- Must be a US Citizen
- Must have an active TS/SCI clearance
- Must be able to obtain Client Entry on Duty (EOD) Suitability prior to starting
- Must have 5+ years of directly relevant experience in cyber forensic investigations using leading-edge technologies and industry-standard defense tools
- Characterize and analyze network traffic to identify anomalous activity and potential threats to network resources
- Coordinate with enterprise-wide cyber defense staff to validate network alerts
- Document and escalate incidents (including event's history, status, and potential impact for further action) that may cause ongoing and immediate impact to the environment
- Perform cyber defense trend analysis and reporting
- Perform event correlation using information gathered from a variety of sources within the enterprise to gain situational awareness and determine the effectiveness of an observed attack
- Provide daily summary reports of network events and activity relevant to cyber defense practices
- Receive and analyze network alerts from various sources within the enterprise and determine possible causes of alerts
- Provide timely detection, identification, and alerting of possible attacks/intrusions, anomalous activities, and misuse activities and distinguish these incidents and events from benign activities
- Use cyber defense tools for continual monitoring and analysis of system activity to identify malicious activity
- Analyze identified malicious activity to determine weaknesses exploited, exploitation methods, effects on system and information
- Determine tactics, techniques, and procedures (TTPs) for intrusion sets
- Examine network topologies to understand data flows through the network
- Identify and analyze anomalies in network traffic using metadata
- Conduct research, analysis, and correlation across a wide variety of all source data sets (indications and warnings)
- Validate intrusion detection system (IDS) alerts against network traffic using packet analysis tools
- Identify applications and operating systems of a network device based on network traffic
- Reconstruct a malicious attack or activity-based off-network traffic
- Identify network mapping and operating system (OS) fingerprinting activities
- Assist in the construction of signatures that can be implemented on cyber defense network tools in response to new or observed threats within the network environment or enclave
- Notify designated managers, cyber incident responders, and cybersecurity service provider team members of suspected cyber incidents and articulate the event's history, status, and potential impact for further action in accordance with the organization's cyber incident response plan
- Prepare and update manuals, instructions, and operating procedures
- Evaluate established methods and procedures and prepare recommendations for changes in methods and practices where appropriate
- Plan and carry out difficult and complex assignments and develop new methods, approaches, and procedures
- Conduct analyses and recommend resolution of complex issues affecting the specialty area
- Ensure optimal use of commercially available products
- Prepare and present reports
- Evaluate the effectiveness of installed systems and services
- Experience successfully developing and deploying signatures
- Experience detecting host and network-based intrusions via intrusion detection technologies (e.g., Snort)
- Experience implementing incident handling methodologies
- Experience implementing protocol analyzers
- Experience collecting data from a variety of cyber defense resources
- Experience reading and interpreting signatures (e.g. snort)
- Experience performing packet-level analysis
- Experience conducting trend analysis
- GSEC (SANS401), Arcsight (or other SEIM solution), Network+, Security+
- Python programming experience
- Strong math and science background
- Experience with Carnegie Mellon SiLK tool suite
-
Defense Analyst
1 week ago
US Congressional Budget Office Washington, United States**Duties**: · The following are among the analyst's responsibilities: · - Prepare multiyear spending projections for veterans' health care benefits and for facilities of the Department of Veterans Affairs; · - Prepare cost estimates for legislation involving changes to veterans' ...
-
Cyber Network Defense Analysts
1 week ago
BCMC Arlington, United StatesBCMC provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based and cloud-based cybersecurity analysis capabilities. Team personnel provide front line resp ...
-
Osd Program Analyst-missile Defense
1 week ago
Systems Planning and Analysis, Inc. Arlington, United StatesOverview: · Systems Planning and Analysis, Inc. (SPA) delivers high-impact, technical solutions to complex national security issues. With over 50 years of business expertise and consistent growth, we are known for continuous innovation for our government customers, in both the US ...
-
Cyber Network Defense Analyst Iii
2 weeks ago
Raytheon Arlington, United States**Date Posted**: · **Country**: · United States of America · **Location**: · VA149: 1110 N Glebe Road Arlington 1110 North Glebe Road Suite 630, Arlington, VA, 22201 USA · **Position Role Type**: · Onsite · You have been redirected to RTX's career page as we have recently transit ...
-
Cyber Network Defense Analyst Ii
3 weeks ago
Raytheon Arlington, United States**Date Posted**: · **Country**: · United States of America · **Location**: · VA149: 1110 N Glebe Road Arlington 1110 North Glebe Road Suite 630, Arlington, VA, 22201 USA · **Position Role Type**: · Hybrid · You have been redirected to RTX's career page as we have recently transit ...
-
Booz Allen Arlington, United StatesDefense Program Analyst and Executive Assistant · **The Opportunity**: · As a project management specialist, you know the complexities of supporting a project from concept to completion. Many programs require a significant investment of limited resources, and it's imperative to k ...
-
Defensive Cyber Operations Analyst
2 weeks ago
Leidos Washington, United States**Description** · Leidos currently has an opening on our Defense Cyber Operations team based at Joint Base Anacostia-Bolling in Washington, DC. Our team supports our customer's (WHCA) mission to protect the Presidential Information Technology Community networked systems and servi ...
-
Cbrn Defense Modernization Analyst
1 week ago
Versar, Inc. Washington, United States**Who We Are**: · **What You'll Do**: · - Position will operate within the AF/A4C. · - Responsible to AF/A4CX for developing and advocating for DAF capability needs into all CBRN Defense Science and Technology initiatives under AF/A4C program management oversight. · - Analyze CBR ...
-
Cyber Network Defense Analyst Iii
3 weeks ago
Raytheon Arlington, United States**Date Posted**: · **Country**: · United States of America · **Location**: · VA149: 1110 N Glebe Road Arlington 1110 North Glebe Road Suite 630, Arlington, VA, 22201 USA · **Position Role Type**: · Hybrid · You have been redirected to RTX's career page as we have recently transit ...
-
Booz Allen Washington, United StatesDefense Communications and Congressional Analyst, Mid · **Key Role**: · Provide a DoD or Navy client with communications and Congressional support throughout the annual Defense Authorization and Appropriations process. Leverage existing Planning, Programming, Budgeting, and Execu ...
-
Cyber Network Defense Analyst Ii
3 days ago
Raytheon Arlington, United States**Date Posted**: · **Country**: · United States of America · **Location**: · VA149: 1110 N Glebe Road Arlington 1110 North Glebe Road Suite 630, Arlington, VA, 22201 USA · **Position Role Type**: · Onsite · You have been redirected to RTX's career page as we have recently transit ...
-
Defensive Cyber Operations Analyst
1 day ago
Leidos Washington, United States**Description** · Leidos currently has an opening on our Defense Cyber Operations team based at Joint Base Anacostia-Bolling in Washington, DC. Our team supports our customer's (WHCA) mission to protect the Presidential Information Technology Community networked systems and servi ...
-
Cyber Network Defense Analyst Iv Ap
2 weeks ago
Raytheon Arlington, United States**Date Posted**: · **Country**: · United States of America · **Location**: · VA149: 1110 N Glebe Road Arlington 1110 North Glebe Road Suite 630, Arlington, VA, 22201 USA · **Position Role Type**: · Onsite · You have been redirected to RTX's career page as we have recently transit ...
-
Cyber Network Defense Analyst Iv Ap
3 weeks ago
Raytheon Arlington, United States**Date Posted**: · **Country**: · United States of America · **Location**: · VA149: 1110 N Glebe Road Arlington 1110 North Glebe Road Suite 630, Arlington, VA, 22201 USA · **Position Role Type**: · Hybrid · You have been redirected to RTX's career page as we have recently transit ...
-
Cyber Network Defense Analyst Ii
1 week ago
Dhara Consulting Group Arlington, United StatesToday · - Dept of Homeland Security · - Unspecified · - Unspecified · - IT - Hardware · - Arlington, VA** (ON-SITE/OFFICE)** · **Date Posted**: · **Country**: · United States of America · **Location**: · VA149: 1110 N Glebe Road Arlington 1110 North Glebe Road Suite 630, Arlingto ...
-
Cyber Network Defense Analyst Iv Ap
1 week ago
Dhara Consulting Group Arlington, United StatesToday · - Dept of Homeland Security · - Unspecified · - Unspecified · - IT - Hardware · - Arlington, VA** (ON-SITE/OFFICE)** · **Date Posted**: · **Country**: · United States of America · **Location**: · VA149: 1110 N Glebe Road Arlington 1110 North Glebe Road Suite 630, Arlingto ...
-
Houlihan Lokey Washington, United StatesBusiness Unit: · Corporate Finance · Industry: · ADG - Aerospace, Defense & Gov · Overview · Houlihan Lokey (NYSE:HLI) is a global investment bank with expertise in mergers and acquisitions, capital markets, financial restructuring, and financial and valuation advisory. The firm ...
-
Daf Cbrn Defense Readiness Analyst
1 week ago
Versar, Inc. Washington, United States**Who We Are**: · **What You'll Do**: · - Position will operate within the AF/A4C. · - Responsible to AF/A4CX to analyze and report status of installation CBRN Defense readiness. Requires access to Management Internal Control Toolkit (MICT), Automated Readiness Information System ...
-
Daf Cbrn Defense Training Analyst
1 week ago
Versar, Inc. Washington, United States**Who We Are**: · **What You'll Do**: · - Position will operate within the AF/A4C. · - Responsible to AF/A4CX to analyze threat, MICT, ARIS, DRRS, LL, IGEMS, and exercise data and make recommendations to the AF/A4C Career Field Managers (CFMs) on CE training. · - Directly support ...
-
Defense Analyst
2 weeks ago
Booz Allen Hamilton Washington, United States Full timeJob Number: R0191225 · Defense AnalystThe Opportunity: · As a defense mission professional, you understand the nuances of complex situations. You use your skills to think bigger and push further, solving complex problems. We're looking for someone like you to help create solutio ...
Cybersecurity Network Defense Analyst - Arlington, United States - Nine Mind Solutions
Description
We are looking for Cybersecurity Network Defense Analysts (CNDA) to support this critical customer mission. The CDNA uses information collected from a variety of sources to monitor network activity and analyze it for evidence of suspicious behavior. Monitoring and analysis are performed to identify and report events that occur, or might occur, within the network, in order to protect the information, information systems, and networks from threats.
Eligibility:
The majority of the CNDA's time (75%) will be spent executing the following tasks:
Desired Certifications: One or more of the following professional certifications: GNFA, GCIH, GCIA, GSEC, CASP+, CySA+, PaLMS, FedVTE