Logo
job logo

Cybersecurity Analyst

EmergencyMD, Oak Ridge, Tennessee, United States, 37830

Save Job

COMPANY OVERVIEW

XCEL Engineering, Inc. is an award-winning small business that provides trusted information technology, engineering, consulting and project management solutions and services to federal agencies and organizations. Originally founded in 1971 by professional engineers at the University of Tennessee, XCEL was acquired in 2003 by U.S. Army and Navy veterans and in 2023 became a MartinFed company. XCEL Engineering is a part of IT Lab Partners (ITLP) which was created to support a leading research facility in the East Tennessee region in recruiting the best and the brightest technical talent. Considering joining our impressive team today! JOB OVERVIEW

XCEL Engineering has an opening for a Cybersecurity Analyst to immediately support their Defensive Cyber Operations (DCO) team. This position's primary responsibility is to conduct event triage in a tiered operational security model while training in and supporting vulnerability management and threat intelligence tasks. ESSENTIAL FUNCTIONS

Support the DCO environment in identification and analysis of threats in Security Incident and Event Management (SIEM) alerts, dashboards, and queries. Resolve or elevate alerts/events/incidents as defined in DCO service level agreements according to level of severity. Help develop advanced queries and alerts to detect adversary actions and compile detailed investigation and analysis reports for internal DCO consumption, and for delivery to management. Work with the Emerging Threat team to capture intelligence on threat actor tactics, techniques, and procedures (TTPs) and leverage automated and manual countermeasures in response. Field customer requests for support ranging from potential phishing events to abnormal system activity. Triage reports from DOE entities, CISA, and external penetration testers, and coordinate resolution with ORNL system administrators in keeping with BOD 18-01, 19-02, and 22-01 requirements. Analyze suspicious links and attachments in a secure malware analytics platform as part of a comprehensive phishing analysis procedure. Triage malware and anomalous activity alerts generated by an EDR system. BASIC QUALIFICATIONS

United States citizen with a US Department of Energy (DOE) Q Clearance or US Department of Defense (DOD) issued TS clearance. Bachelors degree in Computer Science or related field with 1-2 years of cyber operations work experience or an equivalent amount of education and experience. Experience with ServiceNow, JIRA ServiceDesk, or other ticketing system. Relevant certifications (GSEC, Security+, CEH, etc) preferred. PHYSICAL REQUIREMENTS & ENVIRONMENTAL CONDITIONS

Inside office environment. Working on a computer for long periods of time. May involve long period of sitting at a desk. Xcel Engineering is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regards to race, color, religion, religious creed, gender, sexual orientation, gender identity, gender expression, transgender, pregnancy, marital status, national origin, ancestry, citizenship status, age, disability, protected Veteran Status, genetics or any other characteristics protected by applicable federal, state or local law. If you are a qualified individual with a disability or disabled veteran, you have the right to request a reasonable accommodation if you are unable or limited in your ability to use or access Xcel Engineering's current openings as a result of your disability. You can request reasonable accommodations by calling 855.212.1810. Thank you for your interest in Xcel Engineering. All positions at Xcel Engineering, Inc. are contingent upon passing both a background check and drug screening prior to a start date and are subject to random drug screenings during the employment period. In addition, Xcel Engineering is an E-Verify employer.

#J-18808-Ljbffr