- Experience
- 2+ yrs
- Salary
- USD 65,000 – USD 100,000 / year
- Openings
- 1
- Posted
- 8 hours ago
- Work mode
- In office
- Education
- Bachelor's degree or equivalent experience
- Resume
- Required to apply
Where you'll work
Job description
About JFL Consulting
JFL Consulting, LLC brings over two decades of expertise securing key networks within the U.S. Department of Defense and the Intelligence Community. We specialize in deploying advanced cybersecurity solutions tailored for both government and commercial sectors in the U.S., with a commitment to safeguarding mission-critical data and networks.
Position Summary
The SOC Analyst Tier 1 serves as the frontline defender within the security operations center, primarily responsible for monitoring SIEM dashboards and related security tools, triaging alerts and communications, and ensuring timely escalation of confirmed threats. This role demands prompt and accurate handling of high volumes of security alerts to effectively reduce threat exposure times.
Primary Responsibilities
- Continuously monitor SIEM interfaces and security tool alerts to detect potential incidents.
- Act as the first point of contact for all incoming alerts, calls, emails, and tickets, leveraging established playbooks to assess, prioritize, and assign issues.
- Document confirmed or suspected security events thoroughly by creating detailed incident tickets.
- Conduct initial investigative procedures such as IP address verification, hash checks, and correlation with Indicators of Compromise (IOC).
- Escalate incidents beyond Tier 1 scope to Tier 2 analysts following predefined protocols.
- Resolve false positive alerts by documenting findings and closing tickets appropriately.
- Suggest enhancements to existing response playbooks to improve accuracy and efficiency.
- Participate actively in periodic briefings and training to stay abreast of current threats and methodologies.
- Maintain a detailed event log during each shift to track all activities and incidents.
- Keep informed of ongoing threat landscapes and active cyber campaigns.
Required Qualifications
- Bachelor’s degree in Cybersecurity, IT, Computer Science, Information Security, or a related discipline; or a minimum of 2 years experience in SOC, NOC, IT security, or network operations roles in lieu of degree.
- Possession of or commitment to obtain within 60 days one of the following certifications or an equivalent: Security+, CYSA+, GSEC.
- Fundamental knowledge of networking and cybersecurity principles.
- Basic proficiency with SIEM technology and log analysis techniques.
- Willingness and ability to work alternate shifts including nights, weekends, and holidays as scheduled.
Preferred Qualifications
- Possession of an active Secret clearance is preferred but not mandatory.
- Familiarity with the MITRE ATT&CK framework.
- Experience using ticket management tools such as ServiceNow or Jira.
Compensation and Benefits
- Annual salary range between $65,000 and $100,000.
- Medical, dental, and vision premiums fully paid by the employer for employees and their dependents.
- Flexible Spending Accounts available for healthcare, dependent care, and commuter expenses.
- Life insurance, short-term disability, and long-term disability coverage.
- 401(k) plan with immediate company contribution vesting.
- Generous paid time off including 15 vacation days, 5 sick days, 2 personal days, and 11 holidays annually.
- Support for professional growth through reimbursement for certification costs, dedicated funding for development, and access to online learning resources.
Work Environment and Equal Opportunity
This role is based onsite in Springfield, VA.
JFL Consulting is committed to providing an inclusive workplace by being an Equal Opportunity Employer. We prohibit discrimination against applicants on any legally protected grounds and provide reasonable accommodations for qualified individuals with disabilities.