Security Operations Analystother related Employment listings - Virginia, MN at Geebo

Security Operations Analyst

Developer of enterprise operating system designed to support the development and management of decision platforms in virtually any business domain. The company's system delivers customers advanced detection and monitoring, adaptive response, and risk optimization capabilities against advanced attackers, enabling clients to quickly and easily integrate all of the disparate data sources across the enterprise into a unified analytics infrastructure to make better decisions. A Security Operations Analyst is responsible to the Director of Security Operations for the successful support of the QOMPLX Corporate information security program, security operations center, customers, and communicating with internal teams to improve QOMPLX tools based on use and customer feedback. This person will possess a working knowledge in security/network operations, experience interacting with customers, and with DevOps/product management teams. Analysts will also be responsible for maintaining communications with the SOC Lead, SOC Engineers, DevOps, and other department technical experts across the company related to cyber security events/response/support. The Security Operations Analyst will follow the day-to-day operational procedures working with Senior Security Analysts for monitoring, analyzing, and detecting Cyber events and incidents within operations' supervision. Understanding SOC processes, maintaining fluency in the mission-critical toolsets and their instrumentation and ensuring the efficient support of internal/customer operational needs for continually adding value. Understanding security technical systems and concepts including intrusion prevention/detection, situational awareness, security events, data spillage, and incident response actions. This role aids in process documentation creation and maintenance and works with DevOps/product management for improvements based on customer and internal analyst feedback. The role is also responsible for identifying and protecting QOMPLX Corporate and customers from new risks and threats. Encouraged to maintain an advanced situational awareness of technologies, industry trends, latest threats and mitigations involved with networking, security, analysis, and support operations. Our ideal candidate will have a strong work ethic, fantastic attitude and be comfortable tackling any challenge set before him or her. We provide significant flexibility and autonomy to team members, have high expectations and expect everyone to contribute meaningfully to our broader collective goals. Responsibilities ? Prevent, detect, and respond to cyber security and other operational needs ? Contributes to the development and maintenance of the operations Center to support business priorities ? Ensures security threat information, system log information, and sources of external intelligence are available and combined to provide real time response to cyber events ? Defines, gathers, and reports on metrics regarding all the security operations center ? Working collaboratively across teams to ensure consistent, performant, appropriate and secure cyber controls ? Identifying and incorporating open source information security tools into QOMPLX Corporate ? Supporting and assisting in deployments and client integrations as needed Qualifications ? Reside in the greater Washington D.C. area or able to relocate ? Bachelors Degree OR 4 years of relevant work experience ? Minimum of 2-4 years of experience in roles related to cyber security operations performing cyber security analysis, process and procedures ? Willing to work shifts to support 7/24 operations, including weekend and on-call coverage ? 2-4 years of hands-on experience using SEIM, firewall, IDS/IPS, proxy, DLP, and/or virtualization tools in support of detection, response, mitigation, and/or reporting of cyber threats affecting systems and networks ? Experience in cyber security intrusion detection/analysis ? Understanding of Cloud based services supporting production SaaS platforms including web applications and data analytic services ? Knowledge of IT Security principles, techniques and technologies ? Knowledge and understanding of network protocols, network devices, multiple operating systems, and secure architectures. ? Experience with current cyber threats and the associated tactics, techniques and procedures used to exploit computer networks. ? Knowledge of performing risk, business impact, control and vulnerability assessments. ? Broad knowledge of security best practices, security solutions, and methodologies for conducting advanced security assessments, to include manual assessments and malicious user testing ? Proficient working with various Infrastructure tools/technologies such as SCCM, GPO, Active Directory/Kerberos ? Strong background in Microsoft Windows and Linux/Unix ? Experience with using Vulnerability scanners like Nessus, MVM, Qualys, etc. ? Understanding of Infrastructure Security and its impact on Security Operations, Vulnerabilities, Reporting, Analytics and Monitoring. ? Knowledge of Networking protocols and technologies, e.g. TCP/IP, firewalls, routers, etc. ? Experience in working in cyber security operations (CSOC, SOC, CIRT, CSIRT) enterprise environment ? Excellent communication skills - both written and verbal ? Effective organizational skills with strong attention to detail ? Collaborative in nature Desirable:
? Experience and interest in security considerations for large-scale distributed systems, API-driven services, and API vulnerability assessment ? Experience in a 7/24 cyber security operations environment for 5 or more years ? Interest/experience in DevOps and deployment associated with containerization and container orchestration technologies such as Docker and Mesosphere ? Ideas on how to do cyber security operations differently ? Malware analysis experience using sandbox's or with static analysis ? Experience with program/scripting languages such as; Python, C, C++, JSON, PowerShell, Bash, etc. ? Good understanding of frameworks such as ISO 17799/27001/27002, and other relevant compliance such PCI, HIPPA, SOX, NERC, FISMA, FFIEC, SOC 1/2/3, and GLBA and others ? IT Security Certifications like CISSP, CISM, CISA, CEH, GCIH, GCIA, OSCP, etc. About QOMPLX:
QOMPLX applies artificial intelligence to solve complex, real-world problems at scale. Our Human+AI operating system, QOMPLX OS(TM), blends capabilities ranging from data handling, analytics, and reporting to advanced algorithms, simulations, and machine learning, enabling decisions that are just-in-time, just-in-place, and just-in-context. If this type of environment sounds exciting reach out to us directly via application at https:
//www.QOMPLX.com/careers with a resume and cover letter. QOMPLX offers a competitive salary, a full range of benefits, including 401(k) and medical, dental & vision coverage, flexible Personal Time Off (PTO) plan and 10
paid holiday days per year.
Salary Range:
$80K -- $100K
Minimum Qualification
IT SecurityEstimated Salary: $20 to $28 per hour based on qualifications.

Don't Be a Victim of Fraud

  • Electronic Scams
  • Home-based jobs
  • Fake Rentals
  • Bad Buyers
  • Non-Existent Merchandise
  • Secondhand Items
  • More...

Don't Be Fooled

The fraudster will send a check to the victim who has accepted a job. The check can be for multiple reasons such as signing bonus, supplies, etc. The victim will be instructed to deposit the check and use the money for any of these reasons and then instructed to send the remaining funds to the fraudster. The check will bounce and the victim is left responsible.