Talent.com
GDIT
CSOS Analyst Tier 3GDIT • Louis, St., MO, USA
CSOS Analyst Tier 3

CSOS Analyst Tier 3

GDIT • Louis, St., MO, USA
30+ days ago
Salary
$114,750.00–$155,250.00 yearly
Job type
  • Full-time
Job description

Job Description:

Candidate will provide Expert CSOC Tier 3 services, which is 24x7x365 coordination, execution, and implementation of all actions required for the containment, eradication, and recovery measures for events and incidents. CSOC Tier 3 services includes malware and implant analysis, and forensic artifact handling and analysis. When a CIRT is stood up, all contractors in support of CSOC Tier 3 services will be under the direct control of, and take direction from, the Government CIRT Commander. While not in a period of incident response, the Contractor shall conduct continuous exercises and dry runs to improve response outcomes in the event of a cyber-incident. All Contractor personnel performing CSOC Tier 3 services shall have or obtain, within six months of start, a certification that is compliant with DoDD 8140.01 and DoD 8570.01-M IAT Level II and CSSP Incident Responder.

Job Duties:

  • Coordinate and implement tasks, performing analysis, and building/documenting response activities required during cyber security incident response, to include but not limited to actions such as implementing containment measures, IP blocks, domain blocks, and disabling user accounts on direction of the Government.
  • Coordinates with Security and Installations Directorate (SI) Office of Counterintelligence (SIC), Insider Threat Office (SIII), in addition to other law enforcement and counterintelligence personnel as required to perform advanced investigation and triage of incidents.
  • Collaborates with appropriate authorities in the production of security incident reports.
  • Categorizes incidents and events.
  • Coordinates with other contracts, organizations, activities, and other services as appropriate to ensure incidents are properly reported, contained, and eradicated.
  • Coordinates with other contracts, organizations, activities, and other services as appropriate to de-conflict blue / red team activity with open incidents/events.
  • Coordinates with other contracts, organizations, activities, and services to ensure recovery from an incident/event.
  • Builds timelines, documents, briefings, and other products as required to inform stakeholders of incident response actions, analysis, and the impact of both adversary activity and blue force response actions.
  • Documents actions taken and analysis in the authorized ticketing system to a level of detail where the actions taken, and analysis are capable of being systematically reconstructed.
  • Develops and when approved by the Government generates and updates reports in the Joint Incident Management System (JIMS), Incident Case Management System (ICMS), and/or other authorized reporting systems as directed.
  • Develops, maintains, sustains, and when properly authorized by the Government executes custom scripts, tools, and capabilities to collect and analyze data, and to respond to incidents/events.
  • Performs digital media analysis on host, server, and network data as required to analyze and respond to an incident, to include but not limited to volatile and non-volatile memory and/or system artifact collection and analysis.
  • Develops and identifies indicators of compromise to send to Cybersecurity stakeholders and other Contract Services.
  • Provides adversary attribution.
  • Performs malware analysis and signature development.
  • Coordinate with CSOC Tier 1 and 2 services to remediate all discrepancies and provide recommendations to prevent reoccurrence.

Job Requirements:

  • Bachelor’s Degree and 8 years’ experience in Cyber Security (CSOS)
  • Active TS/SCI, ability to obtain a Polygraph.
  • DoDD 8140.01 and DoD 8570.01-M IAT Level II and CSSP Incident Responder. Provides input to and coordinates with all applicable stakeholders to develop and deliver the daily CSOC Significant Activity Report, the daily CSOC Operations Update, and the Weekly CSOC Status Report.
  • Serve as C-IRT members as required and serve under the direct control of, and take direction from, the Government C-IRT Commander.
  • Develop and coordinate courses of action with various Government and contract stakeholders, and when properly authorized by the Government, execute Defensive Cyberspace Operations-Internal Defensive Measures on behalf of the classified networks and systems.
  • Performs digital media analysis and malware reverse engineering on host, server, and network data as required to analyze and respond to an incident, to include but not limited to volatile and non-volatile memory and/or system artifact collection and analysis.
  • When properly authorized by the Government, execute custom scripts, tools, and capabilities to collect and analyze data, and to respond to incidents/events.
  • Develops, documents, and provides to the Government incident investigation reports which include sufficient information to document the entire lifecycle of the incident and the response, including but not limited to adversary and friendly forces activity, host and network analysis, timelines, and recommendations for corrective actions, recommendations for new Tactics, Techniques, and Procedures (TTP) and other recommendations as appropriate, within 30 days of C-IRT stand-down.
  • Conduct Quality Control reviews of a percentage closed CSOC Tier 2 tickets each week to ensure proper analysis, categorization, documentation, and notification.

Preferred Qualifications:

  • Master’s degree
  • IAT III

The likely salary range for this position is $114,750 - $155,250. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

Scheduled Weekly Hours:

40

Travel Required:

None

Telecommuting Options:

Onsite

Work Location:

USA VA Springfield

Create a job alert for this search

CSOS Analyst Tier 3 • Louis, St., MO, USA

Similar jobs

Analyst, Risk Management

NISA Investment Advisors, L.L.C.Saint Louis, MO, United States
Full-time

Analyst Position At Nisa Investment Advisors.NISA Investment Advisors, LLC (NISA) offers customized investment solutions for tax-exempt and taxable institutional clients.NISA manages over $295 bill... Show more

 • Promoted

COMPLIANCE ANALYST

Omni InclusiveSaint Louis, MO, United States
Full-time

Should be proficient in excel with various formulas Should be proficient in SQL.Should be able to write queries with minimal guidance Should have experience in Visual basic.Should have experience... Show more

 • Promoted

Disaster Recovery Analyst/Business Analyst

KellyMitchell GroupMaryland Heights, Missouri, US
Full-time

Our client is seeking a Disaster Recovery Analyst/Business Analyst to join their team! This position is located in Maryland Heights, Missouri.Develops and plans testing activities for IT business r... Show more

 • Promoted

Analyst

Aya HealthcareSaint Louis, MO, United States
Full-time

It's more than a career, it's a calling MO-REMOTE Worker Type: Regular.Job Highlights: Experienced with 340B program operations and audits and Advanced 340B Operations Certificate within 18-months ... Show more

 • Promoted

Sr Credit Analyst

Metal Exchange CorporationSaint Louis, MO, United States
Full-time

Senior Credit Analyst (Manufacturing).Consider joining the MX Holdings family as a Senior Credit Analyst (Manufacturing) in our St.The Senior Credit Analyst (Manufacturing) is responsible for estab... Show more

 • Promoted

Business Analyst Level 3

Tulk LLCSaint Louis, MO, United States
Full-time

TULK is a leading boutique consulting firm providing technology and management consulting services to the US Federal Government.Our expert team assists Defense and National Security clients in acqu... Show more

 • Promoted

Automation Analyst

Barry-WehmillerSt. Louis, MO, United States
Full-time

The Automation Analyst’s role is to optimize and automate processes within IT to reduce manual effort and human error.This includes, but is not limited to, management of the enterprise PC imaging s... Show more

 • Promoted

Business Analyst

United ITBridgeton, MO, United States
Full-time

JD - (BA to document the requirements, experience with Telemetry data, IOT data collection, AWS Cloud etc will be value add).We are seeking a skilled Business Analyst (BA) to join our team to suppo... Show more

 • Promoted

Transition Analyst

Cushman & WakefieldSaint Louis, MO, United States
Full-time

The Transition Analyst supports the Transitions & Property Management teams throughout the onboarding and offboarding processes while providing a high level of detail and customer service.As part o... Show more

 • Promoted

Customer Service and Reporting Analyst - CSRA

RMS Computer CorporationHazelwood, Missouri, US
Full-time

Learn more about the general tasks related to this opportunity below, as well as required skills.Excel skills (macros, pivot tables, etc.Customer and team communications experience.Ability to multi... Show more

 • Promoted

Healthcare Credentialing Analyst

ManpowerGroup Global, Inc.Saint Louis, Missouri, United States
Full-time

A leading staffing solutions provider seeks a Credentialing Specialist in the Town of Norway, Wisconsin.The ideal candidate will coordinate credentialing functions, perform analytical tasks, and ac... Show more

 • Promoted

Senior Analyst, Risk Management

NISA Investment Advisors, L.L.C.Saint Louis, MO, United States
Full-time

Senior Analyst, Risk Management.NISA Investment Advisors, LLC (NISA) offers customized investment solutions for tax-exempt and taxable institutional clients.NISA manages over $295 billion in fixed ... Show more

 • Promoted

Business Analyst - OMS

SamprasoftSaint Charles, MO, United States
Full-time

Order Management System (OMS) Business Analyst.The Order Management System (OMS) is in the center of the business.All orders and many departments operate within this system.Efficiencies within the ... Show more

 • Promoted

Business Analyst - OMS

KaavSaint Charles, MO, United States
Full-time

Order Management System (OMS) Business Analyst.The Order Management System (OMS) is in the center of the business.All orders and many departments operate within this system.Efficiencies within the ... Show more

 • Promoted

Sr. Internal Controls Analyst

BunzlSaint Louis, MO, United States
Full-time

Job Category: General & Administrative Requisition Number: USATE021387.Internal Controls Manager to develop and maintain an effective internal controls environment within Bunzl North America throug... Show more

 • Promoted

Lead Management & Program Analyst

US Government JobsSaint Louis, MO, United States
Full-time

WHAT IS CRIMINAL INVESTIGATION? A description of the business units can be found at: https://www. Show more

 • Promoted

Lifecycle Acquisition Management Analyst

Deltek Talent ManagementSt. Louis, MO, United States
Full-time

Lifecycle Acquisition Management Analyst – (3777).Functional Title: Management Analyst.Contract position State Location: St.Education: Bachelor's Level Degree.Provide lifecycle acquisition manageme... Show more

 • Promoted

Compliance Analyst I - Supervisory Control Policies and Procedures

Stifel FinancialSaint Louis, MO, United States
Full-time

The Compliance Analyst I is responsible for testing policies and procedures for multiple broker-dealer affiliates focusing on Supervisory Control Testing.The Compliance Analyst I will enforce the s... Show more

 • Promoted

FEC Transaction Monitoring Analyst

RabobankSaint Louis, MO, United States
Full-time

FEC Transaction Monitoring Analyst.Be part of a purpose-driven team where your work helps safeguard global communities from financial crime.At Rabobank, we invest in your growth while you investiga... Show more

 • Promoted

Risk Management and Claims Analyst

WoodgrainSaint Louis, MO, United States
Full-time

Risk Management And Claims Analyst.Starting Salary: $60,000 - $75,000 (depending on experience).Employment Type: Full-Time, Salary.Work Environment: Monday - Friday, 8am to 5pm.Job Summary: The Ris... Show more