Mid Cybersecurity Analyst- SOC
General Dynamics Information TechnologyAbout the role
Type of Requisition:
RegularClearance Level Must Currently Possess:
OtherClearance Level Must Be Able to Obtain:
NonePublic Trust/Other Required:
MBI (T2)Job Family:
Cyber SecurityJob Qualifications:
Skills:
Cyber Defense, Cybersecurity, SIEM ToolsCertifications:
NoneExperience:
3 + years of related experienceUS Citizenship Required:
YesJob Description:
Mid Cybersecurity Analyst- SOC
Job Description:
- Lead the analysis and investigation of information security events (IDS/DLP/SIEM/etc.) in a 24X7 SOC environment to detect, verify, and respond swiftly to cyber threats and remove false positives.
- Serve as a technical point of escalation and provide mentoring for junior Security Operations Center (SOC) analysts.
- Responsible for investigating incidents, analyzing attack methods, researching new defense techniques and tools, developing security policy, and documenting procedures for SOC.
- Familiar with malware analysis and other attack analysis to extract indicators of compromise. Perform data security event correlation between various systems.
- Prepare reports, summaries, and other forms of communication that may be both internal and client-facing.
- Maintain familiarity with industry trends and security best practices.
- Ensure compliance with SLA, process adherence, and process improvisation to achieve operational objectives.
General Skills:
- Strong knowledge of TCP/IP protocols, basic networking, etc.
- Ability to parse/analyze network logs (proxy, firewall, antivirus, email, etc.)
- PCAP analysis (Wireshark familiarity, Trellix)
- IDS (know what an IDS is/does. Snort, Suricata, etc.)
- Familiarity with typical attack/exploit techniques (OWASP top 10, what a command injection looks like, how to identify malicious code on a webpage, how to read obfuscated code etc.)
- Significant expertise in SIEM (Splunk, ArcSight, Crowdstrike, etc.)
- Threat Intelligence (Open source feeds, IOCs, Known APT TTPs, etc.)
- Threat Hunting (Know what to look for, analyst mindset)
- Scripting (Ideally Python, PowerShell, Bash)
- Command line Interface
- Linux (Just the basics necessary, should at least know concepts like what is root and basic directory structure)
- Knowledge of Enterprise Windows configurations (Mainly Active Directory, how it works, why it’s essential to monitor/protect)
- Written Communications (Analyst will be interacting with other departments in CTFC and often with those outside the org via email)
In addition, the following skills are a strong plus:
- Working knowledge of web proxies, firewalls, HTTP status codes, proxy configuration, etc.
- Ability to parse network logs to identify network anomalies/proxy issues
- Expertise with open-source intelligence gathering tools like virustotal, joesandbox, robtex, whois, urlscan, etc.)
- Attention to detail
- Good Interpersonal skills (Can be very customer-facing at times, a large portion of our calls are for PERs, and there is an entire inbox dedicated to troubleshooting user complaints)
- Basic understanding of HTML/javascript/how a web page works
Any of the following certifications are a plus:
CISSP, ITIL, CEH, GIAC, GSEC, SANS, GCIH, SEC504, GCED, SEC501
GDIT IS YOUR PLACE:
● 401K with company match
● Comprehensive health and wellness packages
● Internal mobility team dedicated to helping you own your career
● Professional growth opportunities including paid education and certifications
● Cutting-edge technology you can learn from
● Rest and recharge with paid vacation and holidays **(remove if not eligible)**
Scheduled Weekly Hours:
40Travel Required:<
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s