Job Requirements
Washington, DC
Public Trust Polygraph Unspecified
Mid Level Career (5+ yrs experience)
$145,000 - $155,000
Job Description
Quantum Sky is searching for a Cyber Event Monitoring Lead to support threat monitoring, detection, event analysis, and incident reporting. The Security Operations Center is a 24/7 environment. You will be responsible for monitoring enterprise networks and systems, detecting events, and reporting on threats that are directed against those systems. You will be expected to collaborate with Senior Analysts to assist with efficient triage and remediation of events in the incident queue. Utilizing SIEM technologies, you will provide the client with a fully comprehensive array of analytical activities in support of external threat monitoring, detection, event analysis, and incident reporting efforts to include analysis of inbound and outbound internet traffic, suspicious e-mail messages, and cloud security logs. You will also be responsible for the generation of client reports both scheduled and ad hoc.
Responsibilities:
- Provide support for complex computer network exploitation and defense techniques
- Deter, identify, and investigate computer and network intrusions
- Perform comprehensive computer surveillance/monitoring
- Provide technical support for continuous monitoring, computer exploitation, and reconnaissance
- Research and maintain proficiency in open and closed source computer exploitation TTP’s
- Perform research into emerging threat sources
- Support incident response and remediation tasks.
- Support the SIEM alert custom creation and finetuning as needed.
Qualifications
Required:
- A minimum of 8 years of general work experience and 4 years of relevant experience in functional responsibility
- Bachelor’s Degree, or an equivalent combination of formal education and experience
- Experience with:
- SIEM
- Email/Phishing
- Major Cloud Providers (AWS, Azure, GPC)
- AV/EDR
- Networking Equipment
- Endpoint Logging (Windows, Linux)
- Must have strong analytical and organizational skills
- Must have concise writing skills
- Must have a minimum of one IAT Level I security industry specific certification (8570 Baseline Certifications) (i.e. A+ CE, CCNA-Security, CND, Network+ CE, SSCP or equivalent certifications).
Desired:
- Experience working a SOC and doing incident response is highly preferred
Location:
- This position is onsite in Washington, DC.
Clearance:
- US Citizenship required with eligibility for Public Trust
group id: 91085617