ARSIEM Corporation

ARSIEM Corporation

Host Based Systems Analyst III

Arlington, VA · Mid

No sponsorshipDetected 271 days ago
JavaScriptTypeScriptPythonBashPowerShellAWSGCPAzureCloud PlatformsDockerKubernetesTerraformCybersecurityMicrosoft DefenderDetection EngineeringIncident ResponsePublic Speaking

About the role

  • As demand increases, ARSIEM continues to provide reliable and cutting-edge technical solutions at the best value to our clients.

Responsibilities

  • Correlate cloud control-plane events and network telemetry (e.g., Azure Activity Logs, AWS CloudTrail, VPC Flow Logs) to reconstruct attacker timelines, validate IOCs, and identify post-compromise privilege escalation.
  • Develop and operationalize detection logic and automation using cloud-native tools (Microsoft Defender, Sentinel, AWS GuardDuty, GCP Chronicle) and scripting (PowerShell, Python, Bash), integrating threat intelligence feeds and indicators.
  • Support cloud development and automation projects to enhance threat emulation, investigative, and hunting capabilities.
  • Coordinate with internal teams, government staff, and external stakeholders to validate alerts and investigate preliminary findings.

Requirements

  • OR HS Diploma with 7+ years relevant experience.
  • 5+ years of experience in cyber forensic investigations with leading tools and techniques.
  • Expertise in acquiring forensically sound evidence, analyzing attacks, and reporting findings.
  • Knowledge of AWS, IAM, and best practices for cloud identity security.
  • That means a career packed with opportunities to grow and the ability to have an impact on every client you work with.

Nice to have

  • Strong API and scripting skills (PowerShell, Python, Bash, JavaScript) for automation and threat detection.
  • Knowledge of common and advanced cloud attacks and techniques, and how to detect and mitigate these threats.
  • Proficiency with cloud automation and orchestration tools (Terraform, Kubernetes, CloudFormation, Azure Resource Manager, Docker).
  • GCLD, GCFR, GCFA, GCFE, GCIH, EnCE, CCE, CFCE, CISSP, CCSP, AWS, or Microsoft Cloud/Security certifications.
  • Clearance Requirement: This position requires an Active TS/SCI clearance and the ability to obtain Department of Homeland Security (DHS) Entry on Duty (EOD) Suitability.
  • Candidate Referral: Do you know someone who would be GREAT at this role?
  • ARSIEM is proud to be an Equal Opportunity and Affirmative Action Employer.

Skills

  • ARSIEM is looking for a Cyber Network Defense Analyst (CNDA) with Cloud Forensics experience.

Benefits

  • If you do, ARSIEM has a way for you to earn a bonus through our referral program for persons presenting NEW (not in our resume database) candidates who are successfully placed on one of our projects.
  • The bonus for this position is $3,500, and the referrer is eligible to receive the sum for any applicant we place within 12 months of referral.
  • The bonus is paid after the referred employee reaches 6 months of employment.

Equal opportunity

  • Equal Opportunity and Affirmative Action Employer.

This listing is sourced directly from ARSIEM Corporation's careers page and normalized into a canonical job model.