Cyber Incident Management Analyst (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Cyber Incident Management Analyst (Cybersecurity): Providing onsite incident response to civilian government agencies and critical asset owners with an accent on investigation, breach characterization, and mitigation planning. Focus on identifying threat actor tactics, analyzing log data, and coordinating incident resolution across complex IT networks.
Location: Must be based in Arlington, VA (Hybrid/Onsite)
Company
provides technically advanced full-spectrum cyber, data operations, and systems integration services to the U.S. government and intelligence community.
What you will do
- Research and compile resolution steps to mitigate potential Computer Network Defense incidents.
- Analyze log data to detect and defend against intrusions in large-scale IT networks.
- Identify incident causes and validate threats based on known actor tactics and procedures.
- Track and document incidents from initial detection through final resolution.
- Coordinate with internal components to obtain information regarding ongoing security incidents.
- Perform shift work as required, triaging and researching Indicators of Compromise (IOCs).
Requirements
- U.S. Citizenship required
- Active TS/SCI clearance required
- Ability to obtain DHS Suitability
- 2+ years of relevant experience in cyber incident management or cybersecurity operations.
- Knowledge of incident response methodologies and the NCCIC National Cyber Incident Scoring System.
- Understanding of system administration, OS hardening, and CND policies.
Nice to have
- GCIH, GCFA, GISP, GCED, CCFP, or CISSP certifications.
Culture & Benefits
- Opportunity to work on mission-critical initiatives for the U.S. government.
- Collaborative team environment focused on solving complex cybersecurity challenges.
- Support for professional growth within a newly independent, mission-driven organization.
- Equal Opportunity Employer committed to diversity and inclusion.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →