logo

View all jobs

Cleared SOC Engineer- TS/SCI Clearance Required

Columbia, MD · Information Technology

We pride ourselves on an open, and honest culture in the workplace which builds morale conducive to inspiring growth on our team, while balancing lifestyle by supporting personal and family goals with flexibility. We offer secure network systems and software engineering solutions in both the public and private sectors. With certified experts consulting the team, we are able to address the customer's mission and follow-through in the systems development life cycle. 

Clearance Required: TS/SCI 
Title: SOC Engineer
Location: Columbia, MD


Responsibilities:

  • Work with the customer to determine log management and SIEM needs and evaluate existing systems for improvements, gaps, and next generation architecture and design.  
  • Designs and deploys new systems and upgrades existing systems as needed to meet customer needs and protect systems from emerging threats.
  • Identify gaps in malicious activity detection capabilities, create new signatures / rules to improve detection of malicious activity and test and tune existing signatures / rules to ensure low rate of false positives. 
  • Assist in playbook development for alert triage and Incident Response, define and implement alert and threat detection metrics, statistics, and analytics. 
  • Recommend new tools/technologies to improve network visibility, support Incident Response and Forensic operations as required to include static/dynamic malware analysis and reverse engineering, and author and maintain scripts for threat detection and automation.
  • Have direct hands on experience with tools such as Logstash, Podman, Docker, Splunk, Corelight, Security Onion, Windows Operating System, and Red Hat Enterprise License. 
  • This position is a true “hands-on-keyboard” role in which you will be required to both independently, and as part of a broader team, install, configure, and maintain Splunk and other SOC related applications.

Qualifications:

  • Experience deploying, maintaining, and configuring Splunk and other SIEM tools
  • Experience and in-depth understanding of Security Event Management
  • Experience designing infrastructure to meet customer requirements
  • Strong working knowledge of both Windows and Linux systems, with scripting experience
  • Experience administering and working within a virtualized environment
  • Ability to articulate technical solutions to a wide range of difficult problems with various levels of stakeholders
  • Experience working with ticketing systems (i.e. Jira, ServiceNow, etc)
  • Experience working within classified enterprise networks
  • Experience creating technical documentation to include diagrams, both logical and physical

Required IAT 3 Certs:

  • One or more of the following: (CASP+, CISSP, CISA, CCNP Security, GCED, GCIH, CCSP)

Required Vendor Cert: 

  • One or more of the following: Splunk, Microsoft, Cisco, Linux, or any other related vendor certification. If not currently achieved, then must achieve within 6 months of hire

Clearance Required:

  • Active TS/SCI

Minimum Years of Experience:

  • 4 years of experience working as an ISSE or within a SOC

Preferred:

  • Python and/or Ansible Scripting experience
  • Prior military experience

 


Benefits:

We offer a competitive benefits and compensation package and FUN place to work! Benefits include, but not limited to:

Health and Wellness Benefits

  • Medical Insurance (three CareFirst healthcare plans to choose from, Dental and Vision Insurance, 75% covered for employee/ 50% per dependant

  • Health Savings Account (HSA) contributions $1500 individual/ $3000 family

Personal Insurance Benefits 

  • Company-paid Life Insurance and AD&D coverage

  • Company-paid Short-term and Long-term Disability Insurance

Paid Leave

  • Employees receive 20 days of vacation/10 holidays built into hourly rate/ 5 days of sick time (currently used for snow, jury, bereavement) 

Retirement

  •  Pre-tax 401k program including 6% company match

  • 100% fully vested from eligibility date

*Eligible after 90 days of employment

Company provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, pregnancy, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state or local laws.

This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training.

Share This Job

Powered by