Cyber Security Analyst

Powder River Industries
Oak Ridge, TN, United States
Full-time

Powder River Industries, LLC provides technical services across the entire system development life cycle (SDLC). As a prime we are responsible for complete end-to-end system management for a customer’s top secret enterprise mission systems.

This includes data center, logistics support, configuration management, COOP, and disaster recovery. As a subcontractor we are providing services in DevSecOps, software development, network administration, systems analysis, database administration, storage engineering, hardware engineering, Tier 1 Tier 3 support in traditional data center environments (bare metal frames), high performance computing (HPC) centers, cloud, and hybrid cloud.

The cloud environments we are operating in today are AWS, Microsoft Azure, and Oracle.

Requirements

  • Uses data collected from a variety of cyber defense tools (e.g., IDS alerts, firewalls, network traffic logs) to analyze events that occur within their environments for the purposes of mitigating threats.
  • Characterize and analyze network traffic to identify anomalous activity and potential threats to network resources; develop content for cyber defense tools
  • Document and escalate incidents (including event's history, status, and potential impact for further action) that may cause ongoing and immediate impact to the environment
  • Perform event correlation using information gathered from a variety of sources within the enterprise to gain situational awareness and determine the effectiveness of an observed attack;

perform cyber defense trend analysis and reporting

  • Provide daily summary reports of network events and activity relevant to cyber defense practices
  • Receive and analyze network alerts from various sources within the enterprise and determine possible causes of such alerts
  • Provide timely detection, identification, and alerting of possible attacks / intrusions, anomalous activities, and misuse activities and distinguish these incidents and events from benign activities
  • Use cyber defense tools for continual monitoring and analysis of system activity to identify potential malicious activity
  • Analyze identified malicious activity to determine weaknesses exploited, exploitation methods, effects on system and information
  • Identify applications and operating systems of a network device based on network traffic
  • Reconstruct a malicious attack or an activity utilizing network traffic

Non Negotiable Requirements :

1. Q or Top Secret with investigation current within the last 5 years

2. On-site, no remote

3. Travel Required. One week, once per quarter.

Technical Environment : Microsoft, Linux, Splunk, Ansible, Tenable, GEMS

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability or protected veteran status, or any other legally protected basis, in accordance with applicable law.

In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States and to complete the required employment eligibility verification document form upon hire.

5 days ago
Related jobs
Promoted
Booz Allen Hamilton
Oak Ridge, Tennessee

This is your opportunity to act as an information security subject matter expert while broadening your skills in cyber security. In all of this “cyber noise,” how can these organizations understand their risks and how to mitigate them? The answer is you—an information security risk specialist who wi...

Promoted
Powder River Industries
Oak Ridge, Tennessee

Uses data collected from a variety of cyber defense tools (e. Characterize and analyze network traffic to identify anomalous activity and potential threats to network resources; develop content for cyber defense tools. Perform event correlation using information gathered from a variety of sources wi...

Promoted
ITR
Oak Ridge, Tennessee

East Tennessee company is seeking a Cyber Security Vulnerability Analyst to perform defensive cyber operational tasks, respond to reported incidents, and track remediation of client system vulnerabilities to include industrial control systems. Join the Defensive Cyber Operations Group’s multi-...

Promoted
Insight Global
TN, United States

Title: Remote Cyber Defense Analyst. Experience with documenting and troubleshooting/escalating identified cyber incidents and threats. ...

Promoted
Amentum
Oak Ridge, Tennessee

The Consulting Engineer is responsible for providing engineering guidance, calculations, analysis, studies and recommendations for the structural segment of engineering within schedule and budget of an assigned project. Amentum is seeking a Consulting Civil Engineer II (Structural) to be based in ou...

Promoted
Akima
Oak Ridge, Tennessee

Akima Infrastructure Services, LLC (AIS), is actively seeking Engineering, Professional, Technical, and administrative personnel as part of our staff augmentation team supporting the Department of Energy at the Y‑12 National Security Complex located in Oak Ridge, Tennessee and the Pantex Plant locat...

Promoted
CereCore
TN, United States

CereCore is seeking a Senior PAM Security Engineer to join our customer in Nashville, TN. Conduct regular access reviews and audits to ensure compliance with internal policies, industry regulations, and security best practices. Monitor and analyze PAM system logs and reports, proactively identifying...

Xcel Engineering
Oak Ridge, Tennessee

Contribute to the development of tools and processes that automate open-source data collection, increasing access and visibility of open-source data and building occupancy and population models to stakeholders and the user community. Experience in analyzing and interacting with census statistics and...

CVS Health
Tennessee, Work At Home, US
Remote

The Staff Security Engineer of IAM will be a product owner and lead engineer within Identity Access Management (IAM) space for CVS Health. This position will include leading multiple projects simultaneously and hands-on engineering of IAM solutions. Operating within DevOps and Agile frameworks as pa...

World Compliance, Inc. Company
Tennessee
Remote

You'll be a member of the Content and Policy Analyst that define content standards and outline policy and inclusion criteria for our FCC and Trade Compliance business. You will support the management of our World Compliance data, specifically the maintenance and dissemination of our researcher-facin...