SOC CTIC Lead - SME
USD 104K-155K (estimate) Senior-level Full Time
Tasks
- Analyze host artifacts
- Analyze network artifacts
- Apply MITRE ATT&CK analysis
- Collect digital evidence
- Conduct cyber incident response investigations
- Conduct malware triage
- Coordinate incident handling with SOC and CIRT
- Correlate security events for incident determination
- Document incident actions and findings
- Perform forensic acquisition
- Perform incident tracking and case management
- Perform root cause analysis
- Support containment actions
- Support post incident reporting and lessons learned
- Support recovery validation
- Use IDS and IPS telemetry
- Use SOAR workflows for response
- Use USIEM analytics for investigation
- Use Zeek metadata analysis
- Use endpoint detection and response for triage
- Verify remediation restoration status
Perks/Benefits
- N/A
Skills/Tech-stack
Case management | Cause analysis | Containment | Cybersecurity | Digital forensics | EDR | Event Correlation | Evidence collection | Forensic acquisition | IDSIPS | Incident Response | Incident documentation | Log Analysis | MITRE ATT&CK | Malware triage | Recovery Validation | Root Cause Analysis | Root cause | SOAR | Security Event Correlation | Security telemetry | Sysmon | Threat Analysis | USIEM | Zeek
Education
Bachelor of Engineering | Bachelor of Science | Master of Science | PhD
Related jobs
-
Access Control | Analytics | Cloud Security | Continuous Monitoring | Cross domainSenior-level Full TimeFAIRFAX, VA, United States4h ago
-
SOC CIRT Team Lead - SME USD 104K-165KBehavior analytics | Case management | Cybersecurity | Data Loss Prevention | Data lossSenior-level Full TimeFAIRFAX, VA, United States4h ago
-
SOC Security Engineering Team Lead - Senior USD 130K-166KATTACK | Alert fidelity | Configuration baselines | Cybersecurity Policy | Cybersecurity policy complianceSenior-level Full TimeFAIRFAX, VA, United States4h ago
-
SOC Vulnerability Management ACAS Lead - Senior USD 112K-166KACAS | Credentialed Scanning | Cybersecurity compliance | EDR | EMASSSenior-level Full TimeFAIRFAX, VA, United States4h ago
-
Lead Info Sec Engineer USD 151K-252KAccess Management | Active Directory | Asset Management | Change governance | Configuration ManagementDay shift | Full-time employment | Remote workSenior-level Full TimeDistrict of Columbia-Washington1d ago
-
Security Engineer II, Policy Lead (TS/SCI, Onsite) USD 97K-171KBehavior Analysis | Incident Response | Insider Threat | Policy Development | Risk MitigationCompetitive benefits package | Mentorship | Onsite work | Professional development opportunitiesSenior-level Full TimeArlington/Rosslyn, Virginia, United States1d ago
-
Lead Cyber Security Engineer | $140K-$175K + Remote + Equity | Exciting High growth AI Operational Intelligence Startup A USD 140K-175KAPI Security | Cloud Security | Governance | ISO 27001 | ISO 42001Equity | Health medical and vision coverage | PTO | Paid Holidays | Remote workExecutive-level Full TimePhiladelphia, PA, United States R1d ago
-
Cybersecurity Lead USD 156K-174KApplication Security | Assessment and Authorization | Code Analysis | Cybersecurity | Cybersecurity compliance401k matching | Paid parental leaveSenior-level Full TimeDC, United States1d ago
-
Authorization | Continuous Monitoring | Control Assessment | Incident Response | NISTSenior-level Full TimeWashington, DC, United States1d ago
-
Manager, Product Security Lead USD 125K-174KApplication Security | CVE management | CVSS | CWE | Cloud Security401k | Childcare benefits | Dental insurance | Health care center | Health plan optionsSenior-level Full TimeCary HQ, NC, United States1d ago
-
Information Security Architect - CSIRT USD 148K-223KAWS | Azure | Best practices | Cause analysis | Cloud SecuritySenior-level Full TimeWashington - Seattle, United States1d ago
-
Lead information Security Engineer USD 143K-224KAccess Management | Authentication | Business Continuity | Content Filtering | Cryptography24x7x365 Operations Center Exposure | Hybrid work schedule | Rotational on-call supportSenior-level Full Time141278-NC-CIC Customer Information Ctr, United States1d ago
-
Lead Info Security Architect USD 136K-165KAgile | Automation | Cloud Access Security Broker | Cloud Architecture | Cloud SecuritySenior-level Full Time3965 Dallas Parkway Frisco, TX 75034, …1d ago
-
Cloud Security | Configuration Management | DDoS | Data Loss Prevention | Data lossBackup childcare | Financial coaching | Health care coverage | Mental health support | On Site Health Wellness CentersSenior-level Full TimePlano, TX, United States2d ago
-
Manager-Cloud Operations USD 92K-143KAWS | Access Management | Alerting | Automation | AzureDailyPay | Education assistance | Financial education | Health benefits | Paid parental leaveMid-level Full TimeYork, PA, United States2d ago
-
Cyber Strategy | Cybersecurity | Cybersecurity operations | Governance | PlanningOnsite work flexibility | Professional development | Travel opportunitiesMid-level Full TimeArlington/Rosslyn, Virginia, United States2d ago
-
SOC Team Lead USD 131K-166K800-53 | Cause analysis | Correlation Search | Crisis management | Data IngestionSecret clearance sponsorshipSenior-level Full TimePortland, OR, United States2d ago
-
Sr Lead, Cyber Sec IT RiskM USD 114K-194KAudit Support | Automation | Azure | CI/CD | Cloud ComputingSenior-level Full TimeChicago, IL, United States2d ago
-
Activity monitoring | Audit management | Change Management | Compliance | Content Filtering401k plan | Accidental death and dismemberment | Dental insurance | Disability insurance | Life insuranceSenior-level Full TimeCharlotte NC - 2320 Cascade Pointe …2d ago
-
AppSec Vulnerability Risk Lead USD 141K-237KAI Security | Adversarial Attacks | Application Security | Audit Readiness | COBIT401k plan | Adoption reimbursement | Disability benefits | Employee assistance programs | Employee wellness programsSenior-level Full TimeCharlotte, North Carolina2d ago
-
AppSec Vulnerability Risk Lead USD 141K-237KAI Security | Adversarial Attacks | Application Security | Audit Readiness | COBIT401k plan | Adoption reimbursement | Caregiver leave | Disability benefits | Employee assistance programSenior-level Full TimeDallas, Texas2d ago
-
Lead Penetration Test Engineer USD 135K-200KAccess Management | Application Security | Bash | Burp Suite | CI/CDSenior-level Full TimeUS - NJ - PRINCETON ONE …2d ago
-
Security GRC Lead USD 110K-183K800-53 | Audit Evidence Collection | Audit evidence | Confluence | Control Management401k plan | Caregiver leave | Dental insurance | Disability insurance | Health insuranceSenior-level Full TimeUnited States - North Carolina - … R2d ago
-
Lead Cyber Security Engineer | $140K-$175K + Remote + Equity | Exciting High-growth AI-Powered Operational Intelligence Startup A USD 140K-175KAPI Security | AWS | Azure | Cloud Security | Compliance10 days PTO | Equity | Health medical and vision coverage | Paid Holidays | Remote within United StatesExecutive-level Full TimePhiladelphia, PA, United States R2d ago
-
Cyber Exercises Support Lead USD 124K-179KCybersecurity | Policy Development | Project Management | Service Delivery | Technical standardsSenior-level Full TimeWashington, DC3d ago