Computer Network Defense Analyst (EAIRS)
Role details
Job location
Tech stack
Job description
- Participates in 24x7x365 monitoring DLA's SIEM and other cybersecurity monitoring tools in an effort to detect and respond to cybersecurity threats within DLA's Enterprise Network Environment.
- Performs actions to protect, monitor, detect, analyze, and respond to unauthorized activity.
- Employs Cybersecurity capabilities and deliberate actions to respond to specific alerts or emerging threats.
- Reviews logged events for trends that are indicative of attack or compromise within the environment.
- Actively monitors logs and traffic for Advanced Persistent Threats (APT) and "low and slow" attacks within the environment.
- Maintains awareness of possible threats through the use of intelligence resources to include Open-Source Intelligence (OSINT).
- Provides technical analysis and sustainment support for the enterprise for IA tools and applications and assists with the application of Defense-In-Depth signatures and perimeter defense controls to diminish network threats., This project supports DLA Cybersecurity in performing CSSP functions for DLA to include but not limited to performing incident response and cybersecurity content development focused on but not limited to externally hosted programs and applications. Coordinates with DLA stakeholder groups to ensure incident handling is conducted across the enterprise to protect DLA data, networks, applications both internally and externally hosted in accordance with DoD directives.
Requirements
Do you have experience in Tooling?, + 5 years relevant Cybersecurity/IT experience
-
IAT II: One of the following o CCNA-Security; CySA+; GICSP; GSEC; Security+ CE; CND; SSCP
-
CNDSP/CSSP-IR
-
Must have one of the "Computer Network Defense" CE Certifications within six (6) months of onboarding.
-
Top Secret
-
On Site: Columbus, OH; Fort Belvoir, VA; Battle Creek, MI, * Five (5) years of relevant IT experience.
- Two (2) years performing root cause analysis of cybersecurity events and incidents
-
Working knowledge of at least at least two types of security tools: o Firewall o IDS/IPS o Host based antivirus o Data loss prevention o Vulnerability Management o Forensics o Malware Analysis o Device Hardening
-
Understanding of Defense-in-Depth
-
Ability to build scripts and tools to enhance threat detection and incident response capabilities (Preferably in SPL, Python, PowerShell)
- Must possess a DOD Top Secret Clearance.
- Must possess a relevant certification meeting the DOD 8570.01 IAT level II. One of the following:
- CCNA-Security, * Must maintain CNDSP/CSSP-IR
- Must have one of the "Computer Network Defense" CE Certifications within six (6) months of onboarding.
Education: None
Benefits & conditions
Pulled from the full job description
- Loan repayment program
- Tuition reimbursement
- Health insurance
- Paid time off
- Vision insurance
- Dental insurance
- Gym membership, * A comprehensive benefits package including healthcare (medical, dental, vision, and disability)
- a 401 (k) program where you are 100% vested from day one with an employer match after 90 days.
- An Educational Assistance program.
- a Student Loan Repayment Program
- Gym Reimbursement Program.
- Paid Time off
- Dynamics, a passionate, multi-disciplinary team of creative minds to work with, and many more.
Horizon is an Equal Employment Opportunity employer, and it is our policy to consider all applicants for employment. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, or national origin.
EOE/Vet/Disabled