DE Jobs

Search from over 2 Million Available Jobs, No Extra Steps, No Extra Forms, Just DirectEmployers

Job Information

Leidos Tier 1 Cyber Network Defense Analyst in Ashburn, Virginia

Description

Leidos is seeking a Tier 1 Cyber Network Defense Analyst (CNDA) to join our team on a highly visible cyber security single-award IDIQ vehicle that provides security operations center (SOC) support, cyber analysis, application development, and a 24x7x365 support staff.

Department of Homeland Security (DHS), Network Cyber and Cloud Support (NCCS) is a US Government program responsible to monitor, detect, analyze, mitigate, and respond to cyber threats and adversarial activity on the DHS Enterprise. As part of NCCS, the DHS Network and Operations Security Center (NOSC) has primary responsibility for monitoring and responding to security events and incidents detected at the Trusted Internet Connection (TIC) and Policy Enforcement Point (PEP) and is responsible for directing and coordinating detection and response activities performed by each Component SOC. Direction and coordination are achieved through a shared DHS incident tracking system and other means of coordination and communication.

The Monitoring and Analysis team provide 24x7 support across 4 different shifts. We have Front half shifts (day and night) and back half shifts (day and night). The front half shift will work 12 hour shifts from Sunday – Tuesday and alternating Wednesdays. The back half shift will work 12 hour shifts from Thursday – Saturday and alternating Wednesdays. Candidates must have the ability to work non-core hours, if necessary.

Duties include network security monitoring and detection. Proactively searching for threats. Inspect traffic for anomalies and new malware patterns. Investigate and analyze logs. Provide analysis and response to alerts, and document activity in SOC investigations and Security Event Notifications (SENs).

Primary Responsibilities

  • Utilize a SIEM for enterprise monitoring and detection

  • Create Security Event Notifications to document investigation findings

  • Perform critical thinking and analysis to investigate cyber security alerts

  • Analyze network traffic using enterprise tools (e.g. Full PCAP, Firewall, Proxy logs, IDS logs, etc)

  • Collaborate with team members to analyze an alert or a threat

  • Stay up to date with latest threats

  • Monitor shared email box for notifications and requests

  • Utilize OSINT to aid in their investigation

  • Contribute to content tuning requests

Basic Qualifications

All Tier 1 Cyber Network Defense Analyst candidates shall have a bachelor’s degree in Computer Science, Engineering, Information Technology, Cybersecurity, or related field AND a minimum of two (2) years professional experience in the areas listed below:

  • Network Administration

  • Unix/Linux Administration

  • Software engineering

  • Software development

  • Systems administration

  • Help desk/IT support

The ideal candidate is a self-motivated individual in pursuit of a career in cyber security.

Candidates should also demonstrate the following:

  • Familiarity with a SOC’s purpose and role within an organization

  • General understanding of common network ports and protocols (e.g. TCP/UDP, HTTP, ICMP, DNS, SMTP, etc)

  • Familiarity with network topologies and network security device functions (e.g. Firewall, IDS/IPS, Proxy, DNS, etc).

  • Familiarity with packet analysis tools such as Wireshark

  • Able to perform critical thinking and analysis to investigate cyber security alerts

  • Familiarity with common malware and attack vectors

  • Familiarity with Windows operating systems and standard OS logging

  • Familiarity with Antivirus, DLP, and host based firewalls

  • Must have current TS/SCI. In addition to specific security clearance requirements, all Department of Homeland Security SOC employees are required to obtain an Entry on Duty (EOD) clearance to support this program.

  • Must have one of the following certifications: A+ CE, CCNA-Security, CND, Network+ CE, SSCP

Candidates should also demonstrate the following:

  • Familiarity with a SOC’s purpose and role within an organization

  • General understanding of common network ports and protocols (e.g. TCP/UDP, HTTP, ICMP, DNS, SMTP, etc)

  • Familiarity with network topologies and network security device functions (e.g. Firewall, IDS/IPS, Proxy, DNS, etc).

  • Familiarity with packet analysis tools such as Wireshark

  • Able to perform critical thinking and analysis to investigate cyber security alerts

  • Familiarity with common malware and attack vectors

  • Familiarity with Windows operating systems and standard OS logging

  • Familiarity with Antivirus, DLP, and host based firewalls

Preferred Qualifications

  • Familiar with SOC methodologies and processes

  • Familiarity with scripting languages (e.g. Python, Powershell, Javascript, VBS etc)

Original Posting Date:

2024-04-25

While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.

Pay Range:

Pay Range $65,000.00 - $117,500.00

The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.

REQNUMBER: R-00134415

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status. Leidos will consider qualified applicants with criminal histories for employment in accordance with relevant Laws. Leidos is an equal opportunity employer/disability/vet.

DirectEmployers