Security Operations Specialist
Core
Administer, monitor, and improve cybersecurity operations, security technologies, and compliance programs while detecting and responding to threats.
Role type
Security Operations Specialist (SOC)
Builds
Production security monitoring, incident response, and compliance documentation
Domain
Cybersecurity, Defense/Manufacturing, Compliance (CMMC, NIST)
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
SIEM administration, EDR/XDR management, vulnerability management, incident response, log analysis, network security concepts, Windows/Linux administration, IAM/Active Directory knowledge, compliance framework implementation
Preferred skills
CMMC Level 2 readiness, handling CUI, cloud security (Azure/AWS), security automation
Technologies
AWS, Active Directory, Azure, Cloud, IAM, Linux, Network Security, Windows, Firewall, VPN
Responsibilities
Operate and optimize security tools (SIEM, EDR/XDR, SOAR, IAM, MFA, SEG, vulnerability management platforms); monitor alerts and analyze telemetry to detect and respond to threats; maintain compliance documentation (SSPs, POA&Ms, policies, procedures); manage the vulnerability lifecycle including assessment and remediation; participate in incident detection, triage, investigation, and post-incident reviews; support internal and external audits and certification activities; collaborate with IT and engineering teams on secure deployments and change management.
Seniority
Mid-level, hands-on IC
