Junior Security Specialist
Strategic Operational Solutions (STOPSO) is seeking qualified candidates for a Junior Security Specialist position supporting the Department of Justice (DOJ), Executive Office for Immigration Review (EOIR), Office of Information Technology (OIT). The Junior Security Specialist provides cybersecurity operations, incident response support, security monitoring, vulnerability management support, insider threat analysis support, reporting assistance, and cybersecurity compliance support as part of EOIR's IT Security Services program. The position works under the direction of the Cybersecurity Lead Incident Response Coordinator and supports the daily execution of cybersecurity operations across EOIR environments.
Responsibilities:
- Monitor cybersecurity alerts and events using Government-provided cybersecurity tools.
- Analyze security event information from SIEM, endpoint protection, vulnerability management, and related cybersecurity systems.
- Assist with security event triage and initial investigation activities.
- Identify and document suspicious activity and potential cybersecurity incidents.
- Support daily cybersecurity operations functions.
- Support incident response activities under direction of the Cybersecurity Lead.
- Assist with collection, preservation, and analysis of incident-related information.
- Support maintenance of incident records and case documentation.
- Perform research and analysis regarding emerging cyber threats and vulnerabilities.
- Assist in development of lessons learned documentation following security events.
- Assist with execution and review of vulnerability scans.
- Support vulnerability remediation activities.
- Assist with POA&M development and tracking.
- Monitor remediation progress and update cybersecurity records and dashboards.
- Participate in cybersecurity risk assessments.
- Assist with insider threat monitoring activities.
- Support user behavior analytics review and documentation.
- Analyze cybersecurity data for indicators of suspicious activity.
- Support development of trend analysis and reporting products.
- Assist with development of security reports, metrics, briefings, and status updates.
- Maintain cybersecurity records, SOPs, and supporting documentation.
- Support monthly, weekly, and ad hoc reporting requirements.
- Assist with data collection for executive briefing materials.
Qualifications:
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, Information Systems, or closely related field.
- Assist with data collection for executive briefing materials.
- Minimum two (2) years of experience supporting cybersecurity operations, incident response, vulnerability management, SOC operations, or related cybersecurity disciplines.
- Experience using cybersecurity monitoring and analysis tools.
- Familiarity with SIEM platforms, vulnerability scanning tools, endpoint security technologies, and cybersecurity ticketing systems.
- Ability to work effectively within a team-oriented cybersecurity operations environment.
- Strong analytical and problem-solving skills.
- Strong written and verbal communication skills.
- Ability to obtain and maintain a DOJ Public Trust clearance.
- U.S. Citizenship required
Preferred Skills:
- Knowledge of NIST Cybersecurity Framework and NIST 800-series publications.
- Knowledge of FISMA, OMB Circular A-130, and federal cybersecurity requirements.
- Experience with threat hunting, incident analysis, malware investigations, and vulnerability remediation.
- Ability to analyze and correlate security event data from multiple sources.
- Strong written and verbal communication skills.
- Experience preparing executive-level reports, briefings, and cybersecurity metrics.
- Ability to lead technical teams in fast-paced, mission-critical environments.
- Strong analytical and problem-solving skills.
- Experience supporting enterprise cybersecurity operations within regulated federal environments.
- Proficiency with Microsoft Word, Excel, PowerPoint, and SharePoint.