Digital Forensic SOC Analyst Job at Integres, LLC, Crownsville, MD

Tk1qeEpuVlJjdVg3ZzV4SVFvTVZRcExKZ1E9PQ==
  • Integres, LLC
  • Crownsville, MD

Job Description

  • Integres, LLC is a Service-Disabled Veteran Owned Small Business (SDVOSB) which was established to provide high quality, insightful, agile information technology-based solutions to its customers. Integrity is a foundational element of everything we strive to do. We seek to develop solutions which respond to the evolving challenges that today’s organizations face using our own unique combination of industry best practices, and evolving techniques and technologies. We started Integres with the intent of building "a company with a soul". As such, we take a servant-leadership approach as the long-term strategy for our success. We are cultivating a corporate family culture which demands excellence and accountability while putting a premium on work/life balance. We empower and support our employees to contribute to achieving our corporate goals by interacting with our customers as true partners, rather than treating their engagement as just another job. We seek to be good corporate citizens and encourage and promote employee participation in community and volunteer work.

Job Description

  • Report to Director of Security Operations or his/her designee
  • Provide SOC Analyst Tier 3 escalation support
  • Plan, initiate, and conduct investigations for cybersecurity incidents response efforts
  • Perform forensic examinations on compromised systems
  • Understand and use forensic tools and techniques for cybersecurity incidents
  • Create forensic root cause and scope of impact analysis reports
  • Contribute to technical briefings on the details of forensics exams and report
  • Provide support in conducting malware analysis of attacker tools
  • Stay current on incident response and digital forensics skills, best practices, and tools
  • Train SOC analysts on usage of SIEM tools (Splunk), and basic event analysis
  • Develop rules and tune SIEM and related tools to streamline the event analysis done by the SOC
  • Assist developing new processes and procedures for SOC monitoring
  • Monitor networks for threats from external and internal sources
  • Analyze network traffic of compromised systems and networks
  • Correlate actionable security events from various sources
  • Review threat data and develop custom detection signatures
  • Gather and analyze threat intelligence data and conduct threat hunting
  • Understand cybersecurity attacks and tactics, techniques, and procedures (TTPs) associated with advanced threats
  • Communicate clearly with Government counterparts, and SOC customers
  • Development and implementation and operational and technical incident response processes, procedure, guidance, and standards
  • Ability to work outside of regular business hours, the role may require on-call support after regular business hours or weekends.

Qualifications



 

  • Bachelor’s degree from an accredited college or university with a major in Computer Science, Information Systems, Engineering or a related scientific or technical discipline and 4+ years of experience. Associate degree and/or cyber courses/certifications or 5 years of experience in directly related fields may be substituted in lieu of bachelor’s degree
  • Hands-on experience with security monitoring and SIEMs tools - Splunk Enterprise Security is preferred
  • Demonstrated working knowledge of cyber forensics and incident handling best practice processes, procedures, standards, and techniques
  • Hands-on experience with forensics image capture tools, i.e., FTK Imager and MAGNET ACQUIRE
  • Hands-on experience with system image/file system/registry forensics tools (i.e., Encase, FTK, X-Ways, Magnet AXIOM, Sleuthkit, Access Data Registry Viewer, Registry Recon, or other)
  • Hands-on experience with PCAP analysis tools, i.e., Wireshark, TCP Dump, Network Miner, Xplico, or other
  • Hands-on experience with memory forensics tools, i.e., BlackLight, Volatility, SANS SIFT, Magnet RAM Capture, or FireEye Memoryze, CrowdStrike Crowd Response
  • Hands-on experience with Endpoint Detection & Response solutions - Tanium Threat Response, McAfee or other

Additional Information



Integres offers competitive salaries bolstered by a comprehensive benefits package, which provides safety and security for our employees and their families. Our generous benefits package includes:

  • Healthcare and Insurance: medical, dental, vision, short and long-term disability protection, basic life and AD&D insurance
  • 401(k) Savings Plan
  • Accrued Paid Time Off (PTO)
  • Employee Recognition and Rewards
  • Employee Referral Bonuses

Integres is an equal opportunity affirmative-action employer. We encourage Minority/Female/Protected Veteran/Disabled applicants to apply. Integres, LLC proactively fulfills its role as an equal opportunity employer. We do not discriminate against any employee or applicant for employment because of race, color, sex, religion, age, sexual orientation, gender identity and expression, national origin, marital status, physical or mental disability, status as a Disabled Veteran, Recently Separated Veteran, Active Duty Wartime, or Campaign Badge Veteran, Armed Forces services Medal, or any other characteristic protected by law.

All your information will be kept confidential according to EEO guidelines.

Job Tags

Contract work, Temporary work, Weekend work,

Similar Jobs

CareerVite, LLC

Bilingual Japanese Credit Operations Job at CareerVite, LLC

 ...on the performance of clients of Japanese and Asian Corporate Banking Department to assess historical performance and future projections...  ...documentation to structure deals, liaise with middle and back office for KYC purposes, and assist in drafting pre screen memos for... 

Trucker Job USA

Regional Truck Driver-No Experience-Good Miles-Raleigh, NC Job at Trucker Job USA

 ...drivers based in Raleigh, NC willing to drive regional routes, are...  ...Benefits: Great Benefits Pay Salary: pay per experience Average earnings per week: $1300+ Good Miles Home time: Every 2-3...  ...stop No experience will train No touch freight No special... 

Food For The Poor

Studio Operations Specialist Job at Food For The Poor

 ...About Food For The Poor Food For The Poor, one of the largest international relief and development organizations in the nation, does much...  ...solutions. Education and Experience: This is not Entry level. Bachelors degree in media production, communications, or... 

Citywide Insulation Inc.

Insulation Installer Job at Citywide Insulation Inc.

 ...Job Description Job Description Commercial and Residential Installers Pay: $18 - $24 per hour Immediate full time openings, Experience helps, WILL TRAIN. Drivers License and medical card a plus. Medical, Dental, Disability and life insurance. 401K, PTO, and... 

Woofies

Dog Walker and Pet Sitter at Woofie's of Concord-Manchester Job at Woofies

 ...Job Description Job Description Calling All Pet Lovers: Join Our Paw-some Team! Are you wild about animals and crazy about canines? Do you thrive on giving pets the love and care they deserve? If so, we have the paw-fect job for you! Position: Fun-Loving Dog...