Talent.com
Cyber Network Forensic Analyst II

Cyber Network Forensic Analyst II

NightwingSterling, VA, US
job_description.job_card.variable_hours_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Join to apply for the Cyber Network Forensic Analyst II role at Nightwing

Nightwing provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges. Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical surveillance, data intelligence, lifecycle mission enablement, and software modernization.

Nightwing is supporting a U.S. Government customer to provide support for onsite incident response to civilian Government agencies and critical asset owners who experience cyber-attacks, providing immediate investigation and resolution.

Responsibilities

  • Assists the Government lead in coordinating teams in preliminary incident response investigations;
  • Assists the Government lead with interfacing with the customer while on site;
  • Determines appropriate courses of actions in response to identified and analyses anomalous network activity;
  • Assesses network topology and device configurations identifying critical security concerns and providing security best practice recommendations;
  • Assists with the writing and publishing of Computer Network Defense guidance and reports on incident findings to appropriate constituencies;
  • Collects network intrusion artifacts (e.g., PCAP, domains, URI's, certificates, etc.) and uses discovered data to enable mitigation of potential Computer Network Defense incidents;
  • Analyzes identified malicious network activity to determine weaknesses exploited, exploitation methods, effects on system and information;
  • Collects network device integrity data and analyze for signs of tampering or compromise;
  • Assists with real-time CND incident handling (i.e., forensic collections, intrusion correlation and tracking, threat analysis, and advising on system remediation) tasks to support onsite engagements.

Required Skills

  • U.S. Citizenship
  • Must have an active TS / SCI clearance
  • Must be able to obtain DHS Suitability
  • 5+ years of directly relevant experience in network investigations- In depth knowledge of CND policies, procedures and regulations
  • In depth knowledge of TCP / IP protocols
  • In depth knowledge of standard protocols – ICMP, HTTP / S, DNS, SSH, SMTP, SMB, NFS, etc.
  • In depth knowledge and experience of Wifi networking
  • In depth knowledge and experience of network topologies
  • DMZ's, WAN's, etc.- Substantial knowledge of Splunk (or other SIEM's)
  • Understanding of MITRE Adversary Tactics, Techniques and Common Knowledge (ATT&CK)
  • Knowledge of Computer Network Defense policies, procedures, and regulations
  • Knowledge of defense-in-depth principles and general attack stages with respect to network security architecture
  • Ability to characterize and analyze network traffic to identify anomalous activity and potential threats to network resources
  • Ability to identify and analyze anomalies in network traffic using metadata- Experience with reconstructing a malicious attack or activity based on network traffic
  • Experience examining network topologies to understand data flows through the network
  • Must be able to work collaboratively across physical locations
  • Desired Skills

  • Substantial knowledge of network device integrity concepts and methodologies
  • Proficiency with network analysis software (e.g. Wireshark)
  • Proficiency with carving and extracting information from PCAP data
  • Proficiency with non-traditional network traffic (e.g. Command and Control)
  • Proficiency with preserving evidence integrity according to standard operating procedures or national standards
  • Proficiency with designing cyber security systems and environments in a Linux and / or Windows environment
  • Proficiency with virtualized environments
  • Required Education

    BS Computer Science, Cyber Security, Computer Engineering, or related degree; or HS Diploma & 7-9 years of network investigations experience.

    Desired Certifications

  • DoD 8140.01 IAT Level II, IASAE II, CSSP Analyst- DoD 8140.01 GCIA, GCIH, CSSP Analyst / CSSP Incident Responder- DoD 8140.01 CEH, CSSP Analyst- SANS GIAC GNFA preferred
  • Nightwing is An Equal Opportunity / Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age or any other federally protected class.

    J-18808-Ljbffr

    serp_jobs.job_alerts.create_a_job

    Cyber Analyst • Sterling, VA, US

    Job_description.internal_linking.related_jobs
    • serp_jobs.job_card.promoted
    CI Cyber Threat Analyst IV

    CI Cyber Threat Analyst IV

    Obsidian Solutions Group LLCDunn Loring, VA, US
    serp_jobs.job_card.full_time
    CI Cyber Threat Analyst Level IV.Primary Location : Springfield, VA and St.The Senior CI Cyber Threat Analyst will ensure all required reports are complete with minimal errors and that all processes...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    Senior Cyber Intrusion Detection Analyst

    Senior Cyber Intrusion Detection Analyst

    Vets HiredWashington, D.C., District of Columbia, United States
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    A Senior Cyber Intrusion Detection Analyst is needed to provide advanced incident response and monitoring support.This is a hybrid position based in Washington, D. Saturday & Sunday, Friday 11pm7am,...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    Malware and Forensic Analyst (Senior)

    Malware and Forensic Analyst (Senior)

    cFocus Software IncorporatedWashington, DC, US
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Focus Software seeks a Malware and Forensic Analyst (Senior) to join our program supporting US Courts in Washington, DC.Required Qualifications include : . Windows, Linux, and macOS ) 5 years of exper...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Cyber Network Defense Analyst

    Cyber Network Defense Analyst

    ManTechHerndon, VA, United States
    serp_jobs.job_card.full_time
    As a CND Analyst on our team, you will use your expertise in specialized network defense to provide innovative and creative solutions to challenging cyber security problems.You will utilize the lat...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Financial Crime Network Analyst, Senior

    Financial Crime Network Analyst, Senior

    Clearance JobsWashington, DC, US
    serp_jobs.job_card.full_time
    Financial Crime Network Analyst.Praescient Analytics is actively seeking an experienced Financial Crime Network Analyst, to support a contract with the Narcotics and Transnational Crime Support Cen...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    CI Cyber Threat Technical Analyst III

    CI Cyber Threat Technical Analyst III

    Obsidian Solutions Group LLCDunn Loring, VA, US
    serp_jobs.job_card.full_time
    CI Cyber Threat Technical Analyst (Level III).Primary Location : Springfield, VA and St.The CI Cyber Threat Technical Analyst will ensure all required reports are complete with minimal errors and th...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Cyber Threat Hunter

    Cyber Threat Hunter

    Leidos IncAshburn, VA, United States
    serp_jobs.job_card.full_time
    Leidos is seeking a highly motivated and experienced.This role supports the Department of Homeland Security's mission to protect its enterprise-wide information systems from cyber threats through p...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    Cyberecurity Intelligence Analyst

    Cyberecurity Intelligence Analyst

    Evolver FederalCamp Springs, MD, USA
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    We are seeking a highly skilled and experienced.Cybersecurity Intelligence Analyst.The ideal candidate will have a strong background in both traditional and cyber intelligence analysis, with expert...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Cyber Threat Operations Analyst

    Cyber Threat Operations Analyst

    UmbraArlington, VA, US
    serp_jobs.job_card.permanent
    Umbra is an American space technology company delivering advanced systems, from sensors to spacecraft, that empower customers worldwide with unmatched access to critical information from space.Our ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_1_day
    • serp_jobs.job_card.promoted
    Digital Forensic Analyst

    Digital Forensic Analyst

    Contact Discovery Services LLCWashington, DC, US
    serp_jobs.job_card.full_time
    Contact Discovery Services - Washington, DC.A leading eDiscovery technology and consulting firm headquartered in Washington, DC is looking for a qualified and experienced Digital Forensic Analyst.W...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    Host Forensic Analyst / Host Based Systems Analyst

    Host Forensic Analyst / Host Based Systems Analyst

    Node.DigitalArlington, VA, US
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Host Forensic Analyst / Host Based Systems Analyst.Must have Top Secret Security Clearance.Assisting Federal leads with overseeing and leading forensic teams at onsite engagements by coordinating evi...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    Network Based System Analyst

    Network Based System Analyst

    Node.DigitalArlington, VA, US
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Must have an active Top Secret Security Clearance.Node provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and r...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Associate Director - Cyber Threat Intelligence - Network

    Associate Director - Cyber Threat Intelligence - Network

    VerizonAshburn, VA, United States
    serp_jobs.job_card.part_time
    A place to share your ideas freely - even if they're daring or different.Where the true you can learn, grow, and thrive.At Verizon, we power and empower how people live, work and play by connecting...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    Cyber Analyst - Mid

    Cyber Analyst - Mid

    Nalley ConsultingWashington, DC, US
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Join the Nalley Consulting team as a Cyber Analyst at DIA HQ.Cyber Analyst LCAT : Mid Location : DIA HQ, Washington, DC Clearance requirement : TS / SCI clearance. CI poly or willingness to take ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Cyber Analyst - Sr

    Cyber Analyst - Sr

    Nalley ConsultingCollege Park, MD, US
    serp_jobs.job_card.full_time
    Join the Nalley Consulting team as a full-time Cyber Analyst at College Park, MD.TS / SCI clearance; CI poly or willingness to take a polygraph. Conducts analysis using intelligence and information fr...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Network Security Engineer

    Network Security Engineer

    Office of The Chief Financial OfficerNorthern Virginia, VA, United States
    serp_jobs.job_card.full_time
    Government of the District of Columbia.Office of the Chief Financial Officer (OCFO).Network Security Engineer (INFOSEC).This position is located in the Office of the Chief Financial Officer (OCFO),...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Cyber Security Analyst

    Cyber Security Analyst

    Leidos IncAdelphi, MD, United States
    serp_jobs.job_card.full_time
    Leidos Enterprise & Cyber Solutions Defense group is seeking a Junior Cyber Security Analyst to support the C5ISR DCSB contract for a Full Time opening. This position is supporting US Army Command, ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Cyber Security Specialist III

    Cyber Security Specialist III

    Pueo Business SolutionsWashington, DC, US
    serp_jobs.job_card.full_time
    Pueo is known for bringing the best talent and unique tools to every opportunity.Pueo's Parliament (aka workforce) is composed of professionals who are seeking the opportunity to work in a busi...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Cyber Threat Analysis Division Task Lead

    Cyber Threat Analysis Division Task Lead

    Clearance JobsArlington, VA, US
    serp_jobs.job_card.full_time
    Seize your opportunity to make a personal impact as a Project / Task Manager supporting our program.GDIT is your place to make meaningful contributions to challenging projects and grow a rewarding ca...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    Digital Forensic Analyst I

    Digital Forensic Analyst I

    CGSFairfax, Virginia, United States, 22030
    serp_jobs.job_card.full_time
    Employment Type : Full-Time, Mid-Level.CGS is seeking a Digital Forensic Analyst whose primary focus will be on the preservation & collection of mobile device and cloud-stored data.This candidate sh...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30