CBO - Tier 2 SOC Analyst
cFocus Software seeks a Tier 2 SOC Analyst to join our program supporting the Congressional Budget Office (CBO). This position is remote. This position requires a Public Trust clearance.Qualifications:Active Public Trust clearanceB.S. Computer Science, Information Technology, or a related field2+ years of SOC Analyst experienceStrong knowledge of cybersecurity operations and incident response processesExperience with SIEM platforms, preferably Microsoft SentinelUnderstanding of MITRE ATT&CK framework and threat actor tacticsExperience analyzing logs from endpoints, networks, cloud, and identity systemsFamiliarity with Microsoft Defender tools (Endpoint, Identity) and cloud platforms (AWS)Experience with digital forensics and malware analysisFamiliarity with SOAR tools and automation workflowsExperience supporting federal or regulated environments (NIST, CUI, etc.)Ability to perform threat hunting and advanced correlation analysisPreferred certifications include but are not limited toGCIA, GCIH, CISSP, CEH, or equivalent cybersecurity certifications Microsoft Sentinel or Microsoft security platform certifications Relevant cloud security certifications (e.g., AWS security) Privacy certifications (e.g., CIPP/US, CIPM) where applicable Duties:Perform advanced analysis and investigation of escalated security alerts and incidentsConduct root cause analysis (RCA) and determine scope and impact of incidentsSupport incident response activities including containment, eradication, and recoveryPerform threat hunting across identity, endpoint, network, cloud, and application logsCorrelate events across multiple data sources within SIEM (Microsoft Sentinel)Develop and tune detection rules, analytics, and use casesMaintain and improve SOC playbooks and incident response proceduresProvide detailed documentation of investigations, findings, and remediation actionsSupport reporting requirements including contributions to monthly and quarterly reportsCollaborate with Tier I and Tier III analysts, engineers, and stakeholders