DCO Watch Analyst Tier III Forensics CHS
2 weeks ago
North Charleston
Secret Clearance, with ability to obtain TS/SCI
As a Tier 3 Defensive Cyber Operations (DCO) Watch Analyst you will be responsible for leading complex incident responses, conducting proactive threat hunting, and enhancing detection capabilities within a Cybersecurity Service Provider (CSSP) environment. You will oversee incident analysis, coordinate with external entities, and drive purple team activities to strengthen security posture. This role requires advanced expertise and compliance with CJCSM B.
Position Requirements and Duties
- Examine system, software, security, and user hives for evidence of program execution, USB usage, network connections, and user activity
- Execute forensic imaging of computers and storage media
- •Acquire and analyze digital evidence using industry-standard forensic tools and techniques on Windows and Linux systems including prefetch, jump lists, shellbags, and other operating system specific artifacts.
- Acquire and analyze memory captures to recover additional artifacts and evidence.
- Decode and interpret various file formats and digital communications
- In-depth understanding of digital forensic methodologies, incident response workflows, and forensic tools
- Lead incident response efforts, including analysis, mitigation, and reporting of significant incidents per CJCSM B
- Manage incident response campaigns by developing strategies, coordinating multi-team efforts, and ensuring comprehensive resolution and reporting
- Conduct proactive threat hunting to identify advanced threats and vulnerabilities within the network
- Lead purple team exercises to evaluate and enhance detection and response capabilities in collaboration with red and blue teams
- Evaluate and refine detection mechanisms, including IDS/IPS signatures and log correlation rules, to improve accuracy and reduce false positives
- Perform advanced network and host-based digital forensics on Windows and other operating systems to support incident investigations
- Coordinate with reporting agencies and subscriber sites to ensure comprehensive analysis and reporting of significant incidents
- Develop and maintain internal SOP documentation, ensuring alignment with CJCSM B and other directives
- Provide 24/7 support for incident response during non-core hours, and mentor junior analysts
- Lead program reviews, product evaluations, and onsite certification evaluations
- Overtime may be required to support incident response actions (Surge).
- Operations are conducted 24/7/365 across three regional operation centers (ROC)
- Each ROC works four ten-hour shifts (Sunday-Wednesday or Wednesday-Saturday)
- Shift placement is at the discretion of assigned managers
- Bachelor's Degree in relevant discipline and 5 years or at least 8 years of experience working in a CSSP, SOC, or similar environment
- 2+ years of experience performing tactical forensics duties
- Must be a U.S. Citizen
- Experience and expertise in incident response forensic activities
- Proficient programming skills in a common language such as PowerShell, Python, Golang, Rust or C/C++
- Forensic focused certification such as GCFA, GCFE, etc.
- Comprehensive knowledge of CJCSM B
- Deep expertise in IDS/IPS solutions, including signature development and optimization
- Extensive experience with Digital Forensics across multiple operating systems
- Demonstrated expert-level knowledge of Incident Response Procedures
- Advanced proficiency with host-based tools and operating system logging
- Expertise in log aggregation tools (e.g., Splunk, Elastic, Sentinel) for complex correlation analysis
- Exceptional logical thinking and analytical ability
- Superior verbal and written communication skills
- Proven ability to solve complex problems independently
- Must have requisite certifications to fulfill DoD 8570 IAT Level II and CSSP-specific requirements
Company Overview
Adapt Forward is a cybersecurity solutions provider for some of the nation's most valuable information systems. Leveraging advanced threat assessment technology and experience in building high-level information security infrastructure, we develop adaptive solutions uniquely tailored to our customers' business objectives to protect sensitive data against sophisticated threats in an increasingly complex security environment.
Summary of Benefits
- Comprehensive Physical Wellness Package, including Medical, Dental, Vision Care, plus Flexible Spending Accounts for health- and dependent-care are included in our standard benefits plan.
- 401k Retirement Plan with Matching Contribution is immediately available and vested.
- Annual Training Budget to be used for conference attendance, school enrollment, certification programs, and associated travel expenses.
- Eleven Federal Holidays, plus three weeks of PTO/vacation/sick leave that accrues at a rate of ten hours per month.
- Employee Assistance Program: Counseling/legal assistance and other employee well-being programs are also offered.
Equal opportunity employer as to all protected groups, including protected veterans and individuals with disabilities.
Adapt Forward's Veteran/Disability Affirmative Action Plan narrative section is available for inspection upon request during normal business hours at the Human Resources office and may be requested by contacting Human Resources
-
Charleston, West Virginia, United States Adapt Forward Full timeCyber Security Analyst III Detection Engineer Elastic SMECharleston, SCSecret Clearance, with ability to obtain TS/SCI As a Detection Engineer you will be responsible for designing, developing, and implementing detection mechanisms to identify cyber threats within a Cybersecurity Service Provider (CSSP) environment. You will create and manage IDS/IPS...
-
Management Analyst III
2 days ago
Charleston, West Virginia, United States VICKERS & NOLAN ENTERPRISES LLC Full time $90,000 - $100,000Job Details Level: Experienced Job Location: Charleston, SC (VNE) - Charleston, SC 29406 Position Type: Full Time Education Level: Bachelor's Degree Salary Range: $90, $100,000.00 SalaryVickers and Nolan Enterprises (VNE) is an engineering company that provides Government projects and programs with experienced and dedicated system architects, engineers,...
-
T2 AS&W Analyst
2 weeks ago
Charleston, West Virginia, United States Leidos Full timeDescriptionDepartment of Homeland Security (DHS), Customs and Border Protection (CBP) Security Operations Center (SOC) is a US Government program responsible to prevent, identify, contain and eradicate cyber threats to CBP networks through monitoring, intrusion detection and protective security services to CBP information systems including local area...
-
M&A Research Analyst
1 week ago
Charleston, West Virginia, United States Harris Full timeM&A Research AnalystOVERVIEWAt Harris we are disciplined deployers of capital and great operators of vertical market software businesses. Our companies provide mission-critical software solutions to multiple vertical markets across the globe. We are an operating group of Constellation Software Inc. (TSX: CSU), one of the world's most active acquirers of...
-
Cyber Security Instructor
2 weeks ago
Charleston, West Virginia, United States PARSETEK INC Full timeJob Title:Cybersecurity Architect – Department of DefenseJob Summary:The Cybersecurity Architect will serve as the principal expert in designing, implementing, and maintaining secure architectures and frameworks for critical Department of Defense systems. With 20 years of proven experience in cybersecurity, defense information systems, and risk management,...
-
Cyber Threat Intelligence Analyst
1 week ago
Charleston, West Virginia, United States Resource Management Concepts, Inc. Full timeResource Management Concepts, Inc. (RMC) provides high-quality, professional services to government and commercial sectors. Our mission is to deliver exceptional management and technology solutions supporting the protection and preservation of the people and environment of the United States of America.Join our cybersecurity team as a Cyber Threat...
-
IoT Software Engineer III
6 days ago
Charleston, West Virginia, United States Command Alkon Full timeTitle:IoTSoftware Engineer IIISummary of RoleSoftware Engineers are the creative, brainstorming masterminds behind computer programs of all sorts. This includes firmware and applications that reside on premise as well as web/cloud applications. Software Engineers may focus on a specific program or app, others create large networks or underlying systems that...
-
Senior Business Development Operations Analyst
2 weeks ago
Charleston, West Virginia, United States Leidos Full timeDescriptionExciting opportunity to join a dynamic team in our Intelligence Group as a Sr Business Development Operations AnalystThe Sr Business Development Operations Analyst is responsible for accuracy, interpretation, and reporting of BD data to help the achievement of BD metrics. The Analyst also manages action items for both recurring and ad hoc tasks in...
-
Cybersecurity Engineer Analyst
2 weeks ago
Charleston, West Virginia, United States Guidehouse Full timeJob Family:IT Cyber SecurityTravel Required:NoneClearance Required:Ability to Obtain Top Secret SCI (TS/SCI)What You Will Do:Experience with one of the following Cyber Areas:Vulnerability AnalysisNetwork Security Monitoring,Incident Response/Forensics,Penetration Test/Red Teaming.Hold at least one of the following Certifications:Information Assurance...
-
Board Certified Behavior Analyst
7 days ago
Charleston, West Virginia, United States Little Leaves Behavioral Services Full timeCompany Overview:BCBAs Wanted...Be Part of Our Growth at Centers Across VirginiaWe're looking for a Floater BCBA to join our Northern Virginia team, with the option for full-time or part-time hours. While we are primarily center-based, this position provides the flexibility to support multiple centers as needs arise.Grow your career. Make an impact. Love...