Accenture Federal Services→
Network Security Monitoring Analyst at Accenture… · Washington
Entry LevelOn-siteFull-timeWashington, DC$91k–$185k/yr
Skills
network security monitoringsecurity informationevent management (siem)splunkintrusion detection system (ids)intrusion prevention system (ips)endpoint detectionresponse (edr)firewall managementincident responsesecurity log analysisthreat intelligence integrationscripting - pythonscripting - bashnetworking protocols tcp/ipnetworking protocols dnsnetworking protocols httpoperating systems windowsoperating systems linuxoperating systems macoscloud security conceptsanalytical skills
Job Description
Summary: Accenture Federal Services is a technology company dedicated to helping the US federal government enhance national security and public safety. The Network Security Monitoring Analyst plays a crucial role in the Security Operations Center, responsible for monitoring security systems, analyzing alerts, and responding to cyber threats to maintain a robust security posture.
Responsibilities:
- Actively monitor SIEM, IDS/IPS, EDR, firewalls, and other security systems for suspicious activity
- Triage and analyze security alerts, identifying true threats vs. false positives
- Support incident response activities including triage, containment, eradication, and recovery
- Analyze security logs and correlate events across multiple sources
- Integrate threat intelligence into monitoring workflows and incident investigations
- Document incident details, timelines, and actions taken
- Assist in tuning, configuring, and maintaining security tools
- Support compliance initiatives aligned to NIST, FISMA, and internal policies
- Collaborate with SOC team members, incident responders, and IT operations
- Maintain awareness of emerging cyber threats, vulnerabilities, and security practices
Required Qualifications:
- Bachelor's degree in computer science, information technology, cybersecurity, or equivalent experience
- Proven experience working in a SOC or similar cybersecurity environment
- Strong understanding of networking concepts and protocols (TCP/IP, DNS, HTTP, etc.)
- Proficiency using SIEM tools, especially Splunk
- Familiarity with IDS/IPS, EDR, and other security platforms (Snort, Suricata, CrowdStrike, SentinelOne)
- Basic to intermediate scripting skills (Python, Bash) for automation and analysis
- Strong analytical and problem‑solving skills
- Excellent communication and teamwork abilities
- Ability to operate in a fast‑paced 24/7 SOC environment
- Knowledge of common operating systems (Windows, Linux, macOS)
- Understanding of cloud security concepts
- Must be able to obtain and maintain a Public Trust government clearance
- Ability to work shift schedules as part of a 24/7 SOC operation
Preferred Qualifications:
- Relevant cybersecurity certifications (Security+, CySA+, CEH, GCIA, etc.)
- Experience with log correlation, threat hunting, or SOC automation
- Familiarity with MITRE ATT&CK or other threat‑behavior frameworks
- Experience tuning SIEM rules, dashboards, and detection logic
- Exposure to digital forensics or malware analysis
Required Skills: Network security monitoring, Security Information, Event Management (SIEM), Splunk, Intrusion Detection System (IDS), Intrusion Prevention System (IPS), Endpoint Detection, Response (EDR), Firewall management, Incident response, Security log analysis, Threat intelligence integration, Scripting - Python, Scripting - Bash, Networking protocols TCP/IP, Networking protocols DNS, Networking protocols HTTP, Operating systems Windows, Operating systems Linux, Operating systems macOS, Cloud security concepts, Analytical skills