Nightwing

Nightwing

Cyber Network Defense Analyst III

Sterling, VA · Mid · Contract

No sponsorshipDetected 6 days ago
TypeScriptAWSAzureCloud PlatformsKubernetesLinuxCybersecurityIncident ResponseWiresharkResearchCommunicationCollaborationProblem Solving

About the role

  • The DHS's Hunt and Incident Response Team (HIRT) secures the Nation's cyber and communications infrastructure.
  • HIRT provides DHS's front-line response for cyber incidents and proactively hunting for malicious cyber activity.
  • Team personnel provide front line response for digital forensics/incident response (DFIR) at Teir 2 and Teir 3 levels along with proactively hunting for malicious cyber activity.

Responsibilities

  • Correlate forensic findings to network events in support of developing an intrusion narrative
  • Perform forensic triage of an incident to include determining scope, urgency and potential impact
  • Track and document forensic analysis from initial participation through resolution
  • Coordinate with Government staff and customer personnel to validate/investigate alerts or additional preliminary findings
  • Conduct analysis of forensic images, and available evidence in support of forensic write-ups for inclusion in reports and written products
  • Assist to document and publishing Computer Network Defense (CND) guidance and reports pertaining to incident findings
  • Coordinate with enterprise-wide cyber defense staff to validate network alerts
  • Document and escalate incidents (including event's history, status, and potential impact for further action) that may cause ongoing and immediate impact to the environment
  • Perform event correlation using information gathered from a variety of sources within the enterprise to gain situational awareness and determine the effectiveness of an observed attack

Requirements

  • BS Computer Science, Cyber Security, Computer Engineering, or related degree
  • or HS Diploma & 7-9 years of network/host investigations experience.
  • Collect and document system state information (e.g. running processes, network connections) prior to imaging, as required
  • Required Skills/Clearances:

Skills

  • U.S. Citizenship
  • Active TS/SCI clearance
  • Ability to obtain Department of Homeland Security (DHS) Entry on Duty (EOD) Suitability
  • 5+ years of direct relevant experience in cyber defense analysis using leading edge technologies and industry standard cyber defense tools-
  • Able to work collaboratively across physical locations
  • Action-oriented and have a proactive approach to problem solving
  • Proficiency with common operating systems (e,g, Linux/Unix, Windows)
  • Experience implementing incident handling methodologies
  • Understanding of SaaS, PaaS and IaaS in the Cloud Environment
  • Proficiency with One ormore of these EDR Tools; CrowdStrike, SentinelOne, Cortex, MS MDE, or Trellix
  • KAPE--- WireShark--- Splunk
  • Elastic- Proficiency conducting all-source research.

Visa & Work Authorization

  • Citizenship

This listing is sourced directly from Nightwing's careers page and normalized into a canonical job model.