Jobs
>
Arlington

    Network Forensics Cybersecurity Analyst - Arlington, United States - Nodel

    Default job background
    Description

    Job Description

    Job Description

    Network Forensics Cybersecurity Analyst / Network Based Systems Analyst

    Location: Arlington, VA

    Must have Top Secret Security Clearance

    Node provides support for on and offsite incident response to Government agencies and critical infrastructure owners who experience cyber-attacks and advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation, using host and network-based cybersecurity analysis capabilities. Personnel perform investigations to characterize the level of severity of breaches and develop mitigation/remediation plans.

    Node is seeking Network Forensics Cybersecurity Analysts to support this critical customer mission.

    Responsibilities:

    Assists the Government lead in coordinating teams in preliminary incident response investigations

    Assists the Government lead with interfacing with the customer while on-site

    Determines appropriate courses of action in response to identified and analyses anomalous network activity

    Assesses network topology and device configurations identifying critical security concerns and providing security best practice recommendations

    Assists with the writing and publishing of Computer Network Defense guidance and reports on incident findings to appropriate constituencies

    Collects network intrusion artifacts (e.g., PCAP, domains, URIs, certificates, etc.) and uses discovered data to enable mitigation of potential Computer Network Defense incidents

    Analyzes identified malicious network activity to determine weaknesses exploited, exploitation methods, effects on system and information

    Assists with real-time CND incident handling (i.e., forensic collections, intrusion correlation, and tracking, threat analysis, and advising on system remediation) tasks to support onsite engagements

    Provide technical briefings as required.

    Requirements

    Required Skills:

    U.S. Citizenship

    - Must have an active TS/SCI clearance

    Must be able to obtain DHS Suitability

    - 8+ years of directly relevant experience in network investigations

    In-depth knowledge of CND policies, procedures, and regulations

    In-depth knowledge of standard protocols – ICMP, HTTP/S, DNS, SSH, SMTP, SMB, NFS, TCP/IP

    In-depth knowledge and experience of Wifi networking

    In-depth knowledge and experience of network topologies - DMZs, WANs, etc.

    Substantial knowledge of Splunk (or other SIEM's)

    Understanding of MITRE Adversary Tactics, Techniques and Common Knowledge (ATT&CK)

    Knowledge of Computer Network Defense policies, procedures, and regulations

    Knowledge of defense-in-depth principles and general attack stages with respect to network security architecture

    Ability to characterize and analyze network traffic to identify anomalous activity and potential threats to network resources

    Ability to identify and analyze anomalies in network traffic using metadata

    Experience with reconstructing a malicious attack or activity based on network traffic

    Experience examining network topologies to understand data flows through the network

    Must be able to work collaboratively across physical locations

    Desired Skills:

    Substantial knowledge of network device integrity concepts and methodologies

    Proficiency with network analysis software (e.g. Wireshark)

    Proficiency with carving and extracting information from PCAP data

    Proficiency with non-traditional network traffic (e.g. Command and Control)

    Proficiency with preserving evidence integrity according to standard operating procedures or national standards

    Proficiency with virtualized environments

    Required Education:

    BS Computer Science, Cyber Security, Computer Engineering, or related degree; or HS Diploma & 10+ years of network investigations experience.

    Desired Certifications:

    DoD IAT Level II, IASAE II, CSSP Analyst, GCIA, GCIH, CSSP Analyst/CSSP Incident Responder, CEH

    SANS GIAC GNFA preferred

    Company Overview:

    Node.Digital is an independent Digital Automation & Cognitive Engineering company that integrates best-of-breed technologies to accelerate business impact.

    Our Core Values help us in our mission. They include:

    OUR CORE VALUES

    Identifying the~RIGHT PEOPLE~and developing them to their full capabilities

    Our customer's "Mission" is our "Mission". Our~MISSION FIRST~approach is designed to keep our customers fully engaged while becoming their trusted partner

    We believe in~SIMPLIFYING~complex problems with a relentless focus on agile delivery excellence

    Our mantra is "~Simple*Secure*Speed~" in the delivery of innovative services and solutions

    Benefits

    We are proud to offer competitive compensation and benefits packages to include:

    • Medical
    • Dental
    • Vision
    • Basic Life
    • Long-Term Disability
    • Health Saving Account
    • 401K
    • Three weeks of PTO
    • 10 Paid Holidays
    • Pre-Approved Online Training


  • Calibrate North Arlington, United States

    Title: Cyber Security Threat Analyst · Location: Arlington, VA (Onsite) · Terms: Full-Time/Permanent · Clearance: All qualified candidates must possess an active DoD TS clearance with SCI eligibility · Overview: · We are seeking a highly motivated Cyber Threat Analyst to join ou ...


  • Lafayette Group Inc. Arlington, United States

    The Lafayette Group is seeking a qualified and highly motivated individual who is dynamic and experienced to work with government organizations to support drafting, reviewing, and facilitating cybersecurity policy development activities in alignment with our clients' latest cyber ...


  • Spry Methods Washington, United States

    **Who We're Looking For (Position Overview)**: · Spry Methods is looking for a Cybersecurity Analyst 1 to support the Department of Homeland Security (DHS) Cybersecurity Program. The specialist will assist in cyber security management, oversight, and customer support for maintain ...


  • 3M Consultancy Arlington, United States

    Job Title: Cybersecurity Policy and Compliance Analyst · Location: Arlington, VA. · Duration: Full-Time. · Active IRS MBI is required. · The Position: · Our client has an exciting opportunity to be a Cybersecurity Policy and Compliance Analyst as part of our growing team. The id ...


  • Gray Tier Technologies LLC Arlington, United States

    Cybersecurity Analyst · Gray Tier Technologies is seeking an experienced Cybersecurity Analyst on The Enterprise and Cyber Solutions (E&CS) Operation. The team is seeking a Cybersecurity Analyst to support the implementation and administration of information security policies, pr ...


  • Rare Arlington, United States

    Position Overview · About RareRare inspires change so people and nature thrive. For over 45 years, across 60 countries, we have inspired and empowered millions of people and their communities to shift their behaviors and practices to protect our shared planet. We are a global lea ...


  • ISI Enterprises Herndon, United States

    **Duties/Responsibilities**: · - Compliance and Risk Management: Ensure internal and client compliance with NIST SP , CMMC, and DFARS requirements. Conduct regular risk assessments and audits to identify and mitigate vulnerabilities. · - Continuous Cybersecurity Monitoring and An ...


  • Northwest Talent Solutions LLC Washington, United States

    Job Description · Job DescriptionCompany Overview: · Northwest Talent Solutions LLC is a leading provider of staffing and recruitment services within the private industry and public sector. Our mission is to connect talented individuals with top companies in the world, helping bo ...


  • Systems Planning and Analysis, Inc. Alexandria, United States

    Overview: · Systems Planning and Analysis, Inc. (SPA) delivers high-impact, technical solutions to complex national security issues. With over 50 years of business expertise and consistent growth, we are known for continuous innovation for our government customers, in both the US ...


  • Customer Value Partners Washington, United States

    Job Description · Job DescriptionCVP is seeing a Cybersecurity Analyst to join our growing team. This Cybersecurity Analyst will assist in the implementation of Zero Trust. · Responsibilities: · Help to implement and refine Zero Trust security strategies and roadmaps based on o ...


  • Amentum Washington, United States Full time

    Amentum is seeking a Cybersecurity Analyst to join our team and support our Washington, DC customer. We are looking for team members who are passionate about making a difference by working on critical efforts we manage as a premier government contractor. · We are pipelining candi ...


  • Booz Allen Hamilton Arlington, United States Full time

    Job Number: R0193723 · Cybersecurity Operations AnalystThe Opportunity: · You'll support a Chief Information Officer (CIO) and Chief Information Security Officer (CISO) as a Cybersecurity Operations Analyst focused on liaison between the strategic and operational levels, with occ ...


  • Peraton Arlington, United States

    Peraton · Peraton drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted and highly... · View company page · Perat ...


  • Booz Allen Hamilton Arlington, United States Full time

    Job Number: R0194379 · Cybersecurity Compliance AnalystKey Role: · Support a Cybersecurity Compliance process and tracking team in a fast-paced cybersecurity environment delivering Cyber Task Order (CTO) and Cyber Scorecard reports. Perform compliance monitoring in various areas, ...


  • Calibrate North LLC Arlington, United States

    Job Description · Title: Cyber Security Threat Analyst · Location: Arlington, VA (Onsite) · Terms: Full-Time/Permanent · Clearance: All qualified candidates must possess an active DoD TS clearance with SCI eligibility · Overview: · We are seeking a highly motivated Cyber T ...


  • Nine Mind Solutions Arlington, United States

    We are seeking Cybersecurity Forensics Analysts to support this critical customer mission. · Eligibility: · Must be a US Citizen · Must have an active Secret clearance with the ability to obtain a TS/SCI clearance · Must be able to obtain Client Entry on Duty (EOD) Suitability p ...


  • Development InfoStructure Arlington, United States

    Job Description · Job DescriptionDevelopment InfoStructure LLC., (DEVIS) provides exceptional DevSecOps integration in our agile software development and embedded software solutions, combined with comprehensive IT management and consulting services to our federal, state, and loca ...


  • Technomics Arlington, United States

    Job Description · Job DescriptionRole & Responsibilities · Provide cybersecurity expertise to surface combat system program offices. · Lead efforts to bring platform information technology systems through the full life cycle of the Risk Management Framework (RMF) process to achie ...


  • Workday Bethesda, United States

    Leidos is looking for highly motivated, driven, capable candidates to join our Cybersecurity/Network Assurance team. · A full-time and fully qualified Cybersecurity Analyst is expected to perform the following duties and responsibilities. · Duties: Perform cyber threat intellig ...


  • By Light Professional IT Services Alexandria, United States

    Overview: · The Armys Tactical Exploitation of National Capabilities (TENCAP) mission is to enable the Army to rapidly exploit and influence National capabilities and architectures. Army TENCAP conducts advanced development and rapid prototyping to enhance, inform, and modernize ...