Cyber Network Defense Analyst (CNDA)/Network Based Systems Analyst

Arlington, Virginia, United States

Node.Digital

Market leader in Digital Transformation & Automation using Artificial Intelligence and Machine Learning

View all jobs at Node.Digital

Apply now Apply later

Cyber Network Defense Analyst (CNDA)/Network Based Systems Analyst

Location:  Arlington, VA

Must have Top Secret Security Clearance

Node is seeking a Cyber Network Defense Analyst (CNDA) to support this critical customer mission.

Responsibilities:

- Assists the Government lead in coordinating teams in preliminary incident response investigations

- Assists the Government lead with interfacing with the customer while on-site

- Determines appropriate courses of action in response to identified and analyses anomalous network activity

- Assesses network topology and device configurations identifying critical security concerns and providing security best practice recommendations

- Collects network intrusion artifacts (e.g., PCAP, domains, URIs, certificates, etc.) and uses discovered data to enable mitigation of potential Computer Network Defense incidents

- Analyzes identified malicious network activity to determine weaknesses exploited, exploitation methods, effects on system and information

- Collects network device integrity data and analyzes for signs of tampering or compromise

- Assists with real-time CND incident handling (i.e., forensic collections, intrusion correlation, and tracking, threat analysis, and advising on system remediation) tasks to support onsite engagements

Requirements

Required Skills:

- U.S. Citizenship

- Must have an active TS/SCI clearance

- Must be able to obtain DHS Suitability

- 5+ years of directly relevant experience in network investigations

- In-depth knowledge of CND policies, procedures and regulations

- In-depth knowledge of TCP/IP protocols

- In-depth knowledge of standard protocols – ICMP, HTTP/S, DNS, SSH, SMTP, SMB, NFS, etc.

- In-depth knowledge and experience of Wifi networking

- In-depth knowledge and experience of network topologies - DMZs, WANs, etc.

- Substantial knowledge of Splunk (or other SIEM’s)

- Understanding of MITRE Adversary Tactics, Techniques and Common Knowledge (ATT&CK)

- Knowledge of Computer Network Defense policies, procedures, and regulations

- Knowledge of defense-in-depth principles and general attack stages with respect to network security architecture

- Ability to characterize and analyze network traffic to identify anomalous activity and potential threats to network resources

- Ability to identify and analyze anomalies in network traffic using metadata

- Experience with reconstructing a malicious attack or activity based on network traffic

- Experience examining network topologies to understand data flows through the network

- Must be able to work collaboratively across physical locations

Desired Skills:

- Substantial knowledge of network device integrity concepts and methodologies

- Proficiency with network analysis software (e.g. Wireshark)

- Proficiency with carving and extracting information from PCAP data

- Proficiency with non-traditional network traffic (e.g. Command and Control)

- Proficiency with preserving evidence integrity according to standard operating procedures or national standards

- Proficiency with virtualized environments

Required Education:

BS Computer Science, Cyber Security, Computer Engineering, or related degree; or HS Diploma & 7-9 years of network investigations experience.

Desired Certifications:

- DoD 8140.01 IAT Level II, IASAE II, CSSP Analyst, GCIA, GCIH, CSSP Analyst/CSSP Incident Responder, CEH

- SANS GIAC GNFA preferred

Company Overview:

Node. Digital is an independent Digital Automation & Cognitive Engineering company that integrates best-of-breed technologies to accelerate business impact.

Our Core Values help us in our mission. They include:

OUR CORE VALUES

Identifying the~RIGHT PEOPLE~and developing them to their full capabilities

Our customer’s “Mission” is our “Mission”. Our~MISSION FIRST~approach is designed to keep our customers fully engaged while becoming their trusted partner

We believe in~SIMPLIFYING~complex problems with a relentless focus on agile delivery excellence

Our mantra is “~Simple*Secure*Speed~” in the delivery of innovative services and solutions.

Benefits

We are proud to offer competitive compensation and benefits packages to include:

  • Medical
  • Dental
  • Vision
  • Basic Life
  • Long-Term Disability
  • Health Saving Account
  • 401K
  • Three weeks of PTO
  • 10 Paid Holidays
  • Pre-Approved Online Training
Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  1  0  0

Tags: Agile Automation CEH Clearance CND Computer Science DNS DoD DoDD 8140 GCIA GCIH GIAC GNFA Incident response Network security PCAP SANS Security Clearance SIEM SMTP Splunk SSH TCP/IP Top Secret TS/SCI

Perks/benefits: Competitive pay Health care

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.