Cyber Defense Forensics Analyst

Booz Allen Hamilton Inc.San Antonio, TX
33d

About The Position

As a security operations center analyst, you're in the middle of the action, responding to and mitigating threats in real time. You're the first line of cyber defense for your organization, and they look to you for guidance on best practices and security measures. We need a SOC analyst like you to help us secure critical infrastructure from the constant onslaught of cyber-attacks. As an analyst on our team, you'll develop network defense skills as you learn to monitor, detect, and analyze threats by interacting directly with affected users and leveraging state-of-the-art technologies. When an incident is detected, you'll work with the team to collect data to help incident response understand and mitigate the threat. You'll analyze alerts to figure out just how many systems are affected and initiate recovery efforts. You'll contribute to assessments and learn how to analyze patterns to understand attackers' goals to stop them from succeeding. This is a great opportunity to hone your cybersecurity skills and learn more about threat assessment and incident response. Work with us as we secure against malicious actors. Join us. The world can't wait.

Requirements

  • Experience conducting digital forensics or incident response investigations within classified DoD environments
  • Experience with forensic tools such as EnCase, FTK, Autopsy, Cellebrite, Volatility, or X-Ways
  • Experience with SIEMS such as Splunk or ArcSight
  • Knowledge of Windows, Linux, and network forensic artifacts, including memory and disk analysis
  • Ability to identify, triage, and report events that occur to protect data, information systems, and infrastructure
  • Ability to collect, preserve, and analyze evidence in accordance with DoD or federal chain-of-custody standards
  • Ability to find trends, patterns, or correlations in security data
  • TS/SCI clearance
  • HS diploma or GED
  • DoD 8140 baseline Level II Certification such as Security+, CySA+, CISSP, or DoD Cyber Workforce Framework Certification

Nice To Haves

  • Experience supporting Cyber Protection Teams (CPTs), Defensive Cyber Operations (DCO), or Air Force cyber missions
  • Experience with Elastic, Splunk, Wireshark, or MISP for multi-source data correlation
  • Knowledge of malware analysis, reverse engineering, or memory forensics
  • Ability to prepare and brief forensic findings to commanders or senior decision-makers
  • Bachelor's degree in Digital Forensics, Information Assurance, or Cybersecurity
  • GCFA, GCFE, CHFI, or CEH Certifications

Responsibilities

  • monitor, detect, and analyze threats
  • collect data to help incident response understand and mitigate the threat
  • analyze alerts to figure out just how many systems are affected and initiate recovery efforts
  • contribute to assessments and learn how to analyze patterns to understand attackers' goals to stop them from succeeding

Benefits

  • health
  • life
  • disability
  • financial
  • retirement benefits
  • paid leave
  • professional development
  • tuition assistance
  • work-life programs
  • dependent care
  • recognition awards program

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Mid Level

Industry

Professional, Scientific, and Technical Services

Education Level

High school or GED

Number of Employees

1-10 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service