Cyber Security Operations Specialist

Springfield, VA

Freedom Technology Solutions Group

Life. Liberty. Technology We approach mission challenges from our customer's perspective and deliver top-quality solutions with mission-speed efficiency. View Open Positions Freedom Skill Set Freedom’s experienced team has the expertise and a...

View all jobs at Freedom Technology Solutions Group

Apply now Apply later

Freedom Technology Solutions Group is seeking a motivated, career and customer-oriented Cybersecurity Operations Specialist to perform on our Cybersecurity Data Analysis Services team in the Springfield, VA area or Saint Louis, MO.

The Cybersecurity Operations Specialist shall provide cybersecurity data analysis services, which designs, develops, builds, tests, configures, employs, operates, integrates, sustains, and refreshes the Security Information Events Management (SIEM) capability (i.e. Enterprise Audit), long-term analytics platform, log aggregation platform, and the cyber threat intelligence capability, signature development and deployment, and reputation management services.

Responsibilities:

  • Provide all preventative and corrective maintenance to ensure consistent, reliable, and secure service availability.
  • Maintain system availability and reliability with a threshold of 99.99%
  • Detect and ticket degradations (volume/velocity) of all SIEM data flows within 60 minutes of the start of the degradation
  • Perform day-to-day maintenance, and specific scheduled maintenance activities that result from manufacturers recommended service intervals, alerts, bulletins, available patches, and updates according to agency approved change management processes.
  • Execute emergency maintenance actions with sufficient urgency to preclude unacceptable outage durations, approved by the Government prior to execution, and coordinated through and approved by CSOC and ESC government management
  • Perform all development, engineering, testing, integration, and implementation actions necessary for major vendor revisions
  • Retain documentation regarding loss of event logs (e.g. June 5-7th DNS logs were not ingested from SBU and are lost)
  • Configure all assets assigned to this service within the Government Furnished Information - Software Tools list in accordance with all Federal, DoD, IC, and NGA laws, directives, orders, polices, guidance, procedures etc.
  • Utilize agency approved ticketing systems to document, track, assign, update, and coordinate all engineering, integration, configuration, and maintenance actions

Required Qualifications:

  • Active TS/SCI Clearance
  • DoD 8570.01-M IAT Level II and CSSP Infrastructure Support certifications
  • Experience developing and maintaining enterprise audit projects
  • SIEM experience with one of the following ArcSight, ElasticSearch, Splunk, Event Broker, User Behavioral Analysis (UBA)
  • Experience providing support to Cybersecurity Operations Cell (CSOC) in creating alerting rules
  • Create SIEM playbooks
  • Linux (RHEL) Expert (administration and engineering)
  • Proficient in manipulating SIEM filters to better find and analyze potential
  • malicious/atypical activity and reduce false positives
  • Experience with content development within ArcSight and Kibana to facilitate Cyber Analysts ability to investigate malicious events
  • Creation of ArcSight rules based on use cases of malicious events

 

What’s in It for You? Flexible work environment A team mentality – work with friendly, like-minded professionals Work with innovative, cutting edge technologies Enjoy extremely competitive compensation and benefits A work-life balance you can count on Opportunities to grow and advance your career on our dime   The Benefits You Get with Freedom Amazing benefits including matching 401k, fully paid medical, and more Generous paid time off – including paid site closure days Competitive salary offerings Paid training and tuition reimbursement Referral bonuses Fully paid life and disability Annual logo wear allowance Company sponsored events (game nights, holiday party, summer party, happy hours) Interested in learning more about Freedom and our culture?  Contact us today!  We’re constantly hosting hiring events in our office and elsewhere, to help you get a sense of what life is like at Freedom before joining the team.   As an Equal Opportunity Employer, we do not discriminate on the basis of race, color, religion, sex, age, marital status, disability or veteran status Applicant Federal & E-Verify Postings VEVRAA Federal Contractor   Accessibility: If you need an accommodation as part of the employment process, please contact Human Resources at Phone: 410-290-9035  Email: recruiting@goftsg.com   Equal Opportunity Employer, including disabled and veterans.   If you want to view the EEO Law poster, please choose your language: English - Spanish - Arabic - Chinese   If you want to view the EEO Law Supplement poster, please choose your language: English - Spanish - Chinese   If you want to view the Pay Transparency Policy Statement, please click the link: English

 

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0

Tags: Analytics ArcSight Clearance CSOC DNS DoD DoDD 8570 Elasticsearch Linux SIEM Splunk Threat intelligence TS/SCI

Perks/benefits: Career development Cell phone stipend Competitive pay Flex hours Flex vacation Team events

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.