Cyber Defense Analyst III
1 month ago
Solutions³ LLC is seeking a highly skilled Cyber Defense Analyst III to support our prime contractor and their U.S. Government customer on a large mission critical development and sustainment program for on and offsite incident response to Government agencies and critical infrastructure owners who experience cyber-attacks.
The selected candidate will provide front line response for digital forensics/incident response (DFIR) and proactively hunt for malicious cyber activity. The ideal candidate will have a strong background in cyber defense analysis using leading edge technologies and industry standard cyber defense tools.
Responsibilities Include:
- Characterize and analyze network traffic to identify anomalous activity and potential threats to network resources
- Coordinate with enterprise-wide cyber defense staff to validate network alerts
- Document and escalate incidents (including event's history, status, and potential impact for further action) that may cause ongoing and immediate impact to the environment
- Perform cyber defense trend analysis and reporting
- Perform event correlation using information gathered from a variety of sources within the enterprise to gain situational awareness and determine the effectiveness of an observed attack
- Provide daily summary reports of network events and activity relevant to cyber defense practices
- Receive and analyze network alerts from various sources within the enterprise and determine possible causes of alerts
- Provide timely detection, identification, and alerting of possible attacks/intrusions, anomalous activities, and misuse activities and distinguish these incidents and events from benign activities
- Use cyber defense tools for continual monitoring and analysis of system activity to identify malicious activity
- Analyze identified malicious activity to determine weaknesses exploited, exploitation methods, effects on system and information
- Determine tactics, techniques, and procedures (TTPs) for intrusion sets
- Examine network topologies to understand data flows through the network
- Identify and analyze anomalies in network traffic using metadata
- Conduct research, analysis, and correlation across a wide variety of all source data sets (indications and warnings)
- Validate intrusion detection system (IDS) alerts against network traffic using packet analysis tools
- Identify applications and operating systems of a network device based on network traffic
- Reconstruct a malicious attack or activity based off network traffic
- Identify network mapping and operating system (OS) fingerprinting activities
- Assist in the construction of signatures which can be implemented on cyber defense network tools in response to new or observed threats within the network environment or enclave
- Notify designated managers, cyber incident responders, and cybersecurity service provider team members of suspected cyber incidents and articulate the event's history, status, and potential impact for further action in accordance with the organization's cyber incident response plan
- Prepare and update manuals, instructions, and operating procedures
- Evaluate established methods and procedures and prepare recommendations for changes in methods and practices where appropriate
- Plan and carry out difficult and complex assignments and develop new methods, approaches, and procedures
- Conduct analyses and recommend resolution of complex issues affecting the specialty area
- Ensure optimal use of commercially available products
- Prepare and present reports
- Evaluate the effectiveness of installed systems and services
Required Skills:
- Experience successfully developing and deploying signatures
- Experience detecting host and network-based intrusions via intrusion detection technologies (e.g., Snort)
- Experience implementing incident handling methodologies
- Experience implementing protocol analyzers
- Experience collecting data from a variety of cyber defense resources
- Experience reading and interpreting signatures (e.g. snort)
- Experience performing packet-level analysis
- Experience conducting trend analysis
Desired Skills:
- GSEC (SANS401), Arcsight (or other SEIM solution), Network+, Security+ and Python programming experience would be ideal
- Strong math and science background
- Experience with Carnegie Mellon SiLK tool suite
Desired Certifications:
- One or more of the following professional certifications: GNFA, GCIH, GCIA, GSEC, CASP+, CySA+, PaLMS, FedVTE
- GSEC (SANS401), Arcsight (or other SEIM solution), Network+, Security+
Required Education: BS Computer Science, Cyber Security, Computer Engineering, or related degree; or HS Diploma and 7+ years of network investigations experience
-
Cyber Network Defense Analyst IV
4 weeks ago
Arlington, Virginia, United States Argo Cyber Systems Full timeJob Title: Cyber Network Defense Analyst IVArgo Cyber Systems is seeking a highly skilled Cyber Network Defense Analyst IV to join our team. As a key member of our cybersecurity team, you will be responsible for monitoring and analyzing network activity to identify potential threats and protect our systems and data.Key Responsibilities:Characterize and...
-
Cyber Network Defense Analyst III
4 weeks ago
Arlington, Virginia, United States Nightwing Full timeAbout the Role:Cyber Network Defense Analyst III is a critical position at Nightwing, where you will play a key role in supporting the nation's most mission-impacting initiatives. As a Cyber Network Defense Analyst III, you will be responsible for correlating forensic findings to network events, performing forensic triage, and tracking and documenting...
-
Cyber Network Defense Specialist
4 weeks ago
Arlington, Virginia, United States Nine Mind Solutions Full timeCyber Network Defense Analyst RoleWe are seeking a skilled Cyber Network Defense Analyst to support our critical customer mission. The ideal candidate will use information collected from various sources to monitor network activity and analyze it for evidence of suspicious behavior.Key Responsibilities: Characterize and analyze network traffic to identify...
-
Cyber Network Defense Specialist
4 weeks ago
Arlington, Virginia, United States Piper Companies Full timePiper Companies is seeking a highly skilled Cyber Network Defense Analyst to join our team. As a Cyber Network Defense Analyst, you will be responsible for characterizing and analyzing network traffic to identify anomalous activity and potential threats to network resources. You will also coordinate with enterprise-wide cyber defense staff to validate...
-
Cyber Network Defense Analyst III
4 weeks ago
Arlington, Virginia, United States Nightwing Full timeAbout the Role:Nightwing is seeking a highly skilled Cybersecurity Threat Hunter to join our team. As a Cybersecurity Threat Hunter, you will be responsible for identifying and mitigating cyber threats to our customers' networks and systems.Key Responsibilities:Correlate forensic findings to network events to develop an intrusion narrativeCollect and...
-
Cyber Network Defense Analyst IV AP
4 weeks ago
Arlington, Virginia, United States Nightwing Full timeAbout the Role:We are seeking a highly skilled Cyber Network Defense Analyst IV AP to join our team at Nightwing. As a Cyber Network Defense Analyst IV AP, you will be responsible for analyzing and mitigating cyber threats to our customers' networks.Key Responsibilities:Acquire and collect computer artifacts in support of onsite engagementsTriage electronic...
-
Cyber Network Forensic Analyst III
4 weeks ago
Arlington, Virginia, United States Raytheon Technologies Full timeJob Summary:RTX is seeking a highly skilled Cyber Network Forensic Analyst III to join our team. As a Cyber Network Forensic Analyst III, you will be responsible for assisting the Government lead in coordinating teams in preliminary incident response investigations, determining appropriate courses of actions in response to identified and analyzed anomalous...
-
Cyber Incident Manager III
4 weeks ago
Arlington, Virginia, United States Solutions³ LLC Full timeJob DescriptionTitle: Cyber Incident Manager IIIDescription: Solutions³ LLC is seeking a Cyber Incident Manager III to support the management of cyber incidents through the incident response lifecycle. The ideal candidate will have 5+ years of directly relevant experience in cyber incident management or cybersecurity operations and possess excellent oral...
-
Cyber Threat Analyst
1 month ago
Arlington, Virginia, United States Nightwing Full timeAbout the Role:Nightwing is seeking a highly skilled Cyber Threat Analyst to join our team. As a Cyber Threat Analyst, you will be responsible for correlating incident data to identify specific trends in reported incidents, recommending defense in depth principles and practices, and performing computer network defense incident...
-
Cyber Forensic Analyst III
4 weeks ago
Arlington, Virginia, United States Raytheon Technologies Full timeJob Summary:RTX is seeking a highly skilled Cyber Forensic Analyst III to support our critical customer mission. As a member of our team, you will assist Federal leads with overseeing and leading forensic teams at onsite engagements, providing technical assistance on digital evidence matters, and writing in-depth reports. Responsibilities:Assist with leading...
-
Cyber Incident Manager
4 weeks ago
Arlington, Virginia, United States Argo Cyber Systems Full timeJob SummaryArgo Cyber Systems is seeking a highly skilled Cyber Incident Manager to support our critical customer mission. The successful candidate will be responsible for correlating incident data, recommending defense in depth principles, and performing computer network defense incident triage.Key Responsibilities:Correlating incident data to identify...
-
Cyber Network Defense Specialist
4 weeks ago
Arlington, Virginia, United States Nodel Full timeCyber Network Defense and Cloud Forensics RoleAt Node, we are seeking a highly skilled Cyber Network Defense Analyst with expertise in Cloud Forensics to support our critical customer mission. This role requires a strong understanding of cloud development and automation tools, as well as experience in acquiring, processing, and analyzing digital evidence...
-
Cyber Security Analyst
1 month ago
Arlington, Virginia, United States NSS Full timeCyber Security Analyst Job DescriptionWe are seeking a highly skilled Cyber Security Analyst to join our team at NSS. This role provides 24x7 cybersecurity monitoring and analysis services for Department of Defense networks above the SECRET level.The successful candidate will perform real-time cyber threat intelligence analysis, correlate actionable security...
-
Deputy Cyber Incident Response Team Manager
1 month ago
Arlington, Virginia, United States Argo Cyber Systems Full timeJob SummaryWe are seeking a highly skilled Deputy Cyber Incident Response Team Manager to join our team at Argo Cyber Systems. As a key member of our Cyber Defense Mission, you will play a critical role in ensuring exceptional service for our managed services customers and driving employee engagement for our CIRT staff members.Key ResponsibilitiesSupport the...
-
Cyber Host Forensic Analyst III
4 weeks ago
Arlington, Virginia, United States Raytheon Technologies Full timeJob SummaryWe are seeking a highly skilled Cyber Host Forensic Analyst III to support our critical customer mission. As a key member of our team, you will be responsible for assisting federal leads with overseeing and leading forensic teams at onsite engagements, providing technical assistance on digital evidence matters, and writing in-depth...
-
Cyber Network Forensic Analyst II
4 weeks ago
Arlington, Virginia, United States Nightwing Full timeJob SummaryAt Nightwing, we are seeking a highly skilled Cyber Network Forensic Analyst II to join our team. As a Cyber Network Forensic Analyst II, you will be responsible for conducting thorough investigations of network security incidents, analyzing network traffic, and identifying potential threats to our customers' networks.Responsibilities* Assist the...
-
Cyber Network Defense Specialist
4 weeks ago
Arlington, Virginia, United States ARSIEM Corporation Full timeAbout ARSIEM CorporationAt ARSIEM Corporation, we strive to deliver cutting-edge technical solutions to our government clients. Our team of experienced professionals is committed to providing exceptional support and fostering a trusted partnership with our clients.We are seeking a highly skilled Cyber Network Defense Analyst to join our team in Arlington,...
-
Cyber Forensic Analyst
4 weeks ago
Arlington, Virginia, United States Nightwing Full timeJob SummaryNightwing is seeking a skilled Cyber Host Forensic Analyst to support a critical customer mission. The ideal candidate will have 2+ years of experience in cyber forensic investigations using leading edge technologies and industry standard forensic tools.Key ResponsibilitiesAcquiring and collecting computer artifacts, correlating forensic findings...
-
Senior Missile Defense Analyst
4 weeks ago
Arlington, Virginia, United States Systems Planning and Analysis, Inc Full timeJob SummarySystems Planning and Analysis, Inc. is seeking a senior-level analyst to support the Deputy Assistant Secretary of Defense for Strategic, Space, and Intelligence Portfolio Management (DASD(SSIPM)) in Arlington, VA.The ideal candidate will apply experience with the DAES system, knowledge of the Middle Tier of Acquisition, and a history working as...
-
Cyber Host Forensic Analyst II
4 weeks ago
Arlington, Virginia, United States Raytheon Technologies Full timeCyber Host Forensic Analyst RoleThis role is part of a team that provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges. We are seeking a Cyber Host Forensic Analyst to support our critical customer mission. The selected candidate will...