- Acquire/collect computer artifacts and logs in support of onsite and remote engagements
- Triage electronic devices and assess evidentiary value
- Correlate forensic findings to network events in support of developing an intrusion narrative
- Collect and document system state information (e.g. running processes, network connections) prior to imaging, as required
- Perform forensic triage of an incident to include determining scope, urgency and potential impact
- Track and document forensic analysis from initial participation through resolution
- Collect, process, preserve, analyze and present computer related evidence
- Coordinate with Government staff and customer personnel to validate/investigate alerts or additional preliminary findings
- Conduct analysis of forensic images, and available evidence in support of forensic writeups for inclusion in reports and written products
- Support cloud development and automation projects to enhance threat emulation capabilities
- Assist to document Computer Network Defense (CND) guidance and create reports pertaining to incident findings
- U.S. Citizenship
- Active TS/SCI clearance
- Ability to obtain Department of Homeland Security (DHS) Entry on Duty (EOD) Suitability
- 10+ years of direct relevant experience in cyber forensic investigations using leading edge technologies and industry standard forensic tools
- In depth understanding of SaaS, PaaS and IaaS in the Cloud Environment
- Ability to create forensically sound duplicates of evidence (forensic images)
- Ability to author cyber investigative reports documenting digital forensics findings
- Proficiency with analysis and characterization of cyber attacks
- Knowledge of cloud development and automation tools such as Terraform, Kubernetes, AWS CloudFormation, Azure Resource Manager, and Docker.
- Skilled in identifying different classes of attacks and attack stages
- Understanding of system and application security threats and vulnerabilities
- Understanding of proactive analysis of systems and networks, to include creating trust levels of critical resources
- Knowledge of strategies/architectures involved in implementing M365/Azure authentication, how these relate to a federated identity solution, and a fundamental understanding of how threat actors would target identity to compromise an environment
- Advanced experience and proficiency across various aspects of IT operations (e.g. networking, virtualization, identity, security, business continuity, disaster recovery, data management, governance)
- Experience and understanding in acquisition, processing and analysis of digital evidence from onsite enterprises and cloud native platforms
- Fundamental understanding of APIs and proficiency with PowerShell/PowerShell modules leveraged to conduct API queries as they relate to Azure/M36
- Proficiency with scripting languages (e.g. Bash, Python, PowerShell, JS) for automation of hunt tools used in commercial cloud environments
- Ability to develop tools, architecture and configurations in Azure environment to support identifying threat actor activity.
- Understanding of how Azure/M365 platform protection is implemented and security operations available
- One or more of the following certifications: GCLD, GCFR, GCFA, GCFE, GCIH, EnCE, CCE, CFCE, CISSP, CCSP, AWS certifications, Microsoft Azure associated certifications.
-
Cyber Network Defense Analyst Iii
2 days ago
Raytheon Arlington, United States**Date Posted**: · **Country**: · United States of America · **Location**: · VA149: 1110 N Glebe Road Arlington 1110 North Glebe Road Suite 630, Arlington, VA, 22201 USA · **Position Role Type**: · Onsite · You have been redirected to RTX's career page as we have recently transit ...
-
Cyber Network Defense Analyst Ii
1 week ago
Raytheon Arlington, United States**Date Posted**: · **Country**: · United States of America · **Location**: · VA149: 1110 N Glebe Road Arlington 1110 North Glebe Road Suite 630, Arlington, VA, 22201 USA · **Position Role Type**: · Hybrid · You have been redirected to RTX's career page as we have recently transit ...
-
Defensive Cyber Operations Analyst
3 days ago
Leidos Washington, United States**Description** · Leidos currently has an opening on our Defense Cyber Operations team based at Joint Base Anacostia-Bolling in Washington, DC. Our team supports our customer's (WHCA) mission to protect the Presidential Information Technology Community networked systems and servi ...
-
Cyber Network Defense Analyst Iii
1 week ago
Raytheon Arlington, United States**Date Posted**: · **Country**: · United States of America · **Location**: · VA149: 1110 N Glebe Road Arlington 1110 North Glebe Road Suite 630, Arlington, VA, 22201 USA · **Position Role Type**: · Hybrid · You have been redirected to RTX's career page as we have recently transit ...
-
Cyber Network Defense Analyst Iv Ap
1 week ago
Raytheon Arlington, United States**Date Posted**: · **Country**: · United States of America · **Location**: · VA149: 1110 N Glebe Road Arlington 1110 North Glebe Road Suite 630, Arlington, VA, 22201 USA · **Position Role Type**: · Hybrid · You have been redirected to RTX's career page as we have recently transit ...
-
Cyber Network Defense Analyst Iv Ap
2 days ago
Raytheon Arlington, United States**Date Posted**: · **Country**: · United States of America · **Location**: · VA149: 1110 N Glebe Road Arlington 1110 North Glebe Road Suite 630, Arlington, VA, 22201 USA · **Position Role Type**: · Onsite · You have been redirected to RTX's career page as we have recently transit ...
-
Defense Analyst
4 days ago
Booz Allen Hamilton Washington, United States Full timeJob Number: R0191225 · Defense AnalystThe Opportunity: · As a defense mission professional, you understand the nuances of complex situations. You use your skills to think bigger and push further, solving complex problems. We're looking for someone like you to help create solutio ...
-
Defense Analyst
3 weeks ago
Legislative Branch Washington, United States Full timeSummary · DO NOT APPLY THROUGH USAJOBS or EMAIL- APPLY ONLINE AT · The Congressional Budget Office is a small nonpartisan agency that provides economic and budgetary analysis to the Congress. CBO's Budget Analysis Division seeks an analyst for its Defense, International Affairs ...
-
Defense Analyst
1 week ago
USAJobs Washington D.C., United States Full timeDuties · The following are among the analyst's responsibilities: · -Prepare multiyear spending projections for veterans' health care benefits and for facilities of the Department of Veterans Affairs; · -Prepare cost estimates for legislation involving changes to veterans' health ...
-
Cyber Defense Analyst
2 weeks ago
MartinFed Arlington, United StatesCOMPANY OVERVIEW · Founded in 2007 in Huntsville, AL, MartinFed provides the U.S. government with customer-focused, performance-based solutions using technology and an empowered workforce as an engine to drive its customers' missions. Our goal is to attract the best and brightes ...
-
Cyber Defense Analyst
1 week ago
JFL Consulting, LLC Arlington, United StatesJob Description · Job DescriptionCyber Defense Analyst · Primary Place of Performance: Fort Belvoir, VA · Mandatory Requirements: U.S. Citizenship and TS/SCI Clearance · Years of Experience: Mid Level (5+ Years) · JFL Consulting is currently seeking a talented and motivated Cyber ...
-
Network Defense Systems Analyst
1 week ago
Gridiron IT Solutions LLC Arlington, United StatesJob DescriptionJob Description · Gridiron IT is seeking a Cyber Network Defense Analyst (CNDA) to support this critical customer mission in Arlington, VA. · Responsibilities: · - Characterize and analyze network traffic to identify anomalous activity and potential threats to ne ...
-
Network Defense Systems Analyst
1 week ago
Gridiron IT Solutions LLC Arlington, United StatesJob Description · Job DescriptionGridiron IT is seeking a Cyber Network Defense Analyst (CNDA) to support this critical customer mission in Arlington, VA. · Responsibilities: · - Characterize and analyze network traffic to identify anomalous activity and potential threats to net ...
-
Cyber Network Defense Analysts
1 week ago
Nodel Arlington, United StatesCyber Network Defense Analysts (CNDA) · Location: Arlington, VA · Must have Top Secret Security Clearance · Node provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-b ...
-
Cyber Network Defense Analyst
5 days ago
Piper Companies Arlington, United StatesZachary Piper Solutions provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based and cloud-based cybersecurity analysis capabilities. Team personnel prov ...
-
Cyber Defense Analyst
1 week ago
MartinFed Washington, United StatesJob Description · Job DescriptionCOMPANY OVERVIEW · Founded in 2007 in Huntsville, AL, MartinFed provides the U.S. government with customer-focused, performance-based solutions using technology and an empowered workforce as an engine to drive its customers' missions. Our goal is ...
-
Cybersecurity Network Defense Analyst
6 days ago
Nine Mind Solutions Arlington, United StatesWe are looking for Cybersecurity Network Defense Analysts (CNDA) to support this critical customer mission. The CDNA uses information collected from a variety of sources to monitor network activity and analyze it for evidence of suspicious behavior. Monitoring and analysis are pe ...
-
Defense Research Analyst
4 days ago
BluePath Labs Washington, United StatesJob Description · Job DescriptionBluePath Labs is a fast-growing research and management consulting company focused on the challenging research problems for both government and private sector clients. BluePath is looking for at least one (1) Defense Research Analyst to support op ...
-
Cyber Network Defense Analyst
1 week ago
ZP Group Arlington, VA, United StatesCyber Network Defense Analyst - Level IV · Arlington, VA · Job Id: · 87992 · Job Category: · Other · Job Location: · Arlington, VA · Security Clearance: · TS/SCI · Business Unit: · ZP Group · Division: · Not Defined · Position Owner: · Trudee Wooden · Zachary Piper Solutions prov ...
-
Defense Research Analyst
4 days ago
BluePath Labs Washington, United StatesJob Description · Job DescriptionBluePath Labs is a fast-growing research and management consulting company focused on the challenging research problems for both government and private sector clients. BluePath is looking for at least one (1) Mid-level China Defense Research Analy ...
Cloud Network Defense Analyst - Arlington, United States - Cytech Services
Description
Job Description
Job DescriptionCyber Technology Services, Inc.
provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based and cloud-based cybersecurity analysis capabilities.
Team personnel provide front line response for digital forensics/incident response (DFIR) and proactively hunting for malicious cyber activity. We are seeking Cyber Network Defense Analysts (CNDA) with Cloud Forensics experience to support this critical customer mission.Responsibilities:
Required Skills/Clearances:
Desired Skills:
Required Education:
BS Computer Science, Cybersecurity, Computer Engineering or related degree; or HS Diploma & 4-6 years of host or digital forensics experience.
Desired Certifications: