Anavationllc
Security Analyst/Incident Responder
Alexandria, VA
Sponsorship not specified$61k-$800kDetected 14 days ago
SQLData AnalysisStatisticsCybersecuritySIEMIncident ResponseExcelSystems EngineeringWiresharkResearchLeadershipCommunicationPublic Speaking
About the role
- We believe if we invest in great people, then great things will happen.
- Description of Task to be Performed: AnaVation is looking for a Security Analyst (Incident Responder) to assist the client leadership with vulnerability management and incident response activities.
- The ideal candidate will be comfortable engaging with client leadership on a regular basis and interacting with senior level team members.
Responsibilities
- Lead and manage Incident Response (IR) activities to include triage, investigating, interviewing, resolving, and reporting on events. Creating, updating, and/or revising the IR Playbook and IR Plan.
- Monitor, maintain and administer policies and rules within EDR and SIEM tools (e.g., Crowdstrike, Splunk).
- Support and develop reports during and after incidents, which include all actions taken to properly mitigate, recover and return operations to normal operations.
- Develop and implement defensive cyber best practice tactics, techniques, and procedures.
- Maintain Incident Ticketing tracking system and related tickets within Remedy or other tracking tools.
- Manage and perform Splunk queries to examine and query log data from the Enterprise Logging as a Service system and perform log analysis.
- Conduct and manage vulnerability scans using Tenable SC and/or Qualys.
- Analyze scan results, prioritize findings by risk and impact, coordinate with responsible parties for remediation and validate false positives.
- Interacting with GRC tool (e.g., CSAM) to perform daily/weekly vulnerability analysis.
- We deliver groundbreaking research with advanced software and systems engineering that provides an information advantage to contribute to the mission and operational success of our customers.
Requirements
- Bachelor's degree in a related field or equivalent demonstrated experience and knowledge.
- 6 years' experience as a Security Administrator or equivalent knowledge.
- Hands-on experience conducting incident response activities and vulnerability analysis of various systems, applications, security tools, databases, and networks logs.
- Experience with Crowdstrike, TenableSC, Splunk. (Experience with comparable tools may be considered).
- Experience with NIST SP 800-61 rev2 Computer Security Incident Handling Guide.
- Ability to use common tools such as Wireshark to examine network traffic.
- Certifications: Security + required.
- Security + required.
Nice to have
- Self-Starter. ability to quickly become competent with new security-related tools and processes.
- Ability to conduct Deep Dive analysis to determine root cause assessment of various network scanning agents' scanning or communication failures.
- Ability to coordinate remediation strategies with agency's department technical staff through completion.
- Familiarity with the various use cases and alignment of data from each tool to various security disciplines in configuration management, vulnerability management, risk management and incident management.
- Understanding of the role of interactive training such as phishing exercises for assessment of organizational abilities.
- Familiarity with the use of data analysis tools, including the use of Microsoft Excel or PowerBI to combine data from multiple sources.
- Familiarity with data management and reporting of training data and statistics using common tools such as Microsoft Excel and Word.
- Life and AD&D Insurance
Compensation
- $61k-$800k
Benefits
- Generous cost sharing for medical insurance for the employee and dependents
- 100% company paid dental insurance for employees and dependents
- 100% company paid long-term and short-term disability insurance
- 100% company paid vision insurance for employees and dependents
- 401k plan with generous match and 100% immediate vesting
- Generous paid leave and holiday package
- Tuition and training reimbursement
- Flexible with other security related tasks as needed by the customer.
Company info
- Be Challenged and Make a Difference
- In a world of technology, people make the difference.
- At AnaVation, we provide unmatched value to our customers and employees through innovative solutions and an engaging culture.
- We are a US owned company headquartered in Chantilly, Virginia.
- We offer complex challenges, a top-notch work environment, and a world-class, collaborative team.
- If you want to grow your career and make a difference while doing it, AnaVation is the perfect fit for you!
Equal opportunity
- equal opportunity employer.
- All qualified applicants will receive consideration for employment without regard to sex, race, color, religion, national origin, disability, protected Veteran status, age, or any other characteristic protected by law.
Apply directly at Anavationllc →Create a free account for alerts like thisView Anavationllc immigration profile
This listing is sourced directly from Anavationllc's careers page and normalized into a canonical job model.