Current jobs related to Cyber Incident Response Analyst III - Sterling Heights, Michigan - Nightwing
-
Cyber Incident Response Analyst IV
7 days ago
Sterling Heights, Michigan, United States Nightwing Full timeNightwing provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges. Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical surveillance, data intelligence, lifecycle...
-
Cyber Intelligence Analyst III
4 days ago
Sterling Heights, Michigan, United States Nightwing Full timeCybersecurity Solutions:Nightwing provides technically advanced full-spectrum cyber, data operations, systems integration, and intelligence mission support services to meet our customers' most demanding challenges. Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical surveillance, data...
-
Incident Management Cyber Analyst
7 days ago
Sterling Heights, Michigan, United States Nightwing Full timeAbout NightwingNightwing is a leading provider of technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges. Our team has been providing some of the world's most technically advanced full-spectrum cyber, data operations, systems integration and...
-
Incident Response Cyber Forensics Analyst
4 days ago
Sterling Heights, Michigan, United States Nightwing Full timeAbout NightwingNightwing provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges.Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical surveillance, data intelligence,...
-
Incident Response Manager
4 days ago
Sterling Heights, Michigan, United States Nightwing Full timeCybersecurity threats are evolving rapidly, and it's essential to stay ahead of the curve. As a Cyber Incident Management Analyst, you will play a critical role in helping our customers respond to and manage cyber-attacks. Your expertise will be invaluable in characterizing the severity of breaches, developing mitigation plans, and assisting with the...
-
Cybersecurity Incident Response Specialist
7 days ago
Sterling Heights, Michigan, United States Nightwing Full timeAbout NightwingNightwing is a leading provider of technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges.We bring disruptive technologies, agility, and competitive offerings to customers in the intelligence community, defense, civil, and...
-
Incident Management Analyst
4 days ago
Sterling Heights, Michigan, United States Nightwing Full timeNightwing provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges. Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical surveillance, data intelligence, lifecycle...
-
Incident Management Analyst
7 days ago
Sterling Heights, Michigan, United States Nightwing Full timeNightwing provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges. Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical surveillance, data intelligence, lifecycle...
-
Cyber Emergency Response Lead
7 days ago
Sterling Heights, Michigan, United States Nightwing Full timeAbout NightwingNightwing is a leading provider of technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges. Our team has been providing some of the world's most technically advanced full-spectrum cyber, data operations, systems integration and...
-
Incident Response Analyst
4 days ago
Sterling Heights, Michigan, United States Nightwing Full timeWe are seeking a highly skilled Cyber Network Forensic Analyst to join our team at Nightwing. As a key member of our team, you will be responsible for performing investigations to characterize the severity of breaches, developing mitigation plans, and assisting with the restoration of services.The ideal candidate will have 5+ years of directly relevant...
-
Cyber Network Defense Analyst III
7 days ago
Sterling Heights, Michigan, United States Nightwing Full timeNightwing provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges. Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical surveillance, data intelligence, lifecycle...
-
Cyber Network Threat Analyst IV AP
5 days ago
Sterling Heights, Michigan, United States Nightwing Full timeNightwing is a leading provider of full-spectrum cyber, data operations, systems integration and intelligence mission support services to the U.S. government. Our team has been providing technically advanced solutions to meet our customers' most demanding challenges for over four decades.Job DescriptionThe Cyber Network Defense Analyst IV AP will be...
-
Cyber Threat Hunter
7 days ago
Sterling Heights, Michigan, United States Cyber Management International Corp Full timeJob Description Job Description Job Title: Cyber Threat Hunter - SMELocation: Sterling, VA and Beltsville, MDTerms: Full-timeRequirements: Must be a U.S. Citizen with Active Secret Security ClearanceAbout us Cyber Management is a rapidly growing Veteran Owned Small Business (VOSB). To us, Cyber is no buzzword…it is all of the technology supporting our...
-
Cyber Network Forensic Analyst IV
4 weeks ago
Sterling Heights, Michigan, United States Nightwing Full timeNightwing provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges. Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical surveillance, data intelligence, lifecycle...
-
Digital Threat Response Professional
4 days ago
Sterling Heights, Michigan, United States Nightwing Full timeCyber Network Forensics:The Cyber Network Forensic Analyst III will be responsible for analyzing identified malicious network activity to determine weaknesses exploited, exploitation methods, effects on systems, and information. This includes collecting network intrusion artifacts and using discovered data to enable mitigation of potential Computer Network...
-
Sterling Heights, Michigan, United States Peraton Full timeEnterprise Operation Center Monitoring Incident Response AnalystJob Locations US-VA-SterlingRequisition ID 2025-154664Position Category Information TechnologyClearance SecretResponsibilitiesPeraton is seeking an Enterprise Operation Center (EOC) Monitoring Incident Response Analyst ("IR Analyst") to join our team of qualified and diverse individuals. The...
-
Sterling Heights, Michigan, United States Peraton Full timeResponsibilitiesPeraton is seeking an Enterprise Operation Center (EOC) Monitoring Incident Response Analyst ("IR Analyst") to join our team of qualified and diverse individuals. The IR Analyst will be part of Department of State (DOS) Consular Affairs Enterprise Infrastructure Operations (CAEIO) Program, for the Bureau of Consular Affairs (CA). The CAEIO...
-
Cyber Network Defense Analyst II
4 days ago
Sterling Heights, Michigan, United States Nightwing Full timeNightwing provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges. Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical surveillance, data intelligence, lifecycle...
-
Cyber Security Consultant
7 days ago
Sterling Heights, Michigan, United States Secured Cyber Full timeAbout Secured Cyber Secured Cyber is a leading provider of cyber security solutions, committed to protecting our nation's most sensitive information. We are seeking highly skilled and experienced Senior Vulnerability Assessment Engineers to join our team. As a Senior Vulnerability Assessment Engineer at Secured Cyber, you will be responsible for performing...
-
Cyber Forensic Investigator III
5 days ago
Sterling Heights, Michigan, United States Nightwing Full timeAbout NightwingNightwing provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges. Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical surveillance, data...
Cyber Incident Response Analyst III
1 month ago
Nightwing provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges. Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical surveillance, data intelligence, lifecycle mission enablement, and software modernization. Nightwing brings disruptive technologies, agility, and competitive offerings to customers in the intelligence community, defense, civil, and commercial markets.
Nightwing provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based and cloud-based cybersecurity analysis capabilities. Team personnel provide front line response for Nightwing and proactively hunt for malicious cyber activity as well as providing forensic analysis etc... We are seeking Cyber Network/Host/Cloud Forensics Analysts (NF/HF/CF) to support the Nightwing infrastructure, thus ensuring our ability to maintain critical support of all customer missions.
The Corporate Incident Response Team uses information collected from a variety of sources to identify network/host/cloud activity, and to analyze it for evidence of suspicious behavior. The Nightwing IR Team will work with and support the Nightwing SOC who performs monitoring and analysis to identify and report events that occur, or might occur, within the network, in order to protect information, information systems, and networks from threats. Additionally, the IR Team will also be an intermediary between the SOC and Nightwing IT Service Desk for all IR related activities that affect Nightwing; as well as working with the Nightwing Digital Forensic/IR, (DFIR) team for analysis support to include proper chain of custody of all data/evidence. The IR Team will facilitate process integration with All teams ensuring full IR visibility across Nightwing networks.
Responsibilities:
- Conducting incident response for breaches, data exfiltration, hacking and malware investigations.
- Correlating forensic findings to network events in support of developing an intrusion narrative
- Performing forensic triage of an incident to include determining scope, urgency and potential impact
- Tracking and documenting forensic analysis from initial participation through resolution
- Conducting Insider threat investigations and Ransomware investigations
- Performing Digital Forensics investigations on varied operating systems such as (but not limited to) Windows, Linux, UNIX, and Mac OSX.
- Preserving evidence (collect, process, preserve, and store evidence to ensure proper chain of custody)
- Log collection and disk imaging etc., Data Recovery, and eDiscovery
- Collecting and documenting system state information (e.g. running processes, network connections) prior to imaging, as required
- Assisting with the construction of signatures which can be implemented on cyber defense network tools in response to new or observed threats within the network environment or enclave
- U.S. Citizenship
- Must be able to obtain a TS/SCI clearance
- 7+ years of directly relevant experience in network/host forensic investigations
- Knowledge of CND policies, procedures and regulations
- Knowledge of TCP/IP protocols
- Knowledge of standard protocols - ICMP, HTTP/S, DNS, SSH, SMTP, SMB, NFS, etc.
- Knowledge and experience of network topologies - DMZ's, WAN's, etc.
- Substantial knowledge of Splunk (or other SIEM's)
- Understanding of MITRE Adversary Tactics, Techniques and Common Knowledge (ATT&CK)
- Knowledge of defense-in-depth principles and general attack stages with respect to network security architecture
- Ability to characterize and analyze network traffic to identify anomalous activity and potential threats to network resources
- Detailed Technical Report writing experience
- Ability to identify and analyze anomalies in network traffic using metadata
- Experience with reconstructing a malicious attack or activity based on network traffic
- Experience examining network topologies to understand data flows through the network
- Must be able to work collaboratively across physical locations
Desired Skills:
- Substantial knowledge of network device integrity concepts and methodologies
- Knowledge and experience of Wifi networking
- Proficiency with network analysis software (e.g. Wireshark)
- Proficiency with carving and extracting information from PCAP data
- Proficiency with non-traditional network traffic (e.g. Command and Control)
- Proficiency with preserving evidence integrity according to standard operating procedures or national standards
- Proficiency with virtualized environments
- Proficiency with one or more EDR Tools: CrowdStrike, SentinelOne, Microsoft MDE, or Trellix
- Proficiency with one or more of the following tools: Host forensic software (EnCase, FTK, X-Ways, Sleuth Kit/Autopsy), SIFT, Volatility, KAPE
- Experience with Web/client-based applications, and databases including Sybase, Oracle, MS SQL, and Postgres
- Scripting experience with Python, Bash, PowerShell etc.
- Understanding of SaaS, PaaS and IaaS in the Cloud environment
Required Education:
BS Computer Science, Cyber Security, Computer Engineering, or related degree; or HS Diploma & 14+ years of network investigations experience.
Desired Certifications: (One or More)
- DoD 8140.01 IAT Level III, IASAE III, CSSP Analyst, CSSP Analyst/CSSP Incident Responder, CEH, GCIA, GCIH, GNFA, GREM, CISSP, GCFE, GCFA, GCLD, GCPS, GCPN, GWEB, GIRD, GSEC, Kubernetes Security Specialist, Microsoft 365 Certifications, Microsoft Azure Certifications, AWS Certifications, SANS Cloud Courses (SEC488, SEC541, SEC549, SEC588) and Network+, Security+
Dulles, VA
Previously part of a leading Fortune 100 company and headquartered in Dulles, VA; Nightwing became independent in 2024 but continues to support the nation's most mission impactful initiatives.
When we formed Nightwing, we brought a deep set of credentials and an unfaltering commitment to the mission. For over four decades, our team has been providing some of the world's most technically advanced full-spectrum cyber, data operations, systems integration and intelligence support services to the U.S. government on its most important missions.
At Nightwing, we value collaboration and teamwork. You'll have the opportunity to work alongside talented individuals who are passionate about what they do. Together, we'll leverage our collective expertise to drive innovation, solve complex problems, and deliver exceptional results for our clients.
Thank you for considering joining us as we embark on this new journey and shape the future of cybersecurity and intelligence together as part of the Nightwing team.
At Nightwing, we value collaboration and teamwork. You'll have the opportunity to work alongside talented individuals who are passionate about what they do. Together, we'll leverage our collective expertise to drive innovation, solve complex problems, and deliver exceptional results for our clients.
Thank you for considering joining us as we embark on this new journey and shape the future of cybersecurity and intelligence together as part of the Nightwing team.
Nightwing is An Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age or any other federally protected class.