Talent.com
Network Forensics Cybersecurity Analyst
Network Forensics Cybersecurity AnalystNewGen Technologies • Arlington, Texas, USA
Network Forensics Cybersecurity Analyst

Network Forensics Cybersecurity Analyst

NewGen Technologies • Arlington, Texas, USA
5 days ago
Job type
  • Full-time
Job description

Our Partner provides support for on and offsite incident response to Government agencies and critical infrastructure owners who experience cyber-attacks. They provide advanced technical assistance proactive hunting rapid onsite incident response and immediate investigation using host and network-based cybersecurity analysis capabilities. Personnel perform investigations to characterize the level of severity of breaches and develop mitigation / remediation plans. They are seeking Network Forensics Cybersecurity Analysts to support this critical customer mission.

Responsibilities

  • Assistthe Government lead in coordinating teams in preliminary incident response investigations
  • Assistthe Government lead with interfacing with the customer while on site
  • Determineappropriate courses of actions in response to identified and analyzedanomalous network activity
  • Assessnetwork topology and device configurations identifying critical security concerns and providing security best practice recommendations
  • Assistwith the writing and publishing of Computer Network Defense guidance and reporton incident findings to appropriate constituencies
  • Collectnetwork intrusion artifacts (e.g. PCAP domains URIs certificates etc.) and usediscovered data to enable mitigation of potential Computer Network Defense incidents
  • Analyzeidentified malicious network activity to determine weaknesses exploited exploitation methods effects on system and information
  • Collect network device integrity data and analyze for signs of tampering or compromise
  • Assistwith real-time CND incident handling (i.e. forensic collections intrusion correlation and tracking threat analysis and advising on system remediation) tasks to support onsite engagements

Requirements

  • U.S. Citizenship
  • Active TS / SCI Clearance
  • Must be able to obtain DHS Suitability
  • BS Computer Science Cyber Security Computer Engineering or related degree; or HS Diploma & 4-6 years of network investigations experience
  • 2 years of directly relevant experience in network investigations
  • In depth knowledge of CND policies procedures and regulations
  • In depth knowledge of TCP / IP protocols
  • In depth knowledge of standard protocols ICMP HTTP / S DNS SSH SMTP SMB NFS etc.
  • In depth knowledge and experience of Wifi networking
  • In depth knowledge and experience of network topologies - DMZs WANs etc.
  • Substantial knowledge of Splunk (or other SIEMs)
  • Understanding of MITRE Adversary Tactics Techniques and Common Knowledge (ATT&CK)
  • Knowledge of Computer Network Defense policies procedures and regulations
  • Knowledge of defense-in-depth principles and general attack stages with respect to network security architecture
  • Ability to characterize and analyze network traffic to identify anomalous activity and potential threats to network resources
  • Ability to identify and analyze anomalies in network traffic using metadata
  • Experience with reconstructing a malicious attack or activity based on network traffic
  • Experience examining network topologies to understand data flows through the network
  • Must be able to work collaboratively across physical locations
  • Desired Skills

  • Substantial knowledge of network device integrity concepts and methodologies
  • Proficiency with network analysis software (e.g. Wireshark)
  • Proficiency with carving and extracting information from PCAP data
  • Proficiency with non-traditional network traffic (e.g. Command and Control)
  • Proficiency with preserving evidence integrity according to standard operating procedures or national standards
  • Proficiency with designing cyber security systems and environments in a Linux and / or Windows environment
  • Proficiency with virtualized environments
  • Certifications :
  • DoD 8140.01 IAT Level II IASAE II CSSP Analyst

  • DoD 8140.01 GCIA GCIH CSSP Analyst / CSSP Incident Responder
  • DoD 8140.01 CEH CSSP Analyst
  • SANS GIAC GNFA preferred
  • About Us

    For more than 20 years NewGen Technologies has solved our clients toughest IT challenges with integrity security and outstanding service by delivering both technology and talent. We have helped secure borders have used artificial intelligence (AI) to fight terror aided the identification of criminals and have helped to prevent crime through the introduction of team of Highly Cleared Specialists have hard-to-find skills and expertise in a wide spectrum of technologies to provide solutions that transform business processes and solve problems of national significance. #CJ

    Required Experience :

    IC

    Key Skills

    IDS,Network Support,Tcp / IP,LAN,Computer Networking,Windows,TCP,Perl,Telecommunication,Operating Systems,Juniper,Dns

    Employment Type : Full Time

    Experience : years

    Vacancy : 1

    Create a job alert for this search

    Cybersecurity Analyst • Arlington, Texas, USA

    Related jobs
    Cyber Risk Lead

    Cyber Risk Lead

    Pluralsight, LLC • Westlake, TX, United States
    Full-time
    We are seeking an experienced security professional to join our Information Security team and be an integral part of developing our Information Security program. Reporting to the Director of IT GRC,...Show more
    Last updated: less than 1 hour ago • Promoted • New!
    Senior Principal Cybersecurity Engineer, Incident Response

    Senior Principal Cybersecurity Engineer, Incident Response

    GM Financial • Arlington, TX, United States
    Full-time
    Hybrid work environment : 4 days onsite and 1 day remote.Why GM Financial Cybersecurity?.Innovation isn't just a talking point at GM Financial, it's how we operate. By joining our team, you'll work i...Show more
    Last updated: 4 days ago • Promoted
    Cyber Application Security Engineer

    Cyber Application Security Engineer

    Veracity • Frisco, TX, United States
    Full-time
    Cyber Application Security Engineer.Omaha, NE, Berkeley Heights, NJ, Alpharetta, GA, Atlanta, GA, or Frisco, TX (100% Onsite). Governance, Risk and Compliance, NIST and PCI frameworks, Microsoft Sha...Show more
    Last updated: 1 day ago • Promoted
    Cybersecurity Portfolio Reporting Analyst

    Cybersecurity Portfolio Reporting Analyst

    eTeam Inc • Fort Worth, Texas, United States
    Temporary
    Quick Apply
    Job Title : The Cybersecurity Portfolio Reporting Analyst.Job Location : Fort Worth, TX 76155.Hybrid role : 3 days onsite per week. Job Type : Contract, 6 Months contract.The Cybersecurity Portfolio Rep...Show more
    Last updated: 30+ days ago
    Cybersecurity Engineer - Vulnerability Management and Application Security

    Cybersecurity Engineer - Vulnerability Management and Application Security

    GM Financial • Arlington, TX, United States
    Full-time
    Opportunity to work in a hybrid model : Potential to work 4 days onsite and 1 day remote.Why GM Financial Cybersecurity?. Innovation isn't just a talking point at GM Financial, it's how we operate.By...Show more
    Last updated: 4 days ago • Promoted
    Cyber Security Engineer Master

    Cyber Security Engineer Master

    Texas Capital Bank • Richardson, TX, United States
    Full-time
    Texas Capital is built to help businesses and their leaders.Our depth of knowledge and expertise allows us to bring the best of the big firms at a scale that works for our clients, with highly expe...Show more
    Last updated: 1 day ago • Promoted
    Cyber Risk & Analysis Manager

    Cyber Risk & Analysis Manager

    Capital One • Plano, TX, United States
    Full-time +1
    Capital One is seeking an energetic, self-motivated Cyber Risk & Analysis Manager with experience evaluating and analyzing technology and cybersecurity risks and managing cyber related Third Party ...Show more
    Last updated: 1 day ago • Promoted
    Cybersecurity Architect

    Cybersecurity Architect

    GM Financial • Arlington, TX, United States
    Full-time
    Opportunity to work in a hybrid model : Potential to work 4 days onsite and 1 day remote.Why GM Financial Cybersecurity?. Innovation isn't just a talking point at GM Financial, it's how we operate.By...Show more
    Last updated: 4 days ago • Promoted
    Cyber Risk Mgmt Principal

    Cyber Risk Mgmt Principal

    Texas Capital Bank • Richardson, TX, United States
    Full-time
    Texas Capital is built to help businesses and their leaders.Our depth of knowledge and expertise allows us to bring the best of the big firms at a scale that works for our clients, with highly expe...Show more
    Last updated: 1 day ago • Promoted
    Insider Risk Engineer - Cyber

    Insider Risk Engineer - Cyber

    Software Resources • Irving, TX, United States
    Permanent
    Software Resources has an immediate, direct hire job opportunity for an Insider Risk Engineer - Cyber with a major corporation in Dallas / Irving, TX. User Entity Behavior Analytics (UEBA).Must be abl...Show more
    Last updated: 1 day ago • Promoted
    Senior Security Analyst - Contract to Hire - Hybrid

    Senior Security Analyst - Contract to Hire - Hybrid

    Liberty Personnel Services, Inc. • Dallas, TX, United States
    Full-time
    Senior Security Analyst - Contract to Hire - Hybrid.Senior Security Analyst - GRC - Contract to Hire - Hybrid.Our client is seeking a Senior IT Risk Analyst to identify, assess, and mitigate securi...Show more
    Last updated: 8 hours ago • Promoted • New!
    Network Security & Cybersecurity Manager

    Network Security & Cybersecurity Manager

    E-Solutions • Frisco, TX, United States
    Full-time
    Role : Network Security & Cybersecurity Manager.Must have 15+ years' experience in multiple Security technologies and products. Should be confident leader with management and organizational skills.De...Show more
    Last updated: 1 day ago • Promoted
    Principal Cybersecurity Engineer, Incident Response

    Principal Cybersecurity Engineer, Incident Response

    GM Financial • Arlington, TX, United States
    Full-time
    Hybrid work environment : 4 days onsite and 1 day remote.Why GM Financial Cybersecurity?.Innovation isn't just a talking point at GM Financial, it's how we operate. By joining our team, you'll work i...Show more
    Last updated: 3 days ago • Promoted
    Cyber Intelligence, Security Systems

    Cyber Intelligence, Security Systems

    L3Harris Technologies • DALLAS DOWNTOWN, Texas, United States
    Full-time
    L3Harris is dedicated to recruiting and developing high-performing talent who are passionate about what they do.Our employees are unified in a shared dedication to our customers’ mission and quest ...Show more
    Last updated: 6 hours ago • Promoted • New!
    Cyber Security Engineer I

    Cyber Security Engineer I

    TAMKO • Coppell, TX, United States
    Full-time
    The Cybersecurity Engineer I is a hands-on role that provides critical support to TAMKO's integrated IT and Operational Technology (OT) security operations. This position offers direct exposure to m...Show more
    Last updated: 3 days ago • Promoted
    PING Security Analyst

    PING Security Analyst

    Compunnel • Dallas, TX, United States
    Full-time
    We are seeking a skilled Cybersecurity Analyst with a strong focus in Identity and Access Management (IAM).This role will support improvements in access management, emphasizing secure end-user acce...Show more
    Last updated: 30+ days ago • Promoted
    IT Security Analyst

    IT Security Analyst

    Global Channel Management • Dallas, TX, United States
    Full-time
    About the job IT Security Analyst.IT Security Analyst needs 3 years it sec.Understands and updates knowledge of core operating systems, applications, and networking functionality and concepts.Hybri...Show more
    Last updated: 30+ days ago • Promoted
    Security Analyst

    Security Analyst

    Nexstar Broadcasting • Irving, TX, United States
    Full-time
    The Security Analyst is responsible for the monitoring, investigation, and analysis of security issues across several tool sets and disciplines. The ideal candidate will have a general IT background...Show more
    Last updated: 1 day ago • Promoted