user avatar

Continuous Network Defense SME

Techead

Posted today

Job Requirements

Suffolk, VA
Top Secret/SCI Polygraph not specified
Mid Level Career (5+ yrs experience)
Salary not specified
Join Premium to unlock estimated salaries

Job Description

Job Posting Header

TECHEAD is celebrating over thirty-five years of incredible heritage, talent, and accomplishments! To learn more about TECHEAD, visit us at TECHEAD.com or on Glassdoor.

This role is 100% onsite.

Key Responsibilities

· Serve as the primary Subject Matter Expert (SME) for all aspects of the Continuous Network Defense cybersecurity tools in accordance with all applicable DoD Instructions (DoDI), policies and regulations.

· Utilize Tenable and Nessus to perform regularly scheduled discovery and vulnerability scans, provide analysis of results, and development mitigation strategies to reduce overall risk surface.

· Manage Trellix ePO and deploy endpoint products such as ENS, PA, DLP, etc., to implement and enforce endpoint security policies in accordance with response to and mitigation of potential threats.

· Implementation of ForeScout policies for Comply-To-Connect (C2C) initiative, to ensure continuous compliance and quarantining of unauthorized, noncompliant devices.

· Monitoring of Cortex Xpanse to identify and assess external-facing assets and responding to alerts with the corrective action to mitigate the findings.

· Ensure continuous data flow is active for the Continuous Monitoring and Risk Scoring (CMRS) DoD system, including endpoint security data (Trellix), vulnerability and flaw remediation (Tenable), and security compliance data (ForeScout).

· Configuration, modification and deployment of security policies on Cisco Firepower Management Console (FMC) to ensure intrusion prevention (IPS) is enforced at the network security level.

· Utilize and validate DNS and DHCP data within Infoblox, monitoring for anomalous records, unauthorized entries, and removal of duplicate records.

· Implementation of AD Audit Engine to detect and investigate anomalous, malicious or malformed activity within Active Directory, to identify potential insider threats and/or compromised accounts.

· Conduct threat hunts and active/passive reconnaissance using network traffic analysis, heuristic analysis, and cybersecurity data analysis to identify and mitigate indicators of compromise (IoC), misconfigured systems, and advanced persistent threat actors (APTs).

Requirements:
Clearance Level:

TS/SCI clearance

Certifications (IAT Level III)

One of the following:

· CISA

· GSE

· SCNCA

· CISSP (or Associate)

· GCIH

And

Functional area training certificate (required prior to start date)

Required Skills and Experience

· A Master’s of Cybersecurity or related degree, or 10 years of experience in cybersecurity engineering focused on Government-approved cybersecurity tools.

· At least 5 years of experience related to DoD cybersecurity vulnerability detection and response utilizing tools within FISMA compliance.

· Experience with big data analytical tools such as Elasticsearch and Splunk.

TECHEAD's mission is to make our associates successful by placing them in the right environment so they can grow and prosper. How we treat and respond to our clients and employees is a reflection of who we are and makes us stand out from the rest. Keeping our business focused on building and maintaining relationships with our employees and clients is the key to our success. We won't strive for anything less.

TECHEAD provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, amnesty, or status as a covered veteran in accordance with applicable federal, state and local laws governing non-discrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including, but not limited to, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training.

For more information on TECHEAD please visit www.techead.com.

No second parties will be accepted.
group id: 10202776
N
Name HiddenFederal IT Recruiter

Similar Jobs


Job Category
IT - Security
Clearance Level
Top Secret/SCI
Employer
Techead