registered Nurse (RN) - ED - Emergency Department - $38-58 per hour Job at Mayo Clinic

 ...delegates patient care according to skill level, experience, patient acuity, fiscal...  ...registered nursing program. All entry-level associate degree registered nurses...  ...on providing high quality, compassionate medical care. We are the largest integrated, not-... 

Insight Global

Mechanical Engineer (Middletown) Job at Insight Global

 ...Experience utilizing Siemens NX and Team Center PLM tools is preferred. Similar CAD experience with Catia, Autodesk Revit, PTC Creo or SolidWorks can also apply Nice to Have Skills & Experience - Active Security Clearance or ability to obtain one in order to support... 

Marathon Staffing

Steel Welders/Fabricators - At least 1 year of Experience Needed! (TWG) Job at Marathon Staffing

 ...construction or in trade-related areas? We have openings in Welder and Fabricator Roles. Direct manufacturing experience not required. Any past...  ...will be considered. Were hiring for multiple roles at a steel manufacturing facility in Chattanooga, TN. These are hands-on... 

PM BIOMEDICAL

Biomedical Equipment Technician Job at PM BIOMEDICAL

 ...About Us: PM Biomedical is a trusted leader in third-party medical equipment repair. We specialize in restoring critical healthcare...  ...records Provide hands-on training and supervision to students or entry-level technicians Assist in developing training materials and...