Nightwing
Cyber Network Defense Analyst III
Sterling, VA · Mid · Contract
No sponsorshipDetected 6 days ago
TypeScriptAWSAzureCloud PlatformsKubernetesLinuxCybersecurityIncident ResponseWiresharkResearchCommunicationCollaborationProblem Solving
About the role
- The DHS's Hunt and Incident Response Team (HIRT) secures the Nation's cyber and communications infrastructure.
- HIRT provides DHS's front-line response for cyber incidents and proactively hunting for malicious cyber activity.
- Team personnel provide front line response for digital forensics/incident response (DFIR) at Teir 2 and Teir 3 levels along with proactively hunting for malicious cyber activity.
Responsibilities
- Correlate forensic findings to network events in support of developing an intrusion narrative
- Perform forensic triage of an incident to include determining scope, urgency and potential impact
- Track and document forensic analysis from initial participation through resolution
- Coordinate with Government staff and customer personnel to validate/investigate alerts or additional preliminary findings
- Conduct analysis of forensic images, and available evidence in support of forensic write-ups for inclusion in reports and written products
- Assist to document and publishing Computer Network Defense (CND) guidance and reports pertaining to incident findings
- Coordinate with enterprise-wide cyber defense staff to validate network alerts
- Document and escalate incidents (including event's history, status, and potential impact for further action) that may cause ongoing and immediate impact to the environment
- Perform event correlation using information gathered from a variety of sources within the enterprise to gain situational awareness and determine the effectiveness of an observed attack
Requirements
- BS Computer Science, Cyber Security, Computer Engineering, or related degree
- or HS Diploma & 7-9 years of network/host investigations experience.
- Collect and document system state information (e.g. running processes, network connections) prior to imaging, as required
- Required Skills/Clearances:
Skills
- U.S. Citizenship
- Active TS/SCI clearance
- Ability to obtain Department of Homeland Security (DHS) Entry on Duty (EOD) Suitability
- 5+ years of direct relevant experience in cyber defense analysis using leading edge technologies and industry standard cyber defense tools-
- Able to work collaboratively across physical locations
- Action-oriented and have a proactive approach to problem solving
- Proficiency with common operating systems (e,g, Linux/Unix, Windows)
- Experience implementing incident handling methodologies
- Understanding of SaaS, PaaS and IaaS in the Cloud Environment
- Proficiency with One ormore of these EDR Tools; CrowdStrike, SentinelOne, Cortex, MS MDE, or Trellix
- KAPE--- WireShark--- Splunk
- Elastic- Proficiency conducting all-source research.
Visa & Work Authorization
- Citizenship
Apply directly at Nightwing →Create a free account for alerts like thisView Nightwing immigration profile
This listing is sourced directly from Nightwing's careers page and normalized into a canonical job model.