Cyber Network Defense Analyst III (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Cyber Network Defense Analyst III (Cybersecurity): Monitoring and analyzing network activity to identify and mitigate cyber threats for U.S. Government agencies with an accent on incident response and packet-level analysis. Focus on detecting anomalous activity, validating IDS alerts, and reconstructing malicious attacks.
Location: Onsite in Sterling, VA or Arlington, VA. U.S. Citizenship and Active TS/SCI clearance are required.
Company
provides technically advanced full-spectrum cyber, data operations, and intelligence mission support services to the intelligence community and defense markets.
What you will do
- Analyze network traffic to identify anomalous activity and potential threats to network resources.
- Coordinate with cyber defense staff to validate network alerts and escalate critical incidents.
- Perform cyber defense trend analysis, event correlation, and situational awareness reporting.
- Validate IDS alerts using packet analysis tools and reconstruct malicious activities based on network traffic.
- Develop and implement signatures for cyber defense tools in response to new observed threats.
- Identify applications and OS fingerprints of network devices using metadata.
Requirements
- U.S. Citizenship and Active TS/SCI clearance.
- Ability to obtain Department of Homeland Security (DHS) Entry on Duty (EOD) Suitability.
- 5+ years of direct relevant experience in cyber defense analysis using industry-standard tools.
- Experience detecting host and network-based intrusions via technologies like Snort.
- Proficiency in incident handling methodologies and protocol analyzers.
- BS in Computer Science, Cyber Security, Computer Engineering, or related degree (or HS Diploma with 7+ years experience).
Nice to have
- Python programming experience.
- Strong math and science background.
- Experience with Carnegie Mellon SiLK tool suite.
- Professional certifications such as GNFA, GCIH, GCIA, GSEC, CASP+, or CySA+.
Culture & Benefits
- Collaborative environment working alongside talented individuals passionate about cybersecurity.
- Opportunity to solve complex problems and drive innovation for critical national security missions.
- Commitment to equal opportunity and inclusive workplace culture.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →