Phone/Skype Hire. Onsite from day 1
Local preferred. State of TX residency is must.
Location: Austin, Texas
Duration: 6+ months
Need 3-page resumes. Must have current LinkedIn profile. Please complete the enclosed documentation in its entirety and always get RTR physically signed.
The Network Security Analyst I performs advanced cybersecurity analysis and threat triage activities within the Cybersecurity Operations Center (CSOC). Work involves continuously monitoring, triaging, analyzing, and prioritizing cybersecurity alerts; investigating suspicious activity; identifying potential threats; and coordinating incident response activities to protect agency information systems, networks, and data. Serves as a primary point of contact for security event analysis, threat identification, and incident escalation.
Responsibilities
Knowledge, Skills, and Abilities
Knowledge of:
Skill in:
Security event analysis and threat triage.
Correlating and interpreting data from multiple cybersecurity tools.
Investigating suspicious activity and identifying indicators of compromise.
Using SIEM, EDR/XDR, threat intelligence, vulnerability management, and case management platforms.
Producing clear documentation, incident reports, and technical communications.
Prioritizing and managing multiple investigations in a fast-paced operational environment for a large organization.
Knowledge of and experience with query languages such as KQL, Lucene, SPL, ESQL, etc.
Knowledge of and experience with scripting languages such as PowerShell, Python, Bash, etc.
Ability to:
Analyze complex security events and distinguish legitimate threats from false positives.
Make risk-based decisions during incident investigations.
Execute established incident response and escalation procedures.
Collaborate effectively with security engineers, incident responders, system administrators, CISO leadership, and business stakeholders.
Communicate technical information clearly to both technical and non-technical audiences.
Work independently and as part of a 24x7 cybersecurity operations team.
Preferred Education and Certifications
Skills Needed
Years
Required/Preferred
Experience
3
Required
Experience triaging security alerts
3
Required
Experience analyzing security events
3
Required
Experience documenting incident investigations
3
Required
Experience with cybersecurity frameworks
3
Required
Experience with incident response processes
3
Required
Experience with threat detection methodologies
3
Required
Experience in cybersecurity operations
3
Required
Experience in security monitoring
3
Required
Experience in incident response
3
Required
Experience in threat detection
3
Required
Experience in security investigations
3
Required
Experience in related cybersecurity disciplines
5
Preferred
Please See Job Description Section for more specific Preferred and Required Skills.