Host Based Systems Analyst

Found in: Dice One Red US C2 - 1 week ago


Arlington, United States Anonymous Employer Full time
The CDNA uses information collected from a variety of sources to monitor network activity and analyze it for evidence of suspicious behavior. Monitoring and analysis are performed to identify and report events that occur, or might occur, within the network, in order to protect information, information systems, and networks from threats. Responsibilities:
• Assist customer with coordinating preliminary incident response investigations
• Assist customer interface with external customers
• Determine appropriate course of action in response to identified and analyses anomalous network activity
• Assesses network topology and device configurations identifying critical security concerns and providing security best practice recommendations
• Collect network intrusion artifacts (e.g., PCAP, domains, URI’s, certificates, etc.) and uses discovered data to enable mitigation of potential Computer Network Defense incidents
• Analyze identified malicious network activity to determine weaknesses exploited, exploitation methods, effects on system and information
• Collect network device integrity data and analyze for signs of tampering or compromise
• Assist customer with real-time CND incident handling (i.e., forensic collections, intrusion correlation and tracking, threat analysis, and advising on system remediation) tasks to support onsite engagements Required Skills:
o U.S. Citizenship
o Must have an active TS/SCI clearance
o Must be able to obtain DHS Suitability
o 8+ years of directly relevant experience in network investigations
o In depth knowledge of CND policies, procedures and regulations
o In depth knowledge of TCP/IP protocols
o In depth knowledge of standard protocols – ICMP, HTTP/S, DNS, SSH, SMTP, SMB, NFS, etc.
o In depth knowledge and experience of Wifi networking
o In depth knowledge and experience of network topologies - DMZ’s, WAN’s, etc.
o Substantial knowledge of Splunk (or other SIEM’s)
o Understanding of MITRE Adversary Tactics, Techniques and Common Knowledge (ATT&CK)
o Knowledge of Computer Network Defense policies, procedures, and regulations
o Knowledge of defense-in-depth principles and general attack stages with respect to network security architecture
o Ability to characterize and analyze network traffic to identify anomalous activity and potential threats to network resources
o Ability to identify and analyze anomalies in network traffic using metadata
o Experience with reconstructing a malicious attack or activity based on network traffic
o Experience examining network topologies to understand data flows through the network
o Must be able to work collaboratively across physical locations Desired Skills:
o Substantial knowledge of network device integrity concepts and methodologies
• Experience with or knowledge of two or more of the following tools: WireShark, Splunk, Snort, Corelight, Suricata, Arkime
o Experience with EDR Tools (Crowdstrike, Carbon Black, Etc)
o Proficiency with virtualized environments
o Proficiency with conducting all-source research.
o Proficiency with carving and extracting information from PCAP data
o Proficiency with non-traditional network traffic (e.g. Command and Control)
o Familiarity with ICS/SCADA protocols
o Familiarity with Python or other scripting languages Required Education:
BS Computer Science, Cybersecurity, Computer Engineering or related degree; or HS Diploma and 10+ years of network investigation experience Desired Certifications:
GCFA, GCFE, EnCE, CCE, CFCE, CISSP, IASAE II, GCIA, GCIH, CSSP Analyst, CSSP Incident Responder, CEH, SANS GIAC GNFA preferred

  • Arlington, United States Node.Digital Full time

    Job DescriptionJob DescriptionHost Forensics Analysts/Host Based Systems AnalystLocation: Arlington, VAMust have Top Secret Security ClearanceNode provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based and network-based cybersecurity analysis...


  • Arlington, United States Argo Cyber Systems Full time

    Job DescriptionJob DescriptionThe DHS's Hunt and Incident Response Team (HIRT) secures the Nation's cyber and communications infrastructure. HIRT provides DHS's front line response for cyber incidents and proactively hunting for malicious cyber activity. Argo Cyber Systems is a key partner to DHS, and performs HIRT investigations to develop a...


  • Arlington, United States Node.Digital Full time

    Job DescriptionJob DescriptionHost-Based Systems Analyst Location: Arlington, VAMust have an active Top Secret Security ClearanceNode provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based, and cloud-based cybersecurity analysis...

  • Host Forensics Analysts/Host Based Systems Analyst

    Found in: Resume Library US A2 - 2 weeks ago


    Arlington, Virginia, United States Node.Digital Full time

    Host Forensics Analysts/Host Based Systems Analyst Location: Arlington, VA Must have Top Secret Security Clearance Node provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based and network-based cybersecurity analysis capabilities. Contract...

  • Host Based Systems Analyst

    Found in: Talent US C2 - 1 week ago


    Arlington, United States Fusion Technology Full time

    Who are you? Trusted Employee: The Government trusts you and so do we. You possess an active Top Secret security clearance. You must also be able to obtain Department of Homeland Security (DHS) suitability. Threat Expert: You have experience with proper evidence handling procedures and chain of custody protocols. You are skilled in identifying...

  • Host-Based Systems Analyst

    Found in: Resume Library US A2 - 5 days ago


    Arlington, Virginia, United States Node.Digital Full time

    Host-Based Systems Analyst Location: Arlington, VA Must have an active Top Secret Security Clearance Node provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based, and cloud-based cybersecurity analysis capabilities. Team...

  • Host Based Systems Analyst with Security Clearance

    Found in: Dice One Red US C2 - 1 week ago


    Arlington, United States Anonymous Employer Full time

    Our Arlington VA based client is looking for Host Based Systems Analyst . If you are qualified for this position, please email your updated resume in word format to This position will require physical presence in the National Capital Region (NCR) for at least 3 weeks for training and orientation. Subsequent work will be primarily supported outside the NCR...

  • Host Based Systems Analyst with Security Clearance

    Found in: Dice One Red US C2 - 1 week ago


    Arlington, United States Anonymous Employer Full time

    Our Arlington VA based client is looking for Host Based Systems Analyst. If you are qualified for this position, please email your updated resume in word format to Responsibilities: • Assists with leading and coordinating forensic teams in preliminary investigations• Plans, coordinates and directs the inventory, examination and comprehensive technical...

  • Host Based Systems Analyst with Security Clearance

    Found in: Dice One Red US C2 - 1 week ago


    Arlington, United States Anonymous Employer Full time

    Our Arlington VA based client is looking for Host Based Systems Analyst. If you are qualified for this position, please email your updated resume in word format to Responsibilities: • Assists with leading and coordinating forensic teams in preliminary investigations• Plans, coordinates and directs the inventory, examination and comprehensive technical...

  • Host Based Systems Analyst Level II with Security Clearance

    Found in: Dice One Red US C2 - 1 week ago


    Arlington, United States Base One Technologies Full time

    Our Arlington VA based client is looking for a Host Based Systems Analyst Level II. If you are qualified for this position, please email your updated resume in word format to Working location: Arlington VA Host Based Systems Analyst Level IISecurity ClearanceActive Top Secret w SCI Core Competencies:Uses leading edge technology and industry standard...


  • Arlington, United States Argo Cyber Systems Full time

    Job DescriptionJob DescriptionArgo Cyber Systems provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based and cloud-based cybersecurity analysis capabilities. Team personnel provide front line response for digital forensics/incident...


  • Arlington, United States Base One Technologies Full time

    Host Based Systems Analyst - IV -HBA04 - SME High Priority Apply Location Arlington, VA Hybrid Posted May 1, 2023 Host Based Systems Analyst - IV -HBA04 - SME High Priority Responsibilities: - Perform event correlation using information gathered from a variety of sources within the enterprise to gain situational awareness and determine the effectiveness...

  • Host Based Systems Analyst level 4 with Security Clearance

    Found in: Dice One Red US C2 - 1 week ago


    Arlington, United States Base One Technologies Full time

    Our Arlington VA based client is looking for Host Based Systems Analyst level 4. If you are qualified for this position, please email your updated resume in word format to Responsibilities:• Assisting Federal leads with overseeing and leading forensic teams at onsite engagements by coordinating evidence collection operations • Providing technical...


  • Arlington, United States Argo Cyber Systems Full time

    Job DescriptionJob DescriptionThe DHS's Hunt and Incident Response Team (HIRT) secures the Nation's cyber and communications infrastructure. HIRT provides DHS's front-line response for cyber incidents and proactively hunting for malicious cyber activity. Argo Cyber Systems supports this mission with DHS, performs HIRT investigations to develop a...


  • Arlington, United States Argo Cyber Systems Full time

    Job DescriptionJob DescriptionThe DHS's Hunt and Incident Response Team (HIRT) secures the Nation's cyber and communications infrastructure. HIRT provides DHS's front-line response for cyber incidents and proactively hunting for malicious cyber activity. Argo Cyber Systems supports this mission with DHS, performs HIRT investigations to develop a...


  • Arlington, United States Gray Tier Technologies LLC Full time

    Gray Tier Technologies is looking for a Cyber Forensics Analysts to support the DHS Hunt and Incident Response Team (HIRT). This team secures the Nation’s cyber and communications infrastructure while providing front line response for cyber incidents and hunting for malicious cyber activity. Our team performs HIRT investigations to develop a diagnosis of...


  • Arlington, United States Caribou Thunder LLC Full time

    **Caribou Thunder** **Host Based Forensics Cybersecurity Analyst 4 (2022)** **Arlington, VA - Full Time** This is an opportunity to join a fast-paced program supporting the Department of Homeland Security cybersecurity hunt and incident response efforts. As a Host Based Forensics Cybersecurity Analyst you will use leading edge technology and industry...


  • Arlington, United States Caribou Thunder LLC Full time

    **Caribou Thunder** **Host Based Forensics Cybersecurity Analyst 3 (2022)** **Arlington, VA - Full Time** This is an opportunity to join a fast-paced program supporting the Department of Homeland Security cybersecurity hunt and incident response efforts. As a Host Based Forensics Cybersecurity Analyst you will use leading edge technology and industry...

  • Host Based Systems Analyst with Security Clearance

    Found in: Careerbuilder One Red US C2 - 1 week ago


    Arlington, VA, United States Anonymous Employer Full time

    Our Arlington VA based client is looking for Host Based Systems AnalystIf you are qualified for this position, please email your updated resume in word format to Responsibilities: • Assists with leading and coordinating forensic teams in preliminary investigations• Plans, coordinates and directs the inventory, examination and comprehensive technical...

  • Host Based Systems Analyst Level II with Security Clearance

    Found in: Careerbuilder One Red US C2 - 1 week ago


    Arlington, VA, United States Base One Technologies Full time

    Our Arlington VA based client is looking for a Host Based Systems Analyst Level IIIf you are qualified for this position, please email your updated resume in word format to Working location: Arlington VA Host Based Systems Analyst Level IISecurity ClearanceActive Top Secret w SCI Core Competencies:Uses leading edge technology and industry standard forensic...