CBO - Tier 3 SOC Analyst Job at cFocus Software Incorporated, Washington DC

djhEeXIyQTN6dFo2NUYzUHMzeUh2NWZaSVE9PQ==
  • cFocus Software Incorporated
  • Washington DC

Job Description

cFocus Software seeks a Tier 3 SOC Analyst to join our program supporting the Congressional Budget Office (CBO). This position is remote. This position requires a Public Trust clearance.
Qualifications:
  • Active Public Trust clearance
  • B.S. Computer Science, Information Technology, or a related field
  • 5+ years of SOC Analyst experience
  • Expert knowledge of incident response, threat hunting, and detection engineering
  • Advanced experience with Microsoft Sentinel (SIEM) and Microsoft Defender tools
  • Strong understanding of MITRE ATT&CK framework and adversary tactics
  • Experience with digital forensics and malware analysis techniques
  • Ability to analyze logs across identity, endpoint, network, and cloud environments
  • Strong knowledge of AWS logs (CloudTrail, VPC Flow Logs) and enterprise security tools
  • Experience with KQL (Kusto Query Language) and advanced correlation analysis
  • Deep understanding of NIST frameworks (800-53, 800-61, 800-92) and Zero Trust principles
  • Experience with SOAR platforms and automation (Logic Apps, Sentinel playbooks)
  • Experience supporting federal environments and compliance (CUI, FTI, NIST, IRS 1075)
  • Experience leading incident response engagements and reporting to leadership
  • Preferred certifications include but are not limited to
    • GCIA, GCIH, CISSP, CEH, or equivalent cybersecurity certifications
    • Microsoft Sentinel or Microsoft security platform certifications
    • Relevant cloud security certifications (e.g., AWS security)
    • Privacy certifications (e.g., CIPP/US, CIPM) where applicable
Duties:
  • Lead investigation and response for complex and high-severity security incidents
  • Perform advanced threat hunting using Microsoft Sentinel and Defender platforms
  • Conduct digital forensics, malware analysis, and root cause analysis (RCA)
  • Develop, tune, and optimize detection rules, analytics, and correlation logic
  • Map detections and activities to MITRE ATT&CK framework
  • Oversee incident lifecycle management (detection through containment, eradication, and recovery)
  • Support and improve SOC playbooks, automation workflows, and response procedures
  • Provide mentorship and guidance to Tier I and Tier II analysts
  • Identify security control gaps and recommend remediation strategies
  • Support red team, purple team, and adversary emulation exercises
  • Contribute to incident reports, quarterly threat reviews, and executive briefings

Job Tags

Full time, Work at office

Similar Jobs

American Recruiting & Consulting Group

Hadoop Developer Job at American Recruiting & Consulting Group

 ...Hadoop/Analytics Developer HYBRID (JACKSONVILLE, FL) ARC Group has an immediate opportunity for a Hadoop Developer! This is starting out as a 12 month contract position with potential to extend longer or possibly convert to FTE. The position is hybrid, with a couple... 

Pacific Aviation

Airline Customer Service Agent - Chinese/English Speakers LAX Job at Pacific Aviation

 ...Airline Customer Service Agent - Chinese/English Speakers On-site | Operations | Pacific Aviation | Part Time Los Angeles, California, United States Overview Do you thrive on helping others, have the charm to make anyone feel at ease, and the language skills... 

US Foods

Production Associate Job at US Foods

 ...Join Our Community of Food People! Prepare and pack meat products to achieve production demands. Must adhere to USDA Safety...  ...schedules Follow all Food Safety requirements and GMP (Good Manufacturing Practices) Perform visual inspection of meat products to meet... 

Rithum

Remote Technical Writer Job at Rithum

 ...shopping journeys from beginning to end. Overview As a Technical Writer, you are responsible for managing all aspects of the users...  ...management systems Training design and development Travel Required Up to 10% Other Duties Please note this job description... 

ImageTrend

Software Developer Intern Job at ImageTrend

Description:: Under the direction of the Software Development Lead, the Software Developer Intern will contribute to our product lines and help create internal...  ...ideal for a candidate with software development experience and a passion for learning. What You'll Do: Be a...