Cyber Defense Analyst
Quantico, VA, 22134, US
⚠️ We'll shut down after Aug 1st - try foo🦍 for all jobs in tech ⚠️
Full Time Mid-level / Intermediate Clearance required USD 120K - 129K
ASRC Federal
Achieving successful mission outcomes and elevated performance for federal civilian, defense and intelligence agencies, while building an enduring enterprise focused on customers, employees and shareholders.ASRC Federal Broadleaf Division is actively hiring a Cyber Defense Analyst in support of our Defense Counterintelligence Security Agency (DCSA) program based out of Quantico VA.
Remote flexibility available! Telework offered with a requirement to be onsite up to two (2) days a week at Quantico Marine Corps Base VA.
Position Description: The Cyber Defense Analyst will perform network security monitoring tasks to include but not limited to: network traffic analysis, vulnerability scanning (ACAS), wireless scanning, Endpoint Security Suite (ESS), SPLUNK, CrowdStrike, Information Assurance Vulnerability Management program (IAVM), Network Access control, insider threat support, web content filtering, data at rest and various cyber security application/tools installed on servers and workstations, may include maintenance and upkeep of the server or workstation.
Minimum Requirements:
• At least two (2) Years – Hands-on technical cybersecurity experience and knowledge of Computer Network Defense concepts, DISA Security Technical Information Implementation Guides, DoD A&A Process, NIST SP 800-53, NIST SP 800-61, CJCSM 6510.01 B, United States Cyber Command guidelines, and other applicable DoD Cyber Security and Computer Network Defense policies
• Active Secret Clearance REQUIRED, eligible to be upgraded to TS/SCI
• Associate’s degree in information technology, Information Systems Management, Cyber Security, or equivalent experience
• Must meet 8570 certification requirements at the time of hire. IAT Level II (e.g., CCNA Security, CySA +, GICSP, GSEC, Security+, SSSP or a CSSP Auditor Certification CEH, CISA, GSNA is preferred
Required Skills:
• Experience analyzing log files from network traffic logs, firewall logs, IDS logs, DNS logs and ESS to ID possible security threats e.g., determine rogue systems, infected systems, unauthorized system changes and unauthorized hardware connections
• Ability to identify violations of internet access by reviewing web content filtering logs in accordance with DoD policy, and SOPs.
• Experience in processing and handling JFHQ DODIN Cyber related tasks to completion.
• Performance of threat hunting activities using DoD approved cyber tools through data hunting/manipulation/presentation, including generating queries and reports for management and the end-customer
• Validation and confirmation critical security events and assessing impact of the event, by incorporating data from multiple tool sources
• Identifying evidence of illegal activity involving cybercrime offenses and examining computers that may have been involved in other types of crime or malware infection
• Use of forensic tools and investigative methods to find specific electronic data, namely associated with performing complex malware analysis
• Experience develop and maintain SOPs for security monitoring
• Provide daily/weekly/monthly reports to senior leadership on key indicators of network security
Work Environment and Physical Demands:
• This is primarily a Telework position with a requirement to be onsite up to two (2) days a week.
• If alternate worksite is other than DCSA facilities or corporate office space, must have the reliable ability to communicate over voice (cell phone preferred) and stable, capable internet connection.
• Must be able to communicate complex technical ideas to a diverse customer base both verbally and in written form.
We invest in the lives of our employees, both in and out of the workplace, by providing competitive pay and benefits packages. Benefits offered may include health care, dental, vision, life insurance; 401(k); education assistance; paid time off including PTO, holidays, and any other paid leave required by law.
EEO Statement
ASRC Federal and its Subsidiaries are Equal Opportunity employers. All qualified applicants will receive consideration for employment without regard to race, gender, color, age, sexual orientation, gender identification, national origin, religion, marital status, ancestry, citizenship, disability, protected veteran status, or any other factor prohibited by applicable law.
Tags: ACAS CEH CISA Clearance Clearance Required CrowdStrike Cyber crime Cyber defense DISA DNS DoD DoDD 8570 Endpoint security Firewalls GICSP GSEC GSNA IDS Log files Malware Monitoring Network security NIST NIST 800-53 Splunk TS/SCI Vulnerability management
Perks/benefits: Competitive pay Health care Insurance Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.