Senior Security Analyst

VariQ

(United States)
Full Time
Job Posting Details
About VariQ
VariQ is an information security and information technology services company delivering strategic solutions to technology-enabled enterprises. Core competencies include Cyber Security, IT Infrastructure support, and Program Management. VariQ is a Microsoft Gold Partner and a Symantec Platinum Partner.
Responsibilities
* Use SIEM technologies and other native tools to perform the monitoring of security events on a 24x7 basis. * Perform analysis on logs produced by network devices utilized within the OCC such as firewalls, content filtering, syslog from various sources/devices, assorted Intrusion Detection capabilities, substantiating vulnerability scanner results, directory services, DHCP logs, Secure Email Gateway logs, and approved OCC applications. * Use the Intel McAfee SIEM to monitor the network and perform analysis, while integrating the results and information needed to proactively protect the OCC enterprise. This includes developing customized signatures, enterprise content filtering, or firewall ACL change recommendations. * Provide security events analysis and support to include identifying potential threat, anomalies, and infections, documenting findings, providing recommendations within the OCC’s incident management system, performing triage of incoming security events, performing preliminary and secondary analysis of those events, and validating the events * Perform advanced technical analyses, such as analysis of malicious code, network traffic, web log data, cyber intelligence, hard drives, and other storage and forensics media, to control exploitative activity. * Manage inbound requests via the OCC ticketing system (Service Now), as well as via telephone calls, and provide security notifications via three methods: logging incident tickets, sending emails, and placing telephone calls * Provide cybersecurity root-cause analysis in support of any tickets for which it fails to meet the Acceptable Quality Levels (AQLs) specified in the PRS. This root-cause analysis will include documenting recommendations for corrective action.
Ideal Candidate
**Qualifications:** * Senior level knowledge of policies, procedures, and protocols of a government Security Operations Center. * Significant experience using numerous security tools and technologies to include some of the following and/or closely comparable security technologies: McAfee Nitro SIEM, McAfee IDS/IPS, Imperva web application firewalls, McAfee Enterprise Antivirus, BlueCoat, Symantec DLP, Mandiant/Fireeye, Guardian MDB Protect, Cisco firewalls, QualysGuard, AppScan **Preferred Qualifications:** * Experience at the U.S. Department of Treasury * Previous Senior SOC Analyst experience at a federal agency similar in size, scope, and complexity. **Preferred Qualifications:** * Experience at the U.S. Department of Treasury * Previous Senior SOC Analyst experience at a federal agency similar in size, scope, and complexity. **Minimum Requirements:** * Minimum of 6-10 years of experience in Security Operations Centers (SOC) **Education:** * Bachelors of Science (Masters preferred) in Computer Science, Systems Engineering, Cybersecurity, Information Technology or related area. **Preferred Certifications:** * Certified Computer Examiner (CCE) * Certified Computer Forensic Examiner (CCFE) * Any of following SANS certifications: GCIH, GCFE, GCFA,GREM, GPEN, GWAPT, GXPN * Certified Information Systems Security Professional (CISSP) **Security Clearance:** * Public Trust clearance

Questions

Answered by on
This question has not been answered
Answered by on

There are no answered questions, sign up or login to ask a question

Want to see jobs that are matched to you?

DreamHire recommends you jobs that fit your
skills, experiences, career goals, and more.