ARSIEM Corporation logo
ARSIEM Corporation
Posted 139 days agoVerified live 1d ago

Network Based Systems Analyst II

Brief overview

Arlington, VAIn-person
UndergradOr in progress
2+ yrsMinimum
Clearance requiredU.S. government

About the company

ARSIEM Corporation logo
ARSIEM Corporationarsiem.com

ARSIEM Corporation is a proven and trusted partner to its government clients.

Job description

Summary

ARSIEM Corporation is committed to providing reliable technical solutions to government clients across the United States. They are seeking a Cyber Network Defense Analyst to monitor network activity, analyze it for suspicious behavior, and provide reports to protect information systems from threats.

Responsibilities

  • Characterize and analyze network traffic to identify anomalous activity and potential threats to network resources
  • Coordinate with enterprise-wide cyber defense staff to validate network alerts
  • Document and escalate incidents (including the event's history, status, and potential impact for further action) that may cause ongoing and immediate impact on the environment
  • Perform cyber defense trend analysis and reporting
  • Perform event correlation using information gathered from a variety of sources within the enterprise to gain situational awareness and determine the effectiveness of an observed attack
  • Provide daily summary reports of network events and activity relevant to cyber defense practices
  • Receive and analyze network alerts from various sources within the enterprise and determine possible causes of alerts
  • Provide timely detection, identification, and alerting of attacks/intrusions, anomalous activities, and misuse activities, and distinguish these incidents and events from benign activities
  • Use cyber defense tools for continual monitoring and analysis of system activity to identify malicious activity
  • Analyze identified malicious activity to determine weaknesses exploited, exploitation methods, effects on the system, and information
  • Identify and analyze anomalies in network traffic using metadata
  • Validate intrusion detection system (IDS) alerts against network traffic using packet analysis tools
  • Identify applications and operating systems of a network device based on network traffic
  • Reconstruct a malicious attack or activity based on network traffic
  • Identify network mapping and operating system (OS) fingerprinting activities
  • Assist in the construction of signatures that can be implemented on cyber defense network tools in response to new or observed threats within the network environment or enclave

Skills

  • BS Computer Science, Cyber Security, Computer Engineering, or related degree; or HS Diploma & 4+ years of network investigations experience
  • 2+ years of direct relevant experience in cyber defense analysis using leading-edge technologies and industry-standard cyber defense tools
  • Experience in successfully developing and deploying signatures
  • Experience detecting host and network-based intrusions via intrusion detection technologies (e.g., Snort)
  • Experience implementing incident handling methodologies
  • Experience implementing protocol analyzers
  • Experience collecting data from a variety of cyber defense resources
  • Experience reading and interpreting signatures (e.g., Snort)
  • Experience performing packet-level analysis
  • Experience conducting trend analysis
  • Active TS/SCI clearance and the ability to obtain Department of Homeland Security (DHS) Entry on Duty (EOD) Suitability
  • Python programming experience
  • Strong math and science background
  • Experience with the Carnegie Mellon SiLK tool suite
  • One or more of the following professional certifications: GNFA, GCIH, GCIA, GSEC, CASP+, CySA+, PaLMS, FedVTE
  • GSEC (SANS401), Arcsight (or other SEIM solution), Network+, Security+

Qualifications

Must Haves

  • BS Computer Science, Cyber Security, Computer Engineering, or related degree; or HS Diploma & 4+ years of network investigations experience
  • 2+ years of direct relevant experience in cyber defense analysis using leading-edge technologies and industry-standard cyber defense tools
  • Experience in successfully developing and deploying signatures
  • Experience detecting host and network-based intrusions via intrusion detection technologies (e.g., Snort)
  • Experience implementing incident handling methodologies
  • Experience implementing protocol analyzers
  • Experience collecting data from a variety of cyber defense resources
  • Experience reading and interpreting signatures (e.g., Snort)
  • Experience performing packet-level analysis
  • Experience conducting trend analysis
  • Active TS/SCI clearance and the ability to obtain Department of Homeland Security (DHS) Entry on Duty (EOD) Suitability

Nice to Haves

  • Python programming experience
  • Strong math and science background
  • Experience with the Carnegie Mellon SiLK tool suite
  • One or more of the following professional certifications: GNFA, GCIH, GCIA, GSEC, CASP+, CySA+, PaLMS, FedVTE
  • GSEC (SANS401), Arcsight (or other SEIM solution), Network+, Security+

Benefits

  • Active TS/SCI clearance and the ability to obtain Department of Homeland Security (DHS) Entry on Duty (EOD) Suitability.
  • Bonus through our referral program for persons presenting NEW (not in our resume database) candidates who are successfully placed on one of our projects.
  • The bonus for this position is $3,500, and the referrer is eligible to receive the sum for any applicant we place within 12 months of referral.
  • The bonus is paid after the referred employee reaches 6 months of employment.

More jobs like this