Cyber Detection Analyst

3 weeks ago


Reston, United States Byte Systems, LLC Full time
Candidate MUST possess a TS/SCI clearance with Intel Polygraph Job Description: The Cloud Cyber Incident Responder on this Cyber Security support contract performs the following duties: Perform cyber analysis and response, detection engineering, and automation for commercial cloud environments Develop metrics and reporting to inform the customer of identified risks to their environment. Create and modify SIEM dashboards to clearly identify scope of findings or monitor activity. Identify patterns/outliers within data sets that match threat actor TTPs, post compromise behavior, and otherwise unusual activity, such as insider threat. Conduct dynamic and static malware analysis on samples obtained during incident handling or hunt operations to identify IOCs. Track investigations to resolution and provide an after-action report as required. Identify misuse, malware, or unauthorized activity on monitored networks Analyze all relevant cyber security event data and other data sources for attack indicators and potential security breaches Assist in coordination during incidents Identify intrusions utilizing various detection and prevention systems and other security event data sources on 24x7x365 basis Analyze intrusion related data to determine root cause and identify follow on activity while coordinating with Incident Handlers, Hunters, and various partners Correlate data from intrusion detection and prevention systems with data from other sources such as firewall, web server, and DNS logs, to include NetFlow, metadata, and pcap analysis Contributes in tuning and filtering of events and information, creating custom views and content using all available tools Review assembled data with firewall administrators, engineering, system administrators and other appropriate groups to determine the risk of a given event Contribute to the development of playbooks and procedures for handling each security event detected.
Required Skills: Requires Bachelor's degree or equivalent and minimum 5 years of related experience. OR 4 additional years of experience in lieu of degree Minimum of 5 years of progressively responsible experience in Cyber Security, InfoSec, Security Engineering, Network Engineering with emphasis in cyber security issues and operations, computer incident response, systems architecture, data management. Familiarity with the following classes of enterprise cyber defense technologies Security Information and Event Management (SIEM) systems to include Splunk ES, Elk, Sentinel, Chronicle Sysmon Azure AWS GCP Network Intrusion Detection System/Intrusion Prevention Systems (IDS/IPS) Host Intrusion Detection System/Intrusion Prevention Systems (IDS/IPS) Network and Host malware detection and prevention Network and Host forensic applications Web/Email gateway security technologies Log aggregation toolsOptional Skills: MUST be a US Citizen with a U.S. Government clearance - Intel with Polygraph NOTE: Must have an active TS-SCI with poly. No sponsorships or upgrades are available. Submissions without this requirement will not be considered. H1-B holders will not be considered. Benefits:
5 week paid vacation 10 gov't holidays
15% contribution to 401k
LTD, STD disability and life insurance
Paid health, dental, and vision for employee and family.
$5000 annual training expense reimbursement
Computer purchase plan

  • Reston, United States Softworld Inc Full time

    Job Title: Info Security Analyst IV (Cyber Detection Engineer) Job Location: Fairmont West Virginia 20190 Onsite Requirements: SIEM Security Sensors ANY SOC experience. Job Description: The Cyber Detection Engineer will develop detections based on intelligence available, then research and assist in implementing new detection methods. This Detection...


  • Reston, United States Softworld, a Kelly Company Full time

    Job Title: Info Security Analyst IV (Cyber Detection Engineer)Job Location: Fairmont West Virginia 20190Onsite Requirements:SIEMSecurity SensorsANY SOC experience.Job Description:The Cyber Detection Engineer will develop detections based on intelligence available, then research and assist in implementing new detection methods.This Detection Engineer will...


  • Reston, United States Softworld, a Kelly Company Full time

    Job Title: Info Security Analyst IV (Cyber Detection Engineer)Job Location: Fairmont West Virginia 20190Onsite Requirements:SIEMSecurity SensorsANY SOC experience.Job Description:The Cyber Detection Engineer will develop detections based on intelligence available, then research and assist in implementing new detection methods.This Detection Engineer will...


  • Reston, United States Softworld, Inc. Full time

    Job Title: Info Security Analyst IV (Cyber Detection Engineer)Job Location: Fairmont West Virginia 20190Onsite Requirements:SIEMSecurity SensorsANY SOC experience.Job Description:The Cyber Detection Engineer will develop detections based on intelligence available, then research and assist in implementing new detection methods.This Detection Engineer will...


  • Reston, United States Softworld Inc Full time

    Job Title: Info Security Analyst IV (Cyber Detection Engineer) Job Location: Fairmont West Virginia 20190 Onsite Requirements: * SIEM * Security Sensors * ANY SOC experience. Job Description: * The Cyber Detection Engineer will develop detections based on intelligence available, then research and assist in implementing new detection methods. * This Detection...


  • Reston, United States Cyber Security Services Full time

    An active Top Secret / SCI clearance is required for consideration for hire for this role. Work is to be performed 100% onsite with our Government Customer What You'll Get To Do: As a Sr Cyber Engineer and assured, compliance, assessment, and solution (ACAS) SME on our team, you’ll be able to work individually or in a small integrated team, and lead a...


  • Reston, United States QinetiQ Full time

    Company Overview We are a world-class team of professionals who deliver next generation technology and products in robotic and autonomous platforms, ground, soldier, and maritime systems in 50+ locations world-wide. Much of our work contributes to innovative research in the fields of sensor science, signal processing, data fusion, artificial...


  • Reston, United States iSenpai, LLC Full time

    iSenpai is a Woman-Owned Small Business (WOSB) that provides enterprise IT and cyber security services, cloud technology, and data analytics solutions for US Government and commercial customers. We specialize in cloud-based solutions with cyber security integrated into the design, delivered using efficient Agile DevSecOps. Engaging across industry and...


  • Reston, United States Recruiters Workforce Full time

    About the Opportunity: On behalf of our client, we are currently seeking an experienced Cyber Security Analyst with advanced knowledge in applying analytics in support of enterprise network cyber defense capabilities to prevent sophisticated cyber threats and vulnerabilities, or detection of them when prevention fails. The successful candidate will be...


  • Reston, United States Cornerstone Defense Full time

    Location: Reston, Virginia Type: Contract Job #2891 Senior Cyber Security Analyst Advisor Chantilly, VA Cornerstone Defense is looking for a highly motivated and experienced expert Cyber Security Analyst to join our team. The ideal candidate will have a strong understanding of cyber security principles and practices, as well as experience with...


  • Reston, United States Data Machines Full time

    Cyber Engineer/ Hunting Specialist- Hybrid - 0222-C Location: Reston, VA Clearance Requirement: Secret Job Description: Data Machines seeks an energetic member of a team with a deep understanding of network protocols, threat tactics, techniques and procedures. This will be a hybrid position based out of Reston, VA. Education and Certifications: * Bachelor's...


  • Reston, United States Mission Makers LLC Full time

    Role: Are you excited at the prospect of developing innovative solutions to enable secure and reliable operations of enterprise computer systems? Are you fascinated by the possibilities presented by engineering, designing, development, and implementation of enterprise network cyber defense capabilities to prevent sophisticated cyber threats? In an...


  • Reston, United States Hoplite Solutions LLC Full time

    Hoplite Solutions is seeking a Cyber Security Engineer (SME). This role is responsible for protecting the customer’s information systems and networks from potential cyber-attacks. The Cyber Security Engineer must display an excellent understanding of technology and utilization of Firewalls (Security Groups), VPNs, Data Loss Prevention (DPS), IDS/IPS,...


  • Reston, United States SilverEdge Full time

    Description: Seeking a Cyber Watch Officer to support our government customer in Reston, VA -OR- Colorado Springs, CO that will be responsible for providing multi-agency 24x7x365 cybersecurity event monitoring and intermediate cyber threat analysis management. Provide security monitoring, coordinate across multiple agency-specific Watch Officers, lead...


  • Reston, United States QinetiQ Full time

    Company Overview We are a world-class team of professionals who deliver next generation technology and products in robotic and autonomous platforms, ground, soldier, and maritime systems in 50+ locations world-wide. Much of our work contributes to innovative research in the fields of sensor science, signal processing, data fusion, artificial...


  • Reston, United States Leidos Full time

    R-00131478 Description We are seeking a Cyber Security Engineer (SME). This role is responsible for protecting the customer’s information systems and networks from potential cyber-attacks. The Cyber Security Engineer must display an excellent understanding of technology and utilization of Firewalls (Security Groups), VPNs, Data Loss Prevention (DPS),...


  • Reston, United States Leidos Full time

    R-00131477 Description We are seeking a Cyber Security Engineer (SME). This role is responsible for protecting the customer’s information systems and networks from potential cyber-attacks. The Cyber Security Engineer must display an excellent understanding of technology and utilization of Firewalls (Security Groups), VPNs, Data Loss Prevention (DPS),...


  • Reston, United States Leidos Full time

    R-00131467 Description We are seeking a Cyber Security Engineer (SME). This role is responsible for protecting the customer’s information systems and networks from potential cyber-attacks. The Cyber Security Engineer must display an excellent understanding of technology and utilization of Firewalls (Security Groups), VPNs, Data Loss Prevention (DPS),...


  • Reston, United States Leidos Full time

    R-00135392 Description We are seeking a Cyber Security Engineer (SME). This role is responsible for protecting the customer’s information systems and networks from potential cyber-attacks. The Cyber Security Engineer must display an excellent understanding of technology and utilization of Firewalls (Security Groups), VPNs, Data Loss Prevention (DPS),...


  • Reston, United States AIG Full time

    Who we areAmerican International Group, Inc. (AIG) is a leading global insurance organization. AIG member companies provide a wide range of property casualty insurance in approximately 70 countries and jurisdictions. These diverse offerings include products and services that help businesses and individuals protect their assets and manage risks.We’re also...