Skip to main content

This job has expired

Security Operations Center Analyst

Employer
QOMPLX
Location
Fairfax, VA
Closing date
Oct 26, 2021
**NO AGENCIES PLEASE**About QOMPLXDeveloper of enterprise operating system designed to support the development and management of decision platforms in virtually any business domain. The company's system delivers customers advanced detection and monitoring, adaptive response, and risk optimization capabilities against advanced attackers, enabling clients to quickly and easily integrate all of the disparate data sources across the enterprise into a unified analytics infrastructure to make better decisions.A Security Operations Analyst is responsible to the Director of Security Operations for the successful support of the QOMPLX Corporate information security program, security operations center, customers, and communicating with internal teams to improve QOMPLX tools based on use and customer feedback.This person will possess a working knowledge in security/network operations, experience interacting with customers, and with DevOps/product management teams. Analysts will also be responsible for maintaining communications with the SOC Lead, SOC Engineers, DevOps, and other department technical experts across the company related to cyber security events/response/support.The Security Operations Analyst will follow the day-to-day operational procedures working with Senior Security Analysts for monitoring, analyzing, and detecting Cyber events and incidents within operations' supervision. Understanding SOC processes, maintaining fluency in the mission-critical toolsets and their instrumentation and ensuring the efficient support of internal/customer operational needs for continually adding value. Understanding security technical systems and concepts including intrusionprevention/detection, situational awareness, security events, data spillage, and incident response actions.This role aids in process documentation creation and maintenance and works with DevOps/product management for improvements based on customer and internal analyst feedback. The role is also responsible for identifying and protecting QOMPLX Corporate and customers from new risks and threats.Encouraged to maintain an advanced situational awareness of technologies, industry trends, latest threats and mitigations involved with networking, security, analysis, and support operations.Our ideal candidate will have a strong work ethic, fantastic attitude and be comfortable tackling any challenge set before him or her. We provide significant flexibility and autonomy to team members, have high expectations and expect everyone to contribute meaningfully to our broader collective goals.Responsibilities Prevent, detect, and respond to cyber security and other operational needs Contributes to the development and maintenance of the operations Center to support businesspriorities Ensures security threat information, system log information, and sources of external intelligenceare available and combined to provide real time response to cyber events Defines, gathers, and reports on metrics regarding all the security operations center Working collaboratively across teams to ensure consistent, performant, appropriate and securecyber controls Identifying and incorporating open source information security tools into QOMPLX Corporate Supporting and assisting in deployments and client integrations as neededQualifications Reside in the greater Washington DC area or able to relocate Bachelors Degree OR 4 years of relevant work experience Minimum of 2-4 years of experience in roles related to cyber security operations performing cybersecurity analysis, process and procedures Willing to work shifts to support 7/24 operations, including weekend and on-call coverage 2-4 years of hands-on experience using SEIM, firewall, IDS/IPS, proxy, DLP, and/or virtualization tools in support of detection, response, mitigation, and/or reporting of cyber threats affecting systems and networks Experience in cyber security intrusion detection/analysis Understanding of Cloud based services supporting production SaaS platforms including web applications and data analytic services Knowledge of IT Security principles, techniques and technologies Knowledge and understanding of network protocols, network devices, multiple operating systems, and secure architectures. Experience with current cyber threats and the associated tactics, techniques and procedures used to exploit computer networks. Knowledge of performing risk, business impact, control and vulnerability assessments. Broad knowledge of security best practices, security solutions, and methodologies for conducting advanced security assessments, to include manual assessments and malicious user testing Proficient working with various Infrastructure tools/technologies such as SCCM, GPO, Active Directory/Kerberos Strong background in Microsoft Windows and Linux/Unix Experience with using Vulnerability scanners like Nessus, MVM, Qualys, etc. Understanding of Infrastructure Security and its impact on Security Operations, Vulnerabilities, Reporting, Analytics and Monitoring. Knowledge of Networking protocols and technologies, eg TCP/IP, firewalls, routers, etc. Experience in working in cyber security operations (CSOC, SOC, CIRT, CSIRT) enterprise environment Excellent communication skills - both written and verbal Effective organizational skills with strong attention to detail Collaborative in natureDesirable: Experience and interest in security considerations for large-scale distributed systems, API-driven services, and API vulnerability assessment Experience in a 7/24 cyber security operations environment for 5 or more years Interest/experience in DevOps and deployment associated with containerization and container orchestration technologies such as Docker and Mesosphere Ideas on how to do cyber security operations differently Malware analysis experience using sandbox's or with static analysis Experience with program/scripting languages such as; Python, C, C++, JSON, PowerShell, Bash, etc Good understanding of frameworks such as ISO 17799/27001/27002, and other relevant compliance such PCI, HIPPA, SOX, NERC, FISMA, FFIEC, SOC 1/2/3, and GLBA and others IT Security Certifications like CISSP, CISM, CISA, CEH, GCIH, GCIA, OSCP, etc.About QOMPLX:QOMPLX applies artificial intelligence to solve complex, real-world problems at scale. Our Human+AI operating system, QOMPLX | OS (TM) , blends capabilities ranging from data handling, analytics, andreporting to advanced algorithms, simulations, and machine learning, enabling decisions that are just-in-time, just-in-place, and just-in-context. If this type of environment sounds exciting reach out to us directly via application at https://www.QOMPLX.com/careers with a resume and cover letter.QOMPLX offers a competitive salary, a full range of benefits, including 401(k) and medical, dental & vision coverage, flexible "Personal Time Off (PTO)" plan and 10+ paid holiday days per yearContact Us. Apply for this role at https://www.qomplx.com/careers/. Please include a cover letter and your current resume with all inquiries

Get job alerts

Create a job alert and receive personalized job recommendations straight to your inbox.

Create alert