Perform day-to-day operations of the security solutions
Use security solutions to identify, investigate, and resolve security incidents on the network
Maintain in-place security tools and processes
Evaluate, test and implement new security tools & technologies
Respond to computer security incidents
Research system and network logs and alerts as they relate to incidents
Identify gaps in cyber operations capabilities and assist in developing those capabilities
Develop technical summary information for presentation to management
Requirements
High School diploma
1-2 years of college or related work experience
Understanding of incident response process in an enterprise operations environment
Understanding of cyber threats and defenses against those threats
Knowledge of Windows, Linux, and networking
Knowledge of enterprise security technologies such as web filtering, endpoint protection, forensics, sandbox, threat intel integration, firewalls, SIEM, patch and vulnerability management
Familiarity with using scripting languages for security automation
Ability to juggle multiple tasks and projects with varying priorities
Ability to document findings for audiences with various levels of technical expertise
MUST BE A US CITIZEN
May need to obtain and maintain Secret security clearance