SOC Cybersecurity Analyst - Shift Alt-Sat/Sun/Mon/Tue 1900-0700
General Dynamics Information TechnologyAbout the role
Type of Requisition:
RegularClearance Level Must Currently Possess:
SecretClearance Level Must Be Able to Obtain:
SecretPublic Trust/Other Required:
NoneJob Family:
Information SecurityJob Qualifications:
Skills:
Communication, Cybersecurity, Information Assurance, Information Systems, System SecurityCertifications:
NoneExperience:
4 + years of related experienceUS Citizenship Required:
YesJob Description:
We are GDIT. The people supporting and securing some of the most complex government, defense, and intelligence projects across the country. We ensure today is safe and tomorrow is smarter. Our work has meaning and impact on the world around us, but also on us, and that’s important. GDIT is your place. You make it your own by embracing autonomy, seizing opportunity, and being trusted to deliver your best every day. We think. We act. We deliver. There is no challenge we can’t turn into opportunity.
At GDIT, people are our differentiator. We are seeking a Systems Operation Center Cybersecurity Analyst to provide timely and professional cyber support. To be successful in this position you need to be collaborative and willing to work within a team. While you will need to be a self-starter, completing tasks on your own, working together is critical in this role. You will be interfacing with users and senior staff. Therefore, you should be articulate in your communications. You will need to explain technical intricacies to end users in a way that is easily understood. You will need to maintain a high-level customer service focus, exhibiting expertise, courtesy, timeliness, and professionalism. Provide technical support and troubleshooting services for incoming queries and issues related to computer systems, software, and hardware and assist the Service Desk Manager as needed.
This is an IT Service Management contract in support of the operation, modernization, expansion, and further evolution of the ARNG’s global Information Technology (IT) services including networking, compute, storage, infrastructure, applications, hosting, and program management services. The GECOS program supports the ARNG enterprise IT infrastructure, its Wide Area Network (WAN), authentication and directory services, cybersecurity, application hosting, and associated services. GECOS uses ITIL best practices framework as the basis for IT Service Management (ITSM) model.
The work includes the following:
Performs forensic analysis of digital information and gathers and handles evidence. Identifies network computer intrusion evidence and perpetrators.
Uses data collected from a variety of cyber defense tools (e.g., IDS alerts, firewalls, network traffic logs) to analyze events that occur within their environments for the purposes of mitigating threats.
Interprets, analyzes, and reports all events and anomalies in accordance with computer network directives, including initiating, responding, and reporting discovered events.
Evaluates, tests, recommends, coordinates, monitors, and maintains cybersecurity policies, procedures, and systems, including access management for hardware, firmware, and software.
Ensures that cybersecurity plans, controls, processes, standards, policies, and procedures are aligned with cybersecurity standards.
Identifies security risks and exposures, determines the causes of security violations, and suggests procedures to halt future incidents and improve security.
Develops techniques and procedures for conducting cybersecurity risk assessments and compliance audits, the evaluation and testing of hardware, firmware, and software for possible impact on system security, and the investigation and resolution of security incidents such as intrusion, frauds, attacks, or leaks.
Correlates data feeds and logs to analyze with known threats and incidents, build, implement, and refine event correlation rules, logic, content, and analysis techniques that will enable SOC personnel to correlate events and security incidents with specific sources, such as individuals, threat actors, IT systems, devices, and IP addresses.
Responsible for performing correlation activities and trend analysis to discover attack patterns and assess the risks and potential exposure of assets and develop and enhance correlation rules, logic, and analysis techniques for associating data. Provides guidance to junior-level staff, as necessary.
May coach and provide guidance to les
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s