Cyber Incident Management Analyst (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Cyber Incident Management Analyst (Cybersecurity): Providing onsite incident response and investigation for civilian Government agencies and critical asset owners with an accent on breach characterization, mitigation planning, and service restoration. Focus on analyzing network alerts, correlating incident data to identify trends, and applying defense-in-depth principles to protect large-scale IT networks.
Location: Hybrid (Arlington, VA). Must be a U.S. Citizen with an active TS/SCI clearance.
Company
provides advanced cyber, data operations, and intelligence mission support services to the intelligence community, defense, and commercial markets.
What you will do
- Perform Computer Network Defense incident triage to determine scope, urgency, and potential impact.
- Correlate incident data to identify trends and recommend defense-in-depth principles and practices.
- Analyze network alerts from various sources to identify causes and potential infection vectors.
- Research and compile resolution steps or workarounds to mitigate incidents within the enterprise.
- Track and document CND incidents from initial detection through final resolution.
- Monitor external data sources to maintain currency of threat conditions and security issues.
Requirements
- U.S. Citizenship.
- Active TS/SCI clearance and ability to obtain DHS Suitability.
- 5+ years of experience in cyber incident management or cybersecurity operations.
- Knowledge of incident response methodologies, NIST 800-62, and FISMA standards.
- Ability to prioritize incidents and investigate phishing campaign tactics.
- BS in Incident Management, Cybersecurity, or related degree (or HS Diploma with 7-9 years of experience).
Nice to have
- Certifications: GCIH, GCFA, GISP, GCED, CCFP, or CISSP.
Culture & Benefits
- Opportunity to work on mission-critical initiatives for the U.S. Government.
- Collaborative team environment with talented individuals passionate about cybersecurity.
- Focus on innovation and solving complex problems for high-impact clients.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →