Cyber Host Forensic Analyst IV
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Cyber Host Forensic Analyst IV (Cybersecurity): Serve as hunt and incident response SME conducting advanced investigations and proactive hunting for malicious cyber activity with an accent on characterizing breach severity and developing mitigation plans. Focus on distilling analytic findings into executive summaries, providing technical direction on high-level response teams, and independently developing solutions to complex cyber problems.
Location: Arlington, VA. Requires physical presence in the National Capital Region (NCR) for at least 1 week for training and orientation. Subsequent work primarily supported outside NCR. U.S. Citizenship and active TS/SCI clearance required. Must be able to travel domestically on short notice.
Company
provides advanced cyber operations, incident response, and intelligence support to DHS HIRT and critical infrastructure owners.
What you will do
- Serve as hunt and incident response SME with in-depth knowledge of NCCIC HIRT operations in surge capacity.
- Distill analytic findings into executive summaries and in-depth technical reports.
- Provide expert analysis and research on complex hunt and incident response problems.
- Act as technical expert on high-level incident response teams, offering direction and alternatives.
- Independently develop technical solutions requiring ingenuity and creativity.
- Guide completion of hunt and incident response activities.
Requirements
- U.S. Citizenship with active TS/SCI clearance and ability to obtain DHS Suitability.
- 8+ years of directly relevant experience in hunt and incident response.
- Knowledge of operational threat environments, system/application security threats and vulnerabilities.
- Skilled in identifying attack classes and stages, proactive systems/network analysis.
- Proficiency with Linux/Unix, Windows operating systems.
- Superior written/oral communication, ability to work collaboratively across locations, domestic travel on short notice.
Nice to have
- Experience leading and mentoring technical teams.
- Knowledge of Computer Network Defense policies and regulations.
- WireShark, Splunk, Snort experience.
- BS in Computer Science, Cyber Security, or related; or HS Diploma + 10+ years experience.
- DoD 8140.01 certifications (IAT Level II, IASAE II, CSSP Analyst, GCIA, GCIH, CEH); SANS GIAC GNFA preferred.
Culture & Benefits
- Value collaboration and teamwork with talented individuals passionate about cybersecurity.
- Leverage collective expertise to drive innovation and solve complex problems.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →