Idaho Falls, ID, 83404, USA
16 days ago
SOC - Incident Response Analyst
Idaho National Laboratory is hiring a SOC - Incident Response Analyst to work in our Architecture, Engineering, and Operations department. Our team works a 9x80 schedule located out of our IAB facility or Remote with every other Friday off. Respond to crises or urgent situations within the relevant domain to mitigate immediate and potential threats. Use mitigation, preparedness, and response and recovery approaches to maximize survival of life, preservation of property, and information security. Investigate and analyze all relevant response activities. *Responsibilities Include:* * Perform real-time cyber defense incident handling (e.g., forensic collections, intrusion correlation and tracking, threat analysis, and direct system remediation) tasks to support deployable Incident Response Teams (IRTs). * Perform cyber defense incident triage, to include determining scope, urgency, and potential impact, identifying the specific vulnerability, and making recommendations that allow expeditious remediation. * Correlate incident data to identify specific vulnerabilities and make recommendations that allow expeditious remediation. Provide expert technical support to enterprise-wide cyber defense technicians to resolve cyber defense incidents. * Perform initial, forensically sound collection of images and inspect to discern possible mitigation/remediation on enterprise systems. Receive and analyze network alerts from various sources within the enterprise and determine possible causes of such alerts. Perform analysis of log files from a variety of sources (e.g., individual host logs, network traffic logs, firewall logs, and intrusion detection system [IDS] logs) to identify possible threats to network security. * Collect intrusion artifacts (e.g., source code, malware, Trojans) and use discovered data to ensure mitigation of potential cyber defense incidents within the enterprise. * Track and document cyber defense incidents from initial detection through final resolution. * Prepare audit reports that identify technical and procedural findings and provide recommended remediation strategies/solutions. * Perform cyber defense trend analysis. Write and publish cyber defense techniques, guidance, and reports on incident findings to appropriate constituencies. Write and publish after action reviews. * Maintain knowledge of applicable cyber defense policies, regulations, and compliance documents specifically related to cyber defense auditing. Research current technology to understand capabilities of required system or network. * This position closes: 11/19/24 *Minimum Requirements: * * Level 3: Bachelor of Science degree in technical field including Computer Science, Computer Engineering and 5 years of relevant experience; or a Master’s in a technical field, computer science, computer engineering and 2 years of relevant experience. * Level 4: Bachelor of Science degree in technical field including Computer Science, Computer Engineering and 9 years of relevant experience; or a Master’s in a technical field computer science, computer engineering and 6 years of relevant experience. * Must be a US Citizen and have the ability to obtain and maintain a DOE “L” or “Q” clearance. *Job Information: * * The pay range for this position is: Level 3 ($91,008 - $186,588) / Level 4 ($109,260 - $223,908). At Idaho National Laboratory compensation decisions are determined using factors such as education, relevant experience, and other credentials. * You are required to show a demonstrated commitment to valuing diversity and contributing to an inclusive working environment. * TDP: This is a testing designated position; you will be required to submit to a pre-employment drug screen and periodic drug testing throughout the term of your employment. * Multi-Level: This is a multi-level posting and you will be placed at the appropriate level dependent on depth and breadth of proven experience and skills. *Benefits and Relocation * * Medical, Dental, Vision, and Flexible Spending Accounts * 401(k) with a 4.2% employer contribution and up to 4.8% match * Paid time off (personal leave) * Employee Education Program (tuition assistance) * Comprehensive Relocation Package * Benefit eligibility subject multiple factors, including employment status and position classification. /INL is a science-based, applied engineering national laboratory dedicated to supporting the U.S. Department of Energy’s mission in nuclear energy research, science, and national defense. With more than 5,000 scientists, researchers, and support staff, the laboratory works with national and international governments, universities and industry partners to discover new science and development technologies that underpin the nation’s nuclear and renewable energy, national security, and environmental missions. / *INL Mission* Our mission is to discover, demonstrate and secure innovative nuclear energy solutions, other clean energy options and critical infrastructure. *INL Vision* Our vision is to change the world’s energy future and secure our nation’s critical infrastructure. *Selective Service Requirements* To be eligible for employment at INL males born after December 31, 1959 must have registered with the Selective Service System (SSS). For more information see www.sss.gov. *Equal Employment Opportunity* Idaho National Laboratory (INL) is an Equal Employment Opportunity (EEO) employer. It is the policy of INL to provide equal employment opportunities to all qualified applicants without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, protected veteran or disabled status, or genetic information. Women and People of Color are strongly encouraged to apply. *Reasonable Accommodation* We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation. *Other Information* When applying to positions please provide a resume and answer all questions on the following screens. Applicants, who fail to provide a resume or answer the questions, may be deemed ineligible for consideration. INL does not accept resumes from third party vendors unsolicited. **Job:** **Computer Information Technology* **Organization:** **Information Technology (Yxxx)* **Title:** *SOC - Incident Response Analyst* **Location:** *ID-Idaho Falls* **Requisition ID:** *22039* **Other Locations:** *US-Remote*
Confirm your E-mail: Send Email