Cyber Security Operations Jr Analyst

Spahr Llp
Fort Belvoir, VA, United States
22 days ago
Apply on www.wayup.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Starter
Experience required
1 year minimum
Working hours
Shift work
Job source

Tech stack

Multitier Architecture Bash Shell Cyber Security Computer Networks OSI Models McAfee VirusScan Windows Servers Network Protocols Open Source Technology Windows PowerShell Red Hat Enterprise Linux Wireshark
+6 more
Computer Network Operations Tanium Platform Expertise Information Technology Cybercrime Cyber Warfare Splunk

Job description

The Cyber Security Specialist plays a critical role in protecting DTRA’s enterprise network by providing 24/7 cybersecurity monitoring, threat detection, and incident response support. Working alongside Cybersecurity Service Provider (CSSP) analysts, engineers, and agency stakeholders, you will help identify emerging threats, assess risk, investigate security events, and support the defense of mission-critical systems. This position is ideal for candidates who enjoy threat hunting, cybersecurity operations, incident response, and working in a fast-paced environment focused on protecting national security interests. **Key Responsibilities **

  • Collect and analyze network and/or host artifacts from a variety of sources to include logs, system images and packet captures to characterize activity, determine root cause, operational impact, and to enable rapid remediation and/or mitigation of cyber threats within the Enterprise Network through the investigation process.
  • Perform initial cyber incident triage; to include determining initial scope, urgency, and potential impact; identifying the specific vulnerability; escalating incidents to Tier II analysts.
  • Must be familiar with the DoDI 8530.01 (Cybersecurity Activities Support to DoD Information Network Operations).
  • Manage and document cyber defense incidents from initial detection through escalation.
  • In support of the DTRA J6C Cybersecurity Department, the Cyber Security Analyst will provide the required resources and expertise to support 24x7x365 cybersecurity monitoring and response across DTRA’s distributed network operations environment.
  • Working with the DTRA J6C, contractor CSSP analysts and engineers shall collaborate with various teams throughout the agency to process intelligence, determine threat, develop mitigations, monitor for attacks, and assess risk while providing cyber based Situational Awareness to agency leadership and stakeholders.
  • The Cyber Security Specialist will monitor computer network defense services in a manner that effectively safeguards the confidentiality, integrity, and availability of DTRA-supported network environments and Information Technology infrastructure.
  • The Cyber Security Specialist will provide the required resources and expertise to ensure compliance with DoD CSSP Evaluators Securing Metrics (ESM). In addition, the Cyber Security Specialist will provide support within the existing CSSP structure which includes four simultaneously running processes tooled to assist and defend the system subscriber. The Cybersecurity Analyst is responsible for network threat monitoring across a variety of tools.
  • The analyst must also be proficient in conducting research on threats and adversaries across various open source and government database platforms. The ability to work effectively within a team is essential, as the analyst will be required to share and discuss information discovered during the research and monitoring process.

Requirements

  • Must have Active DoD Top Secret clearance
  • IAT Level II certification and CSSP Analyst certification (Security+ CE or better, CEH or better)
  • Computing Environment certification desired (Windows Server 2022, Red Hat security, Splunk Power User etc.)
  • Experience with open-source research, analyzing network traffic, analyzing windows logs, experience with network and host-based security systems, experience with SIEMs, basic knowledge of network topography, intermediate understanding of network protocols, and through understanding of the OSI model.
  • Experience with Splunk and Trellix ESS (McAfee HBSS)
  • Minimum 1 year of cyber security analyst experience or 3 years of IT experience, + SANS GCIH or similar certification
  • Tanium Interact Module experience
  • Wireshark experience
  • Open source research experience
  • PowerShell and Bash use
  • 1 year experience working at a CSSP
  • Familiarity with CJCSM 6510.01B

About the company

Our DoW CSSP operates 24x7x365 to defend the network. This role requires shift work, which means you will likely work nights, weekends, and federal holidays. You must be fully prepared and willing to commit to this schedule.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.wayup.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

3:19 min

Setting up a vulnerable test application and monitoring environment

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · World Congress 2024

2:12 min

Integrating tool definitions for local bash shell execution

Michał Michalczuk Michał Michalczuk · Europe 2026 Virtual

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

Videos

See all

Related articles

See all