5 дней назад
Cyber Case Manager III (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Cyber Case Manager III (Cybersecurity): Investigating, triaging, and resolving cyber incidents for civilian government agencies and critical asset owners with an accent on incident correlation, network defense, threat analysis, and mitigation planning. Focus on determining incident scope and impact, identifying infection vectors, coordinating resolution activities, and documenting cases from detection through closure.
Location: Arlington, VA, United States; onsite support during Monday–Friday normal business hours
Company
provides IT, cybersecurity, information assurance, data management, and program management services to federal, state, and local government agencies.
What you will do
- Correlate incident data, analyze network alerts and log data, and identify incident trends and potential causes.
- Perform Computer Network Defense incident triage, determining scope, urgency, severity, and potential impact.
- Investigate incidents, identify root causes and infection vectors, and develop mitigation or resolution plans.
- Research workarounds and known resolution steps to support restoration and containment of affected services.
- Monitor threat intelligence and external data sources to assess threats affecting the enterprise.
- Track and document incidents from initial detection through final resolution while coordinating information across organizational components.
Requirements
- U.S. citizenship is required.
- Active TS/SCI clearance is required; the ability to obtain DHS Suitability is required.
- At least 5 years of directly relevant experience in cyber incident management or cybersecurity operations.
- Knowledge of incident response methodologies, NIST 800-62, FISMA incident reporting, and the NCCIC National Cyber Incident Scoring System.
- Knowledge of attack stages, vulnerability and attack categorization, system administration, operating-system hardening, and Computer Network Defense policies.
- Bachelor’s degree in Incident Management, Operations Management, Cybersecurity, or a related field; alternatively, a high school diploma with 7–9 years of incident management or cybersecurity experience.
Nice to have
- GCIH, GCFA, GISP, GCED, CCFP, or CISSP certification.
- Knowledge of operational threat environments and system or application security vulnerabilities, including cross-site scripting, injection attacks, buffer overflows, race conditions, covert channels, replay attacks, and malicious code.
Culture & Benefits
- Support for a critical U.S. Government cybersecurity mission.
- Employer-paid medical, dental, and vision coverage at 95%.
- Employer-paid life, short-term disability, and long-term disability coverage.
- 401(k) with company match and profit sharing, plus dependent-care and healthcare FSA options.
- Eleven standard holidays and three weeks of annual leave.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →