SAIC is seeking a Senior Cybersecurity Specialist to join our team in Arlington, VA. Responsibilities Develop and optimize Splunk Security Information and Event Management (SIEM) data collection solutions to detect, track, and audit various system logging data for timely response to adverse actions on the network Employ Tenable Nessus and DISA STIG/SCAP tools to generate tailored threat reports for senior management and information system engineers to facilitate effective remediation of identified vulnerabilities Oversee analyst team, providing timely detection, identification, and alerting of possible attacks/intrusions and distinguishing the incidents and events from benign activities Deploy and maintain Elastic Stack (ELK) suite of tools to provide 24/7 threat detection and incident response Perform forensic investigations on host and network systems, determining scope, urgence, and impact of suspected events and makes recommendations that enable timely remediation Integrate MITRE ATT&CK framework with Threat Intelligence data to identify and assess risks and threats, and recommend updates to enterprise security protocols Develop, maintain, and implement Tactic, Techniques & Procedure (TTP) documents, incident response playbooks, and risk mitigation documentation Provide mentorship and training to junior security analysts and provide security awareness training to various cross-functional organizations
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior
Number of Employees
11-50 employees