Tier 1 Cyber Network Defense Analyst

26 Apr 2024
Apply

DescriptionLeidos is seeking a Tier 1 Cyber Network Defense Analyst (CNDA) to join our team on a highly visible cyber security single-award IDIQ vehicle that provides security operations center (SOC) support, cyber analysis, application development, and a 24x7x365 support staff.Department of Homeland Security (DHS), Network Cyber and Cloud Support (NCCS) is a US Government program responsible to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS Enterprise. As part of NCCS, the DHS Network and Operations Security Center (NOSC) has primary responsibility for monitoring and responding to security events and incidents detected at the Trusted Internet Connection (TIC) and Policy Enforcement Point (PEP) and is responsible for directing and coordinating detection and response activities performed by each Component SOC. Direction and coordination are achieved through a shared DHS incident tracking system and other means of coordination and communication.The Monitoring and Analysis team provide 24x7 support across 4 different shifts. We have Front half shifts (day and night) and back half shifts (day and night). The front half shift will work 12 hour shifts from Sunday – Tuesday and alternating Wednesdays. The back half shift will work 12 hour shifts from Thursday – Saturday and alternating Wednesdays. Candidates must have the ability to work non-core hours, if necessary.Duties include network security monitoring and detection. Proactively searching for threats. Inspect traffic for anomalies and new malware patterns. Investigate and analyze logs. Provide analysis and response to alerts, and document activity in SOC investigations and Security Event Notifications (SENs).Primary Responsibilities

Utilize a SIEM for enterprise monitoring and detection

Create Security Event Notifications to document investigation findings

Perform critical thinking and analysis to investigate cyber security alerts

Analyze network traffic using enterprise tools (e.g. Full PCAP, Firewall, Proxy logs, IDS logs, etc)

Collaborate with team members to analyze an alert or a threat

Stay up to date with latest threats

Monitor shared email box for notifications and requests

Utilize OSINT to aid in their investigation

Contribute to content tuning requests

Basic QualificationsAll Tier 1 Cyber Network Defense Analyst candidates shall have a bachelor’s degree in Computer Science, Engineering, Information Technology, Cybersecurity, or related field AND a minimum of two (2) years professional experience in the areas listed below:

Network Administration

Unix/Linux Administration

Software engineering

Software development

Systems administration

Help desk/IT support

The ideal candidate is a self-motivated individual in pursuit of a career in cyber security.Candidates should also demonstrate the following:

Familiarity with a SOC’s purpose and role within an organization

General understanding of common network ports and protocols (e.g. TCP/UDP, HTTP, ICMP, DNS, SMTP, etc)

Familiarity with network topologies and network security device functions (e.g. Firewall, IDS/IPS, Proxy, DNS, etc).

Familiarity with packet analysis tools such as Wireshark

Able to perform critical thinking and analysis to investigate cyber security alerts

Familiarity with common malware and attack vectors

Familiarity with Windows operating systems and standard OS logging

Familiarity with Antivirus, DLP, and host based firewalls

Must have current TS/SCI. In addition to specific security clearance requirements, all Department of Homeland Security SOC employees are required to obtain an Entry on Duty (EOD) clearance to support this program.

Must have one of the following certifications: A+ CE, CCNA-Security, CND, Network+ CE, SSCP

Candidates should also demonstrate the following:

Familiarity with a SOC’s purpose and role within an organization

General understanding of common network ports and protocols (e.g. TCP/UDP, HTTP, ICMP, DNS, SMTP, etc)

Familiarity with network topologies and network security device functions (e.g. Firewall, IDS/IPS, Proxy, DNS, etc).

Familiarity with packet analysis tools such as Wireshark

Able to perform critical thinking and analysis to investigate cyber security alerts

Familiarity with common malware and attack vectors

Familiarity with Windows operating systems and standard OS logging

Familiarity with Antivirus, DLP, and host based firewalls

Preferred Qualifications

Familiar with SOC methodologies and processes

Familiarity with scripting languages (e.g. Python, Powershell, Javascript, VBS etc)

Original Posting Date:2024-04-25While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.Pay Range:Pay Range $65,000.00 - $117,500.00The Leidos pay range for this job level is a general guideline onlyand not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.REQNUMBER: R-00134415All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status. Leidos will consider qualified applicants with criminal histories for employment in accordance with relevant Laws. Leidos is an equal opportunity employer/disability/vet.

Full-time
  • ID: #51565850
  • State: Virginia Ashburn 20146 Ashburn USA
  • City: Ashburn
  • Salary: USD TBD TBD
  • Showed: 2024-04-26
  • Deadline: 2024-06-25
  • Category: Et cetera
Apply