Cyber Network Defense Analyst (CNDA)
Tasks
- Conduct forensic acquisition and analysis for onpremises and cloud platforms
- Coordinate with internal and external stakeholders to validate alerts and findings
- Correlate cloud control-plane events and network telemetry
- Develop and operationalize cloud detection logic and automation
- Develop incident response playbooks for cloud and hybrid environments
- Integrate threat intelligence feeds and indicators
- Investigate and respond to cloud and hybrid identity incidents
- Produce technical reports and incident documentation
- Support threat emulation and investigation automation projects
Perks/Benefits
Skills/Tech-stack
AWS | AWS CloudTrail | AWS GuardDuty | AWS IAM | Active Directory | Activity logs | Azure Active Directory | Azure Activity Logs | Azure Resource | Azure Resource Manager | Bash | Cloud Forensics | CloudFormation | Digital forensics | Docker | Entra ID | Flow Logs | GCP | GCP Chronicle | Hybrid Identity | Hybrid identity security | IaaS | Identity Security | Incident Response | JavaScript | Kubernetes | Microsoft 365 | Microsoft Defender | Microsoft Entra | Microsoft Entra ID | Microsoft Sentinel | PaaS | Powershell | Python | Resource manager | SaaS | Terraform | Threat Intelligence | Threat hunting | VPC Flow Logs | VPC flow
Education
Related jobs
-
Cybersecurity Forensics and Incident Response Analyst USD 125K-140KActive Directory | Application Firewall | Artifact analysis | Autopsy | BashOccasional travel | Rotating on-call scheduleMid-level Full TimePittsburgh, PA, United States10h ago
-
Data Classification | Incident Response | Information security | Security Compliance | Security DocumentationIn-person interview | Professional growth opportunitiesSenior-level Contract Full TimeRichmond, VA, United States15h ago
-
Incident Response Business Analyst - West Coast USD 70K-120KData Analysis | Incident Response | Postmortem Analysis | Problem Solving | Process ImprovementOn-call rotation | Telecommuting optionsMid-level Full TimeUnited States (Remote) R16h ago
-
Sr Security Analyst USD 140K-180KDetection engineering | Elastic SIEM | Elasticsearch | Firewall | IDS/IPSCustomer enablement training | Domestic travel | International travelSenior-level Full TimeScott AFB, IL, United States17h ago
-
Cyber Security Analyst USD 106K-129KCyber Operations | Cyber Security | Emulation | Encryption | Fraud DetectionMid-level Full TimeChantilly, VA18h ago
-
Information Systems Security Officer (ISSO) USD 103K-155K800-171 | 800-53 | CMMC Level 2 | Configuration Management | Continuous MonitoringMid-level Full TimeMelbourne, FL19h ago
-
Cyber Security Operations Jr. Analyst USD 90K-111KBash | Cause analysis | Incident Triage | McAfee HBSS | Network Protocols401k | Dental insurance | Health insurance | Life insurance | Long-term disabilityEntry-level Full TimeFort Belvoir, VA, United States1d ago
-
Threat Detection & Response Analyst (Tier 1) USD 80K-106KCloud Security | Cyber Kill Chain | Database security | Detection and Response | Digital forensicsEducational assistance | Health and wellness benefits | Income replacement for qualified employees with disabilities | Paid Holidays | Paid maternity and parental bonding leaveMid-level Full TimeWatermark - 410 North Scottsdale Road, … R1d ago
-
SOC Cyber Security Analyst I USD 107K-145KAntivirus | Data correlation | Elasticsearch | FTP | Firewall401k match | Education Training Reimbursement | Flexible spending account | Health & wellness reimbursement | Paid time offMid-level Full TimeAtlanta, GA, USA1d ago
-
Mid-level Full TimeUSA, VA, Fort Belvoir (10221 Burbeck …1d ago
-
Cybersecurity Analyst USD 69K-125KAWS | Application Management | Behavioral Analysis | Cloud Security | Cloud platformFlexible shift options | On-site workMid-level Full Time3347 Whitehall OH, United States1d ago
-
APT detection | Cyber Kill Chain | Cyber Threat | Cyber Threat Intelligence | Detection and ResponseSenior-level Full Time5612 Ashburn VA, United States1d ago
-
Event Monitoring | FortiAnalyzer | Fortigate | Incident Response | Log AnalysisCompensating time off | Paid time off | Professional development opportunities | Remote work opportunityMid-level Full TimeFL - Home Office, United States1d ago
-
Sr. Information Security Analyst USD 94K-151KAccess Control | Account Management | Awareness Training | Backup Integrity | Backup Integrity TestingSenior-level Full TimeFort Worth, United States; Fort Worth, …1d ago
-
Senior Security Operations Center (SOC) Analyst USD 105K-133KAWS | Alert triage | Bash | Cloud Security | Cloud platformSenior-level Full TimeUS NJ Remote, United States R1d ago
-
Cyber Threat Hunt Senior Analyst, VP USD 125K-188KCloud Security | Data Science | EDR | Incident Response | Log AnalysisSenior-level Full Time6400 LAS COLINAS BLVD IRVING, United …1d ago
-
Senior Associate, Risk Management - FRM USD 101K-126KCompliance | Control Testing | Coso | Data Analysis | Enterprise RiskHealth benefits | Incentive compensation | Performance incentivesSenior-level Full TimeMcLean, VA, United States1d ago
-
Cleared Information System Security Officer (ISSO) — L3 USD 140K-180K800-53 | ACAS | Cloud Security | Configuration Management | Continuous MonitoringOnsite work | Relocation assistanceMid-level Full TimeLorton, VA, US1d ago
-
Risk Management - Risk Architecture - Vice President USD 170K-205KAWS | Agile | Data Lineage | Data Monitoring | Data QualityBackup childcare | Financial coaching | Health care coverage | Mental health support | On-site health and wellness centersSenior-level Full TimeOH, United States1d ago
-
Information Security Analyst USD 113K-139KCIS Benchmarks | Cisco | DISA STIG | EDR | Event Logs401k match | Career development resources | Communication stipend | Company-paid Short Term Disability | Dental insuranceMid-level Full TimeReno, NV1d ago
-
Cybersecurity Analyst (3rd shift/Nights) USD 150K-204KAnomaly Detection | Automation and response | Detection Systems | Endpoint protection | FirewallGrowth and development opportunities | Night shift schedule | Onsite work | Training opportunitiesEntry-level Full TimeKansas City, MO SOC1d ago
-
Cyber Security Analyst (US Based) USD 85K-115KAccess reviews | Active Directory | Azure AD | Azure AD Identity Security | Azure Active DirectoryMid-level Full TimeUnited States1d ago
-
Security Operations - Incident Response & Forensics USD 100K-150KCIS Controls | Containment | Crisis management | Detection engineering | Detection pipelinesMid-level Full TimeMilwaukee, WI | Chicago, IL | …1d ago
-
Cybersecurity Administrator, Data Loss Prevention USD 110K-190K800-171 | Access Control | Access Management | CASB | CIS Controls401k match | Casual dress code | FSA | Free daily lunch | HSASenior-level Full TimeWashington, District of Columbia, United States1d ago
-
Cybersecurity SOC Analyst II USD 110K-160K800-171 | Azure Sentinel | Bash | CMMC | Cause analysis401k match | Casual dress code | FSA | Free lunch | HSAMid-level Full TimeWashington, District of Columbia, United States1d ago