Jobs and Careers
EC

Cyber Threat Analyst 3

ECS
United Statesfull_timeVerifiedPosted 9 Sept 2024

About the role

ECS is seeking a Cyber Threat Analyst 3 to work in our Fairfax, VA office.

 

Job Description:

ECS is a leading managed cybersecurity services provider, ECS delivers a highly tailored and customized offering to each customer. Our team is responsible for protecting the ECS corporate and customer networks. Our mission is broad, and our team is agile. We will leverage your unique skills to help solve customers’ challenges, such as engineering a system to address a technical hurdle, protecting customer data, or consulting on a wide range security topics. You are empowered to engage and lead across multiple groups and must have the self-sufficiency and focus to work well without constant oversight.

 

Our Tier 3 SOC Analysts are responsible for investigating threats targeting ECS’ internal network and commercial customers. They support the commercial cybersecurity program during core and non-core business hours.

 

Responsibilities:

  • Lead incident response efforts, including forensic triage and detailed technical reporting.
  • Mentor and act as an escalation point for junior SOC analysts.
  • Develop and implement custom detections aligned with the MITRE ATT&CK Framework.
  • Conduct threat hunting and perform data analytics to identify and mitigate unseen threats.
  • Tune and configure security tools to minimize false positives.
  • Analyze and correlate logs from various sources to create comprehensive incident timelines.
  • Facilitate threat remediation efforts by collaborating with IT teams and end users.
  • Serve as a subject matter expert for security tools, applications, and processes.
  • Support the investigation of large- and small-scale cyber breaches.
  • Communicate cyber events to internal and external stakeholders.
  • Provide customers with incident response support, including mitigating actions to contain activity and facilitate forensics analysis when necessary. Document formal, technical incident reports.

 

Required Skills:

  • 5+ years of SOC or cybersecurity-related experience, with at least 3+ years of experience with a SIEM tool.
  • U.S. citizenship and ability to obtain a SECRET Government Security Clearance.
  • Bachelor’s degree; preferably in Computer Science, Information Security, or a related field. Will consider experience in lieu of a degree.
  • Deep technical understanding of modern cybersecurity threats and the ability to quickly learn new cybersecurity concepts.
  • Prior experience working as an analyst in a Security Operations Center (SOC).
  • Extensive experience with EDR, SIEM, SOAR, and ticketing technologies, particularly Elastic, Splunk, Trellix, MS Sentinel/Defender, and Crowdstr

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

ECS

View company profile →