Security Operations / Firewall Analyst
Location
United States
Posted
3 days ago
Salary
Not specified
Seniority
Mid Level
Job Description
Role Description
cFocus Software seeks a Security Operations / Firewall Analyst to join our program supporting the National Institutes of Health (NIH). This position is remote and requires a Public Trust clearance.
- Monitor cybersecurity tools and alerts to detect and respond to potential security incidents.
- Support Security Operations Center (SOC) activities including threat monitoring and alert analysis.
- Assist with firewall configuration, rule management, and network segmentation enforcement.
- Analyze system and network logs to identify suspicious or unauthorized activities.
- Coordinate with cybersecurity teams to respond to incidents and mitigate vulnerabilities.
- Monitor SIEM platforms, IDS/IPS systems, endpoint protection tools, and other security monitoring systems.
- Investigate security alerts and escalate incidents based on severity and impact.
- Perform analysis of network traffic and endpoint telemetry to identify indicators of compromise.
- Track and document incident investigations and response activities.
- Provide operational monitoring support during high-volume security events or incidents.
- Manage firewall rules to enforce least privilege and default-deny access policies.
- Support configuration management and change control processes for firewall rule updates.
- Conduct routine firewall rule reviews to identify obsolete or unnecessary access rules.
- Validate firewall configurations and ensure compliance with HHS and NIH security standards.
- Support network segmentation and security zone management to protect sensitive systems.
- Validate and monitor logs generated by network and security devices.
- Ensure logging configurations comply with federal cybersecurity guidance including OMB M-21-31.
- Analyze log data to identify anomalies, policy violations, or indicators of malicious activity.
- Assist with cybersecurity compliance activities and audit preparation.
Qualifications
- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related discipline.
- Minimum 3–5 years of experience supporting security operations, network security monitoring, or firewall administration.
- Experience with SIEM platforms and cybersecurity monitoring tools.
- Familiarity with IDS/IPS systems, endpoint security solutions, and network security technologies.
- Experience supporting firewall administration and rule management.
- Understanding of federal cybersecurity frameworks such as NIST RMF and FISMA.
- Strong analytical, troubleshooting, and documentation skills.
Job Requirements
- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related discipline.
- Minimum 3–5 years of experience supporting security operations, network security monitoring, or firewall administration.
- Experience with SIEM platforms and cybersecurity monitoring tools.
- Familiarity with IDS/IPS systems, endpoint security solutions, and network security technologies.
- Experience supporting firewall administration and rule management.
- Understanding of federal cybersecurity frameworks such as NIST RMF and FISMA.
- Strong analytical, troubleshooting, and documentation skills.
Related Guides
Related Categories
Related Job Pages
More Security Operations Jobs
Senior Security Operations Engineer
CohereAt Cohere, our mission is to build machines that understand the world, and to make them safely accessible to all.
As a Senior Security Operations Engineer you will: Serve as trusted advisor to team’s leadership and partner teams by clearly articulating business risks associated with security issues. Harden our cloud-native environments (AWS, OCI, GCP) by introducing secure by default desig...
The analyst will monitor cybersecurity tools and alerts to detect and respond to potential security incidents, supporting Security Operations Center (SOC) activities including threat monitoring and alert analysis. Duties also involve assisting with firewall configuration, rule management, and enforcing network segmentation.
This role focuses on leading and supporting end-to-end security incident investigations, ensuring processes are followed, evidence is preserved, and risks are understood. The lead will also coordinate crisis execution during major incidents, translating technical findings for various stakeholders.
Investigations Specialist (Home-Based) (Open to Tier 1 and 2)
UNDPUN Women works for the elimination of discrimination against women and girls; the empowerment of women; and the achievement of equality between women and men as partners and beneficiaries of development, human rights, humanitarian action and peace and security.
The specialist will conduct highly complex investigations into allegations of fraud, abuse, and misconduct, ensuring actions align with Company rules and international standards. Key duties include planning and executing investigations, collecting and analyzing evidence, conducting interviews, updating case files, preparing high-quality reports, and liaising with relevant internal and external partners.


