Information Security Monitoring & Detection LeadOur company has been awarded a five year, $400 million dollar contract to provide comprehensive IT services to NASA Ames Research Center located in Mountain View, CA. From cloud computing & network/information security to systems administration and technology development, we are encouraging talented IT & Software professionals to explore the vast opportunities available on this NASA contract.We are seeking an experienced Information Security Monitoring & Detection Lead to supervise cyber security staff in NASA's Security Operations Center (SOC). Join our growing team in supporting NASA's SOC at Ames Research Center in Mountain View, CA.
US Citizenship is required as this position will have to obtain a US government security clearance.ResponsibilitiesSupervise the team that monitors Agency systems for incidents and malicious activity in NASA's 24/7/365 Security Operations Center (SOC)Provide technical guidance and leadership for the analysis of security events and identification of relevant incidentsDevelop and maintain the SOC Analyst training and certification programUpdate and maintain the SOC Analyst runbook, processes, and proceduresManage SOC Analyst schedulesGenerate high quality reportsCoordinate with both Tier 1 and Tier 3 teams while providing incident handling and response support for the agencyContribute to SOC projects, process improvement and development of new capabilitiesRequirements (Education, Skills & Abilities)BS degree in relevant field/technology or equivalent years of experience7+ years of progressive experience with increasing responsibilities within a Security Operations environmentExperience managing staff in a technical operations center environment (NOC, SOC)Experience developing and documenting operational proceduresExperience training operations staff for continuous improvementExperience generating security metrics and reportsExcellent communication, writing and interpersonal skillsBroad information security knowledge, including familiarity with common attack methodologies, tactics and protocols, Advance Persistent Threat groups and Hacker activitySignificant experience in network intrusion detection, including experience using common network monitoring tools - IDS, IPS, SIEM and SyslogExperience with packet capture analysis and common network forensics and analysis tools - Wireshark, Kali, Netcat, TCPDump and NMAPExperience reviewing and analyzing large amounts of raw log data (firewall, network flows, IDS, system logs)Familiarity with incident management proceduresPossess a strong foundation in networking fundamentals with deeper knowledge of TCP/IP and other core protocolsKnowledge of common network based services and common client/server applicationsFamiliarity in a command line environment in all operating systemsExcellent problem solving and analytical skillsAbility to obtain a government clearance (US Citizenship is required)Desired SkillsExperience managing staff in a mission critical security operations center, preferably 24x7Experience with enterprise level security incident event management tools such as ArcSight, Splunk, or QRadarExperience analyzing phishing attacksScripting (Python, Perl or Shell)CISSP, CEH, GIAC, OSCP are desired certificationsAll your information will be kept confidential according to EEO guidelines. Direct Staffing Inc
INFORMATION SECURITY MONITORING & DETECTION LEAD in mountain view at Unknown Company
This position is listed as contract and onsite.