
Threat Management Specialist – Tier 1
Posted 2 days ago

Posted 2 days ago
This is a fully remote position, open to applicants in Virginia.
• Receive alerts from SIEM, CSOC mailboxes, and incoming phone calls.
• Manage alerts in accordance with established playbooks and Standard Operating Procedures (SOPs).
• Conduct initial triage and escalate events to Tier 2 when necessary.
• Identify security issues that require mitigating controls.
• Analyze SIEM and CSOC outputs to pinpoint potential security incidents.
• Gather essential information such as IP addresses, geographical locations, and impacted assets.
• Forward items needing further investigation to the Threat Management team.
• Implement operational processes that support security incident response.
• Utilize AI/ML-based tools and methodologies to detect anomalies and streamline incident triage.
• Evaluate threat intelligence to assess risks and adjust defenses accordingly.
• Identify and advocate for automation use cases to bolster SOC capabilities.
• Collaborate with Operations on enhancements to the SOC through automation and AI integration.
• Support cyber missions and operations for the United States Postal Service.
• A minimum of 1 year of relevant experience.
• Bachelor’s degree in Computer Science, Information Technology, or a closely related field.
• If a relevant degree is not held, 4 additional years of pertinent work experience are required.
• At least 1 year of experience in IT Operations.
• A minimum of 1 year of experience in IT Security.
• Practical knowledge of basic platform security concepts.
• Understanding of threat lifecycle management.
• Familiarity with TCP/IP protocols.
• Knowledge of incident management processes.
• Awareness of control frameworks and risk management strategies.
• Experience with AI/ML techniques in cybersecurity, including automated threat detection and incident response automation.
• Comprehension of ethical AI principles and their relevance to cybersecurity.
• Familiarity with cloud security in AWS, Azure, or GCP environments.
• Experience in identifying and applying automation use cases.
• Strong oral and written communication abilities.
• Excellent interpersonal and organizational skills.
• Must obtain and maintain a Public Trust.
• Onsite fingerprinting at a designated facility is required.
• U.S. residency is a prerequisite.
• U.S. Citizens must not have been outside the U.S. or U.S. Territories for more than six consecutive months in the last three years, with certain exceptions.
• Non-U.S. Citizens must not have left the U.S. or U.S. Territories for longer than 90 consecutive days in the last three years.
• No current security clearance is necessary.
• Certifications such as CEH, CISSP, CompTIA Security+, or GCIH are considered advantageous.
• 401(k) plan with company matching contributions.
• Comprehensive health and wellness benefits.
• Various medical plan options, some of which feature Health Savings Accounts.
• Options for dental coverage.
• Vision insurance options available.
• Flexible work weeks where feasible.
• Paid vacation and holidays.
• Paid time off that includes vacation, sick days, personal time, holidays, parental leave, military leave, bereavement leave, and jury duty leave.
• Typically, 15 days of paid leave each calendar year.
• An additional 10 paid holidays annually.
• Up to 160 hours of paid family leave in a rolling 12-month period for eligible employees.
• Short- and long-term disability insurance benefits.
• Life insurance coverage.
• Accidental death and dismemberment insurance.
• Personal accident insurance.
• Critical illness insurance.
• Business travel and accident insurance.
• An internal mobility team dedicated to assisting employees in managing their career paths.
• Opportunities for professional growth, including funding for education and certifications.
• Access to cutting-edge technology for learning.
The Cigna Group
Handspring Health
Bicycle Health
Get handpicked remote jobs straight to your inbox weekly.