Information Security Analyst
Role details
Job location
Tech stack
Job description
The Information Assurance Analyst is primarily responsible for incident handling, incident response, intrusion analysis, threat hunting, digital forensic analysis, vulnerability scanning, Data Loss Prevention (DLP).
-
Tracks and handles cyber security incidents/events from initial detection to final resolution; coordinates with appropriate parties to investigate and maintain communications.
-
Collaborates with specialty teams to investigate and resolve complex problems.
-
Troubleshoots security tools on the network to ensure successful operation, compatibility with other applications, and minimal impact to the users.
-
Ensures ACAS vulnerability scanning mechanisms are operational and providing relevant results to the vulnerability management and admin teams.
-
Performs Information Systems Security Officer (ISSO) duties, and acts as the POC between parent organization and cyber security teams.
-
Conducts change requests, software authorizations, static code analysis, account reviews, and other Assessment & Authorization (A&A) tasks as required.
-
Acts as a central point of contact for all inquiries potentially regarding cyber security, and if necessary, redirects to the appropriate entities.
Requirements
Cybersecurity,Information Security,System Security
Experience:
3 + years of related experience, + Associate Degree in Computer Science or a related technical discipline, or the equivalent combination of education, professional training or work experience.
- 8570 Security+ Certification, required
REQUIRED EXPERIENCE:
- 3+ years of related experience in data security administration.
REQUIRED TECHNICAL SKILLS:
-
Minimum IAT II: CCNA Security, CySA+, GICSP, GSEC, Security+ CE, SSCP
-
Within 6 months of hire - CSSP Incident Responder (IR): CEH, CFR, CCNA Cyber Ops, CCNA-Security, CHFI, CySA+, GCFA, GCIH, SCYBER
-
Preferred certifications: GCIH, GCFA, GCIA, GNFA, Linux+, CCNA R&S, Splunk Power User
-
Proficient at navigating Windows 10/Server 2012/Server 2016 operating systems to perform intrusion analysis and systems maintenance
-
Proficient at navigating Linux: Ubuntu/RHEL 6/7/8 to facilitate cyber security engineering and systems maintenance
-
Basic scripting skills using Windows command-line, PowerShell, or BASH
-
Understanding of network ports, protocols, and services
-
Intrusion analysis via HBSS, Splunk or other SIEM tools, Windows Event Logging, Open Source Intelligence (OSINT) sources
-
Incident investigations via McAfee HBSS suite, SolarWinds, Cisco ISE, Cylance, Splunk, Phantom, Stealth Watch, Wireshark, ForeScout, ACAS, PowerShell, command-line tools
-
Build and maintain ACAS infrastructure; analyze vulnerability scan results and provide recommendations for remediation
PREFERRED SKILLS:
-
Strong desire to learn new skills, techniques, tactics, and procedures to improve knowledge and existing processes
-
Must be able to multi-task and adapt to changing priorities in highly stressful situations
-
Highly resilient and motivated to investigate unfamiliar and anomalous problems in a robust OPTEMPO environment, including follow-through to complete resolution
-
Critical thinking skills required to apply and correlate data from multiple sources to solve complex problems
-
Strong ability to quickly and clearly articulate operational impacts of cyber security incidents/events to leadership
-
Ability to communicate efficiently and precisely to target audience, as well as build strong rapport with other teams
Benefits & conditions
The likely salary range for this position is $76,500 - $103,500. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.
Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.