Network Based Systems Analyst III

Solutions3 LLC

$94K — $112K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • US Citizenship
  • Active TS/SCI clearance
  • 5+ years of relevant network investigation experience
  • In-depth knowledge of CND policies and TCP/IP protocols
  • Experience with network topology evaluation and security best practices

Responsibilities

  • Assist in coordinating preliminary incident response investigations
  • Interfacing with the customer on-site
  • Determine actions in response to anomalous network activity
  • Assess network topologies for security vulnerabilities
  • Collect and analyze network intrusion artifacts
  • Analyze malicious network activity for weaknesses and exploitation methods
  • Real-time handling of Computer Network Defense incidents

Benefits

  • Onsite work environment
  • Opportunity to work on critical cybersecurity missions
  • Collaboration with government and agency partners
  • Exposure to advanced network defense technologies
  • Professional development in cybersecurity practices
Full Job Description
Title: Network Based Systems Analyst III

SALARY RANGE:
$94,000-$112,000
Onsite

Description:
Solutions³ LLC is seeking a Cyber Network Defense Analysts (CNDA) to support this critical mission by providing front line response for digital forensics/incident response (DFIR) and proactively hunting for malicious cyber activity.

Eligibility:
  • Must be aUS Citizen
  • Must have anactive TS/SCIclearance
  • Must be able to obtainDHS Suitabilityprior to starting employment
  • 5+ years of directly relevant experience in network investigations
Responsibilities Include:
  • Assists the Government lead in coordinating teams in preliminary incident response investigations
  • Assists the Government lead with interfacing with the customer while on site
  • Determines appropriate courses of actions in response to identified and analyses anomalous network activity
  • Assesses network topology and device configurations identifying critical security concerns and providing security best practice recommendations
  • Collects network intrusion artifacts (e.g., PCAP, domains, URI's, certificates, etc.) and uses discovered data to enable mitigation of potential Computer Network Defense incidents
  • Analyzes identified malicious network activity to determine weaknesses exploited, exploitation methods, effects on system and information
  • Collects network device integrity data and analyze for signs of tampering or compromise
  • Assists with real-time CND incident handling (i.e., forensic collections, intrusion correlation and tracking, threat analysis, and advising on system remediation) tasks to support onsite engagements
Required Skills:
  • In depth knowledge of CND policies, procedures and regulations
  • In depth knowledge of TCP/IP protocols
  • In depth knowledge of standard protocols - ICMP, HTTP/S, DNS, SSH, SMTP, SMB, NFS, etc.
  • In depth knowledge and experience of Wifi networking
  • In depth knowledge and experience of network topologies DMZ's, WAN's, etc.
  • Substantial knowledge of Splunk (or other SIEM's)
  • Understanding of MITRE Adversary Tactics, Techniques and Common Knowledge (ATT&CK)
  • Knowledge of Computer Network Defense policies, procedures, and regulations
  • Knowledge of defense-in-depth principles and general attack stages with respect to network security architecture
  • Ability to characterize and analyze network traffic to identify anomalous activity and potential threats to network resources
  • Ability to identify and analyze anomalies in network traffic using metadata
  • Experience with reconstructing a malicious attack or activity based on network traffic
  • Experience examining network topologies to understand data flows through the network
  • Must be able to work collaboratively across physical locations
Desired Skills:
  • Substantial knowledge of network device integrity concepts and methodologies
  • Proficiency with network analysis software (e.g. Wireshark)
  • Proficiency with carving and extracting information from PCAP data
  • Proficiency with non-traditional network traffic (e.g. Command and Control)
  • Proficiency with preserving evidence integrity according to standard operating procedures or national standards
  • Proficiency with virtualized environments
Desired Certifications:
  • DoD 8140.01 IAT Level II, IASAE II, CSSP Analyst, GCIA, GCIH, CSSP Analyst/CSSP Incident Responder, CEH
  • SANS GIAC GNFA preferred
Required Education: Bachelor of Science in Computer Science, Cyber Security, Computer Engineering, or related degree; or High School Diploma and 7-9 years of network investigations experience

Similar Jobs

More Jobs at Solutions3 LLC

More Information Technology Jobs

Find similar Network Based Systems Analyst III jobs: