Overview
Job Description : Network Detection and Response Architect (NDR)
Job ID : 24-1069
Clearance : Active Secret Clearance Required
Location : Arlington, VA (Hybrid)
Navitas is an industry leader in digital transformation, serving commercial, federal, and state and local markets since 2006.
What You’ll Do
As the Network Architect, you’ll be responsible for developing and implementing Network security solutions on our flagship Prime engagement.
- Architect comprehensive NDR solutions tailored to organizational needs
- Implement and configure NDR platforms such as ExtraHop Reveal(x), Darktrace, or Vectra Cognito
- Integrate NDR solutions with existing security infrastructure (SIEM, SOAR, etc.)
- Design and implement network segmentation strategies to minimize attack surface
Responsibilities
Network Traffic AnalysisAnalyze network traffic patterns to identify anomalies and potential threatsDevelop custom detection rules and algorithms for identifying sophisticated attacksUtilize machine learning and AI capabilities of NDR tools for advanced threat detectionPerform regular network behavior analysis to establish baselines and detect deviationsIncident Response and ForensicsLead incident response efforts for network-related security eventsConduct in-depth forensic analysis of security incidentsDevelop and maintain incident response playbooksCoordinate with other security teams during major security eventsContinuous Improvement and OptimizationRegularly assess and optimize NDR tool configurationsStay updated on emerging threats and adjust detection capabilities accordinglyConduct periodic security assessments and penetration testsIdentify and implement new NDR technologies and methodologiesReporting and CommunicationGenerate comprehensive reports on network security status and incidentsPresent findings and recommendations to both technical and non-technical stakeholdersDevelop and deliver training sessions on NDR tools and best practicesCollaborate with cross-functional teams to align NDR strategies with business objectivesCompliance and GovernanceEnsure NDR practices align with regulatory requirements (e.g., GDPR, HIPAA, PCI DSS)Develop and maintain documentation for audits and compliance checksContribute to the development of security policies and proceduresWhat You’ll Need
Technical Expertise
Deep understanding of network protocols (TCP / IP, DNS, HTTP, etc.) and the OSI modelProficiency in network security architectures and best practicesStrong knowledge of common attack vectors and techniques (e.g., APTs, malware, DDoS)Expertise in one or more NDR platforms (ExtraHop, Darktrace, Vectra, etc.)Familiarity with SIEM and SOAR technologiesUnderstanding of encryption technologies and PKIKnowledge of cloud security principles and practicesProgramming and ScriptingProficiency in at least one scripting language (Python, PowerShell, Bash)Experience with API integration and automationAbility to develop custom tools and scripts for security analysisAnalytical and Problem-Solving SkillsStrong analytical thinking and problem-solving abilitiesExperience in interpreting complex data sets and identifying patternsAbility to think like an attacker to anticipate and mitigate threatsSoft SkillsExcellent written and verbal communication skillsStrong leadership and team collaboration abilitiesAbility to explain complex technical concepts to non-technical audiencesProactive and self-motivated with a passion for cybersecurityQualificationsBachelor\'s or Master\'s degree in Computer Science, Cybersecurity, or related field5+ years of experience in network security or related rolesRelevant certifications such asExtraHop Certified ProfessionalCertified Information Systems Security Professional (CISSP)GIAC Security Expert (GSE)Certified Ethical Hacker (CEH)Cisco Certified Network Professional (CCNP) SecurityExperience with threat hunting and advanced persistent threat (APT) detectionFamiliarity with regulatory compliance standards (GDPR, HIPAA, PCI DSS, etc.)Tools and Technologies
NDR Platforms : ExtraHop Reveal(x), Darktrace, Vectra CognitoNetwork Analysis Tools : Wireshark, tcpdump, Netflow analyzersSIEM Systems : Splunk, IBM QRadar, LogRhythmSOAR Platforms : Palo Alto Cortex XSOAR, Swimlane, PhantomFirewalls and IPS / IDS systemsEndpoint Detection and Response (EDR) solutionsCloud Platforms : AWS, Azure, Google CloudVirtualization Technologies : VMware, Hyper-VContainerization and Orchestration : Docker, KubernetesNavitas is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, veteran status, or any other characteristic protected by law.
#J-18808-Ljbffr