Digital Forensics SOC Analyst :: Crownsville, Maryland Job at Stellent IT LLC, Crownsville, MD

NTAzV0NBZ1dPMWN1a0l2N2JDallMeVFqeFE9PQ==
  • Stellent IT LLC
  • Crownsville, MD

Job Description

Job Title Digital Forensics SOC Analyst

Location Crownsville, Maryland

Duration Long Term

Interview mode: Face to Face Interview

Job Description

Duties and Responsibilities:

  • Report to Director of Security Operations or his/her designee
  • Provide SOC Analyst Tier 3 escalation support
  • Plan, initiate, and conduct investigations for cybersecurity incidents response efforts
  • Perform forensic examinations on compromised systems
  • Understand and use forensic tools and techniques for cybersecurity incidents
  • Create forensic root cause and scope of impact analysis reports
  • Contribute to technical briefings on the details of forensics exams and report
  • Provide support in conducting malware analysis of attacker tools
  • Stay current on incident response and digital forensics skills, best practices, and tools
  • Train SOC analysts on usage of SIEM tools (Splunk), and basic event analysis
  • Develop rules and tune SIEM and related tools to streamline the event analysis done by the SOC
  • Assist developing new processes and procedures for SOC monitoring
  • Monitor networks for threats from external and internal sources
  • Analyze network traffic of compromised systems and networks
  • Correlate actionable security events from various sources
  • Review threat data and develop custom detection signatures
  • Gather and analyze threat intelligence data and conduct threat hunting
  • Understand cybersecurity attacks and tactics, techniques, and procedures (TTPs) associated with advanced threats
  • Communicate clearly with Government counterparts, and SOC customers
  • Development and implementation and operational and technical incident response processes, procedure, guidance, and standards
  • Ability to work outside of regular business hours, the role may require on-call support after regular business hours or weekends.

Minimum Qualifications:

  • Hands-on experience with security monitoring and SIEMs tools - Splunk Enterprise Security is preferred
  • Demonstrated working knowledge of cyber forensics and incident handling best practice processes, procedures, standards, and techniques
  • Hands-on experience with forensics image capture tools i.e., FTK Imager, MAGNET ACQUIRE
  • Hands-on experience with system image/file system/registry forensics tools i.e., Encase, FTK, X-Ways, Magnet AXIOM, Sleuthkit, Access Data Registry Viewer, Registry Recon, or other)
  • Hands-on experience with PCAP analysis tools i.e., Wireshark, TCP Dump, Network Miner, Xplico, or other
  • Hands-on experience with memory forensics tools i.e., BlackLight, Volatility, SANS SIFT, Magnet RAM Capture, or FireEye Memoryze, CrowdStrike Crowd Response
  • Hands-on experience with Endpoint Detection & Response solutions - Tanium Threat Response, McAfee or other

Desired Skills/Certifications:

  • Practical hands-on experience with static in malware analysis
  • Hands-on experience with malware anti-forensics, obfuscation, packing techniques
  • Hands-on experience with malware Analysis - Miscellaneous dynamic & static analysis tools (IDA Pro, Ghidra, OllyDBG, WinHex, HexEdit, HexDump, PeSTudio, REMux, OLEDUMP)
  • Hands-on experience with Custom Signature Creation - YARA
  • Scripting/Programming experience - Python, Perl, C, C++, Go
  • Highly desired industry certifications include Certified Forensics Computer Examiner (CFCE), Computer Hacking Forensic Investigator (CHFI), GIAC Certified Forensic Examiner (GCFE), Certified Computer Examiner (CCE)
  • Relevant industry certifications such as Certified Ethical Hacker (CEH), GIAC Reverse Engineering Malware (GREM), Certified Reverse Engineering Analyst (CREA) etc.
  • Educational and Years of Experience: Bachelor's degree from an accredited college or university with a major in Computer Science, Information Systems, Engineering or related scientific or technical discipline and 4+ years of experience. Associate degree and/or cyber courses/certifications or 5 years of experience in directly related fields may be substituted in lieu of bachelor's degree

Akshit Sisonia - Sr. Technical Recruiter

Email - [email protected]

LinkedIn - linkedin.com/in/akshit-s-97297125a

STELLENT IT A Nationally Recognized Minority Certified Enterprise

" Happiness can be found, even in the darkest of times, if one only remembers to turn on the light ."
- JK Rowling

Job Tags

Weekend work,

Similar Jobs

Nexus Logistics GRP

OTR CDL Class A Driver Job at Nexus Logistics GRP

 ...Job Details : Out 2 weeks, Home 2 full days. Average $2,500 weekly. No-Touch Freight. Operate all over the USA Paid training Company Benefits: Full benefit options and 401K Paid vacation and training Bonus programs and incentives Reliable... 

Interim HealthCare of Fenton, MO

Home Care Aide (HCA) / Certified Nurse Assistant Job at Interim HealthCare of Fenton, MO

Home Care Aide (HCA) / Certified Nurse Assistant in Ellisville, Eureka, Fenton, Ballwin, Chesterfield, PacificDesign your career around your life! The beauty of being a Caregiver for Interim HealthCare is the flexibility and work-life balance it offers. Whether you... 

Boston Services

RN Care Coordinator Job at Boston Services

 ...Seeking an RN care coordinator for primary care clinic in Bush Alaska. This position will coordinate care for patients in several remote locations for chronic care appointments, follow up for recent hospitalization, and an advocate to patient needs. Must be culturally... 

Resource Development Co Inc

Webflow & Wordpress Developer Job at Resource Development Co Inc

 ...approved Figma files into responsive pages in WordPress and Webflow. Build out custom...  ...Required: ~5+ years of experience developing websites in either WordPress, Shopify, OR...  ...Helpful, but not required: Knowledge of Web Accessibility Knowledge of additional... 

Blue Compass RV Raleigh

RV Sales Associate Job at Blue Compass RV Raleigh

Start your journey with Blue Compass RV as we are looking for Sales Associates to join our team and manage the sales process from start to finish. In this role you will help clients with product selection, negotiate terms, and ultimately finalize sales. The Role: The...