user avatar

Cyber Security Incident Analyst-Remote

Sawdey Solution Services Inc

Posted today

Job Requirements

Remote
Top Secret Polygraph not specified
Mid Level Career (5+ yrs experience)
Salary not specified
Join Premium to unlock estimated salaries

Job Description

CYBER SECURITY INCIDENT RESPONSE & THREAT DETECTION ANALYST - REMOTE

Participates in 24x7x365 monitoring of SIEM and other cybersecurity monitoring tools to detect and
respond to cybersecurity threats within the Enterprise Network Environment.

Performs actions to protect, monitor, detect, analyze, and respond to unauthorized activity.

Employs Cybersecurity capabilities and deliberate actions to respond to specific alerts or emerging threats.

Reviews logged events for trends that are indicative of attack or compromise within the environment.

Actively monitors logs and traffic for Advanced Persistent Threats (APT) and "low and slow" attacks within the
environment.

Maintains awareness of possible threats with the use of intelligence resources which
include Open Source Intelligence (OSINT).

Provides technical analysis and sustainment support for the enterprise for Cybersecurity tools and applications and assists with the application of Defense-In-Depth
signatures and perimeter defense controls to diminish network threats.

Minimum Requirements:
• Five (5) years relevant experience
• Two (2) years performing root cause analysis of cybersecurity events and incidents.
• Working knowledge of at least two types of security tools: Firewall, IDS/IPS, Host based antivirus,
Data loss prevention, Vulnerability Management, Forensics, Malware Analysis, Device Hardening
• Understanding of Defense-in-Depth
• Ability to build scripts and tools to enhance threat detection and incident response capabilities
(Preferably in SPL, Python, PowerShell)

• Clearance Requirement: Top Secret
group id: 10476750

Similar Jobs


Job Category
IT - Security
Clearance Level
Top Secret