Host Based Systems Analyst III

Solutions3 LLC

$110K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • US Citizenship
  • Active TS/SCI clearance
  • 5+ years relevant experience in cyber forensic investigations
  • Strong understanding of cloud environments (SaaS, PaaS, IaaS)
  • Expertise in forensic analysis and reporting of cyber incidents

Responsibilities

  • Conduct forensic acquisition and analysis from cloud platforms to identify compromises
  • Investigate incidents targeting cloud and hybrid identity
  • Correlate cloud events with network telemetry for attack reconstruction
  • Develop automation and detection logic using cloud tools and scripting
  • Produce thorough technical reports and support incident response development
  • Enhance threat emulation and investigative capabilities through project support
  • Coordinate investigations with internal teams and external stakeholders

Benefits

  • Support for continuous education and professional development
  • Access to cutting-edge tools and technologies
  • Collaboration with highly skilled professionals
  • Opportunity to work on mission-critical government projects
Full Job Description
Title: Host Based Systems Analyst III

Description:
Solutions³ LLC is supporting our prime contractor and their U.S. Government customer on a large mission-critical provide remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based, and cloud-based cybersecurity analysis capabilities. Personnel provide front line response for digital forensics/incident response (DFIR) and proactively hunting for malicious cyber activity. Solutions³ LLC is seeking Cyber Network Defense Analysts (CNDA) with Cloud Forensics experience to support this critical customer mission.

Eligibility:
  • Must be aUS Citizen
  • Must have anactive TS/SCIclearance
  • Must be able to obtainDHS Suitabilityprior to starting employment
  • 5+ years of direct relevant experience in cyber forensic investigations using leading tools and techniques
Responsibilities Include:
  • Conduct forensic acquisition and analysis from on-premises and cloud platforms (Entra ID/Azure AD, M365, AWS, GCP, SaaS) to identify compromise activity, persistence mechanisms, and data exfiltration.
  • Investigate and respond to incidents and attacks targeting cloud and hybrid identity.
  • Correlate cloud control-plane events and network telemetry (e.g., Azure Activity Logs, AWS CloudTrail, VPC Flow Logs) to reconstruct attacker timelines, validate IOCs, and identify post-compromise privilege escalation.
  • Develop and operationalize detection logic and automation using cloud-native tools (Microsoft Defender, Sentinel, AWS GuardDuty, GCP Chronicle) and scripting (PowerShell, Python, Bash), integrating threat intelligence feeds and indicators.
  • Produce technical reports, incident documentation, and containment recommendations integrating cloud, identity, and endpoint findings; support development of incident response playbooks and procedures for cloud and hybrid environments.
  • Support cloud development and automation projects to enhance threat emulation, investigative, and hunting capabilities.
  • Coordinate with internal teams, government staff, and external stakeholders to validate alerts and investigate preliminary findings.
Required Skills:
  • Strong understanding of SaaS, PaaS, and IaaS in cloud environments, and hybrid identity security.
  • Expertise in acquiring forensically sound evidence, analyzing attacks, and reporting findings.
  • Knowledge of M365/Azure, hybrid identity, and threats targeting these solutions.
  • Knowledge of AWS, IAM, and best practices for cloud identity security.
Desired Skills:
  • Strong API and scripting skills (PowerShell, Python, Bash, JavaScript) for automation and threat detection.
  • Knowledge of common and advanced cloud attacks and techniques, and how to detect and mitigate these threats.
  • Proficiency with cloud automation and orchestration tools (Terraform, Kubernetes, CloudFormation, Azure Resource Manager, Docker).
Desired Certifications: One or more of the following certifications: GCLD, GCFR, GCFA, GCFE, GCIH, EnCE, CCE, CFCE, CISSP, CCSP, AWS or Microsoft Cloud/Security certifications
Required Education: BS in Computer Science, Cybersecurity, Computer Engineering or related degree; or HS Diploma and 7+ years of relevant experience

Similar Jobs

More Jobs at Solutions3 LLC

More Information Technology Jobs

Find similar Host Based Systems Analyst III jobs: