Full-Time

Incident Handler Tier 1

Arsiem Corporation

Arsiem Corporation

11-50 employees

IT consulting and cybersecurity for governments

Compensation Overview

$82k - $91k/yr

+ Referral Bonus

No H1B Sponsorship

Monterey, CA, USA

In Person

Monterey, CA on-site; must be a U.S. citizen with an active Secret clearance.

US Citizenship Required

Bachelor's

Category
IT & Security (1)
Required Skills
Splunk
Linux/Unix

Get referred to Arsiem Corporation

See people who can refer or advise you

Requirements
  • Minimum of one (1) year of professional experience in MORE THAN ONE of the following: IP network planning and management, UNIX/Linux system administration, Windows administration, software engineering or development; AND/OR a bachelor’s degree in Computer Science, Engineering, Information Technology, Cybersecurity, OR related field.
  • Certification: Sec+
  • Must obtain one of the following certificates within 6 months of hire date: CompTIA CySA+, EC-Council CEH, GIAC GCIA, Microsoft AZ 900, Palo Alto Networks PCCET, Splunk Core Certified Advanced Power User
  • Clearance Requirement: This position requires an active Secret clearance. You must be a U.S. citizen for consideration.
  • Candidate Referral: Do you know someone who would be GREAT at this role If you do, ARSIEM has a way for you to earn a bonus through our referral program for persons presenting NEW (not in our resume database) candidates who are successfully placed on one of our projects. The bonus for this position is $3,500, and the referrer is eligible to receive the sum for any applicant we place within 12 months of referral. The bonus is paid after the referred employee reaches 6 months of employment.
Responsibilities
  • Use the SIEM tool to receive security alerts, perform initial investigations, and provide damage assessments based on findings
  • Review the latest alerts/events from various sensors to determine relevancy and urgency.
  • Enrich incidents with open source and/or other sources of information to handle incidents accurately.
  • appropriately document all alerts/incidents in the approved ticketing system.
  • Analyze and request, recommend, or implement mitigations.
  • Preserve evidence integrity according to CSOC standard operating procedures or national standards.
  • Monitor network activity using cybersecurity tools to protect against malware. (Endpoint protection, restrict/prevent external devices, spam filters, Network access controllers, ACLs)
  • Recognize and categorize types of vulnerabilities and associated attacks (threat hunting and sharing)
  • Use CSOC security tools to Identify, capture, contain, and report on malware-related activity
  • Provide feedback to improve techniques and procedures used for detecting host and network-based intrusions
  • Learn and follow procedures and make recommendations as needed to fine-tune these processes
  • Execute incident handling tasks as delegated by senior peers and CSOC leadership
  • Handle other tasks that a Tier 1 level of experience and talent can complete.
  • Under supervision, may manage and configure security monitoring tools (SIEM, IDS, Firewall, Access Control Lists, etc.) to mitigate existing threats/vulnerabilities.

ARSIEM Corporation provides advanced IT consulting services, specializing in multiple areas including cybersecurity, enterprise architecture and development, and applications development, predominantly for government clients. The firm is distinguished by its deep commitment to cybersecurity and robust IT solutions that ensure enhanced protection and efficient digital infrastructures. This commitment to leveraging cutting-edge technologies in specialized areas of IT makes ARSIEM Corporation an excellent workplace for professionals aiming to actively contribute to significant, high-impact projects within the government sector.

Company Size

11-50

Company Stage

N/A

Total Funding

N/A

Headquarters

Baltimore, Maryland

Founded

2013

Get referred to Arsiem Corporation

See people who can refer or advise you