SOC Analyst
il y a 2 semaines
Leidos is seeking a motivated SOC analyst to join our team on a highly visible cyber security single-award IDIQ vehicle. This is a Federal Government program responsible for the prevention, identification, containment, and eradication of cyber threats to IT Enterprise through monitoring, intrusion detection and protective security services. This includes local area networks/wide area networks (LAN/WAN), commercial Internet connection, public facing websites, wireless, mobile/cellular, cloud, security devices, servers and workstations. This Program is responsible for supporting the overall security of Enterprise-wide information systems, and collects, investigates, and reports any suspected and confirmed security violations.
The SOC analyst will perform the following:
- Coordinate investigation and response efforts throughout the Incident Response lifecycle
- Correlate and analyze events and data to determine scope of Cyber Incidents
- Acquire and analyze endpoint and network artifacts, volatile memory, malicious files/binaries and scripts
- Recognize attacker tactics, techniques, and procedures as potential indicators of compromise (IOCs) that can be used to improve monitoring, analysis and Incident Response.
- Develop, document, and maintain Incident Response process, procedures, workflows, and playbooks
- Tune and maintain security tools (EDR, IDS, SIEM, etc) to reduce false positives and improve SOC detection capabilities
- Document Investigation and Incident Response actions taken in Case Management Systems and prepare formal Incident Reports
- Create metrics and determine Key Performance Indicators to drive maturity of SOC operations
- Develop security content such as scripts, signatures, and alerts
Basic Qualifications:
- Experience in an information technology field with a minimum of 2-4 years of experience in the areas of incident detection and response, malware analysis, or computer forensics
- Bachelor's degree in IT or related field or equivalent experience.
- 2 years as a SOC analyst or similar work roles. Additional experience and certifications may be considered in lieu of a degree.
- In-depth knowledge of each phase of the Incident Response life cycle
- Expertise of Operating Systems (Windows/Linux) operations and artifacts
- Understanding of Enterprise Network Architectures to include routing/switching, common protocols (DHCP, DNS, HTTP, etc), and devices (Firewalls, Proxies, Load Balancers, VPN, etc)
- Ability to recognize suspicious activity/events, common attacker TTPs, and perform logical analysis and research to determine root cause and scope of Incidents
- Be familiar with Cyber Kill Chain and have utilized the ATT&CK Framework
- Have scripting experience with Python, PowerShell, and/or Bash
- Ability to independently prioritize and complete multiple tasks with little to no supervision
- Flexible and adaptable self-starter with strong relationship-building skills
- Strong problem-solving abilities with an analytic and qualitative eye for reasoning
Candidates must be able to obtain a CISA EOD.
Must have at least one of the following certifications:
GCIH, GCFA, GCFE, GREM, GISF, GXPN, GWEB, GNFA, OSCP, OSCE, OSEE, CCFP, CISSP, CCNO, CEH, LPT, SCSA, ENSA, ECIH, ECSS, ECES, CIRC
Original Posting: March 4, 2025
For U.S. Positions: While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.
Pay Range: Pay Range $67,600.00 - $122,200.00
The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.
#J-18808-Ljbffr-
Security Incident Response Analyst
il y a 5 jours
Bruxelles, Région de Bruxelles, Belgique Fujitsu Temps pleinOverview\Fujitsu is a global leader in digital transformation, helping organizations achieve their goals through innovative technology and expertise.\Job Description\We are seeking a highly skilled Security Operation Center (SOC) Analyst to join our team. In this role, you will be responsible for monitoring, analyzing, and responding to security incidents to...
-
Forensic Analyst
il y a 2 semaines
Bruxelles, Région de Bruxelles, Belgique Stott and May Temps pleinAs an Incident Response & Forensic Analyst, your primary responsibility will be to assist clients in managing and mitigating security incidents. You will analyze security breaches, conduct forensic investigations, and implement security measures to enhance overall resilience. Continuously assess security alerts and incidents to identify potential threats ...
-
Network Threat Detection Expert
il y a 5 jours
Bruxelles, Région de Bruxelles, Belgique Fujitsu Temps pleinJob Overview\Fujitsu is a leading provider of digital solutions, committed to creating a better future for our customers and society through innovation.\Job Responsibilities\We are seeking a skilled Security Operation Center (SOC) Analyst to join our team. In this role, you will be responsible for monitoring, analyzing, and responding to security incidents...
-
Cybersecurity Operations Specialist
il y a 6 jours
Bruxelles, Région de Bruxelles, Belgique Fujitsu Temps pleinAbout Us\Fujitsu is a leading provider of digital solutions, committed to creating a better future for our customers and society through innovation.\Job Summary\We are seeking a skilled Security Operation Center (SOC) Analyst to join our team. The successful candidate will be responsible for monitoring, analyzing, and responding to security incidents to...
-
Security Operations Analyst
il y a 1 semaine
Bruxelles, Région de Bruxelles, Belgique Luminus Temps pleinAre you ready to take on the challenge of protecting critical digital assets in an ever-evolving cybersecurity landscape? At Luminus, weâre looking for a proactive Security Operations Analyst to monitor, respond to, and prevent cybersecurity threats while driving innovation and collaboration. What You'll Do Monitor and respond to security events, alerts,...
-
Security Operations Analyst
il y a 3 jours
Bruxelles, Région de Bruxelles, Belgique Luminus Temps pleinAre you ready to take on the challenge of protecting critical digital assets in an ever-evolving cybersecurity landscape? At Luminus, we're looking for a proactive Security Operations Analyst to monitor, respond to, and prevent cybersecurity threats while driving innovation and collaboration. What You'll Do Monitor and respond to security events, alerts,...
-
Cyber Incident Response Analyst, null
il y a 2 semaines
Bruxelles, Région de Bruxelles, Belgique TN Belgium Temps pleinSocial network you want to login/join with:To strengthen our Information Technology team, based at the HQ, in Brussels, Belgium we are looking for a talented individual to fill the position of: Cyber Incident Response Analyst – OTYou will be joining the " Cyber Detection and Response" team, which is part of " I T Security, Risk management, Data Privacy and...
-
Security Operations Analyst
il y a 2 semaines
Bruxelles, Région de Bruxelles, Belgique Luminus Temps pleinAre you ready to take on the challenge of protecting critical digital assets in an ever-evolving cybersecurity landscape? At Luminus, we're looking for a proactive Security Operations Analyst to monitor, respond to, and prevent cybersecurity threats while driving innovation and collaboration. What You'll Do Monitor and respond to security events, alerts,...
-
Security Operations Analyst
il y a 3 semaines
Bruxelles, Région de Bruxelles, Belgique Luminus Temps pleinAre you ready to take on the challenge of protecting critical digital assets in an ever-evolving cybersecurity landscape? At Luminus, we're looking for a proactive Security Operations Analyst to monitor, respond to, and prevent cybersecurity threats while driving innovation and collaboration. What You'll DoMonitor and respond to security events, alerts, and...
-
Security Operations Analyst
il y a 3 semaines
Bruxelles, Région de Bruxelles, Belgique Luminus Temps pleinAre you ready to take on the challenge of protecting critical digital assets in an ever-evolving cybersecurity landscape? At Luminus, we're looking for a proactive Security Operations Analyst to monitor, respond to, and prevent cybersecurity threats while driving innovation and collaboration. What You'll Do Monitor and respond to security events,...
-
Security Operation Center Analyst
il y a 2 semaines
Bruxelles, Région de Bruxelles, Belgique Fujitsu Temps pleinFor one of our customers in Brusses, Fijitsu is looking for a Security Operation Center Analyst Start ASAP The National Bank of Belgium is an institution that works towards the stability of the financial system and the reliability of the institutions operating within it. Oversee the Belgian financial system Ensure the security of banknotes and the...
-
Senior CyberSOC Security Analyst
il y a 3 semaines
Bruxelles, Région de Bruxelles, Belgique Orange Cyberdefense Temps pleinOrange Cyberdefense, an Orange Group company, is one of the world's leading cyber security services and solutions providers.Orange Cyberdefense enjoys 25 years' experience in the field of global information security, providing products and services for leading organisations in over 160 Countries.We are building a safer digital society, protecting individual...
-
Cyber Threat Analyst
il y a 6 jours
Bruxelles, Région de Bruxelles, Belgique Luminus Temps pleinRequirementsTo succeed in this role, you will need over 4 years of experience in cybersecurity, with a focus on SOC, SIEM, and vulnerability management. You should be familiar with security frameworks such as ISO27001, NIST, and OWASP. Preferred certifications include GCED and GCIH. You must possess a strong analytical mindset, excellent communication...
-
Security Operation Center Analyst
il y a 2 semaines
Bruxelles, Région de Bruxelles, Belgique Fujitsu Temps pleinFor one of our customers in Brusses, Fijitsu is looking for a Security Operation Center Analyst Start ASAP PO of 1 year (extension possible) The National Bank of Belgium is an institution that works towards the stability of the financial system and the reliability of the institutions operating within it. The National Bank contributes to creating a climate...
-
Security Operation Center Analyst
il y a 6 jours
Bruxelles, Région de Bruxelles, Belgique Fujitsu Temps pleinFor one of our customers in Brusses, Fijitsu is looking for a Security Operation Center Analyst Start ASAP PO of 1 year (extension possible) The National Bank of Belgium is an institution that works towards the stability of the financial system and the reliability of the institutions operating within it. The National Bank contributes to creating a climate of...
-
Incident Response
il y a 2 semaines
Bruxelles, Région de Bruxelles, Belgique Stott and May Temps plein3 days ago Be among the first 25 applicantsDirect message the job poster from Stott and MayHelping Cyber Security Experts Secure Contracts & B2B Roles | CERT/CIRT, SOC, DFIR, Threat Intel, GRC, AppSec, IAM, OT & Cloud Security | EuropeAs an Incident Response & Forensic Analyst, your primary responsibility will be to assist clients in managing and mitigating...
-
Security Analyst
il y a 2 semaines
Bruxelles, Région de Bruxelles, Belgique Isabel Group Temps pleinAs a leading business in secure financial transaction processing, security is at the core of Isabel. The Infrastructure Security Analyst plays an important role in Isabel's Operational Security team to ensure the confidentiality, integrity and availability of all Isabel information.The Infrastructure Security Analyst will provide specialist support within...
-
Cybersecurity Automation Expert
il y a 5 jours
Bruxelles, Région de Bruxelles, Belgique Salt Temps pleinAbout the JobSalt is looking for a skilled Cybersecurity Automation Expert to enhance our team's capabilities in designing and implementing custom security orchestration and automation content using the Cortex XSOAR platform.The ideal candidate will have a solid background in software development and hands-on experience with SOAR platforms. They should...
-
SOAR Platform Specialist
il y a 5 jours
Bruxelles, Région de Bruxelles, Belgique Salt Temps pleinRole SummaryWe are seeking a talented Cybersecurity Automation Expert to join our team at Salt. In this role, you will design and implement custom security orchestration and automation content using the Cortex XSOAR platform.The ideal candidate will have a strong background in software development and experience working with SOAR platforms. They will possess...
-
SOAR Solution Consultant
il y a 2 semaines
Bruxelles, Région de Bruxelles, Belgique Nviso Temps pleinIt all starts with the mission: NVISO is here to protect European society from potentially devastating cyber attacks This means we offer cyber security services to private and governmental organizations to help them better prepare for, prevent, detect and respond to cyber security incidents.All of this is built on four fundamental values that define who we...