Cyber Security Analyst with Security Clearance
3 weeks ago
This position provides 24x7 cybersecurity monitoring and analysis services for Department of Defense networks above the SECRET level
This includes performing real-time cyber threat intelligence analysis, correlating actionable security events, performing network traffic analysis using raw packet data, and participating in the coordination of resources during the incident response process
Primary Responsibilities:
•Review DoD and open source intelligence for threats and to identify Indicators of Compromise (IOCs) and integrate those into sensors and SIEMs •Utilize alerts from endpoints, IDS/IPS, netflow, and custom sensors to identify compromises on customer networks/endpoints •Review massive log files, pivot between data sets, and correlate evidence for incident investigations
•Triage alerts to identify malicious actors on customer networks
•Report incidents to customers and USCYBERCOM
Basic Qualifications:
• Bachelors Degree and 8+ years of prior relevant experience; additional work experience or Cyber courses/certifications may be substituted in lieu of a degree
• Demonstrated understanding of TCP/IP, common networking ports and protocols, traffic flow, system administration, OSI model, defense-in-depth and common security elements
•Motivated self-starter with strong written and verbal communication skills, and the ability to create complex technical reports on analytic findings •DoD 8570 IAT level II or higher certification such as CompTIA Security+ CE, ISC2 SSCP, SANS GSEC prior to starting
•DoD 8570 CSSP-A level Certification such as CEH, CySA+, GCIA or other certification is required within 180 days of hire
•Demonstrated commitment to training, self-study and maintaining proficiency in the technical cyber security domain and an ability to think and work independently •Bachelor's degree and less than 2+ years of prior relevant experience; additional work experience or Cyber courses/certifications may be substituted in lieu of degree.
•Strong analytical and troubleshooting skills
•Willing to perform shift work
•Must be a US Citizen
•Must have an active DoD TOP Secret security w/ SCI clearance eligibility
Preferred Qualifications: •CND experience (Protect, Detect, Respond and Sustain) within a Computer Incident Response organization
•Demonstrated understanding of the life cycle of network threats, attacks, attack vectors and methods of exploitation with an understanding of intrusion set tactics, techniques and procedures (TTPs)
•Advanced understanding of TCP/IP, common networking ports and protocols, traffic flow, system administration, OSI model, defense-in-depth and common security elements
•Demonstrated hands-on experience analyzing high volumes of logs, network data (e.g
Netflow, Full Packet Capture), and other attack artifacts in support of incident investigations
•In-depth knowledge of architecture, engineering, and operations of at least one enterprise SIEM platform (e.g
ArcSight, Splunk, Nitro/McAfee Enterprise Security Manager, QRadar, LogLogic)
•Experience and proficiency with any of the following: Anti-Virus, HIPS/HBSS, IDS/IPS, Full Packet Capture, Network Forensics
•Experience with malware analysis concepts and methods
•Unix/Linux command line experience
•Scripting and programming experience
•Motivated self-starter with strong written and verbal communication skills, and the ability to create complex technical reports on analytic findings
•Familiarity or experience in Intelligence Driven Defense and/or Cyber Kill Chain methodology
•Existing 8570 CSSP Analyst Certifications (CEH), CySA+ etc
Original Posting Date: 2024-02-29
While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above
Pay Range: Pay Range $101,400.00 - $183,300.00 The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary
Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.
-
Security Analyst
3 weeks ago
Arlington, United States Argo Cyber Systems Full timeJob DescriptionJob DescriptionARGO Cyber Systems is seeking a Cyber Security Incident ResponderARGO is supporting a U.S. Government customer on a large mission critical development and sustainment program to design, build, deliver, and operate a network operations environment; including introducing new cyber capabilities to address emerging threats. In...
-
Cyber Threat Hunt/Intel Analyst
1 week ago
Arlington, United States XOR Security Full timeJob Description:XOR Security, An Agile Defense Company is actively seeking a Cyber Threat Intel Analyst to apply their technical and analytic expertise to evaluate advanced and emerging cyber threats targeting Federal Departments and Agencies (D/A) and National Critical Functions (NCF). The selected candidate will produce all-source, strategic cyber...
-
Cyber Security Incident Responder
3 weeks ago
Arlington, United States Node Full timeCyber Security Incident Responder/ Information System Security Analyst Location: Arlington, VA Must have Top Secret Security Clearance Node is supporting a U.S. Government customer on a large mission-development and sustainment program to design, build, deliver, and operate a network operations environment; including introducing new cyber capabilities to...
-
Cyber Security Incident Responder
7 days ago
Arlington, United States Node.Digital Full timeCyber Security Incident Responder/ Information System Security Analyst Location: Arlington, VAMust have Top Secret Security Clearance Node is supporting a U.S. Government customer on a large mission-development and sustainment program to design, build, deliver, and operate a network operations environment; including introducing new cyber capabilities to...
-
Cyber Security Analyst
1 week ago
Arlington, United States NSS Full timeJob Description We are seeking a Cyber Security Analyst. This position provides 24x7 cybersecurity monitoring and analysis services for Department of Defense networks above the SECRET level. This includes performing real-time cyber threat intelligence analysis, correlating actionable security events, performing network traffic analysis using raw packet...
-
Cyber Security Analyst
2 days ago
Arlington, United States NSS Full timeJob Description We are seeking a Cyber Security Analyst. This position provides 24x7 cybersecurity monitoring and analysis services for Department of Defense networks above the SECRET level. This includes performing real-time cyber threat intelligence analysis, correlating actionable security events, performing network traffic analysis using raw packet...
-
Cyber Security Analyst
4 weeks ago
Arlington, Virginia, United States SAIC Career Site Full timeDescription SAIC is seeking a Cyber Security Analyst to provide support to the DoD CIO PNT Enterprise. This role will provide technical and administrative support to the Office of the Department of Defense (DoD) Chief Information Officer (CIO) in its various roles overseeing and managing the DoD Positioning, Navigation, and Timing (PNT) Enterprise. This...
-
Cyber Security Incident Responder
13 hours ago
Arlington, United States Node.Digital LLC Full timeCyber Security Incident Responder/ Information System Security Analyst Location: Arlington, VAMust have Top Secret Security ClearanceNode is supporting a U.S. Government customer on a large mission-development and sustainment program to design, build, deliver, and operate a network operations environment; including introducing new cyber capabilities to...
-
Cyber Security Incident Responder
3 weeks ago
Arlington, United States Node.Digital Full timeJob DescriptionJob DescriptionCyber Security Incident Responder/ Information System Security Analyst Location: Arlington, VAMust have Top Secret Security ClearanceNode is supporting a U.S. Government customer on a large mission-development and sustainment program to design, build, deliver, and operate a network operations environment; including introducing...
-
Cyber Security Incident Responder
3 weeks ago
Arlington, United States Node.Digital LLC Full timeCyber Security Incident Responder/ Information System Security Analyst Location: Arlington, VAMust have Top Secret Security ClearanceNode is supporting a U.S. Government customer on a large mission-development and sustainment program to design, build, deliver, and operate a network operations environment; including introducing new cyber capabilities to...
-
Host Based Cyber Systems Analyst IV
2 days ago
Arlington, United States Argo Cyber Systems Full timeThe DHS's Hunt and Incident Response Team (HIRT) secures the Nation's cyber and communications infrastructure. HIRT provides DHS's front line response for cyber incidents and proactively hunting for malicious cyber activity. Argo Cyber Systems is a key partner to DHS, and performs HIRT investigations to develop a preliminary diagnosis of the severity of...
-
Cyber Security Incident Responder
3 weeks ago
Arlington, Virginia, United States Node.Digital Full timeCyber Security Incident Responder/ Information System Security Analyst Location: Arlington, VA Must have Top Secret Security Clearance Node is supporting a U.S. Government customer on a large mission-development and sustainment program to design, build, deliver, and operate a network operations environment; including introducing new cyber capabilities to...
-
Host Based Cyber Systems Analyst IV
3 weeks ago
Arlington, United States Argo Cyber Systems Full timeJob DescriptionJob DescriptionThe DHS's Hunt and Incident Response Team (HIRT) secures the Nation's cyber and communications infrastructure. HIRT provides DHS's front line response for cyber incidents and proactively hunting for malicious cyber activity. Argo Cyber Systems is a key partner to DHS, and performs HIRT investigations to develop a...
-
Cyber Network Based Systems Analyst IV
4 weeks ago
Arlington, United States Argo Cyber Systems Full timeJob DescriptionJob DescriptionArgo Cyber Systems provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based and cloud-based cybersecurity analysis capabilities. Team personnel provide front line response for digital forensics/incident...
-
Cyber Systems Analyst
3 weeks ago
Arlington, United States ECS Full timeECS is seeking a Cyber Systems Analyst / Security Specialist to work in our Arlington, VA and Washington, DC office.Please Note: This position is contingent upon additional funding.Job Description:Provides day-to-day project management for IT/Cyber program development and developmental IT networks. Includes interacting with appropriate intelligence...
-
Cyber Network Based Systems Analyst II
4 weeks ago
Arlington, United States Argo Cyber Systems Full timeJob DescriptionJob DescriptionThe DHS's Hunt and Incident Response Team (HIRT) secures the Nation's cyber and communications infrastructure. HIRT provides DHS's front-line response for cyber incidents and proactively hunting for malicious cyber activity. Argo Cyber Systems supports this mission with DHS, performs HIRT investigations to develop a...
-
Cyber Network Based Systems Analyst III
4 weeks ago
Arlington, United States Argo Cyber Systems Full timeJob DescriptionJob DescriptionThe DHS's Hunt and Incident Response Team (HIRT) secures the Nation's cyber and communications infrastructure. HIRT provides DHS's front-line response for cyber incidents and proactively hunting for malicious cyber activity. Argo Cyber Systems supports this mission with DHS, performs HIRT investigations to develop a...
-
Cyber Network Defense Analyst
2 weeks ago
Arlington, VA, United States ZP Group Full timeCyber Network Defense Analyst - Level IV Arlington, VA Job Id: 87992 Job Category: Other Job Location: Arlington, VA Security Clearance: TS/SCI Business Unit: ZP Group Division: Not Defined Position Owner: Trudee Wooden Zachary Piper Solutions provides remote and onsite advanced technical assistance, proactive...
-
Job 52 Info System Security Analyst Senior II
4 weeks ago
Arlington, United States CYBER CODE MASTERS LLC Full timeJob DescriptionJob DescriptionSupporting a U.S. Government customer on a large mission critical development and sustainment program to design, build, deliver, and operate a network operations environment; including introducing new cyber capabilities to address emerging threats. In support of the customers strategic direction, Looking for qualified Cyber...
-
Sr. Cyber Security Subject Matter Expert
4 weeks ago
Arlington, United States BCMC Full timeJob DescriptionJob DescriptionBCMC is supporting a U.S. Government customer on a large mission critical development and sustainment program to design, build, deliver, and operate a network operations environment including introducing new cyber capabilities to address emerging threats.We are seeking a Sr. Cyber Security Subject Matter Expert (SME) who can...