Network Defense Analyst

Guidehouse
Reston, VA
Full-time

Job Family : Cyber Consulting

Cyber Consulting

Travel Required : Up to 25%

Up to 25%

Clearance Required :

Active Top Secret SCI with Polygraph

What You Will Do :

The Network Defense Analyst is responsible for conducting a review of an organization's cybersecurity services and completing checklists to ensure an organization is meeting IC policy requirements.

These cybersecurity services include the Cybersecurity Framework Functions of Identify, Protect, Detect, Respond, and Recover.

The IC policy checklists are for ICS 502-01, IC CIO 2018-124 Technical Implementation Guide (TIG), CNSS Directive 504, and others will be added over time.

The tools evaluated will vary, but the minimum tools expected are ArcSight, Splunk, McAfee Host Base Security, Tanium, and ACAS.

This includes the following during an inspection :

Responsibilities of this 100% on-site role include but are not limited to :

  • Coordination with multiple organizations and the reviewer staff
  • Consolidating reports on an organization's enterprise
  • Validating tools are configured to provide the full scope of data able to be captured (i.e., Splunk forwarding, and indexing provide data to UAM tools)
  • Conducting interviews and tabletop exercises
  • Developing and creating exercises based on specific vulnerabilities and likely scenarios
  • Completing and developing checklists
  • Verifying IDS / IPS rules implementation
  • Providing input to written reports on compliance and associated risks
  • Validating specific events (i.e., malware detection alerts) for use in polling other security systems to ensure events are captured
  • Coordination with the purple team and cyber threat emulation activities

What You Will Need :

  • An ACTIVE and MAINTAINED TS / SCI Federal or DoD security clearance with a COUNTERINTELLIGENCE (CI) polygraph
  • THREE (3) or more years of experience as a Security Operations Center (SOC), Computer Network Defense (CND) or Cyber Security Service Provider (CSSP) analyst.
  • Bachelor's degree
  • IAT Level III certifications (i.e. CASP+CE, CISSP, CISA, CCNP, etc.)

What Would Be Nice To Have :

  • FIVE (5) or more years of experience as an SOC,CND,CSSP senior analyst or consultant
  • Experience working in a DoD or Intelligence Community Environment
  • CSSP Auditor certification
  • Capable of multitasking with efficient time management and possessing a comprehensive understanding of cyber threats, vulnerabilities, and network security methodologies.

What We Offer :

Guidehouse offers a comprehensive, total rewards package that includes competitive compensation and a flexible benefits package that reflects our commitment to creating a diverse and supportive workplace.

Benefits include :

  • Medical, Rx, Dental & Vision Insurance
  • Personal and Family Sick Time & Company Paid Holidays
  • Position may be eligible for a discretionary variable incentive bonus
  • Parental Leave and Adoption Assistance
  • 401(k) Retirement Plan
  • Basic Life & Supplemental Life
  • Health Savings Account, Dental / Vision & Dependent Care Flexible Spending Accounts
  • Short-Term & Long-Term Disability
  • Student Loan PayDown
  • Tuition Reimbursement, Personal Development & Learning Opportunities
  • Skills Development & Certifications
  • Employee Referral Program
  • Corporate Sponsored Events & Community Outreach
  • Emergency Back-Up Childcare Program
  • Mobility Stipend

About Guidehouse

Guidehouse is an Equal Employment Opportunity / Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, national origin, ancestry, citizenship status, military status, protected veteran status, religion, creed, physical or mental disability, medical condition, marital status, sex, sexual orientation, gender, gender identity or expression, age, genetic information, or any other basis protected by law, ordinance, or regulation.

Guidehouse will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of applicable law or ordinance including the Fair Chance Ordinance of Los Angeles and San Francisco.

If you have visited our website for information about employment opportunities, or to apply for a position, and you require an accommodation, please contact Guidehouse Recruiting at redacted or via email at RecruitingA redacted .

All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodation.

Guidehouse does not accept unsolicited resumes through or from search firms or staffing agencies. All unsolicited resumes will be considered the property of Guidehouse and Guidehouse will not be obligated to pay a placement fee.

30+ days ago
Related jobs
Promoted
Nightwing
Sterling, Virginia

Nightwing is seeking a Cyber Network Defense Analyst to support this critical customer mission. Assist in the construction of signatures which can be implemented on cyber defense network tools in response to new or observed threats within the network environment or enclave. Monitoring and analysis a...

Promoted
Node.Digital
Arlington, Virginia

Cyber Network Defense Analysts (CNDA) with Cloud Forensics. Cyber Network Defense Analysts (CNDA) with Cloud Forensics. Assist to document Computer Network Defense (CND) guidance and create reports pertaining to incident findings. Correlate forensic findings to network events in support of developin...

Promoted
The One 23 Group
Fairfax, Virginia

We are seeking an experienced Computer Network Defense (CND) Analyst who will be responsible for protecting, monitoring, detecting, analyzing, and responding to unauthorized activities within assigned information systems and computer networks. The One 23 Group, a Virginia-based Government Contractor...

Raytheon Technologies
Sterling, Virginia

Nightwing is seeking a Cyber Network Defense Analyst to support this critical customer mission. Assist in the construction of signatures which can be implemented on cyber defense network tools in response to new or observed threats within the network environment or enclave. Monitoring and analysis a...

Gray Tier Technologies
Arlington, Virginia

Gray Tier Technologies is looking for a SOC/Cyber Network Defense Analyst (CNDA) Senior to support The Department of Homeland Security (DHS) Hunt and Incident Response Team (HIRT). Assist in the construction of signatures which can be implemented on cyber defense network tools in response to new or ...

BCMC, LLC
Arlington, Virginia

The Computer Network Defense Analyst uses information collected from a variety of sources to monitor network activity and analyze it for evidence of suspicious behavior. Assist in the construction of signatures which can be implemented on cyber defense network tools in response to new or observed th...

Gray Tier Technologies
Arlington, Virginia

Cyber Network Defense Analysts (CNDA) with Cloud Forensics. Assist to document Computer Network Defense (CND) guidance and create reports pertaining to incident findings. Our team provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immedia...

ZP Group
Arlington, Virginia

The Computer Network Defense Analyst uses information collected from a variety of sources to monitor network activity and analyze it for evidence of suspicious behavior. Cyber Network Defense Analysts (CNDA). Assist in the construction of signatures which can be implemented on cyber defense network ...

Nightwing
Sterling, Virginia

Nightwing is seeking a Cyber Network Defense Analyst to support this critical customer mission. Assist in the construction of signatures which can be implemented on cyber defense network tools in response to new or observed threats within the network environment or enclave. Monitoring and analysis a...

ZP Group
Arlington, Virginia

Cyber Network Defense Analysts (CNDA). Assist in the construction of signatures which can be implemented on cyber defense network tools in response to new or observed threats within the network environment or enclave. Characterize and analyze network traffic to identify anomalous activity and potent...