Senior Cybersecurity / SOC Analyst
Avid Systems LLC · Washington, DC
Apply & track with Apply EdgeAbout Avid SystemsAvid Systems is a Washington, DC-based managed services provider specializing in IT staff augmentation, business application development, cloud enablement, infrastructure, mobility, virtualization, cybersecurity, storage, and managed IT services. Since 2004, Avid Systems has supported government and commercial clients by delivering skilled technical talent and innovative technology solutions.Job DescriptionAvid Systems is seeking an experienced Senior Cybersecurity / Security Operations Center (SOC) Analyst to support a government cybersecurity environment in Washington, DC.The selected candidate will monitor and analyze enterprise security events, investigate potential cybersecurity incidents, identify and respond to threats, perform incident analysis, and help strengthen the overall cybersecurity posture of the organization.This position requires extensive hands-on cybersecurity experience, strong knowledge of enterprise security technologies, and the ability to operate effectively in a mission-critical Security Operations Center environment.Key ResponsibilitiesMonitor enterprise networks, systems, applications, and security platforms for potential cybersecurity threats and incidents.Review, analyze, and correlate security alerts and event data.Investigate cybersecurity incidents and determine severity, scope, potential impact, and appropriate response actions.Analyze security events using Security Information and Event Management (SIEM) platforms.Identify and investigate malicious activity including malware, phishing, DDoS attacks, unauthorized access, network intrusions, and other cyber threats.Perform incident detection, triage, investigation, containment, remediation, and recovery activities.Analyze network traffic, system logs, endpoint activity, security alerts, and related technical data.Support the development and execution of information-security incident response plans.Conduct vulnerability assessments and support remediation efforts.Identify cybersecurity trends and provide recommendations for improving security controls.Research emerging cyber threats, vulnerabilities, tactics, techniques, and procedures.Utilize threat intelligence, open-source intelligence, and other information sources to identify threats and potential countermeasures.Support enterprise security technologies including firewalls, IDS/IPS, SIEM platforms, antivirus/endpoint security solutions, network traffic analyzers, and malware-analysis tools.Develop and use scripts and automation to improve cybersecurity operations.Troubleshoot complex cybersecurity incidents and technical issues.Coordinate incident response activities with technical teams, management, and other stakeholders.Produce cybersecurity incident reports, technical documentation, recommendations, and executive-level summaries.Support cybersecurity tools and applications and assist with deployment, configuration, tuning, and operational improvements.Ensure cybersecurity activities comply with applicable government standards, policies, procedures, and security requirements.Support cybersecurity project management, engineering, maintenance, quality assurance, and risk-management activities.Required Qualifications5+ years of hands-on operational experience as a cybersecurity analyst, cybersecurity engineer, SOC analyst, SOC engineer, or equivalent role within a Security Operations Center or enterprise cybersecurity environment.Strong understanding of cybersecurity attack methodologies and countermeasures.Hands-on experience analyzing and responding to security events and incidents using SIEM technologies.Strong knowledge of TCP/IP protocols, services, and networking.Experience identifying, analyzing, containing, and responding to cybersecurity threats.Experience investigating malicious code, phishing attacks, DDoS attacks, unauthorized access, and other adversarial activity.Experience implementing, administering, or operating security technologies including:FirewallsIDS/IPSSIEM platformsAntivirus and endpoint-security platformsNetwork traffic analyzersMalware-analysis technologiesExperience developing and executing cybersecurity incident-response plans.Experience developing enterprise IT and security solutions based on business requirements and industry standards.Strong understanding of vulnerability management, threat intelligence, incident management, and network-security principles.Ability to work effectively in high-pressure and time-sensitive situations.Ability to prioritize and manage multiple cybersecurity events and tasks.Strong analytical, troubleshooting, communication, and documentation skills.Strong attention to detail.Senior-Level ExperienceHighly qualified candidates will also have significant experience in several of the following areas:Implementing, administering, and operating enterprise information-security technologies.Advanced scripting and security automation using technologies such as PowerShell, Perl, Regex, or similar tools.Developing, leading, and executing information-security incident-response plans.Designing and implementing complex enterprise IT and cybersecurity solutions.Leading cybersecurity investigations and coordinating incident-response activities.Preferred QualificationsBachelor’s degree in Cybersecurity, Information Technology, Computer Science, Engineering, or a related technical field.Relevant cybersecurity certifications, including one or more of the following:SANS/GIAC certificationsGCIAGCEDGPENGCIHComparable industry-recognized cybersecurity certificationsGovernment or public-sector cybersecurity experience.Experience supporting large enterprise or mission-critical environments.Additional RequirementsPosition is based in Washington, DC.Candidate must be able to satisfy applicable District of Columbia suitability and background-screening requirements.The position requires an FBI fingerprint background check prior to starting.