Today
Top Secret/SCI
Unspecified
Unspecified
(On-Site/Office)
Recro, a Certified Small Business, helps federal agencies achieve their goals through IT infrastructure, cybersecurity, DevOps, cloud services, and digital transformation. We prioritize innovation, employee growth, and a collaborative work environment, guided by our core value - to make a difference.
Currently, Recro is seeking a motivated, career and customer oriented SOC Analyst , to join our team in Suitland, MD (Hybrid).
Clearance
• TS/SCI
Responsibilities:
Required Qualifications:
Benefits at Recro
Working at Recro
Currently, Recro is seeking a motivated, career and customer oriented SOC Analyst , to join our team in Suitland, MD (Hybrid).
Clearance
• TS/SCI
Responsibilities:
- Monitor, detect, analyze, and respond to enterprise security incidents.
- Leverage ELK stack (Elasticsearch, Logstash, Kibana), Elastic Security, and AWS security services extensively.
- Continuously monitor security events and alerts from diverse sources (Elastic Security SIEM, IDS/IPS, firewalls, EDR, AWS Security Hub, GuardDuty, CloudWatch).
- Participate in incident investigation, containment, and eradication following established protocols. Escalate complex incidents as required.
- Perform in-depth log analysis using the ELK stack to identify suspicious activity, threats, and anomalies.
- Develop and refine Kibana dashboards and visualizations for enhanced situational awareness.
- Utilize threat intelligence feeds and OSINT to stay informed on emerging threats and vulnerabilities, applying knowledge to improve detection and response.
- Monitor and analyze security events within the AWS environment, utilizing services like Security Hub, GuardDuty, IAM, VPC Flow Logs, and CloudTrail.
- Contribute to the development, tuning, and maintenance of security monitoring rules and alerts in Elastic Security and other tools to optimize detection accuracy.
- Maintain clear documentation of security incidents, analysis findings, and remediation steps. Contribute to SOC procedures and knowledge base.
- Communicate and collaborate effectively with security team members, IT personnel, and stakeholders during incident response and investigations.
Required Qualifications:
- Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent practical experience.
- Minimum of 3-5 years of experience working in a Security Operations Center (SOC) environment.
- Demonstrable experience with the ELK stack (Elasticsearch, Logstash, Kibana) for security analysis and visualization.
- Hands-on experience with Elastic Security (SIEM) or another leading SIEM platform.
- Strong understanding of AWS security concepts and experience with AWS security services (e.g., Security Hub, GuardDuty, IAM, VPC, CloudTrail, CloudWatch).
- Solid understanding of networking protocols (TCP/IP, DNS, HTTP, etc.), operating systems (Windows, Linux), and security technologies (firewalls, IDS/IPS, EDR).
- Experience with analyzing various log sources, including system logs, application logs, and network traffic.
- Familiarity with common attack vectors, security vulnerabilities, and threat actors.
Benefits at Recro
- 100% paid medical, dental, and vision
- 401k - 6% matching and 401k profit sharing
- PTO - 120 Hours
- Federal Holidays
- Education and Tuition Reimbursements
- Wellness Benefits
- A lot of cool gear!
Working at Recro
- A Great Culture - We are building a culture at Recro where amazing people (like you) can do their best work. If you are ready to grow your career and recro (re-invent) the way our clients operate, you have come to the right place.
- A Great Place to Work - Employees are treated like people, not line items. We work smart when we can and hard when we must but we always do it together, as a team. We are a team with tons of passion and enthusiasm to blaze new trails and improve the state of our clients, the broader community, and even the world.
- A Great Place to Contribute - We believe diverse perspectives improve each challenge that we face. We trust and enable our amazing people to accomplish amazing feats. At Recro, you will be empowered to deliver your best work.
- A Great Place to Grow - We believe in our people and maximizing your potential. At Recro, we continue to look into the future and invest in each other through teamwork, collaboration, and training.
group id: 91090960