Logo for NES Associates, LLC

Threat Management Specialist (Tier 1)

Role overview

Qualifications

  • BA or BS in Computer Science, Information Technology or related field
  • 1+ years’ experience in IT Operations
  • 1+ year experience in IT Security
  • Familiarity with AI/ML techniques in cybersecurity

Responsibilities

  • Identification of security problems which may require mitigating controls
  • Interpret output from the SIEM, CSOC mailboxes, and phone calls to identify potential security incidents
  • Collect basic information to support analysis such as IP address, location, affected asset(s), etc.
  • Escalate items which require further investigation to other members of the Threat Management team

About the company

NES Associates, LLC logo

NES Associates, LLC

IT Services & IT Consulting

NES is your go-to partner when you’re looking for a global Information Technology team that works WITH you, rather than in a vacuum, and possesses the ability to respond quickly. NES supplies the technology experts you need who are experienced in reducing cost and delivering ROI, while striving to exceed your expectations. NES, an employee-owned IT company, works every project with the goal of 100% client satisfaction – PROVEN by our “exceptional” customer satisfaction ratings and 100% client contract renewal in many of our key service areas.

Company details

IndustryIT Services & IT Consulting
Company size201 - 500

Your match analysis

See how your profile stacks up against this role.

We compared the job requirements to your profile to show where you're strong and where you fall short.

Job description

Type of Requisition:

Pipeline

Clearance Level Must Currently Possess:

None

Clearance Level Must Be Able to Obtain:

None

Public Trust/Other Required:

MBI (T2)

Job Family:

Cyber and IT Risk Management

Job Qualifications:

Skills:

Cyber Defense, Cyber Threat Intelligence, Security Information and Event Management (SIEM)

Certifications:

None

Experience:

1 + years of related experience

US Citizenship Required:

No

Job Description:

Advance your career while impacting our national security as a Threat Management Specialist (Tier 1). Here, technologists have many paths to grow a meaningful career supporting cyber missions and operations across the federal government.

MEANINGFUL WORK AND PERSONAL IMPACT

This position will support the United States Postal Service (USPS). GDIT is seeking a Threat Management Specialist (Tier 1). The Tier 1 Analysts receives all of the alerts from various sources, including SIEM, CSOC mailboxes, and phone calls directly from the central SIEM and handle as defined in Playbooks and SOPs. Tier 1 Analyst will escalate the events to Tier 2 after initial triage, along with providing input and analysis on how to leverage Artificial Intelligence, Machine Learning, and SOAR capabilities to improve CSOC efficiency and accuracy.

Key Responsibilities:

  • Identification of security problems which may require mitigating controls
  • Interpret output from the SIEM, CSOC mailboxes, and phone calls to identify potential security incidents
  • Collect basic information to support analysis such as IP address, location, affected asset(s), etc.
  • Escalate items which require further investigation to other members of the Threat Management team
  • Execute operational processes in support of response efforts to identified security incidents
  • Utilize AI/ML-based tools and techniques to detect anomalies, automate incident triage, and improve threat intelligence
  • Performing and analyzing threat intelligence to assess risk and adapt defenses using ML enhance tools
  • Stay current on the latest cybersecurity trends, threat actors, and AI/ML research relevant to the field
  • Identify and support automation use cases, including the use of AI/ML to enhance SOC capabilities
  • Collaborate across Operations to provide SOC enhancement capabilities through the use of automation and AI

WHAT YOU’LL NEED TO SUCCEED

Education:

  • BA or BS in Computer Science, Information Technology or related field
  • NOTE: If resources do not have a relevant college degree, an additional 4 years of relevant work experience is required
  • One or more relevant certifications such as CEH, CISSP, CompTIA Security+, or GCIH are advantageous

Required Skills:

  • 1+ years’ experience in IT Operations
  • 1+ year experience in IT Security
  • Working knowledge of:
    • Platform Security Basics
    • Threat Lifecycle Management
    • TCP / IP
    • Incident Management
  • Knowledge of Control Frameworks and Risk Management techniques
  • Excellent oral and written communication skills
  • Excellent interpersonal and organizational skills
  • Familiarity with the application of AI/ML techniques in cybersecurity, including but not limited to automated threat detection, incident response automation, and predictive analytics. Experience in evaluating the effectiveness of AI/ML solutions in a SOC environment is a plus.
  • Understanding of ethical AI principles and their implications in cybersecurity.
  • Familiarity with cloud security (AWS, Azure, GCP)
  • Understanding and experience identifying and implementing automation use cases.

Security Clearance Level:

  • This role will require you to obtain and maintain a Public Trust and will require you to provide onsite fingerprinting at a designated facility.  This investigation may review personal and criminal behavior, financial conduct, foreign influence, as well as other adjudications.
  • This position has a U.S. residency requirement. The USPS security clearance process requires the selected candidate to have resided in the U.S. (including U.S. Territories) for the last five years as follows: U.S. Citizens cannot have left the U.S. (including U.S. Territories) for longer than 6 months consecutively in the last 3 years (unless they meet certain exceptions). Non-U.S. Citizens cannot have left the U.S. (including U.S. Territories) for longer than 90 days consecutively in the last 3 years.

Location:

  • Falls Church, VA
  •  Remote

GDIT IS YOUR PLACE:

  • 401K with company match
  • Comprehensive health and wellness packages
  • Internal mobility team dedicated to helping you own your career
  • Professional growth opportunities including paid education and certifications
  • Cutting-edge technology you can learn from
  • Rest and recharge with paid vacation and holidays

#zxc726

The likely salary range for this position is $72,877 - $98,599. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

Scheduled Weekly Hours:

40

Travel Required:

Less than 10%

Telecommuting Options:

Remote

Work Location:

Any Location / Remote

Additional Work Locations:

Total Rewards at GDIT:

Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. GDIT typically provides new employees with 15 days of paid leave per calendar year to be used for vacations, personal business, and illness and an additional 10 paid holidays per year. Paid leave and paid holidays are prorated based on the employee’s date of hire. The GDIT Paid Family Leave program provides a total of up to 160 hours of paid leave in a rolling 12 month period for eligible employees. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.

 

 


Our Identity Verification Process:

As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.

 

 

About Our Work:

We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.

Join our Talent Community to stay up to date on our career opportunities and events at

gdit.com/tc.

Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans

Apply once. Then go straight to the hiring manager.

After you apply, unlock the direct contact details of the people who actually make the call. A quick follow-up makes you 5x more likely to land an interview.

MR

Marcus Rivera

Chief Revenue Officer

m.rivera@company.com
linkedin.com/in/marcusrivera
Unlocked after you apply
·

IT Security Manager Related jobs

Other jobs at NES Associates, LLC

Premium

Reach out to the hiring manager directly.

Gain access to the contact details of the hiring managers who actually decide, and reach out to network with them directly. That, plus more when you upgrade:

  • Full match report with fit score and gaps
  • Career diagnostics on how recruiters read you
  • Curated company matches and warm intros
  • 48h early access to new roles

Cancel anytime.