Cyber System Signature

2 weeks ago


Washington, United States DAN Solutions Full time
Job DescriptionJob Description

REQUIRES AND ACTIVE/EXISTING TS/SCI WITH CI POLYGRAPH - NO REMOTE WORK, MUST WORK ON SITE

Job Description

Cyber Intrusion Detection System Administrator. You'll have the opportunity to build strong lines of cyber defense using cutting-edge technologies. Your work in cyber security will have an impact on securing our clients' missions and ensuring we anticipate the threats of tomorrow.


HOW A CYBER INTRUSION DETECTION SYSTEM ADMINISTRATOR WILL MAKE AN IMPACT:

⦁ Monitor day-to-day operations of the sensors (Suricata, Palo Alto, and ArcSight) located at supporting customer's locations.
⦁ Perform Enterprise Defense Countermeasure (DC) activities and coordination with other government agencies to record and prepare incident reports and analysis
methodology and results.
⦁ Monitor and analyze signature alerts from Intrusion Detection/Prevention Systems (IDS/IPS) for false positives.
⦁ Provide technical enforcement of organizational security policies.
⦁ Provide "tune-or-drop" recommendations towards the DC team's Signature Lifecycle Review procedure.
⦁ Provide insight to Detection and Response teams on signature functionality and providing signature tuning as needed.
⦁ Communicate with customers and teammates clearly and concisely.
⦁ Maintain current knowledge of relevant technology as assigned.
⦁ Participate in special projects as required.
⦁ Position is day shift but may require evening, weekend or shift-work (depending on operational tempo).

Required Skills and Abilities:

• Experience authoring Snort signatures.
• Experience authoring Yara rules.
• Experience with Perl Compatible Regular Expressions (PCRE)

Preferred Skills:

• Experience in intrusion detection and prevention systems.
• Proficient in network security technologies and protocols.
• Dashboarding in Splunk.
• Palo Alto Certification Next-Generation Firewall

Location: On Customer Site

⦁ Bolling AFB, Washington D.C
⦁ Reston, VA



  • Washington, United States DAn Solutions, Inc Full time

    REQUIRES AND ACTIVE/EXISTING TS/SCI WITH CI POLYGRAPH - NO REMOTE WORK, MUST WORK ON SITEJob DescriptionCyber Intrusion Detection System Administrator. You'll have the opportunity to build strong lines of cyber defense using cutting-edge technologies. Your work in cyber security will have an impact on securing our clients' missions and ensuring we anticipate...


  • Washington, United States Argo Cyber Systems Full time

    Job DescriptionJob DescriptionHost-Based Systems Analyst - IV - Cyber Network Defense Analysts (CNDA) SME Onsite incident response, and immediate investigation and resolution using host-based, network-based, and cloud-based cybersecurity analysis capabilities. Team personnel provides front-line response for digital forensics/incident response (DFIR) and...


  • Washington, United States Latitude, Inc. Full time

    Job DescriptionJob DescriptionWe are seeking a highly motivated and experienced Cyber Security Systems Engineer to join our dynamic team. The Cyber Security Systems Engineer will be responsible for designing, implementing, and maintaining security systems and protocols to protect our organization's infrastructure and assets from cyber threats. The ideal...


  • Washington, United States DAN Solutions Full time

    Job DescriptionJob DescriptionREQUIRES AN ACTIVE, EXISTING TS/SCI WITH CI POLYGRAPH - NO REMOTE WORK, MUST WORK ON SITEHOW A CYBER INCIDENT DETECTOR WILL MAKE AN IMPACT• Perform forensic analysis of digital information and gathers and handles evidence. Identify network computer intrusion evidence and perpetrators, and coordinates with other government...


  • Washington, United States Non-Departmental Agency Full time

    Summary Cyber Security Researchers focus in the cyber arena and specialize in the design, development, integration, and deployment of cutting-edge tools, techniques, and systems to support cyber operations. ...


  • Washington, Washington, D.C., United States Non-Departmental Agency Full time

    Summary Cyber Security Researchers focus in the cyber arena and specialize in the design, development, integration, and deployment of cutting-edge tools, techniques, and systems to support cyber operations.Duties As a Cyber Security Researcher for CIA, you will focus in the cyber arena and specialize in the design, development, integration, and deployment...

  • Cyber Threat Analyst

    1 month ago


    Washington, United States Non-Departmental Agency Full time

    Summary Cyber Threat Analysts conduct analysis, digital forensics, and targeting to identify and counter foreign cyber threats against U.S. information systems, infrastructure, and cyber-related interests. ...

  • Cyber Threat Analyst

    1 month ago


    Washington, Washington, D.C., United States Non-Departmental Agency Full time

    SummaryCyber Threat Analysts conduct analysis, digital forensics, and targeting to identify and counter foreign cyber threats against U.S. information systems, infrastructure, and cyber-related interests.Duties As a Cyber Threat Analyst at CIA, you will conduct all-source analysis, digital forensics, and targeting to identify, monitor, and counter threats...


  • Washington, United States Non-Departmental Agency Full time

    Summary Cyber Security Officers identify current threats, mitigate vulnerabilities, and anticipate future cybersecurity challenges, protecting CIA data and systems and managing IT risk. ...


  • Washington, Washington, D.C., United States Non-Departmental Agency Full time

    Summary Cyber Security Officers identify current threats, mitigate vulnerabilities, and anticipate future cybersecurity challenges, protecting CIA data and systems and managing IT risk. Duties As a Cyber Security Officer (CSO), you will protect Agency data and systems using sophisticated tools, instrumentation, and knowledge of CIA Information Technology...


  • Washington, United States Non-Departmental Agency Full time

    Summary Cyber Operations Officers gather intelligence from adversary systems and networks using advanced tools, techniques, and tradecraft. Duties ...


  • Washington, Washington, D.C., United States Non-Departmental Agency Full time

    SummaryCyber Operations Officers gather intelligence from adversary systems and networks using advanced tools, techniques, and tradecraft.Duties As a Cyber Operations Officers for the CIA, you will gather intelligence from adversary systems and networks using advanced tools, techniques, and tradecraft. Working in a fast-paced, challenging, and collaborative...


  • Washington, United States cFocus Software Incorporated Full time

    cFocus Software is seeking a Cybersecurity Systems Engineer to join our program in Washington, DC. This position requires an active TS/SCI CI Poly clearance. Position Requirements: Active TS/SCI with CI Polygraph required. The Cybersecurity Engineer shall perform, or review, technical security assessments of computing environments to identify points of...


  • Washington, United States cFocus Software Incorporated Full time

    cFocus Software is seeking a Cybersecurity Systems Engineer to join our program in Washington, DC. This position requires an active TS/SCI CI Poly clearance. Position Requirements: Active TS/SCI with CI Polygraph required. The Cybersecurity Engineer shall perform, or review, technical security assessments of computing environments to identify points of...


  • Washington, United States DAn Solutions, Inc Full time

    REQUIRES AN ACTIVE, EXISTING TS/SCI WITH CI POLYGRAPH - NO REMOTE WORK, MUST WORK ON SITEHOW A CYBER INCIDENT DETECTOR WILL MAKE AN IMPACT• Perform forensic analysis of digital information and gathers and handles evidence. Identify network computer intrusion evidence and perpetrators, and coordinates with other government agencies to record and report...


  • Washington, United States cFocus Software Incorporated Full time

    Job DescriptionJob DescriptioncFocus Software is seeking a Cybersecurity Systems Engineer to join our program in Washington, DC. This position requires an active TS/SCI CI Poly clearance.Position Requirements:Active TS/SCI with CI Polygraph required.The Cybersecurity Engineer shall perform, or review, technical security assessments of computing environments...


  • Washington, United States Jlha Full time

    If you are unable to complete this application due to a disability, contact this employer to ask for an accommodation or an alternative application process. Cyber Security Specialist Full Time Washington, DC, US 30+ days ago Requisition ID: 1085 At Herren Associates, we’re focused on driving innovation throughout the Federal landscape and in the business...


  • Washington, United States Enlightened, Inc. Full time

    Job DescriptionJob DescriptionSenior Cyber Security AnalystAre you passionate about Cyber Security and looking to contribute to meaningful projects that impact our Nation and communities? If so, we are ready to Enlightened you! This is an excellent opportunity to use critical thinking to bring together information from multiple sources to determine if a...


  • Washington, United States MSR Collective Full time

    Details: Cyber Security Analyst with TS/SCI Clearance and Polygraph We are actively seeking a skilled and dedicated Cyber Security Analyst with an active TS/SCI clearance and polygraph to join our dynamic team. As a Cyber Security Analyst, you will play a vital role in coordinating and enhancing the cybersecurity efforts of our organization, working...


  • Washington, United States MSR Collective Full time

    Details: Cyber Security Analyst with TS/SCI Clearance and Polygraph We are actively seeking a skilled and dedicated Cyber Security Analyst with an active TS/SCI clearance and polygraph to join our dynamic team. As a Cyber Security Analyst, you will play a vital role in coordinating and enhancing the cybersecurity efforts of our organization, working...