Dsa Transportation-posted 4 months ago
Fort Belvoir, VA
Real Estate

Data Systems Analysts, Inc. is seeking a SECRET CLEARED Cyber Defense Analyst to join a team supporting Security Information and Event Management (SIEM) analytics and incident response. The Cyber Defense Analyst will use data collected from a variety of cyber defense tools (e.g., SIEM, firewalls, network traffic logs.) to analyze events that occur within the environment for the purpose of mitigating threats. Working with a team of cyber, technical, and program subject matter experts to Investigate, analyze, and respond to cyber incidents within the network environment or enclave.

  • Monitor security alerts and logs to identify potential threats and incidents.
  • Conduct thorough investigations and forensic analysis of security breaches.
  • Develop and implement incident response plans and strategies.
  • Collaborate with cross-functional teams to remediate vulnerabilities and enhance security posture.
  • Prepare reports on incident findings and recommend improvements to security measures.
  • Stay current on cybersecurity trends, threats, and technologies.
  • Characterize and analyze network traffic to identify anomalous activity and potential threats to network resources.
  • Coordinate with enterprise-wide cyber defense staff to validate network alerts.
  • Document and escalate incidents that may cause ongoing and immediate impact to the environment.
  • Perform cyber defense trend analysis and reporting.
  • Perform event correlation using information gathered from a variety of sources within the enterprise.
  • Perform security reviews and identify security gaps in security architecture.
  • Provide daily summary reports of network events and activity relevant to cyber defense practices.
  • Analyze identified malicious activity to determine weaknesses exploited and effects on system and information.
  • Identify and analyze anomalies in network traffic using metadata.
  • Conduct research, analysis, and correlation across a wide variety of all source data sets.
  • Coordinate and provide expert technical support to enterprise-wide cyber defense technicians.
  • Perform initial, forensically sound collection of audit logs.
  • Write and publish cyber defense techniques, guidance, and reports on incident findings.
  • Monitor external data sources to maintain currency of cyber defense threat condition.
  • Coordinate incident response functions.
  • Active Secret or above Security Clearance.
  • Current GIAC Certified Incident Handler (GCIH) certification.
  • Current Security + Certification.
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field.
  • 4+ years as a Cyber Defense Analyst/Incident Responder supporting DoD Programs and/or Services.
  • Army IA Training and Certification BBP (Required).
  • IAM III with IAT I or II (Required).
  • Current CISSP Certification.
  • Strong analytical and problem-solving skills.
  • Experience with security monitoring tools and incident response procedures.
  • Strong communication skills to support briefing Senior Leadership.
  • Skilled in the use of Microsoft PowerPoint and Visio to rapidly develop informative briefings.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service