Experienced Cyber Security Operations Center Analyst – Back Half Night Shift (Remote) – Advanced Threat Detection and Response Specialist

Introduction to Agile Defense and the Cyber Security Landscape In the ever-evolving world of cyber security, the demand for skilled professionals who can detect, analyze, and respond to advanced threats has never been higher. As a leader in providing comprehensive Computer Network Defense and Response support, Agile Defense is seeking a talented and experienced SOC Analyst to. Our program offers 24×7×365 monitoring and analysis of potential threat activity targeting large civilian federal entities, and we are looking for individuals who share our passion for protecting critical assets from cyber threats. Job Overview We are currently seeking a highly skilled and motivated SOC Analyst to support our Cyber Security Operation Center (CSOC). As a CSOC Analyst, you will play a critical role in conducting security event monitoring, advanced analytics, and response activities in support of our CND operational mission. Your expertise will be instrumental in developing advanced analytics and countermeasures to protect critical assets from various cyber threats. If you have a strong background in cyber security systems operations, analysis, and incident response, and are looking for a challenging and rewarding role, we encourage you to apply. Key Responsibilities Monitor for security-relevant events and produce high-quality analysis in accordance with both federal and contractor leadership expectations. Identify opportunities to improve detection content and existing processes relevant to the role. Support fellow analysts on investigations, providing mentorship and training as able. Support special projects related to job duties as requested by federal and contractor leadership. Support candidate vetting, staffing, and on-boarding efforts for the program and XOR as a whole. Support Business Development efforts as required. Support corporate culture development initiatives to foster a culture of learning and growth for technical personnel. Essential Qualifications To be successful in this role, you will need to have: Minimum 1+ years of experience in a Security Operations Center environment. Bachelor's Degree in Information Technology, Cyber Security, Computer Science, Computer Engineering, or Electrical Engineering. Strong analytical and technical skills in computer network defense operations, with the ability to lead efforts in Incident Handling (Detection, Analysis, Triage), Hunting (anomalous pattern detection and content management), and Malware Analysis. Prior experience and ability to analyze information technology security events to discern events that qualify as legitimate security incidents as opposed to non-incidents. Previous hands-on experience with a Security Information and Event Monitoring (SIEM) platform and/or log management systems that perform log collection, analysis, correlation, and alerting (preferably within Splunk). Strong logical/critical thinking abilities, especially analyzing security events from host and network event sources. Strong proficiency in report writing, with excellent verbal and written communications skills and the ability to produce clear and thorough security incident reports and briefings. Excellent organizational and attention to detail skills in tracking activities within various Security Operation workflows. A working knowledge of various operating systems (e.g., Windows, OS X, Linux, etc.) commonly deployed in enterprise networks, with a conceptual understanding of Windows Active Directory and a working knowledge of network communications and routing protocols (e.g., TCP, UDP, ICMP, BGP, MPLS, etc.). Preferred Qualifications While not essential, the following skills and qualifications are highly desirable: An understanding of researching Emerging Threats and recommending monitoring content within security tools. Ability to develop rules, filters, views, signatures, countermeasures, and operationally relevant applications and scripts to support analysis and detection efforts. Experience with one or more of the following technologies: Splunk (including Core and ES), ArcSight, Cisco FirePower, Carbon Black, FireEye (HX, NX, EX). One or more certifications for CND Analysts: GCIA, GCED, GCFA, GCFE, GCTI, GNFA, GCIH, ECSA, CHFI, CISSP, Security+, Network+, CEH, CND. Career Growth Opportunities and Learning Benefits At Agile Defense, we are committed to providing our employees with opportunities for growth and development. As a SOC Analyst, you will have access to: Comprehensive training and development programs to enhance your skills and knowledge. Opportunities to work on complex and challenging projects, with the potential to lead and mentor junior team members. A collaborative and dynamic work environment that fosters innovation and creativity. Recognition and reward for outstanding performance, with opportunities for career advancement and professional growth. Work Environment and Company Culture Our company culture is built on a foundation of trust, respect, and open communication. We believe in fostering a culture of learning and growth, where our employees feel valued and supported. As a remote worker, you will be part of a distributed team that is connected through regular virtual meetings and collaboration tools. We offer a flexible and autonomous work environment, with the opportunity to work from anywhere and create a schedule that suits your needs. Compensation, Perks, and Benefits We offer a competitive salary and benefits package, with opportunities for bonuses and rewards for outstanding performance. Our benefits include: Comprehensive health, dental, and vision insurance. 401(k) retirement plan with company match. Flexible paid time off and holidays. Opportunities for professional development and growth. Access to cutting-edge technologies and tools. Conclusion If you are a motivated and experienced cyber security professional looking for a challenging and rewarding role, we encourage you to apply for this exciting opportunity. As a SOC Analyst at Agile Defense, you will be part of a dynamic and collaborative team that is dedicated to protecting critical assets from cyber threats. With opportunities for growth and development, a competitive salary and benefits package, and a flexible and autonomous work environment, this is an opportunity not to be missed. and take the first step towards an exciting and rewarding career in cyber security! : Apply tot his job Apply tot his job

Back to blog

Common Interview Questions And Answers

1. HOW DO YOU PLAN YOUR DAY?

This is what this question poses: When do you focus and start working seriously? What are the hours you work optimally? Are you a night owl? A morning bird? Remote teams can be made up of people working on different shifts and around the world, so you won't necessarily be stuck in the 9-5 schedule if it's not for you...

2. HOW DO YOU USE THE DIFFERENT COMMUNICATION TOOLS IN DIFFERENT SITUATIONS?

When you're working on a remote team, there's no way to chat in the hallway between meetings or catch up on the latest project during an office carpool. Therefore, virtual communication will be absolutely essential to get your work done...

3. WHAT IS "WORKING REMOTE" REALLY FOR YOU?

Many people want to work remotely because of the flexibility it allows. You can work anywhere and at any time of the day...

4. WHAT DO YOU NEED IN YOUR PHYSICAL WORKSPACE TO SUCCEED IN YOUR WORK?

With this question, companies are looking to see what equipment they may need to provide you with and to verify how aware you are of what remote working could mean for you physically and logistically...

5. HOW DO YOU PROCESS INFORMATION?

Several years ago, I was working in a team to plan a big event. My supervisor made us all work as a team before the big day. One of our activities has been to find out how each of us processes information...

6. HOW DO YOU MANAGE THE CALENDAR AND THE PROGRAM? WHICH APPLICATIONS / SYSTEM DO YOU USE?

Or you may receive even more specific questions, such as: What's on your calendar? Do you plan blocks of time to do certain types of work? Do you have an open calendar that everyone can see?...

7. HOW DO YOU ORGANIZE FILES, LINKS, AND TABS ON YOUR COMPUTER?

Just like your schedule, how you track files and other information is very important. After all, everything is digital!...

8. HOW TO PRIORITIZE WORK?

The day I watched Marie Forleo's film separating the important from the urgent, my life changed. Not all remote jobs start fast, but most of them are...

9. HOW DO YOU PREPARE FOR A MEETING AND PREPARE A MEETING? WHAT DO YOU SEE HAPPENING DURING THE MEETING?

Just as communication is essential when working remotely, so is organization. Because you won't have those opportunities in the elevator or a casual conversation in the lunchroom, you should take advantage of the little time you have in a video or phone conference...

10. HOW DO YOU USE TECHNOLOGY ON A DAILY BASIS, IN YOUR WORK AND FOR YOUR PLEASURE?

This is a great question because it shows your comfort level with technology, which is very important for a remote worker because you will be working with technology over time...