Senior Cyber Security Analyst

Mantech International Corporation
Springfield, VA, United States
7 days ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

CompTIA Security+ Cyber Security Computer Networks Domain Name System (DNS) Network Packet Security Information and Event Management Mitre Att&ck Cyber Threat Analysis Firewalls (Computer Science) Information Technology

Job description

  • Provide detection, identification, and reporting of possible cyber-attacks/intrusions, anomalous activities, and misuse activities
  • Characterize and analyze network traffic and system data to identify anomalous activity and potential threats to resources
  • Perform security event and incident correlation using information gathered from a variety of sources within the enterprise
  • Conduct cyber incident triage to determine scope, urgency, and potential impact; identify specific vulnerabilities and recommend expeditious remediation
  • Track and document cyber incidents from initial detection through final resolution
  • Analyze and assess damage to data and infrastructure resulting from cyber incidents
  • Perform cyber incident trend analysis and reporting
  • Work on a 24x7 Shift Work basis (4/10 shift schedule; hours dependent on location)

Requirements

  • Bachelor’s degree or 4+ years of additional IT experience in lieu of a degree
  • 5+ years of cybersecurity experience
  • IAT Level II certification (GSEC, Security+, SSCP, or CCNA-Security)
  • Knowledge of common cybersecurity threats, attack techniques, vulnerabilities, and indicators of compromise (IOCs).
  • Experience with SIEM (Security Information and Event Management) tools
  • Experience monitoring and analyzing security events, network traffic, system logs, and other security telemetry to identify suspicious or anomalous activity.
  • Ability to analyze security-related data and communicate findings clearly in written and verbal reports., * CSSP-IR certification (CEH, CySA+)
  • Experience analyzing network packet captures, firewall/proxy logs, DNS traffic, authentication logs, endpoint telemetry, and system events.
  • Knowledge of the MITRE ATT&CK framework and ability to map observed activity to adversary tactics, techniques, and procedures (TTPs).
  • Ability to work effectively in a fast-paced environment while managing multiple tasks and coordinating resources
  • Strong interpersonal skills, including the ability to engage with senior management

Clearance Requirements:

  • Must have an active TS/SCI with Polygraph clearance

Physical Requirements:

  • Must be able to remain in a stationary position 50% of the time
  • Occasionally move about inside the office to access file cabinets, office machinery, or to communicate with co-workers, management, and customers via email, phone, or virtual communication, which may involve delivering presentations

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

2:07 min

Attaching programs to network events via kernel hooks

Mohammed Aboullaite Mohammed Aboullaite · World Congress 2024

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · World Congress 2026 Europe

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

1:29 min

Attaching custom network packet filters to hardware interfaces

Ozan Sazak Ozan Sazak · World Congress 2024

Videos

See all

Related articles

See all