Cyber Network Defense Analyst
USA-VA-Herndon
Full Time Mid-level / Intermediate Clearance required USD 64K - 119K * est.
General information
Requisition # R60275 Locations USA-VA-Herndon Posting Date 05/06/2025 Security Clearance Required TS/SCI w/ Poly Remote Type Onsite Time Type Full timeDescription & Requirements
Unlock the secrets of intelligence with ManTech! Join a dynamic team at the forefront of national security, providing advanced solutions to government intelligence agencies. Since 1968, we’ve been solving the toughest challenges with groundbreaking tech. Explore thrilling projects in Digital Transformation, Cybersecurity, IT, Data Analytics and Software Development. Elevate your career and make a difference. Your adventure begins now—unleash your potential with ManTech!ManTech is seeking a Cyber Network Defense (CND) Analyst in Herndon, VA. As a CND Analyst on our team, you will use your expertise in Host Based Intrusion Detection Systems (IDS), Intrusion Prevention Systems (IPS) and specialized network defense to provide innovative and creative solutions to challenging cyber security problems. You will utilize the latest cyber tools available and assist with creating new ones while allowing you to advance the nation's information security posture. Join ManTech and help protect our country against our cyber adversaries while working on innovative projects that offer opportunities for advancement. We encourage our team members to share and grow their skills and expertise while creating robust and cutting-edge solutions. Join a team who protects and defends the largest target in the world.
Responsibilities include, but are not limited to:
Provide malicious code detection, intrusion detection, and information security tool development and integration.
Utilize forensic analysis to identify malware, misuse, and/or unauthorized activity.
Investigate and report on virus and malware alerts or incidents to determine root cause, entry point of code and damage risk.
Analyze all data sources, including Internet, Intelligence Community (IC) reporting, security events, firewall logs, and other data sources to identify malware, misuse, unauthorized activity or other cyber security related concerns.
Track intelligence using open source and classified sources to identify malicious code threats and provide solutions to counteract that threat.
Manage and administer the tuning of rules, signatures, and custom content for CND applications and systems and identify potential conflicts with implementation of any CND tools within the enterprise and develop recommendations to remediate these conflicts
Provide logical use case development.
Provide and track requirements to engineering partners.
Identify gaps in visibility or coverage of cyber defense systems.
Prepare data analytics and reporting.
Basic Qualifications:
2+ years of experience in Network Defense, Network Operations, Cybersecurity, Network Engineering, Security Engineering, Information Security, Systems Architecture or Data Analysis
Experience writing script in programming languages such as Python, JavaScript, Yara or Snort
Experience using SIEM tools for case development and application
Experience with network security applications, protocols, and associated hardware
Experience with one or more of the following classes of enterprise cyber defense technologies:
SysMon, Network and Host based IDS and IPS ,Network and host-based malware detection and prevention, Network and Host malware detection and prevention (EDR/NDR) tools, Endpoint Detection & Response (EDR) and Network Detection & Response (NDR) ,Forensics tools and applications, Web/Email gateway security technologies, Security Orchestration, Automation and Response (SOAR),Cloud Based platforms such as Azure, AWS, or Google
High School Diploma
Preferred Qualifications:
Experience working with MITRE ATT&CK
Experience with Splunk or Splunk Enterprise Security
Ability to demonstrate interpersonal, organizational, writing, communications, and briefing skills
Ability to effectively use analytical and problem-solving skills
Clearance requirement:
Must have an active/Current TS/SCI with polygraph
Physical Requirements:
Must be able to remain in a stationary position 50%
ManTech International Corporation considers all qualified applicants for employment without regard to disability or veteran status or any other status protected under any federal, state, or local law or regulation.
If you need a reasonable accommodation to apply for a position with ManTech, please email us at careers@mantech.com and provide your name and contact information.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Analytics Automation AWS Azure Clearance Clearance Required Cloud CND Cyber defense Data Analytics EDR Firewalls Forensics IDS Intrusion detection Intrusion prevention IPS JavaScript Malware MITRE ATT&CK NetOps Network security Open Source Polygraph Python Security Clearance SIEM Snort SOAR Splunk TS/SCI
Perks/benefits: Career development Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.