Tyto Athene, LLC→
Tier 1 Incident Response Analyst at Tyto Athene,… · US-DC-Was…
Entry LevelOn-siteFull-timeUS-DC-Washington$110k–$120k/yr
Skills
siem experiencecloud service providersmalware knowledgewindowsunix osphishing techniquesincident response experiencecustomer service mentalityregex knowledgescripting languages
Job Description
Summary: Tyto Athene is a trusted leader in IT services and solutions, delivering mission-focused digital transformation that drives measurable success. They are seeking a Tier 1 Incident Response Analyst to support their cybersecurity services by monitoring tools, triaging alerts, and investigating potential cyber threats.
Responsibilities:
- Utilize security tools to analyze, investigate, and triage security alerts
- Monitor our customers environments, including cloud and SaaS solutions for evidence of adversarial activity
- Perform in-depth analysis and investigation of high-priority cybersecurity incidents
- Utilize advanced tools, such as host based digital forensics or malware analysis capabilities, to identify incidents’ root causes, scope, and impact
- Collaborate with cyber threat hunting and cyber threat intelligence teams
- Participate in the development, implementation, and tuning of the SOC tools detection content and alerting signatures
- Accurately document triage findings, and intake reports of external cybersecurity events from SOC customers via phone or email in the SOCs Incident Management System(IMS)
- Learn new open and closed-source investigative techniques
- Perform research into emerging threats and vulnerabilities to aid their prevention and mitigation
Required Qualifications:
- Experience in some of the following tools and technologies: i.e. SIEM experience required with Sumo Logic/Splunk preferred
- Knowledge of common attacker tools, techniques and procedures (TTP)
- Experience with major cloud service provider offerings
- Knowledge of malware
- Knowledge of enterprise architecture including zero trust principles
- Knowledge of Windows and Unix operating systems
- Knowledge of common phishing techniques and how to investigate them
- Proficiency in technical writing
- Able to accurately and succinctly convey information through speaking, email, and presentations
- Comfortable in customer facing environments
- Ability to maintain a positive customer service mentality
- Secret clearance required to start
Preferred Qualifications:
- Previous SOC or incident response experience
- Working knowledge of regex and scripting languages
- Any SOC analyst relevant certifications such as those from GIAC or CompTIA
- The initiative to ask for assistance and offer fresh ideas to improve the SOC's performance
Required Skills: SIEM experience, cloud service providers, malware knowledge, Windows, Unix OS
Important Skills: phishing techniques, incident response experience
Nice-to-Have Skills: customer service mentality, regex knowledge, scripting languages
Benefits: Health/Dental/Vision, 401(k) match, Paid Time Off, STD/LTD/Life Insurance, Referral Bonuses, Professional development reimbursement, Parental leave
Benefits
Health/Dental/Vision
401(k) match
Paid Time Off
STD/LTD/Life Insurance
Referral Bonuses
Professional development reimbursement
Parental leave