Cyber Fusion Analyst

Leidos, Inc.
Odenton, United States of America
2 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Compensation
$ 237K

Job location

Odenton, United States of America

Tech stack

Application Layers
Network Analysis
Computer Security
Information Systems
DNS
Identity and Access Management
Intrusion Detection and Prevention
Intrusion Detection Systems
Pcap
NetFlow
Network Monitoring
Packet Analyzer
Open Source Technology
Open Source Intelligence
Open Systems Interconnection (OSI)
ArcSight SIEM Tool
TCP/IP
Wireshark
Data Logging
Computer Network Operations
Mitre Att&ck
Malware
Cyber Threat Analysis
Cyber Warfare
Splunk

Job description

The Leidos Defense Group has an opening for a Cyber Security Fusion Analyst on the DISA GSM-O II program supporting Joint Force Headquarters DODIN at Fort Meade., GSM-O II provides network operations and cyber defense support to the Defense Information Systems Agency (DISA) in support of the DOD and COCOMs. In this role, you will provide support with incident handling, triage of events, network analysis, threat detection, trend analysis, metric development, and vulnerability information dissemination., * Leverage an array of network monitoring and detection capabilities (including netflow, custom application protocol logging, signature-based IDS, and full packet capture (PCAP) data) to identify cyber adversary activity.

  • Support the development of Cyber Fusion standard operating procedures (SOPs), and Cyber Fusion Framework and Methodology based on industry best practice and department of defense instruction, guidance, and policy.
  • Identify threats to the enterprise and provide mitigation strategies to improve security, and reduce the attack surface.
  • Perform analysis by leveraging serialized threat reporting, intelligence product sharing, OSINT, and open source vulnerability information to ensure prioritized plans are developed.
  • Analyze and document malicious cyber actors TTPs, providing recommendations and alignment to vulnerabilities and applicability to the enterprise operational environment.
  • Discover adversary campaigns, anomalies and inconsistencies in sensor and system logs, SIEMs, and other data.
  • Identify, investigate and rule out system compromises, with the capacity to provide written analytic summaries and attack life cycle visualizations.
  • Provide risk assessments and recommendations based on analysis of technologies, threats, intelligence, and vulnerabilities.
  • Offer recommendations to adjust enterprise or tactical countermeasures to for threats impacting the DODIN.
  • Collect analysis metrics and trending data, identify key trends, and provide situational awareness on these trends.

Requirements

  • Active DoD TS/SCI Clearance and eligible for polygraph
  • Bachelor's Degree in related discipline and 12 years of related experience. Additional experience may be accepted in lieu of degree
  • Security+ Certification (or other equivalent DoD 8570 Level II certification)
  • In-depth knowledge of network and application protocols, cyber vulnerabilities and exploitation techniques and cyber threat/adversary methodologies.
  • Proficiency with datasets, tools and protocols that support analysis ( e.g. passive DNS, Virus Total, Recorded Future, TCP/IP, OSI, WHOIS, enumeration, threat indicators, malware analysis results, Wireshark, Splunk, Arcsight etc .).
  • Experience with various open-source and commercial vendor portals, services and platforms that provide insight into how to identify and/or combat threats or vulnerabilities to the enterprise.
  • Proficiency working with various types of network data (e.g. netflow, PCAP, custom application logs), * Experience with the DISN and other DOD Networks.
  • Skilled in building extended cyber security analytics (Trends, Dashboards, etc.).
  • Demonstrated experience briefing Senior Executive Service (SES) and General Officer/Flag Officer (GO/FO) leadership.
  • Experience in intelligence driven defense and/or cyber Kill Chain methodology.
  • IAT Level III and IAM Level II+III Certifications

Benefits & conditions

Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available at www.leidos.com/careers/pay-benefits .

About the company

If you're looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We're not hiring followers. We're recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We're already at step 30 - and moving faster than anyone else dares., Leidos is an industry and technology leader serving government and commercial customers with smarter, more efficient digital and mission innovations. Headquartered in Reston, Virginia, with 47,000 global employees, Leidos reported annual revenues of approximately $16.7 billion for the fiscal year ended January 3, 2025. For more information, visit www.Leidos.com .

Apply for this position