Host Based Systems Analyst III

4 days ago


Arlington, VA, United States Solutions3 Full time
Title: Host Based Systems Analyst III

Description:
Solutions³ LLC is supporting our prime contractor and their U.S. Government customer on a large mission-critical provide remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based, and cloud-based cybersecurity analysis capabilities. Personnel provide front line response for digital forensics/incident response (DFIR) and proactively hunting for malicious cyber activity. Solutions³ LLC is seeking Host Forensics Analysts to support this critical customer mission.

Eligibility:
  • Must be aUS Citizen
  • Must have anactive TS/SCIclearance
  • Must be able to obtainDHS Suitabilityprior to starting employment
  • 5+ years of direct relevant experience in cyber forensic investigations using leading edge technologies and industry standard forensic tools
Responsibilities Include:
  • Assists with leading and coordinating forensic teams in preliminary investigations
  • Plans, coordinates and directs the inventory, examination and comprehensive technical analysis of computer related evidence
  • Distills analytic findings into executive summaries and in-depth technical reports
  • Serves as technical forensics liaison to stakeholders and explains investigation details to include forensic methodologies and protocols
  • Tracks and documents on-site incident response activities and provides updates to leadership throughout the engagement
  • Evaluates, extracts and analyzes suspected malicious code
  • Acquire/collect computer artifacts (e.g., malware, user activity, link files) in support of onsite engagements
  • Triage electronic devices and assess evidentiary value
  • Correlate forensic findings to network events in support of developing an intrusion narrative
  • Collect and document system state information (e.g. running processes, network connections) prior to imaging, as required
  • Perform forensic triage of an incident to include determining scope, urgency and potential impact
  • Track and document forensic analysis from initial participation through resolution
  • Collect, process, preserve, analyze and present computer related evidence
  • Conduct analysis of forensic images, and available evidence in support of forensic write-ups for inclusion in reports and written products
  • Assist in documenting and publishing Computer Network Defense (CND) guidance and reports pertaining to incident findings
Required Skills:
  • Proficiency with two or more of the following tools:
    • EnCase
    • FTK
    • SIFT
    • X-Ways
    • Volatility
    • WireShark
    • Sleuth Kit/Autopsy
    • Splunk
    • Snort
    • Other EDR Tools (Crowdstrike, Carbon Black, etc)
  • Proficiency conducting all-source research.
Desired Skills:
  • Strong API and scripting skills (PowerShell, Python, Bash, JavaScript) for automation and threat detection.
  • Knowledge of common and advanced cloud attacks and techniques, and how to detect and mitigate these threats.
  • Proficiency with cloud automation and orchestration tools (Terraform, Kubernetes, CloudFormation, Azure Resource Manager, Docker).
Desired Certifications: One or more of the following certifications: GCFA, GCFE, GCIH, EnCE, CCE, CFCE, CISSP
Required Education: BS in Computer Science, Cybersecurity, Computer Engineering or related degree; or HS Diploma and 7+ years of host or digital forensics experience

  • Arlington, VA, United States Solutions3 Full time

    Title: Network Based Systems Analyst III Description: Solutions³ LLC is supporting our prime contractor and their U.S. Government customer on a large mission critical development and sustainment program for on and offsite incident response to Government agencies and critical infrastructure owners who experience cyber-attacks. Solutions³ LLC provides...


  • Arlington, VA, United States Nine Mind Solutions Full time

    We are supporting our prime contractor and their U.S. Government customer on a large mission-critical provide remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based, and cloud-based cybersecurity analysis capabilities. We are seeking an...


  • Arlington, VA, United States Nine Mind Solutions Full time

    We are supporting our prime contractor and their U.S. Government customer on a large mission-critical provide remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based, and cloud-based cybersecurity analysis capabilities. We are seeking an...


  • Arlington, VA, United States Nine Mind Solutions Full time

    We are supporting our prime contractor and their U.S. Government customer on a large mission-critical provide remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based, and cloud-based cybersecurity analysis capabilities. We are seeking an...


  • Arlington, VA, United States Nine Mind Solutions Full time

    We are supporting our prime contractor and their U.S. Government customer on a large mission-critical provide remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based, and cloud-based cybersecurity analysis capabilities. We are seeking an...


  • Arlington, VA, United States Cardinal Technology Systems, Corp. Full time

    Responsibilities We are seeking Cyber Network Defense Analysts (CNDA) to support this critical customer mission. The CDNA uses information collected from a variety of sources to monitor network activity and analyze it for evidence of suspicious behavior. Monitoring and analysis are performed to identify and report events that occur, or might occur, within...


  • Arlington, VA, United States Node.Digital Full time

    Network-Based System Analyst Location: Arlington, VA Must have an active Top Secret Security Clearance Node provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based and cloud-based cybersecurity analysis capabilities. Team personnel...


  • Arlington, VA, United States Solutions3 Full time

    Title: Network Based Systems Analyst II Description: Solutions³ LLC is supporting our prime contractor and their U.S. Government customer on a large mission critical development and sustainment program for on and offsite incident response to Government agencies and critical infrastructure owners who experience cyber-attacks. Solutions³ LLC provides remote...


  • Arlington, VA, United States NewGen Technologies (Maryland) Full time

    Our Partner provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based and cloud-based cybersecurity analysis capabilities. Team personnel provide front line response for digital forensics/incident response (DFIR) and proactively...


  • Arlington, VA, United States Solutions3 Full time

    Please click on any Current Opening listed to review the details and apply for the position(s) that match your qualifications. Who We Are: Solutions is an award-winning consulting and training organization, providing full lifecycle IT Management solutions built on industry best practices. Our complete solution includes innovation, thought leadership, and...