Full-Time

Tier I Incident Handler

Fort Belvoir, VA

Posted on 7/25/2024

SMX

SMX

1,001-5,000 employees

Provides technology solutions for defense sector

Consulting
Enterprise Software
Defense

Mid, Senior

Fort Belvoir, VA, USA

Full-time, on-site position at Ft. Belvoir.

US Top Secret Clearance Required

Category
Cybersecurity
IT & Security
Requirements
  • Must hold and maintain an active U.S. Government Top Secret security clearance with eligibility for SCI and NATO read-on. Willingness to complete a CI Polygraph examination.
  • Must sign a Non-Disclosure Agreement and comply with Army Regulation (AR) 381-10, U.S. Army Intelligence Activities, USSID 1800, and other U.S. Government security regulations.
  • Bachelor’s degree in Cybersecurity or a related field, or 4 years of documented work experience conducting Cybersecurity related tasks.
  • Hold and maintain one or more of the DoD Approved 8570 Baseline Certifications in the CSSP/CND Analyst category.
  • Minimum of 3 years of experience as a Tier I incident handler at an enterprise level.
  • Familiarity with relevant U.S. Government, U.S. Department of Defense, U.S. Intelligence Community, and U.S. Army Cybersecurity regulations and compliance standards.
Responsibilities
  • Monitor data collected from a variety of cyber defense tools and end-user reports to prioritize and triage alerts, determining whether a cybersecurity incident or event is occurring.
  • Conduct research, analysis, and correlation across a wide variety of all-source data sets (indications and warnings).
  • Identify applications and operating systems of network devices based on network traffic.
  • Coordinate with enterprise-wide cyber defense staff to validate network alerts.
  • Document and escalate incidents (including event history, status, and potential impact) for further action.
  • Perform cyber defense trend analysis and reporting.
  • Provide summary reports of network events and activity relevant to cyber defense practices as required.
  • Receive and analyze network alerts from various sources within the enterprise and determine possible causes.
  • Provide timely detection, identification, and alerting of possible attacks/intrusions, anomalous activities, and misuse activities, distinguishing these from benign activities.
  • Use cyber defense tools for continual monitoring and analysis of system activity to identify malicious activity.
  • Validate intrusion detection system (IDS) alerts against network traffic using packet analysis tools.
  • Notify designated managers, cyber incident responders, and cybersecurity service provider team members of suspected cyber incidents, articulating event history, status, and potential impact for further action per the organization's cyber incident response plan.
  • Develop content for cyber defense tools.
  • Analyze and report organizational and system security posture trends.
  • Assess access controls based on principles of least privilege and need-to-know.
  • Plan and recommend modifications or adjustments based on exercise results or system environment.
  • Provide cybersecurity recommendations to leadership based on significant threats and vulnerabilities.
  • Work with stakeholders to resolve computer security incidents and ensure vulnerability compliance.
  • Provide advice and input for Disaster Recovery, Contingency, and Continuity of Operations Plans.

SMX Tech provides advanced technology solutions aimed at improving business operations and mission capabilities, primarily in the technology and defense sectors. Their offerings include a platform and capability enhancement services that help clients, such as government agencies and defense contractors, achieve operational efficiency and mission success. SMX Tech generates revenue through long-term contracts and partnerships, exemplified by their recent agreements with Fusion Technology and Torchlight AI. The company is distinguished by its commitment to quality, evidenced by multiple certifications like CMMI Maturity Level 3 and ISO standards, which ensure their solutions meet high standards. Additionally, SMX Tech has been recognized as a top workplace, reflecting their focus on employee satisfaction and a positive work environment. Their goal is to be a trusted partner in enhancing the operational capabilities of their clients.

Company Stage

Acquired

Total Funding

N/A

Headquarters

Hollywood, Maryland

Founded

1995

Simplify Jobs

Simplify's Take

What believers are saying

  • Increased demand for C5ISR solutions due to geopolitical tensions benefits SMX.
  • Growing interest in supply chain transparency aligns with SMX's FinGo partnership.
  • Rising importance of cloud-native solutions complements SMX's acquisition of Creoal Consulting.

What critics are saying

  • Integration challenges may arise from the acquisition of Outside Analytics.
  • Partnership with FinGo exposes SMX to supply chain ethical and compliance risks.
  • Continuation fund transaction may increase financial pressure on SMX for high returns.

What makes SMX unique

  • SMX offers C5ISR solutions, crucial for defense sector modernization and geopolitical tensions.
  • Their partnership with FinGo enhances supply chain transparency and ethical practices.
  • SMX's acquisition of Creoal Consulting boosts their cloud-native digital transformation capabilities.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Paid Vacation

401(k) Retirement Plan

Remote Work Options

INACTIVE