Threat Management Specialist – Tier1 (Hybrid)

A.C. CoyFalls Church, VA
Hybrid

About The Position

Tier One Technologies is looking for a Tier1 Threat Management Specialist to support our US Government client. This hybrid contract-to-hire position can be originated in Falls Church, VA; Raleigh, NC or Eagan, MN. SELECTED CANDIDATES WITHOUT REQUIRED CLEARANCE WILL BE SUBJECT TO A FEDERAL GOVERNMENT BACKGROUND INVESTIGATION TO RECEIVE IT.

Requirements

  • BA or BS degree in Computer Science, Information Technology or related field or 4 additional years of related experience in lieu of degree.
  • 1+ years of experience in IT Operations.
  • 1+ year experience in IT Security.
  • Working knowledge of Platform Security Basics, Threat Lifecycle Management, TCP / IP and Incident Management.
  • Familiarity with Control Frameworks and Risk Management techniques.
  • Familiarity with the application of AI/ML techniques in cybersecurity, including but not limited to automated threat detection, incident response automation, and predictive analytics.
  • Familiarity with cloud security (AWS, Azure, GCP).
  • Understanding and experience identifying and implementing automation use cases.
  • Strong interpersonal and organizational skills
  • Excellent communication skills.
  • Must be able to obtain a Position of Public Trust Clearance.
  • All candidates must be a US Citizens or have a Permanent US Residence status (Green Card).
  • Candidate must have lived in the United States for the past 5 years.
  • Cannot have more than 6 months travel outside the United States within the last 5 years. Military Service excluded.

Nice To Haves

  • One or more relevant certifications such as CEH, CISSP, CompTIA Security+, or GCIH are advantageous.
  • Experience in evaluating the effectiveness of AI/ML solutions in a SOC environment is a PLUS.

Responsibilities

  • Receive and triage security alerts from multiple sources, including SIEM platforms, CSOC mailboxes, and direct phone notifications, following established playbooks, SOPs, and incident response procedures.
  • Escalate security events to Tier 2 following initial triage, providing detailed findings and recommendations, including opportunities to leverage Artificial Intelligence (AI), Machine Learning (ML), and Security Orchestration, Automation, and Response (SOAR) capabilities to improve CSOC efficiency and accuracy.
  • Identify security issues and vulnerabilities that may require mitigating controls or additional defensive measures.
  • Analyze and interpret outputs from SIEM platforms, CSOC mailboxes, and other security monitoring sources to identify potential security incidents and determine appropriate response actions.
  • Collect and document key information to support security analysis, including IP addresses, geographic locations, affected assets, user information, and other relevant indicators.
  • Escalate events requiring additional investigation to appropriate members of the Threat Management team while ensuring accurate documentation and timely communication.
  • Execute operational processes and established response procedures in support of identified security incidents.
  • Utilize AI/ML-based tools and techniques to detect anomalies, automate incident triage, identify emerging threats, and enhance threat intelligence capabilities.
  • Analyze threat intelligence to assess security risks, identify emerging threats and threat actor activity, and adapt defensive measures using ML-enhanced tools and techniques.
  • Monitor emerging cybersecurity trends, threat actors, attack techniques, and AI/ML research to identify opportunities for improving security operations.
  • Identify and support automation use cases, including AI/ML-driven solutions designed to enhance SOC monitoring, detection, triage, and incident response capabilities.
  • Collaborate with cross-functional Operations and cybersecurity teams to implement SOC enhancements through automation, AI/ML, and other emerging security technologies.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service