Network Based Systems Analyst Level II
This project is supporting a U.S. Government customer to provide support for onsite incident response to civilian Government agencies and critical asset owners who experience cyber-attacks, providing immediate investigation and resolution. Candidates will perform investigations to characterize of the severity of breaches, develop mitigation plans, and assist with the restoration of services. We are seeking a Network Based Systems Analyst to support this critical program. Responsibilities: • Assists the Government lead in coordinating teams in preliminary incident response investigations
• Assists the Government lead with interfacing with the customer while on site
• Determines appropriate courses of actions in response to identified and analyses anomalous network activity
• Assesses network topology and device configurations identifying critical security concerns and providing security best practice recommendations
• Assists with the writing and publishing of Computer Network Defense guidance and reports on incident findings to appropriate constituencies
• Collects network intrusion artifacts (e.g., PCAP, domains, URI's, certificates, etc.) and uses discovered data to enable mitigation of potential Computer Network Defense incidents
• Analyzes identified malicious network activity to determine weaknesses exploited, exploitation methods, effects on system and information
• Collects network device integrity data and analyze for signs of tampering or compromise
• Assists with real-time CND incident handling (i.e., forensic collections, intrusion correlation and tracking, threat analysis, and advising on system remediation) tasks to support onsite engagements Required Skills: • Must have an active TS/SCI clearance
• BS Computer Science, Computer Engineering, Computer Information Systems, Computer Systems Engineering or related degree. Two years of related work experience may be substituted for each year of degree level education
• 2+ years of directly relevant experience in network investigations
• Knowledge of Computer Network Defense policies, procedures, and regulations
• Knowledge of defense-in-depth principles and general attack stages with respect to network security architecture
• Ability to characterize and analyze network traffic to identify anomalous activity and potential threats to network resources
• Ability to identify and analyze anomalies in network traffic using metadata
• Experience with reconstructing a malicious attack or activity based on network traffic
• Experience examining network topologies to understand data flows through the network
• Must be able to work collaboratively across physical locations Desired Skills: • Knowledge of network device integrity concepts and methodologies
• Understanding of how to preserve evidence integrity according to standard operating procedures or national standards
Desired Certifications:
DoD 8140.01 IAT Level II
• IASAE II
• CSSP Analyst
This project is supporting a U.S. Government customer to provide support for onsite incident response to civilian Government agencies and critical asset owners who experience cyber-attacks, providing immediate investigation and resolution. Candidates will perform investigations to characterize of the severity of breaches, develop mitigation plans, and assist with the restoration of services. We are seeking a Network Based Systems Analyst to support this critical program. Responsibilities: • Assists the Government lead in coordinating teams in preliminary incident response investigations
• Assists the Government lead with interfacing with the customer while on site
• Determines appropriate courses of actions in response to identified and analyses anomalous network activity
• Assesses network topology and device configurations identifying critical security concerns and providing security best practice recommendations
• Assists with the writing and publishing of Computer Network Defense guidance and reports on incident findings to appropriate constituencies
• Collects network intrusion artifacts (e.g., PCAP, domains, URI's, certificates, etc.) and uses discovered data to enable mitigation of potential Computer Network Defense incidents
• Analyzes identified malicious network activity to determine weaknesses exploited, exploitation methods, effects on system and information
• Collects network device integrity data and analyze for signs of tampering or compromise
• Assists with real-time CND incident handling (i.e., forensic collections, intrusion correlation and tracking, threat analysis, and advising on system remediation) tasks to support onsite engagements Required Skills: • Must have an active TS/SCI clearance
• BS Computer Science, Computer Engineering, Computer Information Systems, Computer Systems Engineering or related degree. Two years of related work experience may be substituted for each year of degree level education
• 2+ years of directly relevant experience in network investigations
• Knowledge of Computer Network Defense policies, procedures, and regulations
• Knowledge of defense-in-depth principles and general attack stages with respect to network security architecture
• Ability to characterize and analyze network traffic to identify anomalous activity and potential threats to network resources
• Ability to identify and analyze anomalies in network traffic using metadata
• Experience with reconstructing a malicious attack or activity based on network traffic
• Experience examining network topologies to understand data flows through the network
• Must be able to work collaboratively across physical locations Desired Skills: • Knowledge of network device integrity concepts and methodologies
• Understanding of how to preserve evidence integrity according to standard operating procedures or national standards
Desired Certifications:
DoD 8140.01 IAT Level II
• IASAE II
• CSSP Analyst