Incident Response Analyst - Military veterans preferred

2021-11-25
SAIC (www.saic.com)
Other

/yr

  full-time   employee


Fort Bragg
North Carolina
United States

Description

SAIC is seeking an Incident Response Analyst with an active TS/SCI Polygraph to work onsite with our customer at Fort Bragg, NC.

The CND Analyst shall identify, collect, and analyze network and host data, and report events or incidents that occur or might occur within a network to mitigate immediate and potential network and host threats.

The individual shall perform computer network defense (CND) incident triage, to include:

  • Determining urgency, and potential impact;
  • Identifying the specific vulnerability; and making recommendations that enable expeditious remediation,
  • Perform initial, forensically sound collection of images and inspect to determine mitigation/remediation on enterprise systems;
  • Perform real-time computer network defense (CND) incident handling (e. g., forensic collection, intrusion correlation/tracking, threat analysis, and direct system remediation) task to support Incident Response Teams, receive and analyze network alerts from various sources within the enterprise and determine possible causes of such alerts, and track and document computer network defense (CND) incidents from initial detection through final resolution
  • Employ defense-in-depth principles and practices, collect intrusion artifacts (e.g., source code, malware, and Trojans) and use discovered data to enable mitigation of potential computer network defense (CND) incidents within the enterprise. 
  • Assist with analysis of actions taken by malicious actors to determine initial infection vectors, establish a timeline of activity and any data loss associated with incidents.
  • Provide expert technical support to enterprise-wide CND technicians to document CND incidents, correlate incident data to identify specific vulnerabilities and to make recommendations enabling remediation.  

Qualifications

Required education and experience:

  • Bachelors and 5+ years or more experience; four (4) years or more experience accepted in lieu of degree.

Required skills:

  • Must have Incident Response experience.

Required certification:

  • Must obtain an IAT Level III within six (6) months of hire.

Required clearance:

  • Must be able to maintain a TS/SCI w/ CI Poly.


COVID Policy: Prospective and/or new employees are required to adhere with SAIC's vaccination policy. All SAIC employees must be fully vaccinated and they must submit proof of vaccination on their first day of employment. Prospective or new employees may seek an exemption to the vaccination requirement at and must have an approved exemption prior to the start of their employment. Where work is performed strictly at a customer site, customer site vaccination requirements preempt SAIC's vaccination policy.