NIGC - Security Operations Analyst 3

Security OperationsSecurity OperationsFull TimeRemoteMid LevelTeam 11-50

Location

United States

Posted

41 days ago

Salary

0

Seniority

Mid Level

No structured requirement data.

Job Description

NIGC - Security Operations Analyst 3

cFocus Software Incorporated

cFocus Software seeks a Security Operations Analyst 3 to join our program supporting the National Indian Gaming Commission (NIGC). This position is remote. This position requires a Public Trust clearance. Qualifications: - Active Public Trust clearance - B.S. Computer Science, Information Technology, or a related field - 4+ years of experience in cybersecurity operations or SOC analysis (senior-level) - Strong knowledge of security monitoring, incident response, and threat detection - Experience with SIEM, SOAR, EDR, and NDR tools - Familiarity with NIST frameworks, FISMA, and federal cybersecurity standards - Experience analyzing logs across network, endpoint, and cloud environments - Knowledge of Microsoft 365, Azure, and identity management (Entra ID) - Experience supporting federal agencies and compliance frameworks - Experience with VMware, Linux administration, and disaster recovery planning - Relevant certifications such as CISSP, CySA+, GCIH, or GCIA - Experience with PowerShell scripting and automation tools Duties: - Perform all security analysis activities according to established standards. - Maintain threat awareness and monitor NIGC information systems for exploits and any suspicious activities; analyze aggregated logs and reports from security tools. - Develop a daily security analysis and reporting checklist and execute activities identified in the checklist. - Evaluate effectiveness of security analysis activities compared to best practices and recommend improvements. - Adhere to Continuous Monitoring practices to evaluate the effectiveness of implemented security controls and execute proactive threat hunting activities to ensure confidentiality, integrity, and availability of NIGC information systems. - Develop detection and response configuration policies to increase automation and alerting. - Develop Incident handling procedures. - Execute Incident Response activities to include all associated actions according to the NIGC incident response plan. - Validate that sufficient and relevant information is captured and retained from security tools to support actionable security awareness and incident investigations. - Collect security operations performance and NIGC security posture management metrics and prepare NIGC threat reports to inform risk management decisions.

Related Categories

Related Job Pages

More Security Operations Jobs

Loopio logo

Security Operations Specialist

Loopio

Supercharge responses to RFPs, RFIs, and Security Questionnaires.

Full TimeRemoteTeam 201-500Since 2014H1B No Sponsor

• Monitor and investigate security events across networks and cloud environments • Support security incident response through investigation and escalation • Review authentication activity and access controls for gaps • Maintain effectiveness of security operational controls and practices • Support logging and monitoring controls across infrastructure • Participate in BCP/DR testing and documentation activities • Collaborate with Engineering and Product for secure software development practices • Work cross-functionally to support security operations and customer trust initiatives

Canada
CA$70K - CA$110K / year
Job Closed
Prime System Solutions logo

SOC Analyst

Prime System Solutions

"Empowering Excellence, Ensuring Continuity, Uninterrupted Success"

Full TimeRemoteTeam 51-200Since 2023H1B No Sponsor

**Responsibilities: ** · Manage the security event monitoring and incident response ticket queues and triage as appropriate to meet the established service level agreements · Promptly transfer cybersecurity tickets to the client or internal point of contact · Clearly convey indicators of compromise, isolation, and remediation steps · Analyze and interpret system, security, and application logs in order to diagnose faults, spot abnormal behavior, and rule out false positives · Effectively utilize End Detection and Response tools to investigate alerts, anomalies, and build accurate timelines related to possible compromise · Follow established procedures to investigate, escalate, contain, or eradicate malicious activity · Develop and deliver written and oral reports to clients, teammates, and management to aggregate and communicate security information and metrics · Provide input and recommendations to improve internal processes and procedures related to SOC duties and responsibilities · Participate in threat-hunting activities and other special projects as required · Understand and follow, our set of standards and processes that produce a predictable result for the client. You must be aware of and maintain our standards. **Additional Responsibilities: ** · Maintain accurate and real-time timesheets, record complete and accurate notes of troubleshooting and communication with clients · Receive mentoring and feedback from peers and others · Where appropriate, escalate complicated issues to a more senior resource or other appropriate teams · Review Tickets with Manager · Actively Participate in Team Huddles, L10 Meetings, One on One Meetings, and any other Team Meetings · Create and update documentation when changes occur, or when discoveries are made · Attend monthly training & team meetings as required · Additional duties as required

South Africa
Tech Minds Agency logo

SecOps Engineer – Freelance

Tech Minds Agency

A Team of Tech Experts Driving Business Success: Web/Mobile Development, Digital Marketing, and Skill-Enhancing Courses

ContractRemoteTeam 1-10Since 2022H1B No Sponsor

• Perform expert-level secure code reviews with a focus on OWASP Top 10 and CWE vulnerability classes. • Identify, triage, and remediate application-layer vulnerabilities, including broken access control, IDOR, SQL injection, command injection, and deserialization flaws. • Develop and maintain security automation tools using Python, GoLang, or JavaScript/TypeScript to streamline vulnerability detection and remediation processes. • Conduct and document penetration tests, collaborating cross-functionally to drive remediation initiatives. • Advise development teams on secure coding practices, bringing a proactive security mindset into the software lifecycle. • Stay informed of emerging threats and incorporate best practices within the customer's environments. • Communicate effectively through detailed written reports and verbal briefings, ensuring security findings are clearly understood and actionable.

India
DoorDash logo

Senior Threat Response Engineer, Security Operations

DoorDash

DoorDash is a food delivery service and app operating in more than 300 major cities throughout the United States and Canada. Using DoorDash, customers can order food from restauran

• Monitor, analyze, and correlate security alerts, logs, and events from various sources • Lead investigation and containment of security incidents, as incident handler • Prepare post-mortem reports and conduct lessons learned • Develop and maintain incident response playbooks and processes • Coordinate with cross-functional teams, internally and externally, on threats targeting DoorDash • Lead or participate in security tool proof-of-concepts and documentation • Identify opportunities for alert development based on threats to DoorDash • Conduct threat hunting • Lead training or other education and awareness opportunities for the enterprise as required • Use monitoring and detection platforms to investigate anomalous activity for potential insider risk • Advise and assist in the onboarding and implementation of custom tooling designed to alert on anomalous behaviors • Create and maintain a use case library to inform detections, and develop corresponding playbooks and escalation procedures • Participate in and support on-call rotation

California
$159.8K - $235K / year