Shift / Task Lead - SOC / Cyber Security

ComtechWashington, DC
16d

About The Position

Job Description: There will be one Shift Lead in each shift. A Lead is the subject matter expert for all intrusion detection-monitoring activities during their assigned shift . The Task Lead must have the ability to support detailed discovery and analysis of intrusion detection security events, in order to assure that quality work is performed. The Task Lead is the single point of final incident reporting review and escalation. The Task Lead acts as a point of contact for escalations to Management and releases all notification created by their team. The Task Lead will ensure that all incidents are clearly documented and process timely and have been reviewed for quality: the ability to communicate clearly both orally and in writing. The Shift Task Lead will deliver in Microsoft Word a quality written shift lead report detailing work performed during the shift. The report may be shared with Executive Management.

Requirements

  • High School Diploma. Bachelor’s degree in Information Systems, Computer Science or related field is preferred.
  • Seven years of security intrusion detection examination experience involving a range of security technologies that product logging data; to include wide area networks host and network IPS/IDS/HIPs traffic event review, server web log analysis, raw data logs.
  • At least two years as a cyber security or security operations shift team leader.
  • At least five years’ experience working at a senior level, performing analytics examination of logs and console events in the following working experience areas of; creating advance queries methods in Splunk or advance Grep skills, firewall ACL review, examining Snort based IDS events, Pcaps, web server log review, and working in a SIEM environment.
  • Must possess at least one (1) of the following certifications: GIAC Certified Intrusion Analyst (GCIA), EC-Council's Certified Security Analyst(ECSA), GIAC Certified Perimeter Protection Analyst (GPPA), GIAC Certified Enterprise Defender (GCED), Systems Security Certified Practitioner (SSCP), or a Certified Information Systems Security Professional(CISSP).

Nice To Haves

  • Bachelor’s degree in Information Systems, Computer Science or related field

Responsibilities

  • Support detailed discovery and analysis of intrusion detection security events
  • Single point of final incident reporting review and escalation
  • Act as a point of contact for escalations to Management
  • Releases all notification created by their team
  • Ensure that all incidents are clearly documented and process timely and have been reviewed for quality
  • Deliver in Microsoft Word a quality written shift lead report detailing work performed during the shift
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service