Senior TCP/IP Cyber Threat Analyst [$335k/yr+] TS/SCI-FS Poly

SYSTOLIC, INC.
Annapolis Junction, MD, United States
17 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Compensation
$335,000.0
Working hours
Regular working hours

Tech stack

Data Analysis Communications Protocols Complex Networks Elasticsearch Intrusion Detection and Prevention Network Forensics Network Monitoring Packet Analyzer Network Protocols Security Information and Event Management TCP/IP Wireshark
+4 more
Snort (Software) Cyber Threat Analysis Drilldown Splunk

Job description

  • Analyze network protocols and security to assess cyber criminal activities.
  • Perform network forensics, TCP/IP communication protocol analysis, and packet capture analysis using Wireshark.
  • Utilize SIEM tools including Elasticsearch and Splunk to create visualizations and dashboards.
  • Write signatures in Zeek or Snort, design network monitoring strategies, and document findings., * Provide advanced network protocol analysis and security expertise, leading deep-dive analysis of complex network traffic.
  • Deliver actionable insights to stakeholders to prevent and eradicate threats to critical systems.
  • Analyze data in various formats to extract and enrich information.
  • Create general queries, fingerprints, and identify atypical events using XKS.
  • Design and implement advanced network monitoring and detection strategies.
  • Collaborate with development teams to articulate requirements and enhancements for capabilities, tools, and strategies.
  • Document findings, create detailed reports to update tradecraft, and present results to technical and non-technical stakeholders.
  • Active TS/SCI security clearance with polygraph is required.

Requirements

  • Degree: Technical bachelor’s degree or equivalent experience
  • Years of experience: 15+ years
  • Total Compensation: $335k+ yearly

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

57 sec

Analyzing network traffic locally with open source security tooling

Chris Heilmann +2 · LIVE

3:19 min

Setting up a vulnerable test application and monitoring environment

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · World Congress 2024

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all