Security Analyst
Fairfax, VA, United States
About NFF
Since 1996, NFF has designed, architected, and delivered IT network and security solutions to many state, and local government agencies, K-20 educational institutions, federal agencies, and large enterprise businesses across the mid-Atlantic. NFF is a technology services and solutions provider, specializing in next-generation IT infrastructure including networks, data centers, cloud migrations, IT security, collaboration and mobility, and full/part-time staff augmentation services. Our solutions, professional services and IT staffing portfolio are centered around building more resilient, secure, adaptive, and intelligent IT infrastructure and include comprehensive assessment, architecture, design, integration and installation services, and ongoing performance management services though our Network Operations Center (NOC).
NFF is a Cisco Gold Partner with a Customer Experience Specialization and was a “Cisco Top-5 Mid-Atlantic SLED Partner” in 2019, 2020 and 2022. NFF has maintained Cisco Gold Partnership since 2008, is the only Cisco Gold Partner headquartered in the District of Columbia. In addition to Cisco, NFF has key partnerships with many manufacturers and IT solution providers including, Rapid7, Arctic Wolf, VMware, NetApp and Splunk.
NFF is a District of Columbia (DC) Certified Business Enterprise (CBE) and a SBA Certified Small Business with headquarters in downtown Washington, DC. Our dedication to quality is reflected in our accomplishment of being awarded multiple ISO 9001:2015 certifications.
About this Position / Responsibilities
- Serving as the Initial Escalation Point for all Investigations/Incidents Requiring Remediation and/or Coordination
- Continuous Monitoring of the Alert Queue
- Responding to Security Incidents with Strict Adherence to Codified Triage Process and Procedures
- Performing Basic Event Correlation and Validation Activities
- Performing Identification of Effected Systems, Networks and Data
- Engaging with Network Operations to Refine Contextual Understanding of Incidents as Appropriate
- Escalating Incidents In Accordance with Established Policies and Procedures
- Monitoring and Enforcing all Response SLAs
- Identifying and Documenting Any Security Risk Associated with Security Operations/Engineering
- Documenting Recommendations for Automation and Innovation
- Initial Analysis of Security Events, Network Traffic, and Logs.
- Monitoring Security Sensor Activity and Associated Logs to Identify Anomalies and Intrusions
- Network Incident First Responder for Reviewing and Verifying System Alerts/Events/Messages/Status/Availability
- Identifying Issues with Incident Response Plans, Worflows, SOPs, KBAs, etc.
- Creation of Shift Turnover Documentation and Products
- Serving as Entry Point to Security Operations; Log all Requests, RFIs, Calls, etc and Work Through to Customer Satisfaction. Add to Turnover as Required.
- Creating Reports/Briefs/AARs/etc as Required
- Joining all IT Operations Generated Bridge Calls
- Thinking Critically and Creatively While Analyzing Security Events, Network Traffic, Events and Logs.
- Incident Response Coordination: Work with Affected Customers to Gather Incident Information, Assess Mission Impact.
- Countermeasure Implementation: In support of IR Actions, Create Options for Isolate and Block Threat Actor Presence.
- Daily Standup Meeting with SecOps
- Creating and updating Incident, Request, and Work Orders daily
- Performs Final Quality Assurance Checks and Closes Tickets with High Degree of Scrutiny
- Responsible for Daily Block list peer review tasks
Qualifications
Requirements:
- 5 years’ related experience in security operations
- Bachelor's degree or 7 years of hands-on security work experience
- US Citizenship required
- 2 years of experience with Splunk SIEM application
Preferred:
- 7 years related experience in security operations
- 3 years of experience with Splunk SIEM application
- Security+ Certification
NFF Disclosures
NFF offers a competitive salary, comprehensive benefits and flexible paid time off options, for eligible employees:
- Medical, Dental and Vision, Health Savings Account, Flexible Spending Account
- STD, LTD, Supplemental life insurance and ADD&D
- Comprehensive 401k plan
- Paid Time Off
NFF is an Equal Opportunity Employer.
Important Notice: All NFF Inc communications come from @nffinc.com. Emails from other domains claiming to be NFF are likely scams. Be cautious, verify senders, and report suspicious messages immediately.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Application security Automation Cloud Incident response IT infrastructure Monitoring NetOps SecOps SIEM SLAs Splunk VMware
Perks/benefits: 401(k) matching Competitive pay Flexible spending account Flex vacation Health care
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.