Cyber Security Analyst Prn

2018-09-19
ManTech (www.mantech.com)
Other

/yr

  full-time   employee   contract


Arlington
Virginia
United States

Entering ManTech?s 50th year, we hold the distinct honor of being named a ?Top 100 Global Technology Company? by Thomson Reuters. We have earned this and many other accolades over the years for our dedication to serving the missions of our nation?s most important customers: U.S. Intelligence, Defense and Federal Civilian agencies. All know us as a trusted partner offering best-in-class solutions in cyber, data collection & analytics, enterprise IT, and systems and software engineering tailored to meet their specific requirements.

Become an integral part of a diverse team in the Mission, Cyber and Intelligence Solutions (MCIS) Group. Currently, ManTech is seeking a motivated, mission oriented Cyber Security Analyst, in the Arlington, Virginia area, with strong Customer relationships. At ManTech, you will help protect our national security while working on innovative projects that offer opportunities for advancement.

The MCIS Division provides cyber solutions to a wide range of Defense and Intelligence Community customers. This division consists of a team of technical leaders that deliver advanced technical solutions to government organizations. Our customers have high standards, are technically adept, and use our products daily to support their mission of protecting national security. Our contributions to our customer?s success is driving our growth.


Responsibilities include, but are not limited to:

As a Cyber Security Analyst, the tasks will include analyzing all relevant cyber security event data and other data sources for attack indicators and potential security breaches; produce reports, assist in coordination during incidents; and coordinate with the O&M team to maintain all security monitoring systems are on-line, up to date, and fully operational. Position is responsible for engineering new and maintaining current IT toolsets relevant to the environment.


Job Requirements:

. Position Requires 7-9 years experience in cyber security analysis, incident response, or related IA/Security experience.

. Possess Computer Information Systems Security Professional (CISSP) Certification

. Extensive knowledge and/or experience protecting network environments against insider threat.

. Experience working with Splunk Analytics tool.

. Knowledge of Cisco ISE, Stealthwatch, SourceFire and AMP

. Position Requires 7-9 years experience in cyber security analysis, incident response, or related IA/Security experience.


Responsibilities Include:

. Monitor intrusion detection and prevention systems and other security event data sources.

. Determine if security events monitored should be escalated to incidents and follow all applicable incident response and reporting processes and procedures.

. Ability to problem solve, ask questions, and discover why things are happening.

. Correlate data from intrusion detection and prevention systems with data from other sources

. Develop and produce reports on all activities and incidents to help maintain day to day status, develop and report on trends, and provide focus and situational awareness on all issues.

. Reporting outputs will be reviewed and approved to ensure quality and metrics are maintained.

. Responsible for tuning and filtering of events and information, creating custom views and content using all available tools following an approved methodology and with approval and concurrence from management.

. Notify the Customer of significant changes in the security threat against the Customer networks in a timely manner and in writing via established reporting methods.

. Coordinate with the O&M team to ensure production systems are operating efficiently.

. Produce daily/weekly/monthly/quarterly reporting as required by management.

. Maintain system baselines and configuration management items, including security event monitoring "policies" in a manner determined and agreed to by management. Ensure changes are made using an approval process agreed to in advance.

. Produce reports identifying significant or suspicious security events to appropriate parties. Include latest security threat information and tie back to specific intrusion sets of nation state actors when possible.

. Review and evaluate network modifications and recommend security monitoring policy updates.

. Establish procedures for handling each security event detected.

. Identify misuse, malware, or unauthorized activity on monitored networks. Report the activity appropriately as determined by the customer.

. Provide analytical support as needed for the overall projects and systems by working with engineers, O&M, and other personnel to ensure effective operations of all capabilities, piloting of new systems, and periodic updates to systems.

. Strong analytical and problem solving skills.

. Good interpersonal, organizational, writing, communications and briefing skills.

Education Requirements:

-Bachelor's Degree in computer engineering, computer science, or other closely related IT discipline or Equivalent and 7-9 years of related experience.

-Must possess Computer Information Systems Security Professional (CISSP) certification


Security Requirements:

-U.S. Citizenship and an Active Top Secret Clearance with SCI Eligibility

Advertisement