Job Description
Essential Responsibilities:
- Monitors and ensures proper functionality of network security devices across the enterprise, responding to Tiered alerts and escalating incidents as necessary.
- Conducts network traffic analysis using raw packet data, net flow, IDS/IPS, custom sensor output, and other tools to detect and mitigate cybersecurity threats in communications networks.
- Identifies and assesses security risks/exposures, analyzes root causes of security violations, and develops strategies/procedures to prevent future incidents.
- Develops and maintains documentation for processes and procedures to ensure effective and repeatable incident response activities.
- Creates comprehensive incident reports and post-incident briefs that provide in-depth technical details and situational analysis for investigations and decision-makers.
- Collaborates with DoD/Government Leaders and cross-functional teams to develop, maintain, and improve Cybersecurity Defense and Incident Response strategies.
- Monitors and analyzes intrusion detection and defense appliances using security tools like Splunk, Elastic, and related platforms, generating actionable intelligence and trends.
- Researches, evaluates, and tracks emerging threats, vulnerabilities, and advanced threat actor tactics, techniques, and procedures (TTP) to strengthen the network’s overall security posture.
- Provides expertise in the analysis of packet captures, software exploits, and obfuscated code to support incident handling/response activities.
- Develops insights based on cybersecurity frameworks such as MITRE ATT&CK and the Cyber Kill Chain for operational improvement.
Work Environment, Physical Demands, and Mental Demands:
- Typical office environment with no unusual hazards, occasional lifting to 10kgs, kneeling, standing and walking, routinely sitting and constant use of speech/hearing abilities for communication, constant mental alertness, and must be able to work under deadlines.
Minimum Requirements (Knowledge, Skills and Abilities)
- Network security appliances (Firewalls, IDS/IPS devices)
- Proficient understanding of network security protocols and architectures, such as TCP/IP, DNS, HTTP, ICMP, SSL/TLS, and how they relate to risks like DNS spoofing, DDoS attacks, or Man-in-the-Middle attacks.
- Experience with large-scale data processing hardware for cybersecurity applications, such as threat analytics, anomaly detection, and data correlation.
- Hands-on experience with tools like Snort, Suricata, or proprietary IDS/IPS solutions to monitor, analyze, and mitigate malicious traffic.
- Proficient in tools such as Wireshark and tcpdump for deep analysis of network traffic and identification of anomalies, misconfigurations, or malicious activities.
- Strong communication skills and the ability to engage with varied stakeholders along with presenting incident response briefing
- Experience with MS Officer operating system
Minimum Essential:
- Bachelorâs Degree 8-10 yearsâ experience or a Masterâs with 6-8 yearsâ experience
- Undergraduate degree
- Equivalent demonstrated experience
- GCIH or any relevant incident response DoD 8140 certification
- Field:Â Relevant or related discipline
Are you interested in this position?
Apply by clicking on the âApply Nowâ button below!
#GraphicDesignJobsOnline
#WebDesignRemoteJobs
#FreelanceGraphicDesigner
#WorkFromHomeDesignJobs
#OnlineWebDesignWork
#RemoteDesignOpportunities
#HireGraphicDesigners
#DigitalDesignCareers
# Dynamicbrand guru