> Markdown version of [/jobs/ext/3041261-descriptioncomputer-network-defense-analyst-cnd-analyst](https://www.wearedevelopers.com/jobs/ext/3041261-descriptioncomputer-network-defense-analyst-cnd-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # DescriptionComputer Network Defense Analyst - CND Analyst - **Company:** Horizons Incorporated - **Location:** Fort Belvoir, VA, United States - **Experience:** Experienced - **Salary:** $120,000.0 - $125,000.0 - **Contract:** Permanent contract - **Skills:** Cyber Security, Computer Networks, Information Leak Prevention, Intrusion Detection Systems, Python (Programming Language), Open Source Intelligence, Windows PowerShell, Security Information and Event Management, Software Vulnerability Management, Malware, Cyber Threat Analysis, Firewalls (Computer Science), Information Technology - **Published:** September 23, 2026 - **Apply:** https://www.thejobnetwork.com/job/446cb3a0-65e1-452d-bbc5-9a3c48bf1af5/computer-network-defense-analyst-eairs ## About the Role + 5 years relevant Cybersecurity/IT experience + IAT II: One of the following o CCNA-Security; CySA+; GICSP; GSEC; Security+ CE; CND; SSCP + CNDSP/CSSP-IR + Must have one of the "Computer Network Defense" CE Certifications within six (6) months of onboarding., * Five (5) years of relevant IT experience. * Two (2) years performing root cause analysis of cybersecurity events and incidents + Working knowledge of at least at least two types of security tools: o Firewall o IDS/IPS o Host based antivirus o Data loss prevention o Vulnerability Management o Forensics o Malware Analysis o Device Hardening + Understanding of Defense-in-Depth + Ability to build scripts and tools to enhance threat detection and incident response capabilities (Preferably in SPL, Python, PowerShell) * Must possess a DOD Top Secret Clearance. * Must possess a relevant certification meeting the DOD 8570.01 IAT level II. One of the following: + CCNA-Security, * Must maintain CNDSP/CSSP-IR * Must have one of the "Computer Network Defense" CE Certifications within six (6) months of onboarding. ## Description * Participates in 24x7x365 monitoring DLA's SIEM and other cybersecurity monitoring tools in an effort to detect and respond to cybersecurity threats within DLA's Enterprise Network Environment. * Performs actions to protect, monitor, detect, analyze, and respond to unauthorized activity. * Employs Cybersecurity capabilities and deliberate actions to respond to specific alerts or emerging threats. * Reviews logged events for trends that are indicative of attack or compromise within the environment. * Actively monitors logs and traffic for Advanced Persistent Threats (APT) and "low and slow" attacks within the environment. * Maintains awareness of possible threats through the use of intelligence resources to include Open-Source Intelligence (OSINT). * Provides technical analysis and sustainment support for the enterprise for IA tools and applications and assists with the application of Defense-In-Depth signatures and perimeter defense controls to diminish network threats., This project supports DLA Cybersecurity in performing CSSP functions for DLA to include but not limited to performing incident response and cybersecurity content development focused on but not limited to externally hosted programs and applications. Coordinates with DLA stakeholder groups to ensure incident handling is conducted across the enterprise to protect DLA data, networks, applications both internally and externally hosted in accordance with DoD directives. ## Related Videos - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Enhancing Workload Security in Kubernetes](https://www.wearedevelopers.com/videos/356-enhancing-workload-security-in-kubernetes) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Distributed search under the hood](https://www.wearedevelopers.com/videos/256-distributed-search-under-the-hood) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Full Spectrum File Uploads](https://www.wearedevelopers.com/videos/870-full-spectrum-file-uploads) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Top 6 Hackathons for Developers in 2023](https://www.wearedevelopers.com/magazine/263-top-6-hackathons-for-developers-in-2023) - [The 10 C++ programming questions to expect in an interview](https://www.wearedevelopers.com/magazine/50-the-10-c-programming-questions-to-expect-in-an-interview) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)