ECS

Cyber Defense Incident Responder - Junior

ECS$75K — $89K *
Education, Government & Non-Profit
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree or higher required.
  • 4+ years of experience in information assurance and network analysis.
  • Knowledge of incident response methodologies and vulnerability sources.
  • Familiarity with network access control and cybersecurity policies.
  • Active Secret clearance or ability to obtain one necessary.

Responsibilities

  • Develop content for cyber defense tools.
  • Analyze network traffic to identify threats and anomalies.
  • Coordinate with cyber defense teams to validate alerts.
  • Ensure cybersecurity products mitigate risks adequately.
  • Document and escalate cybersecurity incidents for further action.
  • Conduct cyber defense trend analysis and reporting.
  • Perform event correlation for situational awareness.

Benefits

  • Opportunity to work with a US Government civilian agency.
  • Immediate availability upon finding a qualified candidate.
  • Involvement in developing cutting-edge cyber defense tools.
  • Exposure to a variety of incident response and analysis methodologies.
  • Access to continuous learning regarding evolving cyber threats.
Full Job Description
Everforth ECS is seeking a Cyber Defense Incident Responder - Junior to work in our Washington, DC office.

The position is full time/permanent and will support a US Government civilian agency. The position is available immediately upon finding a qualified candidate with the appropriate background clearance.

Position Responsibilities:
  • Develop content for cyber defense tools.
  • Characterize and analyze network traffic to identify anomalous activity and potential threats to network resources.
  • Coordinate with enterprise-wide cyber defense staff to validate network alerts.
  • Ensure that cybersecurity-enabled products or other compensating security control technologies reduce identified risk to an acceptable level.
  • Document and escalate incidents (including event's history, status, and potential impact for further action) that may cause ongoing and immediate impact to the environment.
  • Perform cyber defense trend analysis and reporting.
  • Perform event correlation using information gathered from a variety of sources within the enterprise to gain situational awareness and determine the effectiveness of an observed attack.
  • Perform security reviews and identify security gaps in security architecture resulting in recommendations for inclusion in the risk mitigation strategy.
  • Identify and analyze anomalies in network traffic using metadata.
  • Conduct research, analysis, and correlation across a wide variety of all source data sets (indications and warnings).
  • Validate intrusion detection system (IDS) alerts against network traffic using packet analysis tools.

Salary Range: $75,000- $89,000
General Description of Benefits

  • Strong written and verbal communication skills.
  • Ability to interpret the information collected by network tools (e.g., Nslookup, Ping, and Traceroute).
  • Knowledge of host/network access control mechanisms (e.g., access control list, capabilities lists).
  • Knowledge of vulnerability information dissemination sources (e.g., alerts, advisories, errata, and bulletins).
  • Knowledge of incident response and handling methodologies.
  • Knowledge of front-end collection systems, including traffic collection, filtering, and selection.
  • Experience with system administration, network, and operating system hardening techniques.
  • Knowledge of cyber defense and information security policies, procedures, and regulations.
  • Knowledge of the common attack vectors on the network layer.
  • Knowledge of different classes of attacks (e.g., passive, active, insider, close-in, distribution attacks).
  • In-depth understanding of cyber attackers (e.g., script kiddies, insider threat, non-nation state sponsored, and nation sponsored).
  • Knowledge of various types of network communication (e.g., LAN, WAN, MAN, WLAN, WWAN).
  • Knowledge of file extensions (e.g., .dll, .bat, .zip, .pcap, .gzip).
  • Knowledge of front-end collection systems, including traffic collection, filtering, and selection.


Certifications/Licenses:
  • Bachelor's degree or higher
  • 4+ years' experience in Introductory information assurance, networks, sensor operations, network/data analysis, packet capture analysis, hunts methodologies, intelligence analysis
  • Certifications addressing new attack vectors (emphasis on cloud computing technology, mobile platforms and tablet computers), new vulnerabilities, existing threats to operating environments
  • Active Secret clearance or eligible to obtain a Secret clearance

About ECS

ECS is a leading provider of digital solutions and services to the federal government. The company was founded in 2001 by Roy Kapani and has since grown to become a trusted partner to a wide range of government agencies. ECS offers a broad range of services, including cloud computing, cybersecurity, and artificial intelligence. The company has been recognized for its innovative solutions and has won numerous awards, including the AWS Public Sector Partner of the Year award.
Learn more about ECS
Size
2,000 employees
Industry

Similar Jobs

More Jobs at ECS

More Education, Government & Non-Profit Jobs

Find similar Cyber Defense Incident Responder - Junior jobs: