Talent.com
serp_jobs.error_messages.no_longer_accepting
Incident Response Analyst

Incident Response Analyst

PeratonFort Huachuca, AZ, US
job_description.job_card.1_day_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Overview

Secure Division Support. The GCC provides CSSP responsibilities and conducts DODIN Operations and DCO – Internal Defensive Measures (IDM) to protect the DODIN IAW the DoDM 8530.01 and the DoD Cybersecurity Services Evaluator Scoring Metrics (ESM). These responsibilities are broken into five (5) CSSP functions; Identify, Protect, Detect, Respond, and Recover. GCC is responsible to conduct these functions for its assigned portion of the DODIN for both unclassified and classified networks / systems. The division provides support services for the protection, monitoring, analysis, detection, and response to unauthorized activity within the DoD Information Systems and Networks. DCO-IDM services are required to defend against unauthorized activity on all Army assets residing on the NIPRNet and SIPRNet. The division provides defensive measures to protect and defend information, computers, and networks from disruption, denial, degradation, or destruction. The division provides sensor management and event analysis and response for network and host-based events. For sensor management, the division provides management of in-line Network Intrusion Protection System / Network Intrusion Detection System (NIPS / NIDS) sensors monitoring all CONUS DoDIN-A NIPRNet and SIPRNet Enterprise traffic to detect sensor outages and activities that attempt to compromise the confidentiality, integrity, or availability of the network. In coordination with GCC Operations, DCO initiates defensive security procedures upon detection of these attacks. Event analysis and response includes the processes involved with reducing multiple cyber incidents to actual malicious threat determinations and mitigating those threats IAW guidance received from GCC Government leadership. Support the Government in providing services for CSSP services on both the NIPRNet and SIPRNet IAW Appendix E : Secure Division Workload Assessment in support of the CONUS portion of the DoDIN-A. Develop reports and products, both current and long-term, in support of CSSP and course of action development. Prepare Tactics, Techniques, and Procedures (TTP), SOPs, Executive Summary (EXSUMS), trip reports, and information / point papers. Contribute during the preparation of agreements, policy, and guidance documentation such as Memorandums of Understanding / Agreement (MOU / A), Service Level Agreements (SLA).

Responsibilities

  • Identify, Protect, Detect, Respond, and Recover CSSP functions for assigned DoDIN segments (unclassified and classified).
  • Provide support services for protection, monitoring, analysis, detection, and response to unauthorized activity within DoD Information Systems and Networks.
  • Defend DCO-IDM on Army assets residing on the NIPRNet and SIPRNet.
  • Deliver defensive measures to protect information, computers, and networks from disruption, denial, degradation, or destruction.
  • Provide sensor management and event analysis / response for network and host-based events, including management of in-line NIPS / NIDS sensors for CONUS DoDIN-A NIPRNet / SIPRNet traffic.
  • Coordinate with GCC Operations to initiate defensive security procedures upon attack detection.
  • Engage in event analysis and response to determine malicious threats and mitigate per GCC guidance.
  • Develop reports and products (current and long-term) to support CSSP and course of action development.
  • Prepare TTPs, SOPs, EXSUMS, trip reports, and information / point papers; contribute to MOU / Agreement (MOU / A) and SLA documentation.
  • SIEM Tool Support : provide administrator support to maintain connectivity between devices and SIEM, update event analysis rules, communicate storage requirements (approximately 12 months of online security events, up to ~4 TB), and maintain SIEM rules for optimal detection of malicious activity.

Qualifications

  • Basic Qualifications :
  • Minimum of 8 years with BS / BA; Minimum of 6 years with MS / MA; Minimum of 3 years with PhD
  • Possess and maintain a Secret clearnace with the ability to obtain a TS / SCI security clearance
  • Certifications : DCWF Code 511 Advanced : Cisco Certified CyberOps Associate or CompTIA Cybersecurity Analyst (CySA+) or CyberSec First Responder (CFR) or Federal IT Security Professional-Operator-NG (FITSP-O) or GIAC Certified Forensics Analyst (GCFA) or GIAC Certified Intrusion Analyst (GCIA) or GIAC Defensible Security Architecture (GDSA) or GIAC Global Industrial Cyber Security Professional (GICSP) or GIAC Security Essentials Certification (GSEC)
  • Proven experience in maintaining accurate records of customer interactions.
  • Strong management and scheduling skills.
  • Experience with O365.
  • Problem-solving ability and demonstrates flexibility with the ability to multi-task.
  • Possess attention to detail and follow-through.
  • Ability to be flexible, organize priorities in a fast-paced work environment, while maintaining a high level of focus and accuracy.
  • High level of professionalism and ability to maintain confidentiality.
  • Capable of following detailed training documentation.
  • Expertise in fostering teamwork and collaboration.
  • Ability to provide timely feedback and responses.
  • Willingness to work weekend and support rotating shifts
  • J-18808-Ljbffr

    serp_jobs.job_alerts.create_a_job

    Incident Response Analyst • Fort Huachuca, AZ, US

    Job_description.internal_linking.related_jobs
    National Defense Network Information Assurance / ACAS Senior Engineer (SME)

    National Defense Network Information Assurance / ACAS Senior Engineer (SME)

    Vision Information Technology Consultants LLCSierra Vista, AZ, USA
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Vision IT is a woman-owned small business that has supported DoD and Federal Sector IT initiatives for over two decades.We believe in PEOPLE FIRST, COMPASSION, and SERVANT LEADERSHIP.We work side-b...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Border Patrol Agent

    Border Patrol Agent

    U.S. Customs and Border ProtectionPatagonia, AZ, United States
    serp_jobs.job_card.full_time
    Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of highly trained professionals whose camaraderie, p...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Tax Expert

    Tax Expert

    IntuitVail, AZ, US
    serp_jobs.job_card.full_time
    Overview Intuit is seeking highly motivated individuals to join our dynamic team as dedicated TurboTax Live Seasonal Local Service Experts in one of our new TurboTax locations across the United Sta...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    Environmental Programs Specialist (Multimedia & Emergency Response) Job at Dawso

    Environmental Programs Specialist (Multimedia & Emergency Response) Job at Dawso

    MediabistroFort Huachuca, AZ, United States
    serp_jobs.job_card.full_time
    DAWSON is a Native Hawaiian global business enterprise serving the U.Department of Defense and other federal government clients while benefiting the Native Hawaiian community.Aloha (sharing of life...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Remote Commercial Banking Analyst - AI Trainer

    Remote Commercial Banking Analyst - AI Trainer

    Data AnnotationSierra Vista, Arizona
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time +1
    We are looking for a finance professional to join our team to train AI models.You will measure the progress of these AI chatbots, evaluate their logic, and solve problems to improve the q...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    Associate Application Systems Analyst

    Associate Application Systems Analyst

    DirectViz Solutions, LLCSierra Vista, AZ, USA
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    DirectViz Solutions (DVS) is a dynamic and rapidly growing government contractor committed to delivering innovative IT solutions that address the mission-critical needs of our government clients.Th...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Remote Financial Analyst - AI Trainer

    Remote Financial Analyst - AI Trainer

    Data AnnotationSierra Vista, Arizona
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time +1
    We are looking for a finance professional to join our team to train AI models.You will measure the progress of these AI chatbots, evaluate their logic, and solve problems to improve the q...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Border Patrol Agent - Experienced (GL9 / GS11)

    Border Patrol Agent - Experienced (GL9 / GS11)

    U.S. Customs and Border ProtectionPatagonia, AZ, United States
    serp_jobs.job_card.full_time
    Check out these higher-salaried federal law enforcement opportunities with the U.Your current or prior law enforcement experience may qualify you for this career opportunity with the nation's premi...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Marine Interdiction Agent

    Marine Interdiction Agent

    U.S. Customs and Border ProtectionBisbee, AZ, United States
    serp_jobs.job_card.full_time
    Air and Marine Operations (AMO), a component of U.Customs and Border Protection (CBP) offers those with Merchant Mariner Credentials the exceptional opportunity of a career in law enforcement worki...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Remote Senior Financial Analyst - AI Trainer

    Remote Senior Financial Analyst - AI Trainer

    Data AnnotationSierra Vista, Arizona
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time +1
    We are looking for a finance professional to join our team to train AI models.You will measure the progress of these AI chatbots, evaluate their logic, and solve problems to improve the q...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Border Patrol Agent - Experienced (GS11)

    Border Patrol Agent - Experienced (GS11)

    US Customs and Border ProtectionPatagonia, AZ, US
    serp_jobs.job_card.full_time
    Border Patrol Agent (BPA) - Experienced (GL-9 GS-11).Check out these higher-salaried federal law enforcement opportunities with the U. Your current or prior law enforcement experience may quali...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Customs and Border Protection Officer

    Customs and Border Protection Officer

    U.S. Customs and Border ProtectionSonoita, AZ, United States
    serp_jobs.job_card.full_time
    Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of highly trained professionals whose camaraderie, p...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Share Your Thoughts, Pocket Some Cash : Join Opinion Outpost's Survey Opportunities!

    Share Your Thoughts, Pocket Some Cash : Join Opinion Outpost's Survey Opportunities!

    DynataSierra Vista Southeast, AZ, United States
    serp_jobs.job_card.full_time
    Ready to turn your opinions into cash? Explore the world of remote paid online survey gigs with Opinion Outpost!.It's as simple as sharing your thoughts from the comfort of your own home and watchi...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Survey Taker : Earn up to $25 per survey (Remote)

    Survey Taker : Earn up to $25 per survey (Remote)

    Earn HausSierra Vista Southeast, AZ, United States
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time +1
    Looking for people to participate in taking online surveys for Fortune 500 brands.All you need to do is complete online surveys by sharing your opinion. You will help influence brand decisions on se...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Travel CT Technologist - $2,968 per week

    Travel CT Technologist - $2,968 per week

    First Connect HealthBenson, AZ, United States
    serp_jobs.job_card.full_time
    First Connect Health is seeking a travel CT Technologist for a travel job in Benson, Arizona.Job Description & Requirements. Must have 1 year experience minimum.Must have registration through the Am...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    Associate Cyber Incident Handler

    Associate Cyber Incident Handler

    Vision Information Technology Consultants LLCSierra Vista, AZ, USA
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Vision IT is a fast growing, woman-owned business that's supported DoD and Federal Sector IT initiatives for two decades. We work side-by-side with our clients as a trusted, long-term partner offeri...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Travel CT Technologist

    Travel CT Technologist

    Anders GroupBenson, AZ, US
    serp_jobs.job_card.full_time
    Anders Group is seeking a travel CT Technologist for a travel job in Benson, Arizona.Job Description & Requirements.Anders Group is a Joint Commission accredited staffing agency and stands out ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Customs and Border Protection Officer - Experienced (GS9)

    Customs and Border Protection Officer - Experienced (GS9)

    U.S. Customs and Border ProtectionCorona de Tucson, AZ, United States
    serp_jobs.job_card.full_time
    Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of highly trained professionals whose camaraderie, p...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Air Interdiction Agent

    Air Interdiction Agent

    U.S. Customs and Border ProtectionPatagonia, AZ, United States
    serp_jobs.job_card.full_time
    Pilot CBP Air Interdiction Agent.Air and Marine Operations (AMO), a component of U.Customs and Border Protection (CBP), offers skilled Pilots interested in law enforcement an opportunity to work wi...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Travel Echo Technologist

    Travel Echo Technologist

    KPG AlliedBenson, AZ, US
    serp_jobs.job_card.permanent
    KPG Allied is seeking a travel Echo Technologist for a travel job in Benson, Arizona.Job Description & Requirements.Candidates must have at least 1 years of paid experience in the last 3 years....serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days