Security Operations Analyst
Listed on 2025-11-01
-
IT/Tech
Cybersecurity, Network Security
Overview
Job Description: Capgemini Government Solutions (CGS) LLC is seeking highly motivated Security Operations Analyst to support our government clients. The successful applicant will work closely with our clients to provide technical support in information security response, security monitoring, and supports audit/compliance activities in our US Security Operations Center (SOC).
The successful applicant will have the opportunity to apply and grow their skill set, work with a motivated and entrepreneurial team, engage with a wide range of stakeholders, and build CGS' capabilities to serve our clients.
Responsibilities- Work as part of a team of Information Security professionals supporting a global enterprise.
- Perform daily operational eyes on glass real-time monitoring and analysis of security events from multiple sources including but not limited to events from Security Information Event Monitoring tools, network, and host-based intrusion detection systems, firewall logs, and system.
- Communicate and escalates issues and incidents as required by process or management.
- Contribute to the design and implementation of Security Event Analysis and Incident Management processes and procedures.
- Create incident response reports and documentation as required to communicate findings, outcomes and lessons learned.
- U.S. Citizenship is required.
- Eligible to obtain and maintain a Government Security Clearance.
- 3+ year experience working in SOC environment as a Security Analyst.
- Experience supporting a large global enterprise environment
- Solid and demonstrable comprehension of Information Security including malware, emerging threats, attacks, and vulnerability management.
- Proficient knowledge and understanding of IP protocols and ports.
- An understanding of incident response methodologies and technologies.
- Familiar with key security models and regulations such as ISO 2700X, SOX and PCI.
- Customer service including the resolution of customer escalations, incident handling, and response.
- Cloud security experience.
- Technical proficiency of industry standard security tools such as Darktrace, Netskope, Cisco Suite (Secure Endpoint-AMP; Secure Malware Analytics-Threat Grid; Umbrella; Secure Cloud Email and Web Manager-Iron Port);
Sentinel - Programming and/or scripting language experience (C, .NET, Python, Perl, etc).
- Technical certifications considered an asset are CISSP, GCIH, GCIA, GCFA, GPEN, GCCF, CISA, CWSP, CCSP, CCNP, MSCE or other relevant certification in vulnerability analysis, ethical hacking techniques or penetration testing.
- Experience with vulnerability assessment platforms and manual validation.
- Experience in the areas of change control, problem management, incident management and troubleshooting of security solutions.
- Technical proficiency in at least one enterprise SIEM platform (e.g. Arc Sight, Envision, Q1 Radar, Nitro Security) and at least one enterprise Network Intrusion Detection System (e.g. HP Tipping Point, Source fire, McAfee).
Capgemini is a global business and technology transformation partner, helping organizations to accelerate their dual transition to a digital and sustainable world, while creating tangible impact for enterprises and society. It is a responsible and diverse group of 340,000 team members in more than 50 countries. With its strong over 55-year heritage, Capgemini is trusted by its clients to unlock the value of technology to address the entire breadth of their business needs.
It delivers end-to-end services and solutions leveraging strengths from strategy and design to engineering, all fueled by its market leading capabilities in AI, generative AI, cloud and data, combined with its deep industry expertise and partner ecosystem. The Group reported 2024 global revenues of 22.1 billion.
Get the future you want |
Disclaimer and Equal OpportunityDisclaimer:
All qualified applicants will be considered for employment based on their skills, and merit.
Please note Capgemini may capture your image during the interview process and that image may be used for verification, including during the hiring and onboarding process.
Applicant…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).