Network Based Systems Analyst III with Security Clearance

3 weeks ago


Arlington VA United States Farfield Systems, Inc Full time
Farfield will assist the Federal staff within the Cybersecurity and Infrastructure Protection Agency (CISA) Hunt and Incident Response Team (HIRT), and National Cybersecurity and Assessment and Technical Services (NCATS) branches, with a broad set of support functions
The Hunt and Incident Response Team is DHS's front line when responding to cyber incidents and proactively hunting for malicious cyber activity
HIRT leverages world-class expertise to lead response, containment, remediation, and asset recovery efforts with its constituents and partners
HIRT provides two primary functions to its customer
First, HIRT serves as DHS's primary operations arm in the execution of the asset response mission delegated to DHS
When any civilian Government agency or critical asset owner operator experiences a cyber-attack, HIRT can provide remote and onsite advanced technical assistance
Second, HIRT also can be called upon to proactively identify malicious activity, otherwise known as a "hunt", specifically focusing on identifying threats from sophisticated threat actors that are often undetected, and in situations beyond the capacity and capability of traditional cyber security tools and techniques
*** Requires a Top Secret/SCI clearance and U.S
Citizenship*** Responsibilities:
- Assists the Government lead in coordinating teams in preliminary incident response investigations
- Assists the Government lead with interfacing with the customer while on site
- Determines appropriate courses of actions in response to identified and analyses anomalous network activity
- Assesses network topology and device configurations identifying critical security concerns and providing security best practice recommendations
- Assists with the writing and publishing of Computer Network Defense guidance and reports on incident findings to appropriate constituencies
- Collects network intrusion artifacts (e.g., PCAP, domains, URI's, certificates, etc.) and uses discovered data to enable mitigation of potential Computer Network Defense incidents
- Analyzes identified malicious network activity to determine weaknesses exploited, exploitation methods, effects on system and information
- Collects network device integrity data and analyze for signs of tampering or compromise
- Assists with real-time CND incident handling (i.e., forensic collections, intrusion correlation and tracking, threat analysis, and advising on system remediation) tasks to support onsite engagements Required Skills:
- U.S
Citizenship
- Must have an active TS/SCI clearance
- Must be able to obtain DHS Suitability
- 5+ years of directly relevant experience in network investigations
- Knowledge of CND policies, procedures and regulations
- Knowledge of TCP/IP protocols
- Strong understanding of standard protocols - ICMP, HTTP/S, DNS, SSH, SMTP, SMB, NFS, etc
- Knowledge and experience of Wifi networking - Knowledge and experience with network topologies - DMZ's, WAN's, etc.
- Experience with Splunk (or other SIEM's)
- Ability to find, characterize and report signs of infection
- Knowledge of Computer Network Defense policies, procedures, and regulations
- Knowledge of defense-in-depth principles and general attack stages with respect to network security architecture
- Ability to characterize and analyze network traffic to identify anomalous activity and potential threats to network resources
- Ability to identify and analyze anomalies in network traffic using metadata
- Experience with reconstructing a malicious attack or activity based on network traffic
- Experience examining network topologies to understand data flows through the network
- Must be able to work collaboratively across physical locations Desired Skills:
- Knowledge of network device integrity concepts and methodologies
- Understanding of how to preserve evidence integrity according to standard operating procedures or national standards
- Knowledge of network device integrity concepts and methodologies
- Proficiency with network analysis software (e.g
Wireshark) - Proficiency with carving and extracting information from PCAP data - Proficiency with non-traditional network traffic (e.g
Command and Control) - Proficiency with preserving evidence integrity according to standard operating procedures or national standards
- Proficiency with designing cyber security systems and environments in a Linux and/or Windows environment
- Proficiency with virtualized environments Required Education:
BS Computer Science, Cyber Security, Computer Engineering, or related degree; or HS Diploma & 4-6 years of network investigations or forensics experience
Desired Certifications:
- DoD 8140.01 IAT Level II, IASAE II, CSSP Analyst
- DoD 8140.01 GCIA, GCIH, CSSP Analyst/CSSP Incident Responder
- DoD 8140.01 CEH, CSSP Analyst
- SANS GIAC GNFA preferred

  • Arlington, United States Farfield Systems Full time

    Job DescriptionJob DescriptionFarfield will assist the Federal staff within the Cybersecurity and Infrastructure Protection Agency (CISA) Hunt and Incident Response Team (HIRT), and National Cybersecurity and Assessment and Technical Services (NCATS) branches, with a broad set of support functions. The Hunt and Incident Response Team is DHS’s front line...


  • Arlington, United States Solutions , LLC Full time

    Network Based Systems Analyst - III - NBA03 The DHS’s Hunt and Incident Response Team (HIRT) secures the Nation’s cyber and communications infrastructure. HIRT provides DHS’s front-line response for cyber incidents and proactively hunting for malicious cyber activity. Solutions3 Technologies (RTX), as a prime contractor to DHS, performs HIRT...


  • Arlington, United States Solutions , LLC Full time

    Network Based Systems Analyst - III - NBA03 The DHSs Hunt and Incident Response Team (HIRT) secures the Nations cyber and communications infrastructure. HIRT provides DHSs front-line response for cyber incidents and proactively hunting for malicious cyber activity. Solutions3 Technologies (RTX), as a prime contractor to DHS, performs HIRT investigations to...


  • Arlington, United States Solutions³ LLC Full time

    Job DescriptionJob DescriptionNetwork Based Systems Analyst - III - NBA03The DHS’s Hunt and Incident Response Team (HIRT) secures the Nation’s cyber and communications infrastructure. HIRT provides DHS’s front-line response for cyber incidents and proactively hunting for malicious cyber activity. Solutions3 Technologies (RTX), as a prime contractor to...


  • Arlington, United States Solutions³ LLC Full time

    Job DescriptionJob DescriptionNetwork Based Systems Analyst - III - NBA03The DHS’s Hunt and Incident Response Team (HIRT) secures the Nation’s cyber and communications infrastructure. HIRT provides DHS’s front-line response for cyber incidents and proactively hunting for malicious cyber activity. Solutions3 Technologies (RTX), as a prime contractor to...


  • Arlington, United States Argo Cyber Systems Full time

    Job DescriptionJob DescriptionThe DHS's Hunt and Incident Response Team (HIRT) secures the Nation's cyber and communications infrastructure. HIRT provides DHS's front-line response for cyber incidents and proactively hunting for malicious cyber activity. Argo Cyber Systems supports this mission with DHS, performs HIRT investigations to develop a...


  • Arlington, United States Argo Cyber Systems Full time

    Job DescriptionJob DescriptionArgo Cyber Systems provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based and cloud-based cybersecurity analysis capabilities. Team personnel provide front line response for digital forensics/incident...


  • Arlington, United States PassionHR Inc Full time

    **NETWORK BASED SYSTEMS ANALYST** We are seeking to hire an experienced **Cyber Network Defense Analysts (CNDA)** to support this critical customer mission in **Arlington, Virginia**. The CDNA uses information collected from a variety of sources to monitor network activity and analyze it for evidence of suspicious behavior. Monitoring and analysis are...


  • Arlington, United States PassionHR Inc Full time

    NETWORK BASED SYSTEMS ANALYST We are seeking to hire an experienced Cyber Network Defense Analysts (CNDA) to support this critical customer mission in Arlington, Virginia. The CDNA uses information collected from a variety of sources to monitor network activity and analyze it for evidence of suspicious behavior. Monitoring and analysis are performed to...


  • Arlington, United States Argo Cyber Systems Full time

    Job DescriptionJob DescriptionArgo Cyber Systems provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based and cloud-based cybersecurity analysis capabilities. Team personnel provide front line response for digital forensics/incident...


  • Arlington, United States Gray Tier Technologies LLC Full time

    The DHS's Hunt and Incident Response Team (HIRT) secures the nation's infrastructure. HIRT provides DHS's front-line response for cyber incidents and proactive hunting for malicious cyber activity. Our team provides support for on and offsite incident response to Government agencies and critical infrastructure owners who experience cyber-attacks. Our team...


  • Arlington, United States PassionHR Inc Full time

    NETWORK BASED SYSTEMS ANALYST We are seeking to hire an experienced Cyber Network Defense Analysts (CNDA) to support this critical customer mission in Arlington, Virginia. The CDNA uses information collected from a variety of sources to monitor network activity and analyze it for evidence of suspicious behavior. Monitoring and analysis are performed to...


  • Arlington, United States PassionHR Inc Full time

    Job DescriptionJob DescriptionNETWORK BASED SYSTEMS ANALYSTWe are seeking to hire an experienced Cyber Network Defense Analysts (CNDA) to support this critical customer mission in Arlington, Virginia. The CDNA uses information collected from a variety of sources to monitor network activity and analyze it for evidence of suspicious behavior. Monitoring and...


  • Arlington, United States Argo Cyber Systems Full time

    Job DescriptionJob DescriptionThe DHS's Hunt and Incident Response Team (HIRT) secures the Nation's cyber and communications infrastructure. HIRT provides DHS's front-line response for cyber incidents and proactively hunting for malicious cyber activity. Argo Cyber Systems supports this mission with DHS, performs HIRT investigations to develop a...


  • Arlington, United States Farfield Systems Full time

    Job DescriptionJob DescriptionFarfield will assist the Federal staff within the Cybersecurity and Infrastructure Protection Agency (CISA) Hunt and Incident Response Team (HIRT), and National Cybersecurity and Assessment and Technical Services (NCATS) branches, with a broad set of support functions. The Hunt and Incident Response Team is DHS’s front line...


  • Arlington, United States Node.Digital Full time

    Network Forensics Cybersecurity Analyst / Network Based Systems Analyst Location: Arlington, VA Must have Top Secret Security Clearance Node provides support for on and offsite incident response to Government agencies and critical infrastructure owners who experience cyber-attacks and advanced technical assistance, proactive hunting, rapid onsite incident...


  • Arlington, VA, United States ZP Group Full time

    Cyber Network Defense Analyst Level III Arlington, VA Job Id: 87991 Job Category: Other Job Location: Arlington, VA Security Clearance: TS/SCI Business Unit: ZP Group Division: Not Defined Position Owner: Trudee Wooden The DHS’s Hunt and Incident Response Team (HIRT) secures the Nation’s cyber and...


  • Arlington, United States Node.Digital Full time

    Job DescriptionJob DescriptionNetwork Forensics Cybersecurity Analyst / Network Based Systems AnalystLocation: Arlington, VAMust have Top Secret Security ClearanceNode provides support for on and offsite incident response to Government agencies and critical infrastructure owners who experience cyber-attacks and advanced technical assistance, proactive...


  • Arlington, United States Solutions³ LLC Full time

    Job DescriptionJob DescriptionNetwork Based Systems Analyst - II - NBA02Solutions3 Technologies provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based and cloud-based cybersecurity analysis capabilities. Team personnel provide...


  • Arlington, Virginia, United States Node.Digital Full time

    Network Forensics Cybersecurity Analyst / Network Based Systems Analyst Location: Arlington, VA Must have Top Secret Security Clearance Node provides support for on and offsite incident response to Government agencies and critical infrastructure owners who experience cyber-attacks and advanced technical assistance, proactive hunting, rapid onsite incident...