ARSIEM Corporation
Host Based Systems Analyst III
Arlington, VA · Mid
No sponsorshipDetected 271 days ago
JavaScriptTypeScriptPythonBashPowerShellAWSGCPAzureCloud PlatformsDockerKubernetesTerraformCybersecurityMicrosoft DefenderDetection EngineeringIncident ResponsePublic Speaking
About the role
- As demand increases, ARSIEM continues to provide reliable and cutting-edge technical solutions at the best value to our clients.
Responsibilities
- Correlate cloud control-plane events and network telemetry (e.g., Azure Activity Logs, AWS CloudTrail, VPC Flow Logs) to reconstruct attacker timelines, validate IOCs, and identify post-compromise privilege escalation.
- Develop and operationalize detection logic and automation using cloud-native tools (Microsoft Defender, Sentinel, AWS GuardDuty, GCP Chronicle) and scripting (PowerShell, Python, Bash), integrating threat intelligence feeds and indicators.
- Support cloud development and automation projects to enhance threat emulation, investigative, and hunting capabilities.
- Coordinate with internal teams, government staff, and external stakeholders to validate alerts and investigate preliminary findings.
Requirements
- OR HS Diploma with 7+ years relevant experience.
- 5+ years of experience in cyber forensic investigations with leading tools and techniques.
- Expertise in acquiring forensically sound evidence, analyzing attacks, and reporting findings.
- Knowledge of AWS, IAM, and best practices for cloud identity security.
- That means a career packed with opportunities to grow and the ability to have an impact on every client you work with.
Nice to have
- Strong API and scripting skills (PowerShell, Python, Bash, JavaScript) for automation and threat detection.
- Knowledge of common and advanced cloud attacks and techniques, and how to detect and mitigate these threats.
- Proficiency with cloud automation and orchestration tools (Terraform, Kubernetes, CloudFormation, Azure Resource Manager, Docker).
- GCLD, GCFR, GCFA, GCFE, GCIH, EnCE, CCE, CFCE, CISSP, CCSP, AWS, or Microsoft Cloud/Security certifications.
- Clearance Requirement: This position requires an Active TS/SCI clearance and the ability to obtain Department of Homeland Security (DHS) Entry on Duty (EOD) Suitability.
- Candidate Referral: Do you know someone who would be GREAT at this role?
- ARSIEM is proud to be an Equal Opportunity and Affirmative Action Employer.
Skills
- ARSIEM is looking for a Cyber Network Defense Analyst (CNDA) with Cloud Forensics experience.
Benefits
- If you do, ARSIEM has a way for you to earn a bonus through our referral program for persons presenting NEW (not in our resume database) candidates who are successfully placed on one of our projects.
- The bonus for this position is $3,500, and the referrer is eligible to receive the sum for any applicant we place within 12 months of referral.
- The bonus is paid after the referred employee reaches 6 months of employment.
Equal opportunity
- Equal Opportunity and Affirmative Action Employer.
Apply directly at ARSIEM Corporation →Create a free account for alerts like thisView ARSIEM Corporation immigration profile
This listing is sourced directly from ARSIEM Corporation's careers page and normalized into a canonical job model.