Jobless Developer
ARSIEM logo

Posted 20 months ago

Open

Incident Handler Tier 2

Monterey, CARemoteFull-time

AI Summary

Incident Handler Tier 2 providing cybersecurity incident response and remediation support within a CSOC, managing tickets, analyzing threats, and operating security monitoring tools.

About this role

About ARSIEM Corporation

At ARSIEM Corporation we are committed to fostering a proven and trusted partnership with our government clients. We provide support to multiple agencies across the United States Government. ARSIEM has an experienced workforce of qualified professionals committed to providing the best possible support.

As demand increases, ARSIEM continues to provide reliable and cutting-edge technical solutions at the best value to our clients. That means a career packed with opportunities to grow and the ability to have an impact on every client you work with.

ARSIEM is looking for a motivated individual for an Incident Handler Tier 2 to work with cybersecurity incident response processes, procedures, and remediation practices. This is a great opportunity to work in a Cyber Security Operations Center (CSOC) and gain experience with cyber tools such as SIEM, Endpoint Protection, Network Access Controller, Cloud security, Vulnerability scanning, and additional proof of concept technologies. This position will support one of our government clients in Monterey, CA.

Responsibilities

  • Provide support to a U.S. Navy Security Operations Center (SOC).
  • Review trouble tickets generated by Tier 1.
  • Leverage emerging threat intelligence (Indicators of Compromise, updated rules, etc.) to identify affected systems and the scope of the attack.
  • Review and collect asset data (logs, configurations, running processes, etc.) on these systems for further investigation.
  • Determine and direct remediation and recovery efforts.
  • May manage and configure security monitoring tools (SIEM, IDS, Firewall, Access Control Lists, etc.) to mitigate existing threats/vulnerabilities.
  • Minimum Qualifications

  • At least three (3) years of professional experience in incident detection and response, malware analysis, or cyber forensics, and a bachelor’s degree in Computer Science, Engineering, Information Technology, Cybersecurity, or related field.
  • Extensive experience working with various security methodologies, standard operating procedures, processes, and workflows, and advanced knowledge of TCP/IP protocols.
  • Experience configuring and implementing various technical security solutions.
  • Extensive experience providing analysis and trending of security log data from a large number of heterogeneous security devices.
  • Must possess knowledge of the following areas related to cybersecurity: Vulnerability Assessment, Intrusion Prevention and Detection, Access Control and Authorization, Policy Enforcement, Application Security, Protocol Analysis, Firewall Management, Incident Response, Encryption, Web filtering, and Advanced Threat Protection.
  • Skills

    Cloud SecurityEndpoint ProtectionFirewall ManagementIDS/IPSIncident ResponseMalware AnalysisNetwork Access ControlSIEMTCP/IPVulnerability Scanning

    Explore related jobs

    Browse these categories