Incident Handler

Alaka'ina Foundation Family of Companies

$75K — $95K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or related field, or equivalent experience.
  • At least one relevant certification (e.g., Cloud+, Security+, PenTest+) in lieu of degree.
  • Must obtain designated Computing Environment certifications within 6 months of hire.
  • Proficient in security tools like SIEM, IDS/IPS, firewalls, and EDR solutions.
  • Experienced in network and system administration with knowledge of network protocols.

Responsibilities

  • Monitor security sensors for threat analysis and maintain triage database with current threat data.
  • Coordinate and execute cyber-incident response investigations based on operational environment.
  • Conduct incident analysis and recommend mitigation strategies against advanced persistent threats.
  • Develop and implement detection signatures based on emerging threats and vulnerabilities.
  • Support law enforcement and counterintelligence with required data and analysis.
  • Justify internal defensive measures and recommend actions to operations and maintenance organizations.

Benefits

  • Eligible for a 401K plan with company match.
  • Medical, dental, disability, and life insurance coverage provided.
  • Tuition reimbursement offered for further education.
  • Paid time off and 11 paid holidays available.
Full Job Description
Bering-Alaka`ina Holdings (BAH) is looking for an Incident Handler to support our government customer located in Honolulu, Hawai'i.

DESCRIPTION OF RESPONSIBILITIES:
  • Monitor all sensors and agents managed by the organization for security event analysis and response and maintain and update the triage database with current threat data and response methods in real-time with follow-up.
  • Develop, staff, coordinate, and execute cyber-incident response investigations for the operational environment (unclassified and classified), addressing each pre-determined category of cyber incident detected and addressing priorities, types of internal defensive measures, and potential mitigation strategies to be employed at an acceptable level of risk.
  • Conduct incident analysis and recommend mitigation measures in response to advanced persistent threats (APT), attempted exploits/attacks, and malware delivery, which may include blocking hostile websites or restricting access to specific ports/protocols and/or applications.
  • Develop, test, and implement custom detection signatures and rules based on emerging threats, vulnerabilities, and attack vectors, and actively collaborate with penetration testing teams to validate the effectiveness and accuracy of these signatures through simulated attacks and real-world scenarios, ensuring a robust and resilient defense against evolving cyber threats.
  • Provide support and expertise to law enforcement and counterintelligence (LE/CI) officials, including the provision of required data along with a summary or analysis pertaining specifically to requirements in the LE/CI official request or within Organizational TTPs.
  • Provide justification of internal defensive measures and/or operational impact to a configuration control board (CCB) and/or approving authority (AO) for mitigation action approval and make recommendations to the supported operations and maintenance organization to take necessary actions.
  • Other duties as assigned, by Supervisor.

REQUIRED DEGREE/EDUCATION/CERTIFICATION:
  • A Bachelor of Science degree in Computer Science, Cybersecurity, Information Technology, or a related field (or equivalent work experience).
  • Must meet at least one of the following baseline certifications in lieu of education: Cloud+, CBROPS, GCED, CFR, GFACT, CYSA, GISF, FITSP-O, GSEC, GCFA, PenTest+, GCIA, Security+, GDSA
  • Must meet designated Computing Environment (CE) certifications within 6 months of hire.

REQUIRED SKILLS AND EXPERIENCE:
  • Proficiency in using security tools and technologies, such as SIEM, IDS/IPS, firewalls, and endpoint detection and response (EDR) solutions.
  • Experience with network and system administration, as well as understanding of common network protocols and services.
  • Familiarity with various operating systems, including Windows and Linux.
  • Excellent analytical and problem-solving skills, with the ability to think critically and make quick decisions under pressure.
  • Strong communication and collaboration skills, with the ability to effectively convey technical information to both technical and non-technical audiences.
  • Ability to work independently and as part of a team, demonstrating initiative and adaptability in a fast-paced environment.

DESIRED SKILLS AND EXPERIENCE:
  • Automate various tasks via scripting languages: (PowerShell/Bash/Python, etc.)
  • Develop atomic, statistical, and behavioral rules within SIEM(s): (Splunk/Elastic/Trellix, etc.)
  • Analysis of network alerting within IDS/IPS(s): (Cisco Secure Firewall/Trellix/Security Onion, Snort/Suricata, etc.)
  • NIDS rule creation and tuning: (Snort/Suricata, etc.)
  • PCAP Analysis and associated tools: (TCPDump/Snort/Suricata, Wireshark/Network miner, etc.)
  • Understand logging outputs of Network Security Monitors: (Zeek/Suricata, etc.)
  • Digital Forensic solutions for Hard Drive Imaging analysis: (EnCase, FTK Imager, etc.)
  • Memory Analysis tools for analysis of SWAP & RAM: (Volatility, etc.)
  • Host analysis HID/HIP and other Host solutions: (Trellix HBSS/ePO, Tychon/Tanium, etc.)

REQUIRED CITIZENSHIP AND CLEARANCE:
  • Must be a U.S. Citizen.
  • Must have a TOP SECRET/SCI clearance OR a SECRET clearance with the ability to upgrade.


Bering-Alaka`ina Holdings (BAH) is a fast-growing government service provider. Employees enjoy competitive salaries. Eligible employees enjoy a 401K plan with company match; medical, dental, disability, and life insurance coverage; tuition reimbursement; paid time off; and 11 paid holidays.

Bering-Alaka`ina Holdings (BAH) is comprised of industry-recognized government service firms designated as Alaska Native Corporation (ACN)-owned and 8(a) certified businesses. BAH includes Ke`aki Technologies, LLC; Laulima Government Solutions, LLC; Kūpono Government Services, LLC; Kapili Services, LLC; Po`okela Solutions, LLC; Kīkaha Solutions, LLC; and Pololei Solutions, LLC.

For additional information, please visit www.beringalakaina.com/careers

#LI-JS1

#ClearanceJobs

Similar Jobs

More Jobs at Alaka'ina Foundation Family of Companies

  • Epidemiologist - AWARE
    $70K — $95K *
    San Antonio, TX 78228 (Bexar County)
    Healthcare
    In-Person
  • Epidemiologist
    $70K — $95K *
    Dayton, OH 45424 (Montgomery County)
    Healthcare
    In-Person
  • Intermediate Management Analyst
    $75K — $95K *
    Washington, DC 20011 (District Of Columbia County)
    Aerospace & Defense
    In-Person
  • Program Manager
    $90K — $120K *
    Arlington, VA 22204 (Arlington County)
    Aerospace & Defense
    In-Person
  • Data Visualization Specialist
    $70K — $95K *
    Dayton, OH 45424 (Montgomery County)
    Healthcare
    In-Person

More Information Technology Jobs

Find similar Incident Handler jobs: