CACI International-posted 3 months ago
$75,200 - $158,100/Yr
Full-time • Mid Level
Saint Louis, MO
5,001-10,000 employees
Professional, Scientific, and Technical Services

Join our team as a CSOC Tier 3 Engineer and play a critical role in cybersecurity incident response. This position offers a unique opportunity to work in a dynamic environment, providing 24x7x365 coordination, execution, and implementation of containment, eradication, and recovery measures for cyber incidents. You will be part of a highly skilled team dedicated to protecting national security interests.

  • Coordinate and implement tasks during cybersecurity incident response, including containment measures, IP blocks, domain blocks, and disabling user accounts.
  • Perform advanced malware and implant analysis, and forensic artifact handling and analysis.
  • Collaborate with Security and Installations Directorate (SI) Office of Counterintelligence (SIC), Insider Threat Office (SIII), and other law enforcement and counterintelligence personnel.
  • Produce security incident reports and categorize incidents and events.
  • Ensure proper reporting, containment, and eradication of incidents by coordinating with other contracts, organizations, and services.
  • De-conflict blue/red team activity with open incidents/events.
  • Ensure recovery from incidents by coordinating with relevant stakeholders.
  • Build timelines, documents, briefings, and other products to inform stakeholders of incident response actions and analysis.
  • Document actions taken and analysis in the authorized ticketing system.
  • Develop and update reports in the Joint Incident Management System (JIMS), Incident Case Management System (ICMS), and other authorized reporting systems.
  • Develop, maintain, and execute custom scripts, tools, and capabilities to collect and analyze data and respond to incidents.
  • Perform digital media analysis on host, server, and network data.
  • Develop and identify indicators of compromise and provide adversary attribution.
  • Perform malware analysis and signature development.
  • Coordinate with CSOC Tier 1 and 2 services to remediate discrepancies and provide recommendations to prevent reoccurrence.
  • Bachelor's Degree in Computer Science, Information Systems, Cybersecurity, or related field
  • Minimum 5 years' experience in Cyber Security (CSOS). Additional years of experience may be used in place of Education requirement
  • Active TS/SCI clearance with the ability to obtain a polygraph
  • DoD 8140.01 and DoD 8570.01-M IAT Level II and CSSP Incident Responder certification
  • Willing to obtain DoD 8140.01 and DoD 8570.01-M IAT Level III and CSSP Incident Responder certification within six months of start
  • Healthcare
  • Wellness programs
  • Financial benefits
  • Retirement benefits
  • Family support
  • Continuing education
  • Time off benefits
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service