Cybersecurity Incident Response & Threat Detection Analyst

Anonymous Employer
United States
3 days ago
Apply on www.clearancejobs.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
2 years minimum
Working hours
Regular working hours

Tech stack

Antivirus Softwares Cyber Security Computer Networks Information Leak Prevention Intrusion Detection and Prevention Intrusion Detection Systems Python (Programming Language) Open Source Intelligence Windows PowerShell Security Software Security Information and Event Management Software Vulnerability Management
+3 more
Malware Cyber Threat Analysis Firewalls (Computer Science)

Job description

Participates in 24x7x365 monitoring of SIEM and other cybersecurity monitoring tools to detect and respond to cybersecurity threats within the Enterprise Network Environment. Performs actions to protect, monitor, detect, analyze, and respond to unauthorized activity. Employs Cybersecurity capabilities and deliberate actions to respond to specific alerts or emerging threats. Reviews logged events for trends that are indicative of attack or compromise within the environment. Actively monitors logs and traffic for Advanced Persistent Threats (APT) and “low and slow” attacks within the environment. Maintains awareness of possible threats with the use of intelligence resources which include Open Source Intelligence (OSINT). Provides technical analysis and sustainment support for the enterprise for Cybersecurity tools and applications and assists with the application of Defense-In-Depth signatures and perimeter defense controls to diminish network threats.

Requirements

  • Five (5) years relevant experience

  • Two (2) years performing root cause analysis of cybersecurity events and incidents

  • Working knowledge of at least two types of security tools: Firewall, IDS/IPS, Host based antivirus, Data loss prevention, Vulnerability Management, Forensics, Malware Analysis, Device Hardening

  • Understanding of Defense-in-Depth

  • Ability to build scripts and tools to enhance threat detection and incident response capabilities (Preferably in SPL, Python, PowerShell)

  • Must possess IT-I Critical Sensitive security clearance or Tier 5 (T5)

  • Must possess a DOD TOP SECRET Clearance and be eligible for an IT-1 and be eligible for SCI access

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

6:01 min

Handling container constraints and fileless malware

Dimitrij Klesev +1 · LIVE

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:18 min

Evaluating distributed computation networks for AI model execution

Idan Gazit · Coffee With Developers

5:01 min

Bridging the gap between software development and security

Vandana Verma · LIVE

6:18 min

Architecting asynchronous malware scanning for uploaded file contents

Austin Gil · LIVE

Videos

See all

Related articles

See all