Deloitte Jobs

Job Information

Deloitte Security Operations Center (SOC) Cyber Analyst - Norfolk, VA in Richmond, Virginia

Deloitte's Government and Public Services (GPS) practice - our people, ideas, technology and outcomes-is designed for impact. Serving federal, state, & local government clients as well as public higher education institutions, our team of over 15,000+ professionals brings fresh perspective to help clients anticipate disruption, reimagine the possible, and fulfill their mission promise.

Are you looking to make an immediate impact where you can help our clients solve their business challenges? Deloitte's Core Business Operations (CBO) portfolio operates at the center of our client's business. By joining our team, you could help C-suite and program leaders transform their organization and accelerate mission execution through emerging and disruptive technologies, innovative business models, retooled program operations and industry-driven solutions.

Work You'll Do

  • This role will sit onsite in Norfolk, VA.

  • Support SOC team in operating and preforming duties in a Security Operations Center (SOC) to provide a secure environment that facilitates incident response and threat hunting activities.

  • Build and create a test bed of Operational Technology (OT) Industrial Control Systems (ICS)

  • Engineer future solutions, network enhancements, and system infrastructures

  • Manage the SIEM platform to monitor for security alerts and coordinate vulnerability assessments and artifact collection across servers and network devices

  • Evaluate network structures and device configurations for security risks, offering recommendations based on best practices, and gather data to identify and respond to network intrusions

  • Analyze network traffic and system logs to identify malicious activities, vulnerabilities exploited, and methods used, and develop processes to enhance SOC response and efficiency

  • Conduct comprehensive technical analyses of computer evidence, research and integrate new security tools into the SOC, and synthesize findings into reports for both technical and non-technical audiences

  • Proficient in analyzing cyber-attacks, with a deep understanding of attack classifications, stages, system/application vulnerabilities, and compliance with Department of Defense (DoD) policies and procedures

  • Applied knowledge of network topologies, protocols (e.g., TCP/IP, ICMP, HTTP/S, DNS, SSH, SMTP, SMB), and experience with tools like Palo Alto, Elastic SIEM, Cribl, Splunk, VMware, Security Center

  • Capable of attack reconstruction based on network traffic, integrating Threat Intelligence, and familiar with MITRE ATT&CK framework, with the ability to collaborate effectively across multiple locations

    The team

Our Core Technology Operations group enables differentiation and focused growth for large-scale infrastructure, data center, and operations projects. We take part in operation services for our clients with emphasis on automation and delivery excellence. Our core capabilities include: IT Operations Delivery & Management, Customer Experience Enhancement, Operations Transformation, transportation modernization, and Emerging Technology platforms such as drones and 5G networks.



  • Bachelor's degree in computer science, information systems, or other technology-related field

  • 5+ years experience in security operations or industrial control automation/management

  • Certified Ethical Hacker (CEH), GIAC Certified Incident Handler (GCIH), or relevant IT technology certification

  • Active Secret Clearance (or higher)

  • Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future

    Information for applicants with a need for accommodation:



All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.