Cyber Defense Analyst 3

The Swift Group

$49K — $290K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 8 years of experience as a Cyber Defense Analyst in similar scope and complexity programs.
  • Technical bachelor's degree can substitute for 2 years of CDA experience.
  • 2 years of TCP/IP fundamentals experience.
  • 2 years of practical experience with tcpdump or Wireshark.
  • 3 years using security information and event management suites (e.g., Splunk, ArcSight).
  • 3 years of experience in network and threat analysis software utilization.
  • CSSP Analyst baseline certification (CEH, CySA+, CFR, etc.) required.
  • IAT Level I or II certification required.
  • Computing Environment certification for supported systems required.
  • Active TS/SCI security clearance with Polygraph required.

Responsibilities

  • Monitor and detect anomalies using cyber defense tools.
  • Generate and route cybersecurity cases for further action.
  • Conduct advanced manual analysis to uncover unidentified threats.
  • Identify cyber-attack phases using knowledge of common attack vectors.
  • Apply intrusion detection techniques for hosts and networks.
  • Analyze malicious activity to evaluate system weaknesses exploited.
  • Perform event correlation from various sources for situational awareness.
  • Mentor team members and lead as a technical expert.

Benefits

  • Comprehensive healthcare coverage.
  • Wellness programs available.
  • Financial benefits including retirement plans.
  • Education assistance options.
  • Generous time off benefits.
Full Job Description
We are looking for a Cyber Defense Analyst 3 to join a growing team in Annapolis Junction, MD.

Responsibilities:

  • Use cyber defense tools to monitor, detect, analyze, categorize, and perform initial triage of anomalous activity.
  • Generate cybersecurity cases (including event's history, status, and potential impact for further action) and route as appropriate.
  • Perform advanced manual analysis to hunt previously unidentified threats.
  • Identify cyber-attack phases based on knowledge of common attack vectors and network layers, models and protocols.
  • Apply techniques for detecting host- and network-based intrusions.
  • Analyze malicious activity to determine weaknesses exploited, exploitation methods, effects on system and information.
  • Perform event correlation using information gathered from a variety of sources within the enterprise to gain situational awareness and determine the effectiveness of an observed attack.
  • Possess deep knowledge of active directory abuse used by attackers for lateral movement and persistence.
  • Perform after-action reviews of team products to ensure completion of analysis.
  • Lead and mentor team members as a technical expert.


Requirements:

  • Eight (8) years of demonstrated experience as a CDA in programs and contracts of similar scope, type, and complexity.
  • A technical bachelor's degree from an accredited college or university may be substituted for two (2) years of CDA experience.
  • Two (2) years of demonstrated and practical experience in TCP/IP fundamentals.
  • Two (2) years of demonstrated experience with tcpdump or Wireshark.
  • Three (3) years of demonstrated experience using security information and event management suites (such as Splunk, ArcSight, Kibana, LogRhythm).
  • Three (3) years of demonstrated experience in network analysis and threat analysis software utilization.
  • CSSP Analyst baseline certification (e.g., CEH, CySA+, CFR, etc.)
  • IAT Level I or II certification
  • Computing Environment (CE) certification for supported systems
  • Global Information Assurances Certificate (GIAC) OR Global Certified Incident Handler (GCIH)
  • US citizenship and an active TS/SCI with Polygraph security clearance required


Pay Range: $49,996.80 - $290,004.00

Pay ranges are a general guideline and not intended as a guaranteed and/or implied final compensation or salary for this job opening. Determination of official compensation or salary relies on several different factors including, but not limited to: level of position, complexity of job responsibilities, geographic location, work experience, education, certifications, Federal Government contract labor categories, and contract wage rates.

At The Swift Group and Subsidiaries, you will receive comprehensive benefits including but not limited to: healthcare, wellness, financial, retirement, education, and time off benefits.

Similar Jobs

More Jobs at The Swift Group

More Information Technology Jobs

Find similar Cyber Defense Analyst 3 jobs: