Cyber Network Defense Analyst
Washington, D.C.
Agile Defense
At the forefront of innovation, driving advanced capabilities and solutions tailored to the most critical national security and civilian missions.Our vision is to bring adaptive innovation to support our nation's most important missions through the seamless integration of advanced technologies, elite minds, and unparalleled agility—leveraging a foundation of speed, flexibility, and ingenuity to strengthen and protect our nation’s vital interests.
Requisition #: 815Job Title: Cyber Network Defense AnalystLocation: 650 Massachusetts Avenue NW Washington, D.C, District of Columbia 20001 Clearance Level: Active DoD - Top Secret
SUMMARY Agile Defense is seeking a Tier 1 Cyber Network Defense Analyst (CNDA) to join our team on a highly visible cyber security single-award IDIQ vehicle that provides security operations center (SOC) support, cyber analysis, application development, and a 24x7x365 support staff.
JOB DUTIES AND RESPONSIBILITIES · Duties include network security monitoring and detection. Proactively searching for threats. Inspect traffic for anomalies and new malware patterns. Investigate and analyze logs. Provide analysis and response to alerts, and document activity in SOC investigations and Security Event Notifications (SENs). · Primary Responsibilities: · List daily duties and/or specific job responsibilities. · Utilize a SIEM for enterprise monitoring and detection · Create Security Event Notifications to document investigation findings · Perform critical thinking and analysis to investigate cyber security alerts · Analyze network traffic using enterprise tools (e.g. Full PCAP, Firewall, Proxy logs, IDS logs, etc) · Collaborate with team members to analyze an alert or a threat · Stay up to date with latest threats · Monitor shared email box for notifications and requests · Utilize OSINT to aid in their investigation · Contribute to content tuning requests
QUALIFICATIONSEducation, Background, and Years of Experience · Bachelor’s degree in Computer Science, Engineering, Information Technology, Cybersecurity, or related field AND a minimum of two (2) years professional experience ADDITIONAL SKILLS & QUALIFICATIONS Required Skills · The ideal candidate is a self-motivated individual in pursuit of a career in cyber security. · Candidates should also demonstrate the following: · Familiarity with a SOC’s purpose and role within an organization · General understanding of common network ports and protocols (e.g. TCP/UDP, HTTP, ICMP, DNS, SMTP, etc) · Familiarity with network topologies and network security device functions (e.g. Firewall, IDS/IPS, Proxy, DNS, etc). · Familiarity with packet analysis tools such as Wireshark · Able to perform critical thinking and analysis to investigate cyber security alerts · Familiarity with common malware and attack vectors · Familiarity with Windows operating systems and standard OS logging · Familiarity with Antivirus, DLP, and host based firewalls · Must have current TS/SCI. In addition to specific security clearance requirements, all Department of Homeland Security SOC employees are required to obtain an Entry on Duty (EOD) clearance to support this program. · Candidates should also demonstrate the following: · Familiarity with a SOC’s purpose and role within an organization · General understanding of common network ports and protocols (e.g. TCP/UDP, HTTP, ICMP, DNS, SMTP, etc) · Familiarity with network topologies and network security device functions (e.g. Firewall, IDS/IPS, Proxy, DNS, etc). · Familiarity with packet analysis tools such as Wireshark · Able to perform critical thinking and analysis to investigate cyber security alerts · Familiarity with common malware and attack vectors · Familiarity with Windows operating systems and standard OS logging · Familiarity with Antivirus, DLP, and host based firewalls · One of the following certifications: CCFP – Certified Cyber Forensics Professional CCISO – Certified Chief Information Security Officer Cisco Certified Network Associate (CCNA) CCNA Industrial CCNA Security Cisco Certified Network Professional (CCNP) CCNP Security CCSP – Certified Cloud Security Professional CEH – Certified Ethical Hacker CHFI – Computer Hacking Forensic Investigator CISSP – Certified Information Systems Security CNDA – Certified Network Defense Architect CompTIA Advanced Security Practitioner (CASP) CompTIA Cloud+ CompTIA Linux+ CompTIA Network+ CompTIA Security+ CSSLP – Certified Secure Software Lifecycle Professional Cyber Analyst Course (DCITA) ECES – EC-Council Certified Encryption Specialist ECIH – EC-Council Certified Incident Handler ECSA – EC-Council Certified Security Analyst ECSP – EC-Council Certified Secure Programmer ECSS – EC-Council Certified Security Specialist EnCE ENSA – EC-Council Network Security Administrator GAWN – Auditing Wireless Networks GCED – Certified Enterprise Defender GCFA – Forensic Analyst GCFE – Forensic Examiner GCIA – Intrusion Analyst GCIH – Incident Handler GCWN – Windows Security Administrator GICSP –Cyber Security Professional GISF – Security Fundamentals GISP – Security Professional GMON – Continuous Monitoring Certification GNFA – Network Forensic Analyst GPEN – Penetration GPPA – Perimeter Protection Analyst GREM – Reverse Engineering Malware GSEC – Security Essentials GSNA – System and Network Auditor GSSP – Secure Software Programmer GSSP – Secure Software Programmer GWAPT – Web Application Penetration Tester GWEB – Web Application Defender GXPN – Exploit Researcher and Advanced Penetration Tester LPT – Licensed Penetration Tester MCSE – Microsoft Certified Solutions Expert (Server) OSCE (Certified Expert) OSCP (Certified Professional) OSEE (Exploitation Expert) OSWP (Wireless Professional) SEI (Software Engineering Institute) SSCP – Systems Security Certified Practitioner CompTIA Cyber Security Analyst (CySA+) CompTIA Linux Network Professional (CLNP) CompTIA PenTest+ CompTIA A+ CompTIA Server+ Microsoft 365 Fundamentals Microsoft Certified Azure Fundamentals MS 365 Certified: Security Administrator Microsoft Certified Azure Security Engineer (Associate) Splunk Core Certified User Splunk Certified Cybersecurity Defense Analyst Swimlane Certified Administrator Swimlane Certified SOAR User Swimlane Certified SOAR Developer Tanium Essentials Preferred Skills · Familiar with SOC methodologies and processes · Familiarity with scripting languages (e.g. Python, Powershell, Javascript, VBS etc)
WORKING CONDITIONS Environmental Conditions · The front half shift will work 12 hour shifts from Sunday – Tuesday and alternating Wednesdays. · Onsite in Washinton, D.C. Strength Demands · Light – 20 lbs. Maximum lifting with frequent lift/carry up to 10 lbs. A job is light if less lifting is involved but significant walking/standing is done or if done mostly sitting but requires push/pull on arm or leg controls. Physical Requirements · Stand or Sit; Walk; Repetitive Motion; Use Hands / Fingers to Handle or Feel; Stoop, Kneel, Crouch, or Crawl; See; Push or Pull; Climb (stairs, ladders) or Balance (ascend / descend, work atop, traverse).Employees of Agile Defense are our number one priority, and the importance we place on our culture here is fundamental. Our culture is alive and evolving, but it always stays true to its roots. Here, you are valued as a family member, and we believe that we can accomplish great things together. Agile Defense has been highly successful in the past few years due to our employees and the culture we create together.
What makes us Agile? We call it the 6Hs, the values that define our culture and guide everything we do. Together, these values infuse vibrancy, integrity, and a tireless work ethic into advancing the most important national security and critical civilian missions. It's how we show up every day. It's who we are.
We also believe in supporting our employees by offering a competitive and comprehensive benefits package. To explore the benefits we offer, please visit our website under the Careers section.
Happy - Be Infectious.Happiness multiplies and creates a positive and connected environment where motivation and satisfaction have an outsized effect on everything we do.
Helpful - Be Supportive.Being helpful is the foundation of teamwork, resulting in a supportive atmosphere where collaboration flourishes, and collective success is celebrated.
Honest - Be Trustworthy.Honesty serves as our compass, ensuring transparent communication and ethical conduct, essential to who we are and the complex domains we support.
Humble - Be Grounded.Success is not achieved alone, humility ensures a culture of mutual respect, encouraging open communication, and a willingness to learn from one another and take on any task.
Hungry - Be Eager.Our hunger for excellence drives an insatiable appetite for innovation and continuous improvement, propelling us forward in the face of new and unprecedented challenges.
Hustle - Be Driven.Hustle is reflected in our relentless work ethic, where we are each committed to going above and beyond to advance the mission and achieve success.
Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Agile Antivirus Audits Azure C CASP+ CCNP CCSP CEH CHFI CISO CISSP Clearance Cloud CompTIA Computer Science CSSLP DNS DoD ECSA EnCE Encryption Exploit Firewalls Forensics GCED GCFA GCFE GCIA GCIH GICSP GNFA GPEN GREM GSEC GSNA GWAPT GXPN IDS Industrial IPS JavaScript Linux Malware Monitoring Network security OSCE OSCP OSEE OSINT OSWP PCAP PowerShell Python Reverse engineering Scripting Security Clearance SIEM SMTP SOAR SOC Splunk SSCP Swimlane Top Secret TS/SCI Windows
Perks/benefits: Career development
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.