Cybersecurity Analyst (Network Detection / Network Hunt)
Company: phia, LLC
Location: Arlington
Posted on: February 25, 2021
|
|
Job Description:
OverviewAre you interested in joining a technical team focused
on hunting for cyber adversaries across a variety of complex
enterprise networks? Are you ready to move beyond traditional
Security Operations Center (SOC) methodologies and develop new
techniques for understanding APT adversary network activity
patterns and methods to identify adversary presence?phia LLC is
seeking a skilled Cybersecurity Analyst to support a large Federal
security operations, analysis and threat-hunting organization. This
team performs both near-realtime intrusion detection and network
defense, as well as retrospective analysis in large data sets using
"big data" platforms and custom analytics. The team supports 24x7
operations, though positions include flexible/core hour work as
well as various shift positions. This position is located in
Northern Virginia with frequent/full remote options during the
pandemic.DUTIES * Perform technical analysis of network activity
across a large enterprise.* Leverage an array of network monitoring
and detection capabilities (including netflow, custom application
protocol logging, signature-based IDS, and full packet capture
(PCAP) data) to identify cyber adversary activity.* Assess cyber
threat intelligence reporting/indicators/observables/trends and
collaborate in the development of IDS signatures, detection
analytics and active countermeasures.* Recommend new network-based
detection and mitigation/countermeasure strategies, and advise on
the development of new tools/capabilities.* Triage detection and
countermeasure alerting; assess the effectiveness of those
mechanisms and tune to enhance/improve accuracy and precision.*
Develop and apply methods to analyze and visualize network flow
data for anomalies and to correlate various types of threat
reporting and adversary TTPs with enterprise-wide network
activity.* Document key event details and analytic findings in
threat intelligence platforms and incident management systems.*
Author and publish technical advisories/bulletins/reporting, both
on individual events and larger trends.* Produce detailed,
comprehensive, and technically sound analysis reports and review
analysis reports from other analysts.* Monitor and report on trends
and activity on network sensor platforms.* Provide technical
assessments of cyber threats & vulnerabilities and use network data
to assess the defensive posture/exposure of the organization.*
Collect analysis metrics and trending data, identify key trends,
and provide situational awareness on these trends.* Communicate and
collaborate with analysts from other cyber analysis
teams/organizations (internal and external).* Provide routine
status updates for ongoing projects, trouble tickets, incidents,
and other related tasks.* Maintain awareness of major events and
trends in the cyber security landscape.* Research and evaluate
emerging detection/analysis capabilities.* Innovate new methods to
use existing tools and data sources, and identify and obtain new
data sources, to detect cyber adversary activity.* Develop,
maintain and update standard operating procedures.RequirementsKEY
REQUIREMENTS * In-depth knowledge of network and application
protocols, cyber vulnerabilities and exploitation techniques and
cyber threat/adversary methodologies (TTPs).* Active Top Secret
clearance.* In-depth knowledge of network intrusion detection and
analysis principles and methods and related tools/technology.*
Direct experience with network traffic monitoring/capture/analysis
capabilities, and various IDS, IPS, SIM/SIEM/SOAR technologies, to
include IDS signature development and common signature syntax.*
Proficiency working with various types of network data (e.g.
netflow, PCAP, custom application logs), ideally in high volumes.*
Proficiency with datasets that support analysis (e.g. passive DNS,
WHOIS/registration data, system/service enumeration data, threat
intelligence indicators/observables, malware analysis results, etc)
and various open-source and commercial vendor
portals/services/platforms that provide that data.* Working
knowledge of security operations center (SOC) environments and
processes.* Excellent written and oral communication skills.* A
team player that is proactive, creative, independent, and possesses
strong problem solving skills.* Ability to produce results in a
fast-paced environment with the ability to meet iterative
deadlines.* Active Top Secret Security clearance.Desired
Qualifications* Bachelor's Degree in Cybersecurity, Information
Technology or a related discipline.* 3+ years of relevant work
experience in cyber defense, focused specifically on network
traffic/intrusion analysis.* Relevant training professional
certifications, including (but not limited to) GCIA, GCIH, GCDA,
GCED, GDAT.* Experience performing and leading SOC or security
analysis operations/functions.* Basic software
development/scripting capability (primarily focused around analyst
automation/optimization, dealing with large analysis datasets,
etc.).* Familiarity with vulnerability research/discovery and
management, red-teaming/pen-testing assessment, and security audit
methodologies and capabilities.* Familiarity with all related
aspects of cybersecurity operations/analysis (e.g. incident
response & management, forensic media analysis, malware
analysis/reverse-engineering, cyber threat intelligence analysis,
etc.) and security architecture & engineering.* Well-rounded
customer service experience.WORK SCHEDULE Core Business Hours
(Schedule is flexible but must be between the hours of 6AM-6PM
M-F); some fixed shift positions (24x7) also available.TRAVEL
N/ATELEWORK ELIGIBILITY Frequent/full remote options during the
pandemic.BenefitsSECURITY REQUIREMENTS Active Top SecretCompany
Overviewphia, LLC ("phia") is a Northern Virginia based, 8a
certified small business established in 2011 with focus in Cyber
Intelligence, Cyber Security/Defense, Intrusion Analysis & Incident
Response, Cyber Architecture & Capability Analysis, Cyber Policy &
Strategy, Information Assurance/Security, Compliance, Certification
& Accreditation, Communications Security, Traditional Security, and
Facilities Security. phia also provides cyber operations support
functions such as Program and Process Management, Engineering,
Development, and Systems Administration that allows for Cyber
Operations to efficiently integrate our customer's missions and
objectives. phia supports various agencies and offices within the
Department of Defense (DoD), Federal government, and
private/commercial entities.phia offers excellent benefits for full
time candidates to enhance the work-life balance, these include the
following* Medical Insurance* Dental Insurance* Vision Insurance*
Life Insurance* Short Term & Long-Term Disability* 401k Retirement
Savings Plan with Company Match* Paid Holidays* Paid Time Off
(PTO)* Tuition and Professional Development Assistance* Flex
Spending Accounts (FSA)* Parking Reimbursement* Monthly Payroll
Keywords: phia, LLC, Arlington , Cybersecurity Analyst (Network Detection / Network Hunt), Professions , Arlington, Virginia
Click
here to apply!
|
Didn't find what you're looking for? Search again!
Other Professions JobsELECTRICAL PROJECT MANAGER - LEESBURG, VA Description: ELECTRICAL PROJECT MANAGER - LEESBURG, VADelta Construction Partners is a national executive search firm for the nation's premier electrical contractors and industry professionals. Delta has been retained (more...) Company: Delta Construction Partners, Inc. Location: Leesburg Posted on: 03/3/2021 C. R. England Description: Job DescriptionC.R. England Company: C. R. England - Dedicated Fleet Location: Charlottesville Posted on: 03/3/2021 CDL-A Owner Operator Tanker Truck Driver Description: Fort Transfer is looking for CDL-A drivers who are ready to join a leader in the transportation industry. Driving with Fort Transfer means a career with a family-oriented company that strives to provide (more...) Company: Fort Transfer Location: Charlottesville Posted on: 03/3/2021 CDL-A Transport Driver, Regional: $6,000 Sign-On Bonus Description: Regional Class A CDL Driver 6,000 Sign-On Bonus Company Drivers: Are you looking for more home time Generous Pay with Bonuses Assigned Equipment with no slip-seating If so, PTI Propane Transport (more...) Company: AmeriGas Propane / PTI Location: Charlottesville Posted on: 03/3/2021 Get New Carpenter Work Today - Preview Leads In Your Area Description: Over 25 million homeowners have trusted HomeAdvisor 1800Contractor to help them find quality professionals with the expertise to turn their home improvement Company: HomeAdvisor Location: Charlottesville Posted on: 03/3/2021 Solo CDL A Owner Operators - $4K Sign On Description: br br br br Solo CDL A Owner Operators br 4,000 Sign On Bonus br br Join the Panther Premium Logistics team for an exciting opportunity Company: Panther Premium Logistics Location: Charlottesville Posted on: 03/3/2021 UVA Health System: Anesthesia Technician Or Description: Job DescriptionSupports Company: UVA Health System Location: Charlottesville Posted on: 03/3/2021 High Demand For Quality HVAC Pros - Get New Clients In Your Area Description: Over 25 million homeowners have trusted HomeAdvisor 1800Contractor to help them find quality professionals with the expertise to turn their home improvement Company: HomeAdvisor Location: Charlottesville Posted on: 03/3/2021 CDL-A FLATBED DRIVER Lease Purchase! Description: CLASS-A CDL FLATBED DRIVERS LEASE PURCHASEHornady Transportation, LLC offers Company Drivers and Lease Purchase Drivers a high level of opportunity. We are a highly innovative transportation company who (more...) Company: Hornady Transportation Location: Charlottesville Posted on: 03/3/2021 Managing Director Construction Risk Management Description: Responsible for financial and business direction of the Construction Risk Management CRM line of service with the objective of meeting company goals and mission. br br Establishes core leadership (more...) Company: CBRE Group, Inc. Location: Leesburg Posted on: 03/3/2021 |