Cyber Defense Analysts – Mid

2 weeks ago


Washington, United States Electronic Consulting Services, Inc (ECS Federal) Full time

Job Description ECS is seeking a Cyber Defense Analysts – Mid to work in our Washington, DC office. Coordinate incident response functions. Coordinate and provide expert technical support to enterprise-wide cyber defense technicians to resolve cyber defense incidents. Correlate incident data to identify specific vulnerabilities and make recommendations that enable expeditious remediation. Perform analysis of log files from a variety of sources (e.g., individual host logs, network traffic logs, firewall logs, and intrusion detection system [IDS] logs) to identify possible threats to network security. Perform cyber defense incident triage, to include determining scope, urgency, and potential impact, identifying the specific vulnerability, and making recommendations that enable expeditious remediation. Perform cyber defense trend analysis and reporting. Perform initial, forensically sound collection of images and inspect to discern possible mitigation/remediation on enterprise systems. Perform real-time cyber defense incident handling (e.g., forensic collections, intrusion correlation and tracking, threat analysis, and direct system remediation) tasks to support deployable Incident Response Teams (IRTs). Receive and analyze network alerts from various sources within the enterprise and determine possible causes of such alerts. Track and document cyber defense incidents from initial detection through final resolution. Employ approved defense-in-depth principles and practices (e.g., defense-in-multiple places, layered defenses, security robustness). Salary Range: $89,000 – $116,000 General Description of Benefits Required Skills Strong written and verbal communication skills. Knowledge of cyber attackers (e.g., script kiddies, insider threat, non-nation state sponsored, and nation sponsored). Knowledge of system administration, network, and operating system hardening techniques. Knowledge of cyber-attack stages (e.g., reconnaissance, scanning, enumeration, gaining access, escalation of privileges, maintaining access, network exploitation, covering tracks). Ability to apply techniques for detecting host and network-based intrusions using intrusion detection technologies. Demonstrated ability to interact effectively with senior management and leadership. Ability to design incident response for cloud service models. Knowledge of incident categories, incident responses, and timelines for responses. Knowledge of incident response and handling methodologies. Knowledge of the common networking and routing protocols (e.g., TCP/IP), services (e.g., web, mail, DNS), and how they interact to provide network communications. Knowledge of Application Security Risks (e.g., Open Web Application Security Project Top 10 list) Certifications/Licenses: Bachelor’s degree or higher 5+ years’ experience in Malware analysis, digital forensics, data/network analysis, penetration testing, information assurance, leading incident handling Must have, or be able to obtain within 3 months, one of the following certifications: CERT Certified Computer Security Incident Handler (CSIH), ECC Certified Ethical Hacker (CEH), GIAC Certified Incident Handler (GCIH), GIAC Information Security Fundamentals (GISF), or ISC2 Certified Information System Security Professional (CISSP). Active Secret clearance Desired Skills Experience identifying , capturing, containing , and reporting malware. Must have, or be able to obtain within 3 months, one of the following certifications: CERT Certified Computer Security Incident Handler (CSIH), ECC Certified Ethical Hacker (CEH), GIAC Certified Incident Handler (GCIH), GIAC Information Security Fundamentals (GISF), or ISC2 Certified Information System Security Professional (CISSP). Skill in preserving evidence integrity according to standard operating procedures or national standards. Strong securing network communications experience. Recognizing and categorizing types of vulnerabilities and associated attacks. Skill in protecting a network against malware. (e.g., NIPS, anti-malware, restrict/prevent external devices, spam filters). Experience performing damage assessments. Skill in using security event correlation tools and design incident response for cloud service models. Desirable additional certifications are those that address incident handling (identification, overview and preparation) buffer overflow, client attacks, covering tacks (networks, systems), denial of service attaches, network attacks, password attacks, reconnaissance, scanning (discovery and mapping, techniques, and defense), session hijacking and cache poisoning, techniques for maintaining access, web applications attacks, worms, bots, and bot-nets ECS1 ECS is an equal opportunity employer and does not discriminate or allow discrimination on the basis any characteristic protected by law. All qualified applicants will receive consideration for employment without regard to disability, status as a protected veteran or any other status protected by applicable federal, state, or local jurisdiction law. ECS is a leading mid-sized provider of technology services to the United States Federal Government. We are focused on people, values and purpose. Every day, our 3300+ employees focus on providing their technical talent to support the Federal Agencies and Departments of the US Government to serve, protect and defend the American People. #J-18808-Ljbffr



  • Washington, United States ECS Full time

    Join to apply for the Cyber Defense Forensics Analysts - Mid role at ECS.1 day ago Be among the first 25 applicantsJoin to apply for the Cyber Defense Forensics Analysts - Mid role at ECS.Job DescriptionECS is seeking a Cyber Defense Forensics Analysts - Mid to work in our Washington, DC office.Position SummaryECS Federal is a leading information security...


  • Washington, United States Harmonia Holdings Group, LLC Full time

    Title: Cyber Defense Analyst- Mid Location: Washington, DC Terms: Full-time Clearance: Public Trust (or higher) Position Description As a Cyber Defense Analyst- Mid, you will be on the front line in safeguarding government digital assets and responding to potential cyber threats. You will play a critical role in monitoring, detecting, and triaging security...


  • Washington, United States ECS Full time

    Job Description ECS is seeking a Cyber Defense Analysts - Mid to work in our Washington, DC office. * Coordinate incident response functions. * Coordinate and provide expert technical support to enterprise-wide cyber defense technicians to resolve cyber defense incidents. * Correlate incident data to identify specific vulnerabilities and make recommendations...


  • Washington, United States E&M Technologies, Inc. Full time

    Description POSITION: MID CENTCOM Cyber Analyst WORK LOCATION: Joint Base Anacostia-Bolling, DC JOB CATEGORY: Intelligence JOB TYPE: Shift REQUISITION ID: EM43-004 CITIZENSHIP: United States Citizen CLEARANCE TYPE: TS/SCI clearance, willingness to take a polygraph. TRAVEL REQUIREMENTS: Up to 10% E&M Technologies, Inc. is dedicated to recruiting and...

  • Mid Cyber Analyst

    6 days ago


    Washington, United States Illuminate Full time

    Overview Cyberspace Solutions, a Crimson Phoenix company seeks an exceptionally qualified Mid Cyber Analyst with a TS/SCI clearance to support an ongoing government customer. Crimson Phoenix supports the US national security community and its allies with a wide range of analytic and cyber effect solutions that accelerate informed decision made in the...


  • Washington, United States Via Logic LLC Full time

    DescriptionThe Leidos Digital Modernization sector is continuously looking for Defensive Cyber Operations Analysts interested in joining our team in Washington, DC. We hire for these roles on an ongoing basis, and our recruiting team will contact applicants as positions become available.Our team supports our customer’s mission to protect federal networked...


  • Washington, United States OneZero Solutions Full time

    Cyber Network Defense Analyst Position Title: Cyber Network Defense Analyst Location: Washington DC Shift - M-F Full Time Afternoon 3pm to 11pm Clearance: TS/SCI We are an employee-centric company that truly appreciates our team members and their value to our customers and the missions they support. We pride ourselves on being forward-leaning thinkers and...


  • Washington, United States Prescient Edge Full time

    Prescient Edge is seeking a Mid CI Cyber Analystto support a federal government client. * Cyber Analysts with Prescient Edge support a multitude of mission areas on behalf of our public and private sector clients. This may include supporting national security missions to identify, neutralize, and exploit foreign intelligence cyber actors or detecting and...


  • Washington, United States Leidos Inc Full time

    DescriptionThe Leidos Digital Modernization sector is continuously looking for Defensive Cyber Operations Analysts interested in joining our team in Washington, DC.We hire for these roles on an ongoing basis and our recruiting team will contact applicants as positions become available.Our team supports our customer's mission to protect federal networked...


  • Washington, United States Leidos Full time

    The Leidos Digital Modernization sector is continuously looking for Defensive Cyber Operations Analysts interested in joining our team in Washington, DC. We hire for these roles on an ongoing basis and our recruiting team will contact applicants as positions become available.Our team supports our customer’s mission to protect federal networked systems and...