Cybersecurity Operations Specialist
Listed on 2026-07-18
-
IT/Tech
Cybersecurity
Location: St. Louis
Freedom Technology Solutions Group is looking for a Cybersecurity Operations Specialist
. The candidate will provide CSOC Tier 2 and 3 services 24x7x365, coordinating, executing, and implementing all actions required for containment, eradication, and recovery of events and incidents. CSOC Tier 3 services include malware and implant analysis, forensic artifact handling, and analysis. When a CIRT stands up, all contractors supporting CSOC Tier 3 are directed by the Government CIRT Commander. In non‑incident periods, contractors conduct continuous exercises and dry runs to improve response outcomes.
All CSOC Tier 3 personnel must obtain a certification compliant with DoDD 8140.01, DoD 8570.01‑M IAT Level III, and CSSP Incident Responder within six months of start.
- Coordinate and implement tasks, perform analysis, and document response activities during cyber security incident response, including containment measures, IP/domain blocks, and disabling user accounts as directed by the Government.
- Coordinate with the Security and Installations Directorate, Office of Counterintelligence, Insider Threat Office, and other law‑enforcement or counter‑intelligence personnel for advanced investigation and triage of incidents.
- Collaborate with authorities to produce security incident reports.
- Classify incidents and events.
- Coordinate with other contracts and organizations to ensure incidents are properly reported, contained, and eradicated.
- Coordinate with other services to de‑conflict blue/red team activity with open incidents/events.
- Coordinate with other services to assist NGA in incident recovery.
- Build timelines, document briefings, and produce other products to inform stakeholders of response actions and impacts.
- Document actions and analysis in the authorized ticketing system with sufficient detail for systematic reconstruction.
- Develop, generate, and update reports in the Joint Incident Management System (JIMS), Incident Case Management System (ICMS), and other authorized reporting systems.
- Maintain, sustain, and execute custom scripts, tools, and capabilities to collect and analyze data, and to respond to incidents, when authorized by the Government.
- Perform digital media analysis on host, server, and network data, including volatile and non‑volatile memory and system artifact collection and analysis.
- Develop and identify indicators of compromise to share with cybersecurity stakeholders and other contract services.
- Provide adversary attribution.
- Perform malware analysis and signature development.
- Coordinate with CSOC Tier 1 and 2 services to remediate discrepancies and recommend prevention measures.
- Bachelor’s degree or 6 years’ experience in Cyber Security (CSOS).
- Active TS/SCI clearance and ability to obtain a polygraph.
- DoDD 8140.01 and DoD 8570.01‑M IAT Level II and CSSP Incident Responder certification or equivalent.
- Serve as a C‑IRT member and work under the direct control of the Government C‑IRT Commander.
- Develop and coordinate courses of action with government and contract stakeholders, and execute defensive cyberspace operations when authorized.
- Perform digital media analysis and malware reverse engineering on host, server, and network data.
- Execute custom scripts, tools, and capabilities to collect and analyze data and respond to incidents when authorized.
- Develop, document, and provide incident investigation reports to the Government within 30 days of C‑IRT stand‑down.
- Conduct quality control reviews of a percentage of closed CSOC Tier 2 tickets each week.
- Master’s degree.
- IAT III certification.
- Flexible work environment.
- Team mentality – work with friendly, like‑minded professionals.
- Work with innovative, cutting‑edge technologies.
- Enjoy extremely competitive compensation and benefits.
- Work‑life balance you can count on.
- Opportunities to grow and advance your career.
- Matching 401(k).
- Fully paid medical and dental.
- Generous paid time off, including paid site closure days.
- Competitive salary offerings.
- Paid training and tuition reimbursement.
- Referral bonuses.
- Fully paid life and disability insurance.
- Annual logo wear allowance.
- Company sponsored events.
As an Equal Opportunity Employer, we do not discriminate on the basis of race, color, religion, sex, age, marital status, disability, or veteran status. Equal Opportunity Employer, including disabled and veterans.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).