Host Based Systems Analyst
Found in: Dice One Red US C2 - 1 week ago
• Assist customer with coordinating preliminary incident response investigations
• Assist customer interface with external customers
• Determine appropriate course of action in response to identified and analyses anomalous network activity
• Assesses network topology and device configurations identifying critical security concerns and providing security best practice recommendations
• Collect network intrusion artifacts (e.g., PCAP, domains, URI’s, certificates, etc.) and uses discovered data to enable mitigation of potential Computer Network Defense incidents
• Analyze identified malicious network activity to determine weaknesses exploited, exploitation methods, effects on system and information
• Collect network device integrity data and analyze for signs of tampering or compromise
• Assist customer with real-time CND incident handling (i.e., forensic collections, intrusion correlation and tracking, threat analysis, and advising on system remediation) tasks to support onsite engagements Required Skills:
o U.S. Citizenship
o Must have an active TS/SCI clearance
o Must be able to obtain DHS Suitability
o 8+ years of directly relevant experience in network investigations
o In depth knowledge of CND policies, procedures and regulations
o In depth knowledge of TCP/IP protocols
o In depth knowledge of standard protocols – ICMP, HTTP/S, DNS, SSH, SMTP, SMB, NFS, etc.
o In depth knowledge and experience of Wifi networking
o In depth knowledge and experience of network topologies - DMZ’s, WAN’s, etc.
o Substantial knowledge of Splunk (or other SIEM’s)
o Understanding of MITRE Adversary Tactics, Techniques and Common Knowledge (ATT&CK)
o Knowledge of Computer Network Defense policies, procedures, and regulations
o Knowledge of defense-in-depth principles and general attack stages with respect to network security architecture
o Ability to characterize and analyze network traffic to identify anomalous activity and potential threats to network resources
o Ability to identify and analyze anomalies in network traffic using metadata
o Experience with reconstructing a malicious attack or activity based on network traffic
o Experience examining network topologies to understand data flows through the network
o Must be able to work collaboratively across physical locations Desired Skills:
o Substantial knowledge of network device integrity concepts and methodologies
• Experience with or knowledge of two or more of the following tools: WireShark, Splunk, Snort, Corelight, Suricata, Arkime
o Experience with EDR Tools (Crowdstrike, Carbon Black, Etc)
o Proficiency with virtualized environments
o Proficiency with conducting all-source research.
o Proficiency with carving and extracting information from PCAP data
o Proficiency with non-traditional network traffic (e.g. Command and Control)
o Familiarity with ICS/SCADA protocols
o Familiarity with Python or other scripting languages Required Education:
BS Computer Science, Cybersecurity, Computer Engineering or related degree; or HS Diploma and 10+ years of network investigation experience Desired Certifications:
GCFA, GCFE, EnCE, CCE, CFCE, CISSP, IASAE II, GCIA, GCIH, CSSP Analyst, CSSP Incident Responder, CEH, SANS GIAC GNFA preferred
-
Arlington, United States Node.Digital Full timeJob DescriptionJob DescriptionHost Forensics Analysts/Host Based Systems AnalystLocation: Arlington, VAMust have Top Secret Security ClearanceNode provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based and network-based cybersecurity analysis...
-
Host Based Cyber Systems Analyst IV
1 week ago
Arlington, United States Argo Cyber Systems Full timeJob DescriptionJob DescriptionThe DHS's Hunt and Incident Response Team (HIRT) secures the Nation's cyber and communications infrastructure. HIRT provides DHS's front line response for cyber incidents and proactively hunting for malicious cyber activity. Argo Cyber Systems is a key partner to DHS, and performs HIRT investigations to develop a...
-
Host-Based Systems Analyst
4 days ago
Arlington, United States Node.Digital Full timeJob DescriptionJob DescriptionHost-Based Systems Analyst Location: Arlington, VAMust have an active Top Secret Security ClearanceNode provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based, and cloud-based cybersecurity analysis...
-
Host Forensics Analysts/Host Based Systems Analyst
Found in: Resume Library US A2 - 2 weeks ago
Arlington, Virginia, United States Node.Digital Full timeHost Forensics Analysts/Host Based Systems Analyst Location: Arlington, VA Must have Top Secret Security Clearance Node provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based and network-based cybersecurity analysis capabilities. Contract...
-
Host Based Systems Analyst
Found in: Talent US C2 - 1 week ago
Arlington, United States Fusion Technology Full timeWho are you? Trusted Employee: The Government trusts you and so do we. You possess an active Top Secret security clearance. You must also be able to obtain Department of Homeland Security (DHS) suitability. Threat Expert: You have experience with proper evidence handling procedures and chain of custody protocols. You are skilled in identifying...
-
Host-Based Systems Analyst
Found in: Resume Library US A2 - 5 days ago
Arlington, Virginia, United States Node.Digital Full timeHost-Based Systems Analyst Location: Arlington, VA Must have an active Top Secret Security Clearance Node provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based, and cloud-based cybersecurity analysis capabilities. Team...
-
Host Based Systems Analyst with Security Clearance
Found in: Dice One Red US C2 - 1 week ago
Arlington, United States Anonymous Employer Full timeOur Arlington VA based client is looking for Host Based Systems Analyst . If you are qualified for this position, please email your updated resume in word format to This position will require physical presence in the National Capital Region (NCR) for at least 3 weeks for training and orientation. Subsequent work will be primarily supported outside the NCR...
-
Host Based Systems Analyst with Security Clearance
Found in: Dice One Red US C2 - 1 week ago
Arlington, United States Anonymous Employer Full timeOur Arlington VA based client is looking for Host Based Systems Analyst. If you are qualified for this position, please email your updated resume in word format to Responsibilities: • Assists with leading and coordinating forensic teams in preliminary investigations• Plans, coordinates and directs the inventory, examination and comprehensive technical...
-
Host Based Systems Analyst with Security Clearance
Found in: Dice One Red US C2 - 1 week ago
Arlington, United States Anonymous Employer Full timeOur Arlington VA based client is looking for Host Based Systems Analyst. If you are qualified for this position, please email your updated resume in word format to Responsibilities: • Assists with leading and coordinating forensic teams in preliminary investigations• Plans, coordinates and directs the inventory, examination and comprehensive technical...
-
Host Based Systems Analyst Level II with Security Clearance
Found in: Dice One Red US C2 - 1 week ago
Arlington, United States Base One Technologies Full timeOur Arlington VA based client is looking for a Host Based Systems Analyst Level II. If you are qualified for this position, please email your updated resume in word format to Working location: Arlington VA Host Based Systems Analyst Level IISecurity ClearanceActive Top Secret w SCI Core Competencies:Uses leading edge technology and industry standard...
-
Cyber Network Based Systems Analyst IV
2 weeks ago
Arlington, United States Argo Cyber Systems Full timeJob DescriptionJob DescriptionArgo Cyber Systems provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based and cloud-based cybersecurity analysis capabilities. Team personnel provide front line response for digital forensics/incident...
-
Host Based Systems Analyst
1 week ago
Arlington, United States Base One Technologies Full timeHost Based Systems Analyst - IV -HBA04 - SME High Priority Apply Location Arlington, VA Hybrid Posted May 1, 2023 Host Based Systems Analyst - IV -HBA04 - SME High Priority Responsibilities: - Perform event correlation using information gathered from a variety of sources within the enterprise to gain situational awareness and determine the effectiveness...
-
Host Based Systems Analyst level 4 with Security Clearance
Found in: Dice One Red US C2 - 1 week ago
Arlington, United States Base One Technologies Full timeOur Arlington VA based client is looking for Host Based Systems Analyst level 4. If you are qualified for this position, please email your updated resume in word format to Responsibilities:• Assisting Federal leads with overseeing and leading forensic teams at onsite engagements by coordinating evidence collection operations • Providing technical...
-
Cyber Network Based Systems Analyst III
2 weeks ago
Arlington, United States Argo Cyber Systems Full timeJob DescriptionJob DescriptionThe DHS's Hunt and Incident Response Team (HIRT) secures the Nation's cyber and communications infrastructure. HIRT provides DHS's front-line response for cyber incidents and proactively hunting for malicious cyber activity. Argo Cyber Systems supports this mission with DHS, performs HIRT investigations to develop a...
-
Cyber Network Based Systems Analyst II
2 weeks ago
Arlington, United States Argo Cyber Systems Full timeJob DescriptionJob DescriptionThe DHS's Hunt and Incident Response Team (HIRT) secures the Nation's cyber and communications infrastructure. HIRT provides DHS's front-line response for cyber incidents and proactively hunting for malicious cyber activity. Argo Cyber Systems supports this mission with DHS, performs HIRT investigations to develop a...
-
Host Based Systems Analyst SME
1 week ago
Arlington, United States Gray Tier Technologies LLC Full timeGray Tier Technologies is looking for a Cyber Forensics Analysts to support the DHS Hunt and Incident Response Team (HIRT). This team secures the Nation’s cyber and communications infrastructure while providing front line response for cyber incidents and hunting for malicious cyber activity. Our team performs HIRT investigations to develop a diagnosis of...
-
Host Based Forensics Cybersecurity Analyst 4
7 days ago
Arlington, United States Caribou Thunder LLC Full time**Caribou Thunder** **Host Based Forensics Cybersecurity Analyst 4 (2022)** **Arlington, VA - Full Time** This is an opportunity to join a fast-paced program supporting the Department of Homeland Security cybersecurity hunt and incident response efforts. As a Host Based Forensics Cybersecurity Analyst you will use leading edge technology and industry...
-
Host Based Forensics Cybersecurity Analyst 3
1 week ago
Arlington, United States Caribou Thunder LLC Full time**Caribou Thunder** **Host Based Forensics Cybersecurity Analyst 3 (2022)** **Arlington, VA - Full Time** This is an opportunity to join a fast-paced program supporting the Department of Homeland Security cybersecurity hunt and incident response efforts. As a Host Based Forensics Cybersecurity Analyst you will use leading edge technology and industry...
-
Host Based Systems Analyst with Security Clearance
Found in: Careerbuilder One Red US C2 - 1 week ago
Arlington, VA, United States Anonymous Employer Full timeOur Arlington VA based client is looking for Host Based Systems AnalystIf you are qualified for this position, please email your updated resume in word format to Responsibilities: • Assists with leading and coordinating forensic teams in preliminary investigations• Plans, coordinates and directs the inventory, examination and comprehensive technical...
-
Host Based Systems Analyst Level II with Security Clearance
Found in: Careerbuilder One Red US C2 - 1 week ago
Arlington, VA, United States Base One Technologies Full timeOur Arlington VA based client is looking for a Host Based Systems Analyst Level IIIf you are qualified for this position, please email your updated resume in word format to Working location: Arlington VA Host Based Systems Analyst Level IISecurity ClearanceActive Top Secret w SCI Core Competencies:Uses leading edge technology and industry standard forensic...