Cyber Network Defense Analyst III

3 weeks ago


Arlington, Virginia, United States Nightwing Full time

About the Role:

Cyber Network Defense Analyst III is a critical position at Nightwing, where you will play a key role in supporting the nation's most mission-impacting initiatives. As a Cyber Network Defense Analyst III, you will be responsible for correlating forensic findings to network events, performing forensic triage, and tracking and documenting forensic analysis. You will also coordinate with government staff and customer personnel to validate and investigate alerts or preliminary findings.

Responsibilities:

  • Correlate forensic findings to network events in support of developing an intrusion narrative
  • Collect and document system state information prior to imaging, as required
  • Perform forensic triage of an incident to include determining scope, urgency, and potential impact
  • Track and document forensic analysis from initial participation through resolution
  • Coordinate with Government staff and customer personnel to validate/investigate alerts or additional preliminary findings
  • Conduct analysis of forensic images, and available evidence in support of forensic write-ups for inclusion in reports and written products
  • Assist to document and publishing Computer Network Defense (CND) guidance and reports pertaining to incident findings
  • Characterize and analyze network traffic to identify anomalous activity and potential threats to network resources
  • Coordinate with enterprise-wide cyber defense staff to validate network alerts
  • Document and escalate incidents (including event's history, status, and potential impact for further action) that may cause ongoing and immediate impact to the environment
  • Perform event correlation using information gathered from a variety of sources within the enterprise to gain situational awareness and determine the effectiveness of an observed attack
  • Provide daily summary reports of network/host events and activity relevant to cyber defense practices
  • Receive and analyze network & host alerts from various sources within the enterprise and determine possible causes of alerts
  • Provide timely detection, identification, and alerting of possible attacks/intrusions, anomalous activities, and misuse activities and distinguish these incidents and events from benign activities
  • Use cyber defense tools for continual monitoring and analysis of system activity to identify malicious activity
  • Analyze identified malicious activity to determine weaknesses exploited, exploitation methods, effects on system and information
  • Identify and analyze anomalies in network traffic using metadata
  • Identify applications and operating systems of a network device based on network traffic
  • Identify network mapping and operating system (OS) fingerprinting/other baselining activities
  • Assist in the construction of signatures which can be implemented on cyber defense network tools in response to new or observed threats within the network environment or enclave

Requirements:

  • U.S. Citizenship
  • Active TS/SCI clearance
  • Ability to obtain Department of Homeland Security (DHS) Entry on Duty (EOD) Suitability
  • 5+ years of direct relevant experience in cyber defense analysis using leading edge technologies and industry standard cyber defense tools
  • Ability to create forensically sound duplicates of evidence (forensic images)
  • Ability to author cyber investigative reports documenting digital forensics findings
  • Proficiency with analysis and characterization of cyber attacks
  • Skilled in identifying different classes of attacks and attack stages
  • Understanding of system and application security threats and vulnerabilities
  • Understanding of proactive analysis of systems and networks
  • Able to work collaboratively across physical locations
  • Action-oriented and have a proactive approach to problem solving
  • Proficiency with common operating systems (e.g., Linux/Unix, Windows)
  • Experience implementing incident handling methodologies

Desired Skills:

  • Understanding of SaaS, PaaS, and IaaS in the Cloud Environment
  • Proficiency with one or more of the following EDR Tools: CrowdStrike, SentinelOne, Cortex, MS MDE, or Trellix
  • Proficiency with two or more of the following tools: Host forensics software (EnCase, FTK, X-Ways, Sleuth Kit/Autopsy), SIFT, Volatility, KAPE, WireShark, Splunk, Elastic
  • Proficiency conducting all-source research

Education:

BS Computer Science, Cyber Security, Computer Engineering, or related degree; or HS Diploma & 7-9 years of network/host investigations experience

Desired Certifications:

(One or More)

GCFE, GCFA, GCLD, GCPS, GCPN, GWEB, GIRD, GREM, GNFA, GCIH, GCIA, GSEC, Kubernetes Security Specialist, Microsoft 365 Certifications, Microsoft Azure Certifications, AWS Certifications, SANS Cloud Courses (SEC541, SEC584, SEC588) and Certifications GSEC (SANS401), Network+, Security+, CEH

About Nightwing:

Nightwing is a leading provider of full-spectrum cyber, data operations, systems integration, and intelligence mission support services to the U.S. government. With over four decades of experience, our team has been providing technically advanced services to support the nation's most mission-impacting initiatives. We value collaboration and teamwork, and we are seeking talented individuals who are passionate about what they do.

Benefits:

Hired applicants may be eligible for benefits, including but not limited to, medical, dental, vision, life insurance, short-term disability, long-term disability, 401(k) match, flexible spending accounts, flexible work schedules, employee assistance program, Employee Scholar Program, parental leave, paid time off, and holidays.

Salary Range:

The salary range for this role is $105,000 USD - $221,000 USD.

Equal Opportunity Employer:

RTX is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status, age, or any other federally protected class.

Privacy Policy and Terms:

Click on this link to read the Policy and Terms



  • Arlington, Virginia, United States RTX Corporation Full time

    Cyber Network Defense Analyst IIIRTX Corporation is seeking a highly skilled Cyber Network Defense Analyst III to support our critical customer mission. As a member of our team, you will play a key role in monitoring network activity, analyzing data, and identifying potential threats to network resources.Responsibilities:Characterize and analyze network...


  • Arlington, Virginia, United States Argo Cyber Systems Full time

    Job Title: Cyber Network Defense Analyst IVArgo Cyber Systems is seeking a highly skilled Cyber Network Defense Analyst IV to join our team. As a key member of our cybersecurity team, you will be responsible for monitoring and analyzing network activity to identify potential threats and protect our systems and data.Key Responsibilities:Characterize and...


  • Arlington, Virginia, United States Zachary Piper Solutions Full time

    Cyber Network Defense Analyst Job DescriptionZachary Piper Solutions is seeking a highly skilled Cyber Network Defense Analyst to join our team in supporting the Department of Homeland Security's (DHS) Hunt and Incident Response Team (HIRT). As a Cyber Network Defense Analyst, you will play a critical role in securing the Nation's cyber and communications...


  • Arlington, Virginia, United States Solutions³ LLC Full time

    Job DescriptionSolutions³ LLC is seeking a highly skilled Cyber Defense Analyst III to support our prime contractor and their U.S. Government customer on a large mission critical development and sustainment program for on and offsite incident response to Government agencies and critical infrastructure owners who experience cyber-attacks.The selected...


  • Arlington, Virginia, United States Nine Mind Solutions Full time

    Cyber Network Defense Analyst RoleWe are seeking a skilled Cyber Network Defense Analyst to support our critical customer mission. The ideal candidate will use information collected from various sources to monitor network activity and analyze it for evidence of suspicious behavior.Key Responsibilities: Characterize and analyze network traffic to identify...


  • Arlington, Virginia, United States Nightwing Full time

    Cyber Network Defense AnalystJoin Nightwing in supporting a U.S. Government customer to provide support for onsite incident response to civilian Government agencies and critical asset owners who experience cyber-attacks. As a Cyber Network Defense Analyst, you will use information collected from a variety of sources to monitor network activity and analyze it...


  • Arlington, Virginia, United States Piper Companies Full time

    Piper Companies is seeking a highly skilled Cyber Network Defense Analyst to join our team. As a Cyber Network Defense Analyst, you will be responsible for characterizing and analyzing network traffic to identify anomalous activity and potential threats to network resources. You will also coordinate with enterprise-wide cyber defense staff to validate...


  • Arlington, Virginia, United States Farfield Systems Full time

    Cyber Defense Analyst IVFarfield Systems is seeking a highly skilled Cyber Defense Analyst IV to join our team. As a key member of our Cyber Defense team, you will be responsible for analyzing network traffic to identify anomalous activity and potential threats to network resources.You will work closely with our enterprise-wide cyber defense staff to...


  • Arlington, Virginia, United States Nightwing Full time

    About the Role:Nightwing is seeking a highly skilled Cybersecurity Threat Hunter to join our team. As a Cybersecurity Threat Hunter, you will be responsible for identifying and mitigating cyber threats to our customers' networks and systems.Key Responsibilities:Correlate forensic findings to network events to develop an intrusion narrativeCollect and...


  • Arlington, Virginia, United States Raytheon Technologies Full time

    Job Summary:RTX is seeking a highly skilled Cyber Network Forensic Analyst III to join our team. As a Cyber Network Forensic Analyst III, you will be responsible for assisting the Government lead in coordinating teams in preliminary incident response investigations, determining appropriate courses of actions in response to identified and analyzed anomalous...


  • Arlington, Virginia, United States Nightwing Full time

    About the Role:We are seeking a highly skilled Cyber Network Defense Analyst IV AP to join our team at Nightwing. As a Cyber Network Defense Analyst IV AP, you will be responsible for analyzing and mitigating cyber threats to our customers' networks.Key Responsibilities:Acquire and collect computer artifacts in support of onsite engagementsTriage electronic...

  • Cyber Defense Analyst

    4 weeks ago


    Arlington, Virginia, United States MartinFederal Consulting LLC Full time

    Cyber Defense OverviewThe Cyber Defense Analyst plays a critical role in safeguarding government networks, systems, and data from cyber threats and attacks. This position involves proactive monitoring, analysis, and response to potential security incidents, as well as contributing to the development and implementation of strategies to strengthen the overall...

  • Cyber Defense Analyst

    4 weeks ago


    Arlington, Virginia, United States Peraton Full time

    Cyber Defense Analyst Role SummaryWe are seeking a highly skilled Cyber Defense Analyst to join our team at Peraton. As a Cyber Defense Analyst, you will play a critical role in optimizing analytical activities and integrating them into Threat Hunting & CISA Operations. Your expertise will be essential in identifying opportunities to increase the efficacy of...


  • Arlington, Virginia, United States Nodel Full time

    Cyber Network Defense and Cloud Forensics RoleAt Node, we are seeking a highly skilled Cyber Network Defense Analyst with expertise in Cloud Forensics to support our critical customer mission. This role requires a strong understanding of cloud development and automation tools, as well as experience in acquiring, processing, and analyzing digital evidence...


  • Arlington, Virginia, United States Nightwing Full time

    Cybersecurity Threat HunterJob Summary:Nightwing is seeking a highly skilled Cybersecurity Threat Hunter to join our team. As a Cybersecurity Threat Hunter, you will be responsible for identifying and analyzing potential security threats to our customers' networks and systems.Responsibilities:Correlate forensic findings to network events to develop an...


  • Arlington, Virginia, United States Nightwing Full time

    Job SummaryAt Nightwing, we are seeking a highly skilled Cyber Network Forensic Analyst II to join our team. As a Cyber Network Forensic Analyst II, you will be responsible for conducting thorough investigations of network security incidents, analyzing network traffic, and identifying potential threats to our customers' networks.Responsibilities* Assist the...


  • Arlington, Virginia, United States Gray Tier Technologies LLC Full time

    Job Summary:Gray Tier Technologies LLC is seeking a highly skilled Cyber Network Defense Analyst with Cloud experience to support our critical customer mission. As a key member of our team, you will provide advanced technical assistance, proactive hunting, and rapid incident response using cloud-based cybersecurity analysis...


  • Arlington, Virginia, United States ARSIEM Corporation Full time

    About ARSIEM CorporationAt ARSIEM Corporation, we strive to deliver cutting-edge technical solutions to our government clients. Our team of experienced professionals is committed to providing exceptional support and fostering a trusted partnership with our clients.We are seeking a highly skilled Cyber Network Defense Analyst to join our team in Arlington,...


  • Arlington, Virginia, United States Nightwing Full time

    About the Role:Nightwing is seeking a highly skilled Cyber Network Forensics Specialist III to support our U.S. Government customer in providing onsite incident response to civilian Government agencies and critical asset owners who experience cyber-attacks.Key Responsibilities:Assist the Government lead in coordinating teams in preliminary incident response...


  • Arlington, Virginia, United States Raytheon Full time

    Job Summary:As a Cyber Network Forensic Analyst at Nightwing, you will play a critical role in supporting our customer's mission by conducting thorough investigations of cyber-attacks and providing expert analysis to characterize the severity of breaches and develop mitigation plans. You will work collaboratively across physical locations to assist with the...