Talent.com
Tier 2 Cyber Incident Response Team (CIRT) Analyst with Security

Tier 2 Cyber Incident Response Team (CIRT) Analyst with Security

INTERNETWORK CONSULTING SERVICES LLCBeltsville, MD, US
job_description.job_card.variable_hours_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Overview

In this role, you will need to :

Responsibilities

  • Detect, classify, process, track, and report on cyber security events and incidents.
  • Perform advanced in–depth analysis of coordinated Tier 1 alert triage and requests in a 24x7x365 environment.
  • Analyze logs from multiple sources (e.g., host logs, EDR, firewalls, intrusion detection systems, servers) to identify, contain, and remediate suspicious activity.
  • Characterize and analyze network traffic to identify anomalous activity and potential threats.
  • Protect against and prevent potential cyber security threats and vulnerabilities.
  • Perform forensic analysis of hosts artifacts, network traffic, and email content.
  • Analyze malicious scripts and code to mitigate potential threats.
  • Conduct malware analysis to generate IOCs to identify and mitigate threats.
  • Collaborate with Department of State teams to analyze and respond to events and incidents.
  • Monitor and respond to the CIRT Security Orchestration and Automation Response (SOAR) platform, hotline, email inboxes.
  • Create tickets and initiate workflows as instructed in technical SOPs.
  • Coordinate and report incident information to the Cybersecurity and Infrastructure Security Agency (CISA).
  • Collaborate with other local, national and international CIRTs as directed.
  • Submit alert tuning requests.

Qualifications

  • Bachelor's degree and at least 2 years of experience or a High School diploma and 6 years of experience.
  • Must possess one of the following certifications prior to start date : A+ CE, CCNA–Security, CND, Network+ CE, SSCP, Security+.
  • Demonstrated experience in the Incident Response lifecycle.
  • Knowledge of SOAR ticketing and automated response systems (e.g. ServiceNow, Splunk SOAR, Microsoft Sentinel).
  • Demonstrated experience with using Security Information and Event Management (SIEM) platforms (e.g. Splunk, Microsoft Sentinel, Elastic, Q–Radar).
  • Demonstrated experience in using Endpoint Detection and Response systems (e.g. MDE, ElasticXDR, CarbonBlack, Crowdstrike).
  • Knowledge of cloud security monitoring and incident response.
  • Knowledge of integrating IOCs and Advanced Persistent Threat actors.
  • Ability to analyze cyber threat intelligence reporting and understanding adversary methodologies and techniques.
  • Knowledge of malware analysis techniques.
  • Knowledge of the MITRE ATT&CK and D3FEND frameworks.
  • Preferred Qualifications

  • Proficiency with Splunk for security monitoring, alert creation, and threat hunting.
  • Knowledge of Microsoft Azure access and identity management.
  • Proficiency with Microsoft Defender for Endpoint and Identity for security monitoring, response, and alert generations.
  • Experience in using digital forensics collection and analysis tools (e.g. Autopsy, MagnetForensics, Zimmerman–Tools, KAPE, CyLR, Volatility).
  • Experience with using ServiceNow SOAR for ticketing and automated response.
  • Knowledge of Python, PowerShell and BASH scripting languages.
  • Experience with cloud security monitoring and incident response.
  • Demonstrated ability to perform static / dynamic malware analysis and reverse engineering.
  • Experience with integrating cyber threat intelligence and IOC–based hunting.
  • Technical certifications such as : Security+, CySA+, Cloud+, Try Hack Me SAL1, Hack the Box CDSA, CyberDefenders, CCD, Azure SC–900, CCSP, GCIH, CCSK, GSEC, CHFI, GCLD, GCIA.
  • Advanced technical certifications such as : SecurityX / CASP+, PRMP, GREM, GEIR, GNFA, or GCFA.
  • J-18808-Ljbffr

    serp_jobs.job_alerts.create_a_job

    Incident Response • Beltsville, MD, US

    Job_description.internal_linking.related_jobs
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Counterintelligence Cyber Threat Technical Analyst Level III

    Counterintelligence Cyber Threat Technical Analyst Level III

    MedStar HealthFort Belvoir, VA, US
    serp_jobs.job_card.full_time
    NGA Ft Belvoir, VA - Fort Belvoir, VA.System High Corporation delivers the most advanced protection and secrecy solutions to secure and strengthen critical missions, programs, operations, and intel...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Cyber Security Analyst

    Cyber Security Analyst

    TekSynapFort Belvoir, VA, US
    serp_jobs.job_card.full_time
    Responsibilities & Qualifications.Collect and analyze network and / or host artifacts from a variety of sources to include logs, system images and packet captures to characterize activity, determ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    Senior Consultant, Cyber Incident Response

    Senior Consultant, Cyber Incident Response

    Control RisksWashington, DC, US
    serp_jobs.job_card.full_time +1
    serp_jobs.filters_job_card.quick_apply
    The Senior Consultant is responsible for delivering Incident Response support to our clients by helping them investigate and remediate the impacts of cyber attacks quickly and comprehensively.This ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Cyber Incident Response Analyst

    Cyber Incident Response Analyst

    Leidos IncAshburn, VA, United States
    serp_jobs.job_card.full_time
    Leidos is seeking a highly skilled.Cyber Incident Response Analyst.Security Operations Center (SOC) support, cyber analysis, and application development. This role supports the DHS SOC, which is res...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Cyber Security Analyst (Tier 2)

    Cyber Security Analyst (Tier 2)

    CyberSheathReston, VA, US
    serp_jobs.job_card.full_time
    CyberSheath Services International LLC is a rapidly growing Security and IT Managed Services Provider focused on Cybersecurity for the Defense Industrial Base (DIB). We are expanding and seeking a C...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    RMF Cybersecurity Analyst - TS / SCI with CI Poly

    RMF Cybersecurity Analyst - TS / SCI with CI Poly

    ENS Solutions, LLCMcLean, VA, US
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Our work depends on a Risk Management Framework Cybersecurity Analyst joining our team to support Government activities.As a RMF Cybersecurity Analyst supporting the Federal Government and the Inte...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Travel Board Certified Behavioral Analyst (BCBA) - School in Bowie, MD

    Travel Board Certified Behavioral Analyst (BCBA) - School in Bowie, MD

    AlliedTravelCareersGermantown, Maryland, US
    serp_jobs.job_card.full_time
    AlliedTravelCareers is working with Aequor to find a qualified BCBA - School in Bowie, Maryland, 20715!.Aequor is now hiring a full-time Board Certified Behavior Analyst (BCBA) for the 2023-2024 sc...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Senior Security Assurance Analyst

    Senior Security Assurance Analyst

    VirtualVocationsAlexandria, Virginia, United States
    serp_jobs.job_card.full_time
    Security Assurance Analyst to lead the design, implementation, and optimization of enterprise information security controls and compliance programs. Key Responsibilities Lead and maintain SOC 2 an...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_day
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Target Digital Network Analyst, Senior

    Target Digital Network Analyst, Senior

    Booz Allen HamiltonFort Meade, MD, US
    serp_jobs.job_card.full_time +1
    Your growth matters to us - explore our career development opportunities.Connect with others in our people-first culture and enhance our collective ingenuity. Learn how we'll support you as you purs...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    DoD Cybersecurity Analyst

    DoD Cybersecurity Analyst

    VirtualVocationsArlington, Virginia, United States
    serp_jobs.job_card.full_time
    A company is looking for a Cyber Analyst to support a critical software modernization initiative.Key Responsibilities Implement secure system improvements that meet DoD cybersecurity standards M...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    PPSM Cyber Analyst

    PPSM Cyber Analyst

    Leidos IncOdenton, MD, United States
    serp_jobs.job_card.full_time
    Leidos is seeking a Ports, Protocols, and Services Management (PPSM) Engineer in Ft Meade, MD.Our PPSM team provides end-to-end data protection by ensuring communication protocols in the Internet p...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Tier 2 Cyber Incident Response Team (CIRT) Analyst

    Tier 2 Cyber Incident Response Team (CIRT) Analyst

    PeratonBeltsville, MD, US
    serp_jobs.job_card.temporary
    Bachelor's degree and at least 2 years of experience or a High School diploma and 6 years of experience.Must possess one of the following certifications prior to start date : .A+ CE, CCNA-Security, C...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Monitoring Cyber Incident Response Team (CIRT) Analyst

    Monitoring Cyber Incident Response Team (CIRT) Analyst

    PeratonBeltsville, MD, US
    serp_jobs.job_card.temporary
    Monitoring Cyber Incident Response Team (CIRT) Analyst.Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest re...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Sr. Offensive Cyber Security Analyst

    Sr. Offensive Cyber Security Analyst

    T. Rowe PriceOwings Mills, MD, US
    serp_jobs.job_card.full_time
    Rowe Price, we identify and actively invest in opportunities to help people thrive in an evolving world.As a premier global asset management organization with more than 85 years of experience, we p...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    Cyber Security Analyst

    Cyber Security Analyst

    Leidos IncAdelphi, MD, United States
    serp_jobs.job_card.full_time
    Leidos Enterprise & Cyber Solutions Defense group is seeking a Junior Cyber Security Analyst to support the C5ISR DCSB contract for a Full Time opening. This position is supporting US Army Command, ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Cyberspace Intelligence Threat Analyst, Journeyman

    Cyberspace Intelligence Threat Analyst, Journeyman

    Leidos IncOdenton, MD, United States
    serp_jobs.job_card.full_time
    Looking for an opportunity to make an impact?.At Leidos, we deliver innovative solutions through the efforts of our diverse and talented people who are dedicated to our customers' success.We empowe...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Senior Detection Analyst

    Senior Detection Analyst

    VirtualVocationsAlexandria, Virginia, United States
    serp_jobs.job_card.full_time
    A company is looking for a Detection & Response Analyst.Key Responsibilities Act as the point of escalation for security incidents and lead the Incident Detection team Triage security incidents ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Cyber Security Protect Analyst Lead

    Cyber Security Protect Analyst Lead

    TekSynapFort Belvoir, VA, US
    serp_jobs.job_card.full_time
    The Protect team serves as the Subscriber Cybersecurity Liaison and provides dedicated cybersecurity support.The following are required responsibilities for this position : .Vulnerability Analysis an...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours