Tier 2 Cyber Incident Response Team (CIRT) Analyst with Security
Tier 2 Cyber Incident Response Team (CIRT) Analyst with Security
INTERNETWORK CONSULTING SERVICES LLCBeltsville, MD, US
job_description.job_card.variable_hours_ago
serp_jobs.job_preview.job_type
serp_jobs.job_card.full_time
job_description.job_card.job_description
Overview
In this role, you will need to :
Responsibilities
Detect, classify, process, track, and report on cyber security events and incidents.
Perform advanced in–depth analysis of coordinated Tier 1 alert triage and requests in a 24x7x365 environment.
Analyze logs from multiple sources (e.g., host logs, EDR, firewalls, intrusion detection systems, servers) to identify, contain, and remediate suspicious activity.
Characterize and analyze network traffic to identify anomalous activity and potential threats.
Protect against and prevent potential cyber security threats and vulnerabilities.
Perform forensic analysis of hosts artifacts, network traffic, and email content.
Analyze malicious scripts and code to mitigate potential threats.
Conduct malware analysis to generate IOCs to identify and mitigate threats.
Collaborate with Department of State teams to analyze and respond to events and incidents.
Monitor and respond to the CIRT Security Orchestration and Automation Response (SOAR) platform, hotline, email inboxes.
Create tickets and initiate workflows as instructed in technical SOPs.
Coordinate and report incident information to the Cybersecurity and Infrastructure Security Agency (CISA).
Collaborate with other local, national and international CIRTs as directed.
Submit alert tuning requests.
Qualifications
Bachelor's degree and at least 2 years of experience or a High School diploma and 6 years of experience.
Must possess one of the following certifications prior to start date : A+ CE, CCNA–Security, CND, Network+ CE, SSCP, Security+.
Demonstrated experience in the Incident Response lifecycle.
Knowledge of SOAR ticketing and automated response systems (e.g. ServiceNow, Splunk SOAR, Microsoft Sentinel).
Demonstrated experience with using Security Information and Event Management (SIEM) platforms (e.g. Splunk, Microsoft Sentinel, Elastic, Q–Radar).
Demonstrated experience in using Endpoint Detection and Response systems (e.g. MDE, ElasticXDR, CarbonBlack, Crowdstrike).
Knowledge of cloud security monitoring and incident response.
Knowledge of integrating IOCs and Advanced Persistent Threat actors.
Ability to analyze cyber threat intelligence reporting and understanding adversary methodologies and techniques.
Knowledge of malware analysis techniques.
Knowledge of the MITRE ATT&CK and D3FEND frameworks.
Preferred Qualifications
Proficiency with Splunk for security monitoring, alert creation, and threat hunting.
Knowledge of Microsoft Azure access and identity management.
Proficiency with Microsoft Defender for Endpoint and Identity for security monitoring, response, and alert generations.
Experience in using digital forensics collection and analysis tools (e.g. Autopsy, MagnetForensics, Zimmerman–Tools, KAPE, CyLR, Volatility).
Experience with using ServiceNow SOAR for ticketing and automated response.
Knowledge of Python, PowerShell and BASH scripting languages.
Experience with cloud security monitoring and incident response.
Demonstrated ability to perform static / dynamic malware analysis and reverse engineering.
Experience with integrating cyber threat intelligence and IOC–based hunting.
Technical certifications such as : Security+, CySA+, Cloud+, Try Hack Me SAL1, Hack the Box CDSA, CyberDefenders, CCD, Azure SC–900, CCSP, GCIH, CCSK, GSEC, CHFI, GCLD, GCIA.
Advanced technical certifications such as : SecurityX / CASP+, PRMP, GREM, GEIR, GNFA, or GCFA.
J-18808-Ljbffr
serp_jobs.job_alerts.create_a_job
Incident Response • Beltsville, MD, US
Job_description.internal_linking.related_jobs
serp_jobs.job_card.promoted
serp_jobs.job_card.new
Counterintelligence Cyber Threat Technical Analyst Level III
MedStar HealthFort Belvoir, VA, US
serp_jobs.job_card.full_time
NGA Ft Belvoir, VA - Fort Belvoir, VA.System High Corporation delivers the most advanced protection and secrecy solutions to secure and strengthen critical missions, programs, operations, and intel...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
serp_jobs.job_card.promoted
serp_jobs.job_card.new
Cyber Security Analyst
TekSynapFort Belvoir, VA, US
serp_jobs.job_card.full_time
Responsibilities & Qualifications.Collect and analyze network and / or host artifacts from a variety of sources to include logs, system images and packet captures to characterize activity, determ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
Senior Consultant, Cyber Incident Response
Control RisksWashington, DC, US
serp_jobs.job_card.full_time +1
serp_jobs.filters_job_card.quick_apply
The Senior Consultant is responsible for delivering Incident Response support to our clients by helping them investigate and remediate the impacts of cyber attacks quickly and comprehensively.This ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
serp_jobs.job_card.promoted
Cyber Incident Response Analyst
Leidos IncAshburn, VA, United States
serp_jobs.job_card.full_time
Leidos is seeking a highly skilled.Cyber Incident Response Analyst.Security Operations Center (SOC) support, cyber analysis, and application development.
This role supports the DHS SOC, which is res...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
serp_jobs.job_card.promoted
serp_jobs.job_card.new
Cyber Security Analyst (Tier 2)
CyberSheathReston, VA, US
serp_jobs.job_card.full_time
CyberSheath Services International LLC is a rapidly growing Security and IT Managed Services Provider focused on Cybersecurity for the Defense Industrial Base (DIB).
We are expanding and seeking a C...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
RMF Cybersecurity Analyst - TS / SCI with CI Poly
ENS Solutions, LLCMcLean, VA, US
serp_jobs.job_card.full_time
serp_jobs.filters_job_card.quick_apply
Our work depends on a Risk Management Framework Cybersecurity Analyst joining our team to support Government activities.As a RMF Cybersecurity Analyst supporting the Federal Government and the Inte...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
serp_jobs.job_card.promoted
Travel Board Certified Behavioral Analyst (BCBA) - School in Bowie, MD
AlliedTravelCareersGermantown, Maryland, US
serp_jobs.job_card.full_time
AlliedTravelCareers is working with Aequor to find a qualified BCBA - School in Bowie, Maryland, 20715!.Aequor is now hiring a full-time Board Certified Behavior Analyst (BCBA) for the 2023-2024 sc...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
serp_jobs.job_card.promoted
Senior Security Assurance Analyst
VirtualVocationsAlexandria, Virginia, United States
serp_jobs.job_card.full_time
Security Assurance Analyst to lead the design, implementation, and optimization of enterprise information security controls and compliance programs.
Key Responsibilities Lead and maintain SOC 2 an...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_day
serp_jobs.job_card.promoted
serp_jobs.job_card.new
Target Digital Network Analyst, Senior
Booz Allen HamiltonFort Meade, MD, US
serp_jobs.job_card.full_time +1
Your growth matters to us - explore our career development opportunities.Connect with others in our people-first culture and enhance our collective ingenuity.
Learn how we'll support you as you purs...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
serp_jobs.job_card.promoted
DoD Cybersecurity Analyst
VirtualVocationsArlington, Virginia, United States
serp_jobs.job_card.full_time
A company is looking for a Cyber Analyst to support a critical software modernization initiative.Key Responsibilities Implement secure system improvements that meet DoD cybersecurity standards M...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
serp_jobs.job_card.promoted
PPSM Cyber Analyst
Leidos IncOdenton, MD, United States
serp_jobs.job_card.full_time
Leidos is seeking a Ports, Protocols, and Services Management (PPSM) Engineer in Ft Meade, MD.Our PPSM team provides end-to-end data protection by ensuring communication protocols in the Internet p...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
serp_jobs.job_card.promoted
serp_jobs.job_card.new
Tier 2 Cyber Incident Response Team (CIRT) Analyst
PeratonBeltsville, MD, US
serp_jobs.job_card.temporary
Bachelor's degree and at least 2 years of experience or a High School diploma and 6 years of experience.Must possess one of the following certifications prior to start date : .A+ CE, CCNA-Security, C...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
serp_jobs.job_card.promoted
serp_jobs.job_card.new
Monitoring Cyber Incident Response Team (CIRT) Analyst
PeratonBeltsville, MD, US
serp_jobs.job_card.temporary
Monitoring Cyber Incident Response Team (CIRT) Analyst.Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest re...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
serp_jobs.job_card.promoted
serp_jobs.job_card.new
Sr. Offensive Cyber Security Analyst
T. Rowe PriceOwings Mills, MD, US
serp_jobs.job_card.full_time
Rowe Price, we identify and actively invest in opportunities to help people thrive in an evolving world.As a premier global asset management organization with more than 85 years of experience, we p...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
serp_jobs.job_card.promoted
Cyber Security Analyst
Leidos IncAdelphi, MD, United States
serp_jobs.job_card.full_time
Leidos Enterprise & Cyber Solutions Defense group is seeking a Junior Cyber Security Analyst to support the C5ISR DCSB contract for a Full Time opening.
This position is supporting US Army Command, ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
Looking for an opportunity to make an impact?.At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers' success.We empowe...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
serp_jobs.job_card.promoted
Senior Detection Analyst
VirtualVocationsAlexandria, Virginia, United States
serp_jobs.job_card.full_time
A company is looking for a Detection & Response Analyst.Key Responsibilities Act as the point of escalation for security incidents and lead the Incident Detection team Triage security incidents ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
serp_jobs.job_card.promoted
serp_jobs.job_card.new
Cyber Security Protect Analyst Lead
TekSynapFort Belvoir, VA, US
serp_jobs.job_card.full_time
The Protect team serves as the Subscriber Cybersecurity Liaison and provides dedicated cybersecurity support.The following are required responsibilities for this position : .Vulnerability Analysis an...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours