Intrusion Detection Analyst

4 weeks ago


Scott Air Force Base IL United States CSIOS Corporation Full time
Review audit data and network traffic data for irregularities or other
indications of real or potential security violations
● Correlate and analyze security data and events from alert and traffic flow
systems
● Identify potential advanced persistent and coordinated threats across
multiple platforms
● Perform tuning and optimization tasks to include sensor rule review and
log aggregation/visibility
● Perform reviews of implemented cybersecurity defense IDS/IPS rules,
exceptions, and log availability and content
● Perform reviews of aggregated log data to identify missing required
sources; ensuring log data format IAW logging standards
● Develop/enhance existing intrusion detection analytics, dashboards, and
signatures to remain commensurate with evolving cyber threat
● Investigate all security related events and incidents involving assigned
information systems
● Report identified security incidents through approved reporting process
● Review and share significant activity reports and tippers
● Perform incident response based on security events identified
● Develop and deploy countermeasures in response to cybersecurity
incidents IAW Incident Response Plan
● Analyze and identify root cause and lessons learned from security
incidents; document formal after-action reports (AAR)
● Provide recommendations related to tactical response actions, such as
updating signatures and heuristics
● Develop and maintain security analysis scripts and analytic displays
Preferred knowledge and experience with the following:
● NIST and DoD security policies
● Securing virtualization/cloud infrastructure concepts, technologies and
services
● Microsoft server and workstation, Unix, and Red Hat Linux Enterprise OS
security configurations
● Basic forensic requirements and processes Required: One or more approved DoD 8570 baseline certifications for:
IAT II and CSSP Analyst.
3+ years of cybersecurity experience

  • Scott Air Force Base, United States CDIT Full time

    Job Description Lead Cybersecurity Engineer The Lead Cybersecurity Engineer shall have a bachelor's degree in Information Technology, Engineering, or a related field with a minimum of 10 years of progressive enterprise engineering and management experience. This position requires an IAT III certification. The lead cybersecurity engineer will be the principle...


  • Scott Air Force Base, United States The Newberry Group Full time

    Job DescriptionJob DescriptionWho We Are…Today’s leading government agencies and commercial organizations are putting their trust in Newberry Group, and for good reason.Newberry brings strength to our clients, from the inside out through:Client intimacy and superior quality;Presence and accountability in our relationships; and,Cross-sector leverage of...


  • Scott Air Force Base, Illinois, United States Defense Information Systems Agency Full time

    Provides leadership and guidance to Computer Network Defense (CND) Information Security (INFOSEC) analysts to promote advanced analysis, correlation, and the use of automation to enhance attack detection and mitigation. Establishes guidelines and performance expectations for subordinate employees, which are clearly communicated through the formal employee...

  • Senior CND-SP Analyst

    6 hours ago


    Fredericksburg, VA, United States City of Fredericksburg, VA Full time

    Senior CND-SP Analyst This Position is located in Washington, DC ARTTRA Inc. is seeking a highly qualified Cyber Network Defense-Service Provider Analyst to ensure the safety of information systems assets, and to protect systems from intentional or inadvertent access or destruction. The ideal candidate will:• Perform Computer Security Incident Response•...

  • Cyber Analyst

    1 day ago


    Hill Air Force Base, United States AERMOR LLC Full time

    Job DescriptionJob DescriptionEmployee Type: Full-TimeLocation: Hill AFBJob Type: Cyber SecurityExperience: 5+ Years​Clearance Type: TS/SCIStart Date: May 2024​​AERMOR, LLC is seeking qualified candidates to assist in analyzing and testing Intercontinental Ballistic Missile (ICBM) weapon systems and related systems/sub systems using qualified...

  • Cyber Analyst

    1 week ago


    Hill Air Force Base, United States AERMOR LLC Full time

    Job DescriptionJob DescriptionEmployee Type: Full-TimeLocation: Hill AFBJob Type: Cyber SecurityExperience: 5+ Years​Clearance Type: TS/SCIStart Date: May 2024​​AERMOR LLC is seeking qualified candidates to assist in analyzing and testing Intercontinental Ballistic Missile (ICBM) weapon systems and related systems/sub systems using qualified...


  • Ellsworth Air Force Base, United States IQUASAR LLC Full time

    Job DescriptionJob DescriptionJob Title: Physical Security Support SpecialistLocation: Ellsworth AFB, SDClearance: TS/SCIPosition Responsibilities:Assist visitor control for Special Compartment Information Facility (SCIF) AF11-007 and any applicable subordinate SCIFs.Work directly with Air Combat Command (ACC)/Special Access Program (SAP) Security Office...


  • Ellsworth Air Force Base, United States IQUASAR LLC Full time

    Job DescriptionJob DescriptionBenefits:401(k)401(k) matchingDental insuranceFlexible scheduleHealth insurancePaid time offJob Title: Physical Security Support SpecialistLocation: Ellsworth AFB, SDClearance: TS/SCIPosition Responsibilities:Assist visitor control for Special Compartment Information Facility (SCIF) AF11-007 and any applicable subordinate...

  • Security Analyst

    4 weeks ago


    United States Ai Atechstar Full time

    Job DescriptionKey Responsibilities Coordinate with approved vendors to schedule penetration testing across Oracle SaaS Cloud applications in support of regulatory requirements and customer commitments. Develop subject matter expertise of application security considerations specifc to assigned cloud applications to educate development organizations on...

  • Security Analyst

    3 weeks ago


    United States Ai Atechstar Full time

    Job DescriptionKey Responsibilities Coordinate with approved vendors to schedule penetration testing across Oracle SaaS Cloud applications in support of regulatory requirements and customer commitments. Develop subject matter expertise of application security considerations specifc to assigned cloud applications to educate development organizations on...


  • Columbus, OH, United States Xtek Partners Full time

    Xtek Partners is looking for experienced people to join our growing Access Control team! This dedicated, hard-working person will be traveling -- mostly within Ohio – to primarily install door access control and intrusion detection systems. In addition to access control and intrusion detection systems. This person will also be capable of installing video...

  • NURSE ANALYST

    2 weeks ago


    , MO, United States Shook, Hardy & Bacon Full time

    Do you love figuring out puzzles or playing detective? Interested in meeting the top medical professionals in their field or traveling? Looking for diversity in your work? Want to be treated as an expert in your field and asked your opinion?A new career awaits you . . .Shook, Hardy & Bacon, L.L.P., is currently seeking Nurse Analysts. In this role, you will...


  • Carrollton, TX, United States Crescent Bank Full time

    The Network Security Engineer is responsible for designing, implementing, and maintaining robust network security solutions to protect our organization's digital infrastructure from cyber threats. The Network Security Engineer will lead efforts to assess, plan, and execute security measures to safeguard our networks, systems, and data assets and collaborate...


  • Quincy, MA, United States State Street Corporation Full time

    Who are we looking for: State Street seeks to recruit an Early Career Cyber Security Operations Center (SOC) analyst that will assist in the detection, triage, analysis and response to cyber-attacks. The analyst will join our SOC team which will run a 24/7 coverage, 365 days a year model, with a partner team in Ireland. The SOC team is responsible for...


  • Texas City, TX, United States IRIS Software, Inc. Full time

    Location: Irving TX (Hybrid) Long term contract Key Skills: Operational Risk Management, Fraud Detection, Risk Assessment, Risk Mitigation, Compliance Management, Risk Monitoring, Incident Management, Key Risk Indicators (KRIs), Loss Events, Risk Reporting, Control Framework, Process Controls, Business Continuity Planning, Risk Governance, Risk Modeling,...


  • Prue, OK, United States Manpower Group Full time

    AR Analyst  Job Overview: Reconcile complex financial accounts using SAP, resolving discrepancies with finesse. Resolve payments with charm in our B2B collections efforts. Build lasting relationships with clients, handling inquiries and payment discussions. Team up for month-end financial activities, ensuring accuracy and timeliness. Creation of...


  • Quincy, MA, United States State Street Corporation Full time

    Who are we looking for: State Street seeks to recruit an Lead Cyber Security Operations Center (SOC) analyst that will assist in the detection, triage, analysis and response to cyber-attacks. The analyst will join our SOC team which will run a 24/7 coverage, 365 days a year model, with a partner team in Ireland. The SOC team is responsible for analyzing...

  • Production Agent

    22 hours ago


    Atlanta, GA, United States Wipro Limited Full time

    Overview:Who We AreWipro is continuing to grow in 2024! More opportunity for advancement too!Wipro is seeking individuals who combine excellent customer service and problem-solving skills with the ability to function effectively both as part of a team or on an individual basis to bring their talent to our team.Wipro is a leading, publicly traded, global IT...


  • Melbourne, FL, United States L3Harris Technologies Full time

    Job Title: Senior Specialist, Info Sec Sys Engineer Job Code: 10750 Job Location: Melbourne, FL Job Description: Strong familiarity with Linux and Security Hardening of Linux. Experience with securing Linux systems. Experience with Splunk administration. Experience with application of STIGs. Knowledgeable with malware detection systems for Windows and Linux....


  • Yardley, PA, United States Crown Cork & Seal USA, Inc. Full time

    Crown Cork & Seal, Inc. - Yardley Corporate OfficeGood Things Come in Our Packages…Crown Cork & Seal, Inc. is a Fortune 500 Manufacturing Company with a rich history dating back to 1892. As a global leader in the packaging industry, we operate in over forty-five countries with more than two hundred plants. Our commitment to excellence is reflected in the...