Cyber Network Defense Analyst Job at ManTech, Herndon, VA

R2tHcmZjRjc4eWJIeUFWMnBhNm1TNzhJblE9PQ==
  • ManTech
  • Herndon, VA

Job Description

ManTech seeks a motivated, career and customer-oriented Cyber Network Defense Analyst in Herndon, VA .

 

As a CND Analyst on our team, you will use your expertise in specialized network defense to provide innovative and creative solutions to challenging cyber security problems. You will utilize the latest cyber tools available and assist with creating new ones while allowing you to advance the nation's information security posture.

 

Responsibilities include, but are not limited to:

  • Provide malicious code detection, intrusion detection, and information security tool development and integration.
  • Utilize forensic analysis to identify malware, misuse, and/or unauthorized activity.
  • Investigate and report on virus and malware alerts or incidents to determine root cause, entry point of code and damage risk.
  • Analyze all data sources, including Internet, Intelligence Community (IC) reporting, security events, firewall logs, and other data sources to identify malware, misuse, unauthorized activity or other cyber security related concerns.
  • Track intelligence using open source and classified sources to identify malicious code threats and provide solutions to counteract that threat.
  • Manage and administer the tuning of rules, signatures, and custom content for CND applications and systems and identify potential conflicts with implementation of any CND tools within the enterprise and develop recommendations to remediate these conflicts
  • Provide logical use case development.
  • Provide and track requirements to engineering partners.
  • Identify gaps in visibility or coverage of cyber defense systems.
  • Prepare data analytics and reporting.

     

Minimum Qualifications:

  • High School Diploma and 11+ years of experience in a cyber security or network security role, or Bachelor’s degree in a technical field with 7+ years of experience
  • Experience writing script in programming languages such as Python, JavaScript, Yara or Snort
  • Experience using SIEM tools for case development and application
  • Experience with network security applications, protocols, and associated hardware
  • Experience with one or more of the following classes of enterprise cyber defense technologies: SysMon, Network and Host based IDS and IPS, Network and host-based malware detection and prevention, Endpoint Detection & Response (EDR) and Network Detection & Response (NDR), Network and Host malware detection and prevention (EDR/NDR) tools, Web/Email gateway security technologies, Security Orchestration, Automation and Response (SOAR) or Cloud Based platforms such as Azure, AWS, or Google

     

Preferred Qualifications:

  • Experience working with MITRE ATT&CK
  • Experience with Splunk or Splunk Enterprise Security
  • Experience with forensics tools and applications

     

Clearance Requirements:

  • Must have an active/Current TS/SCI with polygraph

     

Physical Requirements:

  • Must be able to remain in a stationary position 50%

Job Tags

Similar Jobs

New Jersey City University

Adjunct Faculty- Sociology and Anthropology Job at New Jersey City University

 ...Position New Jersey City University invites applications for the position of Adjunct Faculty in the Department of Sociology/Anthropology. The successful candidate should possess a minimum of a Master's in Sociology/Anthropology. PhD candidates are preferred. Please... 

Wellspring Nurse Source

Travel Cardiac Device Specialist - $2,800 per week Job at Wellspring Nurse Source

Wellspring Nurse Source is seeking a travel nurse RN Cardiac Cath Lab for a travel nursing job in Wausau, Wisconsin. Job Description & Requirements ~ Specialty: Cardiac Cath Lab ~ Discipline: RN ~ Start Date: ASAP ~ Duration: 13 weeks ~40 hours per week...

Saint Louis Art Museum

Gallery Attendant - Part-Time Job at Saint Louis Art Museum

 ...Summary: To observe and protect The Saint Louis Art Museum's staff, visitors, building, collections, and contents to reduce the possibility of, and by their presence prevent, theft, fire, vandalism, or other hazards. Essential Duties and Responsibilities: Attend... 

Optum

Mobile Unit - Advanced Practice Clinician Job at Optum

 ...Med/Den/Vis, STD, LTD, United Health stock options Continuing Medical Education allowance with time off Robust Relocation program...  ...teach such to other OC3 providers, STAR, HEDIS, and medical coding and diagnosis requirements Youll be rewarded and recognized... 

Global TekMed Holdings

Call Center Appointment Setter - Work From Home Job at Global TekMed Holdings

 ...1k / PTO / No cold calling / Paid training - As a Call Center Appointment Setter at Global TekMed Holdings, you will: Attend training sessions...  ...and services; Perform outbound calls to potential clients to schedule appointments for sales representatives; Follow a provided...