Cyber Case Manager II (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Cyber Case Manager II (Cybersecurity): Providing onsite incident response and investigation for civilian Government agencies with an accent on threat characterization and mitigation. Focus on identifying breach severity, analyzing log data, and coordinating resolution steps to restore critical services.
Location: Onsite in the USA; U.S. Citizenship and active TS/SCI clearance required
Company
is a small business specializing in IT and Cybersecurity services for Federal, State, and Local agencies.
What you will do
- Research and compile resolution steps to mitigate Computer Network Defense (CND) incidents.
- Identify and validate threats based on TTPs of criminal, insider, and nation-state actors.
- Analyze log data and network alerts to detect intrusions into large-scale IT networks.
- Monitor external data sources (CERTs, SANS, etc.) to maintain currency on threat conditions.
- Track and document CND incidents from initial detection through final resolution.
- Coordinate with organizational components to manage ongoing security incidents.
Requirements
- U.S. Citizenship and active TS/SCI clearance
- Ability to obtain DHS Suitability
- 2+ years of experience in cyber incident management or cybersecurity operations.
- Knowledge of incident response methodologies and the NCCIC National Cyber Incident Scoring System.
- Understanding of general attack stages and common system/application vulnerabilities.
- BS in Cybersecurity or related degree (or HS Diploma with 4-6 years of experience).
Culture & Benefits
- Comprehensive medical, dental, and vision coverage (95% employer-paid).
- 100% employer-paid life and disability insurance (STD & LTD).
- 401k with company match and profit sharing.
- Flexible Spending Account (FSA) for health and dependent care.
- 11 standard holidays and 3 weeks of annual leave.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →