CharlestonRecruiter Since 2001
the smart solution for Charleston jobs

Computer Network Defense & Incident Response Analyst - Mid Level

Company: SPINVI
Location: North Charleston
Posted on: February 21, 2021

Job Description:

The candidate will identify, isolate, investigate, inform, and implement measures to detect and protect data across a wide spectrum of sources and locations. The candidate is required to validate suspicious events or reports and determine if the event constitutes an incident. The candidate will ensure incidents are properly entered into the appropriate reporting system and determine the severity of the incident. Reporting and response measures will be taken immediately in order to satisfy the Chairman of the Joint Chiefs of Staff Manual (CJCSM) 6510.01B reporting requirements.

Responsibilities

  • Maintains familiarity with CJCSM 6510.01B.
  • Compiles and maintains internal standard operating procedure (SOP) documentation.
  • Ensures associated documentation and capabilities remain compliant with CJCSM 6510.01B and other applicable policy directives.
  • Provides network intrusion detection and monitoring, correlation analysis, incident response and support for the Cybersecurity Service Provider (CSSP) and its subscriber sites.
  • Validates suspicious events or reports and determine if the event constitutes an incident and properly enter associated data into the appropriate reporting systems.
  • Coordinates with USCYBERCOM and supported entities regarding significant incidents to ensure proper analysis is performed and timely and accurate reporting of the incident is completed.
  • Provides 24x7 support for the CSSP's Incident Response capability during non-core business hours consistent with CSSP requirements as needed.
  • Performs network and host-based digital forensics on Microsoft Windows based systems and other operating systems as necessary to enhance response to, support of, and investigation into significant network incidents.
  • Possesses working knowledge of full packet capture PCAP analysis and accompanying tools (Wireshark, etc.).
  • Explores patterns in network and system activity via log correlation using Splunk and supplemental tools.
  • Possesses understanding of IDS/IPS solutions to include signature development and implementation.
  • Participates in program reviews, product evaluations, and onsite certification evaluations.

    Requirements

    Required Skills
    • Experience with Incident Response Procedures.
    • Experience with Packet Analysis using tools such as Wireshark, TCPDump, TShark, or similar as it applies to cyber incident investigation.
    • Experience interpreting IDS/IPS log output.
    • Ability to explain the difference between data contained within Windows Event logs and Sysmon logs.
    • Experience with Log Aggregation Tools such as Splunk, Elastic, or similar.

      Highly Desired Skills
      • Knowledge of CJCSM 6510.01B.
      • Ability to write/edit IDS/IPS signatures for enhanced detection.
      • Experience using EDR products for Cyber Incident Response.
      • Knowledge of Digital Forensics.
      • The ability to solve problems independently.

        Qualifications
        • 2-4+ years' experience in Cybersecurity Service Provider (CSSP) environment or similar.
        • DoD or DoN Cybersecurity Workforce (CSWF) Certification or compliance (DoDD 8140 or SECNAV M-5239).

          Recommended Education
          • Bachelor OR Graduate degree from accredited university/technical college in Cybersecurity, Computer Science, Information Systems, or other related scientific or technical discipline.

            Certifications
            • DoDD 8140 CSSP Incident Responder or Analyst Category certification

              Military Training
              • Approved Military Training Courses

                Additional Information
                • Authorized to view alerts for IDS/IPS
                • Authorized to view Audit Records on Central Log Server
                • Due to the nature of the work required, operations are conducted 24/7/365 with three primary shifts. Choice of shifts will be made available with the understanding that placement is at the discretion of the CSSP Services Director and/or assigned manager.

                  Benefits
                  • Long Term Disability
                  • Basic Life Insurance
                  • Basic Accidental Death & Dismemberment Insurance
                  • Direct Payroll Deposit
                  • Leave Accrual
                  • Holidays

                    Optional Benefits
                    • Short Term Disability
                    • Additional (Voluntary) Life Insurance
                    • Additional (Voluntary) AD&D Insurance
                    • 401(k)
                    • Medical Coverage
                    • Dental Coverage
                    • Vision Care Plan
                    • Flexible Spending Account Plan
                    • Online Training
                    • AFLAC Supplementary Insurances

                      AAP/EEO Statement

                      Core4ce is an Equal Opportunity Employer. Core4ce does not discriminate on the basis of race, religion, color, sex, gender identity, sexual orientation, age, non-disqualifying physical or mental disability, national origin, veteran status or any other basis covered by appropriate law. All employment is decided on the basis of qualifications, merit, and business need.

                      Core4ce provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability or genetics. In addition to federal law requirements, Core4ce complies with applicable state and local laws governing nondiscrimination in employment in every location in which the company has facilities. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation and training.

                      Core4ce expressly prohibits any form of workplace harassment based on race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, genetic information, disability, or veteran status. Improper interference with the ability of Core4ce's employees to perform their job duties may result in discipline up to and including discharge.

Keywords: SPINVI, Charleston , Computer Network Defense & Incident Response Analyst - Mid Level, IT / Software / Systems , North Charleston, South Carolina

Click here to apply!

Didn't find what you're looking for? Search again!

I'm looking for
in category
within


Other IT / Software / Systems Jobs


Frontend Web Developer - Vue/Shopify - 100% REMOTE
Description: We're looking for an advanced frontend developer to join our growing team ofecommerce focused developers. We use Vue/Vuex in our projects so deep knowledge of this is required.ResponsibilitiesDevelop
Company: Craft Recruiting
Location: Charleston
Posted on: 03/1/2021

Cybersecurity Team Technical Lead
Description: Core4ce is looking for a Cybersecurity Technical Lead that will guide the Datacenter Cyber Team in support of Risk Management Framework RMF and Assessment Authorization A A activities for a project (more...)
Company: SPINVI
Location: North Charleston
Posted on: 03/1/2021

Front Desk Clerk
Description: Front Desk Guest CareWe are looking for people that have a passion to serve others Working at the front desk means you are at the hub of the hotel with the most interaction with our guests. Your role (more...)
Company: Concord Hospitality
Location: Savannah
Posted on: 02/28/2021


C# Developer
Description: Syms Strategic Group SSG is seeking a talented C Developer.Location: All U.S. based locations may be considered.Department: Veterans AffairsType: Full TimeMin. Experience: ExperiencedSecurity Clearance (more...)
Company: Syms Strategic Group, LLC (SSG)
Location: Savannah
Posted on: 03/1/2021

Aircraft Performance Software Developer
Description: --MUST BE ABLE TO WORK ON A W/2 HOURLY BASIS without Sponsorship -- NO C2C-- Position title: Aircraft Performance Software Developer 3Location: Savannah, GA of open positions: 1Start Date: (more...)
Company: Kelly
Location: Savannah
Posted on: 02/28/2021

Dynamics AX Developer/ $120K/ Georgia
Description: Dynamics AX/D365 Developer Needed Dynamics 365/AX F O Developer - 120K Will Interview ASAP Hello USA An End User in the United States is searching for an experienced Dynamics AX/D365 Developer (more...)
Company: Nigel Frank International US
Location: Savannah
Posted on: 02/28/2021

In-Home Usage Tester (Product Tester at Home)
Description: IN-HOME USAGE TESTER Product Tester at Home Part-time Presently we're recruiting Product Testers from home in several US cities to expand our private network of In-Home Usage Testers IHUT to fulfill (more...)
Company: American Consumer Panels
Location: Statesboro
Posted on: 03/1/2021

Mobile Phlebotomist
Description: NMS Management is looking for a Mobile EXAMINER. On-Call and At-Will Flexibility You will choose the days and hours you wish to work and the areas you wish to work in. You are in control of your own (more...)
Company: NMS Management Services, Inc.
Location: Summerville
Posted on: 03/1/2021

Mobile Notary Signing Agent / Flexible Hours
Description: Certified Mobile Notary Service https://certifiedmobilenotaryservice.com is seeking for someone to fill the position of a Professional Mortgage Loan Processor to work remotely in the U.S. only. TYPICAL (more...)
Company: Certified Mobile Notary Service
Location: Saint George
Posted on: 03/1/2021

Mobile Officer
Description: JOB SUMMARY: As part of Securitas Mobile operation provides guard services to project a security presence, which may include operating a vehicle to perform patrol, inspection, and/or incident response (more...)
Company: Securitas USA
Location: Bluffton
Posted on: 02/28/2021

Log In or Create An Account

Get the latest South Carolina jobs by following @recnetSC on Twitter!

Charleston RSS job feeds