368,530open jobs
9,432companies
50,439added this week
Browse all
Salary
$80k – $110k per year
Location
In office (Herndon)
Seniority
Senior · 5+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Ultraviolet Cyber is an enterprise cybersecurity company that provides unified, automated security operations and threat management solutions. The firm offers managed detection and response (MDR), threat intelligence, and security automation services designed to help organizations streamline their security operations centers (SOCs). By synthesizing telemetry across diverse IT environments, it enables enterprises to detect, investigate, and neutralize complex cyber threats in real time.

UltraViolet Cyber is seeking a Senior Security (SOC) Analyst who will monitor and analyze security events and alerts reported by the SIEM on a 24x7 basis to identify and investigate suspicious or malicious activity, or other cyber events which violate policy. The Security Analyst will work with a large to team that rotates 3x12 or 4x12 hour shifts. The position requires a US Government issued Secret Clearance, and requires 5 days onsite per week in Herndon, VA.

The analyst will be responsible for analyzing logs and events from any other device types which may send logs or events to the SOC in the future. Non-traditional device feeds will deliver data to the SIEM architecture (e.g., Human Resources (HR) data, badging information, and physical security devices, etc.).

The analyst will provide documentation detailing any additional information collected and maintained for each security investigation.

The analyst will record all artifacts (i.e. emails, logs, documents, Uniform Resource Locators (URLs), screenshots, etc.) associated with all security events and incident investigations within the SOC incident and tracking application.

Must be legally allowed to work in the US, and the work must be done in the US.

No third-party candidates will be considered

What You Have:

  • Active US Secret Security Clearance
  • 5+ years of experience working in a Security Operations Center (SOC) or Network Operations Center (NOC) environment performing security event monitoring and analysis
  • Working knowledge of the various operating systems (e.g. Windows, OS X, Linux, etc.) commonly deployed in enterprise networks.
  • Must possess a working knowledge of network communications and routing protocols (e.g. TCP, UDP, ICMP, BGP, MPLS, etc.) and common internet applications and standards (e.g. SMTP, DNS, DHCP, SQL, HTTP, HTTPS, etc.)
  • Familiarity with adversarial tactics, techniques, and procedures (TTPs)
  • Must be capable of analyzing security logs and events from the following types of devices such as, but not limited to:
  • Firewalls (FWs), Intrusion Detection Sensors/Intrusion Prevention Sensors (IDS/IPS)
  • Host-based Intrusion Detection System/ Host-based Intrusion Prevention System (HIDS/HIPS)
  • Additional: proxy/web filter, vulnerability scans, routers, router Internet Protocol (IP) accounting systems (i.e., Cisco NetFlow)
  • Virtual Private Network (VPN) gateways/concentrators, server event logs, e-mail and host anti-virus, desktop security monitoring agents, anti-virus servers, IP services (i.e. Domain Name System (DNS) Services, Dynamic Host Configuration Protocol (DHCP)
  • Additionally: network address translation devices, MDM (e.g. cellphones), Public Key Infrastructure (PKI), and cloud security infrastructure (e.g. Amazon Web Services (AWS), Azure, Oracle, Salesforce, etc.)

Education, Certification & Clearance Requirements:

  • 8570 Certification(s): Security+ or equivalent
  • Clearance Requirements: Secret Clearance
  • High school diploma needed

Preferred Skills:

  • Certification(s): Security+, GCIH, CEH, or CYSA+ is desired
  • Experience with Splunk query language
  • Experience with IDS/IPS/firewall/security configurations and signature development
  • Experience with PCAP analysis
  • Experience with Tanium threat response
  • Ability and prior experience with analyzing information technology security events to discern events that qualify as legitimate security incidents as opposed to non-incidents. This includes the identification of malicious code present within a computer system as well identification of malicious activities that are present within a computer system and/or enterprise network
  • Experience working with a ticket management system to collect, document and maintain information pertinent to security investigations and incidents
  • Excellent verbal and written communications skills and ability produce clear and thorough security incident reports and briefings
  • Experience in monitoring the operational status of monitoring components and escalating and reporting outages of the components
  • Conceptual understanding of Windows Active Directory is also desired
  • Experience working with various event logging systems and must be proficient in the review of security event log analysis. Previous experience with SIEM platforms that perform log collection, analysis, correlation, and alerting is also preferred
  • Experience with the identification and implementation of counter-measures or mitigating controls for deployment and implementation in the enterprise network environment
  • Experience in collecting and maintaining information pertinent to security; investigations and incidents in a format that supports analysis, situational awareness reporting, and law enforcement investigation efforts

Benefits at UltraViolet Cyber!

  • 401(k), including an employer match of 100% of the first 3% contributed and 50% of the next 2% contributed
  • Medical, Dental, and Vision Insurance (available on the 1st day of the month following your first day of employment)
  • Group Term Life, Short-Term Disability, Long-Term Disability
  • Voluntary Life, Hospital Indemnity, Accident, and/or Critical Illness
  • Participation in the Discretionary Time Off (DTO) Program
  • 11 Paid Holidays Annually
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,530 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Herndon
In office • Full-Time • 7+ years exp • Bachelor's Degree • Santiago
Node JS
Python
SQL
TypeScript
JavaScript
Python
pySpark
Databases
Databricks
Delta Lake
MySQL
AI/ML
Spark
Frontend
Angular
Mobile
Ionic
DevOps
AWS
Azure
GCP
Marketing
Salesforce
Apply
$47k – $103k per year (Estimated) • In office • Full-Time • 5+ years exp • Pune • Bengaluru
Python
AI/ML
AI Agents
LLM
RAG
Vertex AI
DevOps
AWS
Azure
GCP
Apply
$110k – $199k per year (Estimated) • In office • Full-Time • 5+ years exp • Bachelor's Degree • Tysons
C#
SQL
C#
.NET
Databases
MS SQL
DevOps
Azure
Azure DevOps
CI/CD
Management
Power Apps
Apply
$87k – $131k per year • In office • Full-Time • 5+ years exp • Bachelor's Degree • Tysons
Java
Mobile
JUnit
DevOps
AWS
Azure
Azure DevOps
CI/CD
Datadog
Docker
Dynatrace
GCP
Git
Jenkins
Kubernetes
New Relic
Shift-Left
Splunk
Cybersecurity
Shift-Left Security
SonarQube
Management
Jira
QA
Cucumber
JMeter
Postman
Rest-Assured
Selenium
TestNG
Apply
$118k – $240k per year (Estimated) • In office • Full-Time • 8+ years exp • Bachelor's Degree • Tysons
C#
Go
JavaScript
Python
SQL
TypeScript
C#
.NET
AI/ML
Embeddings
Human-in-the-Loop
LLM Guardrails
RAG
Semantic Search
Semantic Search
DevOps
AWS
CI/CD
Vector
Cybersecurity
Least Privilege
Apply
$94k – $184k per year (Estimated) • Remote/Hybrid • 8+ years exp • Bachelor's Degree • Washington
Python
SQL
AI/ML
Airflow
Prefect
DevOps
AWS
Azure
CI/CD
CloudFormation
GCP
GitHub Actions
Jenkins
Self-Healing
Terraform
GitHub
GitLab
Analytics
ETL/ELT
Apply
$160k – $205k per year • Remote/Hybrid • 12+ years exp • Bachelor's Degree
DevOps
Splunk
Cybersecurity
Qualys Cloud Platform
Zero Trust
Apply
$90k – $130k per year • In office • 4+ years exp • Herndon
PowerShell
Python
DevOps
Ansible
AWS
Azure
Splunk
Apply
$140k – $175k per year • Remote/Hybrid • Full-Time • 7+ years exp • Master's Degree
DevOps
Splunk
Cybersecurity
Crowdstrike
CyberArk
Zero Trust
Apply
$90k – $110k per year • In office • Full-Time • 3+ years exp • High School Diploma • Herndon
DevOps
Ansible
Red Hat
Splunk
VMWare
Apply
$69k – $158k per year • In office • Full-Time • 2+ years exp • High School Diploma • Herndon
Java
Java
Spring Boot
Spring Framework
Databases
Apache Kafka
DevOps
Git
Management
Confluence
Jira
Apply
Software Engineer 1 day ago
$87k – $198k per year • In office • Full-Time • 3+ years exp • High School Diploma • Chantilly • Aurora • Herndon
Java
Java
Spring Boot
Spring Framework
Databases
Apache Kafka
DevOps
Ansible
AWS
Bitbucket
CI/CD
Docker
Git
Jenkins
Kubernetes
Apply
In office • Contractor • 5+ years exp • Bachelor's Degree • Herndon
Visual Basic
Apply
$255k – $345k per year • In office • Full-Time • 10+ years exp • Bachelor's Degree • Herndon
Apply
$170k – $230k per year • In office • Full-Time • 8+ years exp • Bachelor's Degree • Herndon
Apply
See all jobs
This is one of many
368,530 more open roles from verified company boards, updated every day.