- Acquire/collect computer artifacts and logs in support of onsite and remote engagements
- Triage electronic devices and assess evidentiary value
- Correlate forensic findings to network events in support of developing an intrusion narrative
- Collect and document system state information (e.g. running processes, network connections) prior to imaging, as required
- Perform forensic triage of an incident to include determining scope, urgency and potential impact
- Track and document forensic analysis from initial participation through resolution
- Collect, process, preserve, analyze and present computer related evidence
- Coordinate with Government staff and customer personnel to validate/investigate alerts or additional preliminary findings
- Conduct analysis of forensic images, and available evidence in support of forensic writeups for inclusion in reports and written products
- Support cloud development and automation projects to enhance threat emulation capabilities
- Assist to document Computer Network Defense (CND) guidance and create reports pertaining to incident findings
- U.S. Citizenship
- Active TS/SCI clearance
- Ability to obtain Department of Homeland Security (DHS) Entry on Duty (EOD) Suitability
- 10+ years of direct relevant experience in cyber forensic investigations using leading edge technologies and industry standard forensic tools
- In depth understanding of SaaS, PaaS and IaaS in the Cloud Environment
- Ability to create forensically sound duplicates of evidence (forensic images)
- Ability to author cyber investigative reports documenting digital forensics findings
- Proficiency with analysis and characterization of cyber attacks
- Knowledge of cloud development and automation tools such as Terraform, Kubernetes, AWS CloudFormation, Azure Resource Manager, and Docker.
- Skilled in identifying different classes of attacks and attack stages
- Understanding of system and application security threats and vulnerabilities
- Understanding of proactive analysis of systems and networks, to include creating trust levels of critical resources
- Knowledge of strategies/architectures involved in implementing M365/Azure authentication, how these relate to a federated identity solution, and a fundamental understanding of how threat actors would target identity to compromise an environment
- Advanced experience and proficiency across various aspects of IT operations (e.g. networking, virtualization, identity, security, business continuity, disaster recovery, data management, governance)
- Experience and understanding in acquisition, processing and analysis of digital evidence from onsite enterprises and cloud native platforms
- Fundamental understanding of APIs and proficiency with PowerShell/PowerShell modules leveraged to conduct API queries as they relate to Azure/M36
- Proficiency with scripting languages (e.g. Bash, Python, PowerShell, JS) for automation of hunt tools used in commercial cloud environments.
- Ability to develop tools, architecture and configurations in Azure environment to support identifying threat actor activity.
- Understanding of how Azure/M365 platform protection is implemented and security operations available
- One or more of the following certifications: GCLD, GCFR, GCFA, GCFE, GCIH, EnCE, CCE, CFCE, CISSP, CCSP, AWS certifications, Microsoft Azure associated certifications.
-
Cyber Network Defense Analyst Ii
1 week ago
Raytheon Arlington, United States**Date Posted**: · **Country**: · United States of America · **Location**: · VA149: 1110 N Glebe Road Arlington 1110 North Glebe Road Suite 630, Arlington, VA, 22201 USA · **Position Role Type**: · Hybrid · You have been redirected to RTX's career page as we have recently transit ...
-
Defensive Cyber Operations Analyst
3 hours ago
Leidos Washington, United States**Description** · Leidos currently has an opening on our Defense Cyber Operations team based at Joint Base Anacostia-Bolling in Washington, DC. Our team supports our customer's (WHCA) mission to protect the Presidential Information Technology Community networked systems and servi ...
-
Cyber Network Defense Analyst Iii
1 week ago
Raytheon Arlington, United States**Date Posted**: · **Country**: · United States of America · **Location**: · VA149: 1110 N Glebe Road Arlington 1110 North Glebe Road Suite 630, Arlington, VA, 22201 USA · **Position Role Type**: · Hybrid · You have been redirected to RTX's career page as we have recently transit ...
-
Cyber Network Defense Analyst Iv Ap
1 week ago
Raytheon Arlington, United States**Date Posted**: · **Country**: · United States of America · **Location**: · VA149: 1110 N Glebe Road Arlington 1110 North Glebe Road Suite 630, Arlington, VA, 22201 USA · **Position Role Type**: · Hybrid · You have been redirected to RTX's career page as we have recently transit ...
-
Defense Analyst
1 day ago
Booz Allen Hamilton Washington, United States Full timeJob Number: R0191225 · Defense AnalystThe Opportunity: · As a defense mission professional, you understand the nuances of complex situations. You use your skills to think bigger and push further, solving complex problems. We're looking for someone like you to help create solutio ...
-
Defense Analyst
2 weeks ago
Legislative Branch Washington, United States Full timeSummary · DO NOT APPLY THROUGH USAJOBS or EMAIL- APPLY ONLINE AT · The Congressional Budget Office is a small nonpartisan agency that provides economic and budgetary analysis to the Congress. CBO's Budget Analysis Division seeks an analyst for its Defense, International Affairs ...
-
Defense Analyst
1 week ago
USAJobs Washington D.C., United States Full timeDuties · The following are among the analyst's responsibilities: · -Prepare multiyear spending projections for veterans' health care benefits and for facilities of the Department of Veterans Affairs; · -Prepare cost estimates for legislation involving changes to veterans' health ...
-
Cyber Defense Analyst
1 week ago
MartinFed Arlington, United StatesCOMPANY OVERVIEW · Founded in 2007 in Huntsville, AL, MartinFed provides the U.S. government with customer-focused, performance-based solutions using technology and an empowered workforce as an engine to drive its customers' missions. Our goal is to attract the best and brightes ...
-
Cyber Defense Analyst
4 days ago
JFL Consulting, LLC Arlington, United StatesJob Description · Job DescriptionCyber Defense Analyst · Primary Place of Performance: Fort Belvoir, VA · Mandatory Requirements: U.S. Citizenship and TS/SCI Clearance · Years of Experience: Mid Level (5+ Years) · JFL Consulting is currently seeking a talented and motivated Cyber ...
-
Defense Research Analyst
1 day ago
BluePath Labs Washington, United StatesJob Description · Job DescriptionBluePath Labs is a fast-growing research and management consulting company focused on the challenging research problems for both government and private sector clients. BluePath is looking for at least one (1) Defense Research Analyst to support op ...
-
Defense Research Analyst
1 day ago
BluePath Labs Washington, United StatesJob Description · Job DescriptionBluePath Labs is a fast-growing research and management consulting company focused on the challenging research problems for both government and private sector clients. BluePath is looking for at least one (1) Mid-level China Defense Research Analy ...
-
Cyber Network Defense Analysts
2 weeks ago
Node Arlington, United StatesCyber Network Defense Analysts (CNDA) · Location: Arlington, VA · Must have Top Secret Security Clearance · Node provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-base ...
-
Cyber Network Defense Analyst
6 days ago
ZP Group Arlington, VA, United StatesCyber Network Defense Analyst - Level IV · Arlington, VA · Job Id: · 87992 · Job Category: · Other · Job Location: · Arlington, VA · Security Clearance: · TS/SCI · Business Unit: · ZP Group · Division: · Not Defined · Position Owner: · Trudee Wooden · Zachary Piper Solutions prov ...
-
Defense Acquisition Analyst, Senior
1 week ago
Booz Allen Hamilton Arlington, United StatesJob Number: R · Defense Acquisition Analyst, Senior · The Opportunity: · As an acquisition management professional, you know that both sides of the acquisition and contracts lifecycle are pivotal to your clients' missions. We're looking for someone like you to be a liaison to t ...
-
Cybersecurity Network Defense Analyst
3 days ago
Nine Mind Solutions Arlington, United StatesWe are looking for Cybersecurity Network Defense Analysts (CNDA) to support this critical customer mission. The CDNA uses information collected from a variety of sources to monitor network activity and analyze it for evidence of suspicious behavior. Monitoring and analysis are pe ...
-
Network Defense Systems Analyst
1 week ago
Gridiron IT Solutions LLC Arlington, United StatesJob DescriptionJob Description · Gridiron IT is seeking a Cyber Network Defense Analyst (CNDA) to support this critical customer mission in Arlington, VA. · Responsibilities: · - Characterize and analyze network traffic to identify anomalous activity and potential threats to ne ...
-
Network Defense Systems Analyst
1 week ago
Gridiron IT Solutions LLC Arlington, United StatesJob DescriptionJob Description · Gridiron IT is seeking a Cyber Network Defense Analyst (CNDA) to support this critical customer mission in Arlington, VA. · Responsibilities: · - Characterize and analyze network traffic to identify anomalous activity and potential threats to ne ...
-
Network Defense Systems Analyst
6 days ago
Gridiron IT Solutions LLC Arlington, United StatesJob Description · Job DescriptionGridiron IT is seeking a Cyber Network Defense Analyst (CNDA) to support this critical customer mission in Arlington, VA. · Responsibilities: · - Characterize and analyze network traffic to identify anomalous activity and potential threats to net ...
-
Cyber Network Defense Analysts
4 days ago
Nodel Arlington, United StatesCyber Network Defense Analysts (CNDA) · Location: Arlington, VA · Must have Top Secret Security Clearance · Node provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-b ...
-
Cyber Network Defense Analyst
2 days ago
Piper Companies Arlington, United StatesZachary Piper Solutions provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based and cloud-based cybersecurity analysis capabilities. Team personnel prov ...
Cyber Network Defense Analysts - Arlington, United States - BCMC
Description
Job Description
Job DescriptionBCMC provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based and cloud-based cybersecurity analysis capabilities. Team personnel provide front line response for digital forensics/incident response (DFIR) and proactively hunting for malicious cyber activity. We are seeking Cyber Network Defense Analysts (CNDA) with Cloud Forensics experience to support this critical customer mission.Responsibilities:
Required Skills/Clearances:
Desired Skills:
Required Education:
BS Computer Science, Cybersecurity, Computer Engineering or related degree; or HS Diploma & 4-6 years of host or digital forensics experience.
Desired Certifications:
Business Computers Management Consulting Group, LLC (BCMC) is a small business specializing in Information Technology (IT), Cybersecurity, Information Assurance (IA), SOA, Big Data Management, Program Management, and more for Federal, State, and Local agencies.
We are ISO 9001:2015, ISO 27001:2013, 20000:2018, and CMMI L3 certified and registered promising highest quality and services to all of our clients.
Benefits
Extremely competitive salary
95% employer paid for employee medical, dental, & vison coverages
100% employer paid for employee life, STD & LTD disability coverages
401k with company match and profit sharing
Flexible Spending Account (FSA) for dependent & health care
11 standard holidays & 3 weeks of annual leave
ESS-3172
Host Based Systems Analyst - IV -HBA04
Powered by JazzHR
ECu0TVjwK7