Base: $87,100.00 - $157,450.00; bonus/equity: not ...
Utilize alerts from endpoints, ids/ips, netflow
Identify compromises on customer networks/endpoints
Perform log file review and data correlation
Utilize alerts from endpoints, IDS/IPS, netflow, and custom sensors to identify compromises on customer networks/endpoints
Job Summary
Utilize alerts from endpoints, IDS/IPS, netflow, and custom sensors to identify compromises on customer networks/endpoints.
Perform junior- to intermediate-level review of massive log files, pivot between data sets, and correlate evidence for incident investigations.
Our Cybersecurity team performs cyber defensive actions in support of J6, including monitoring network and end point data to prevent, detect, respond and recover from adversarial activities.
Matching Summary
Utilize alerts from endpoints, IDS/IPS, netflow, and custom sensors to identify compromises on customer networks/endpoints.
Salary
Base: $87,100.00 - $157,450.00; Bonus/Equity: Not specified; Benefits: Not specified
Skills & Requirements
Must-have
Utilize alerts from endpoints, IDS/IPS, netflow
Identify compromises on customer networks/endpoints
Perform log file review and data correlation
Pass triaged alerts to senior personnel
Document analysis, findings, and actions
Support incident report creation and distribution
Nice-to-have
Intelligence Driven Defense
Cyber Kill Chain methodology
MITRE ATT&CK framework
Think and work independently
Refuse to fail
Key Requirements
Active DoD Top Secret clearance with ability to obtain SCI
DoD 8570 IAT II or higher certification prior to starting
Obtain DoD 8570 CSSP-Analyst certification within 6 months
Bachelor's degree and 4+ years of prior relevant experience
1+ years of incident handling/response experience
1+ years of experience working in a SOC environment
CND experience (Protect, Detect, Respond and Sustain)
Demonstrated understanding of network threats and attack vectors
Demonstrated sound understanding of TCP/IP and networking protocols
Work Rights
Must have active DoD Top Secret clearance with ability to obtain SCI