Talent.com
Monitoring Cyber Incident Response Team (CIRT) Analyst
Monitoring Cyber Incident Response Team (CIRT) AnalystPeraton • Beltsville, MD, US
Monitoring Cyber Incident Response Team (CIRT) Analyst

Monitoring Cyber Incident Response Team (CIRT) Analyst

Peraton • Beltsville, MD, US
8 days ago
Job type
  • Temporary
Job description

Required :

  • Bachelor's degree and at least 2 years of experience or a High School diploma and 6 years of experience.
  • One of the professional certifications listed below, or have the ability to obtain one prior to start date :

A+ CE, CCNA-Security, CND, Network+ CE, SSCP

  • Continued certification is required as a condition of employment.
  • Demonstrated experience in the Incident Response lifecycle.
  • Knowledge of SOAR ticketing and automated response systems (e.g. ServiceNow, Splunk SOAR, Microsoft Sentinel).
  • Demonstrated experience with using Security Information and Event Management (SIEM) platforms (e.g. Splunk, Microsoft Sentinel, Elastic, Q-Radar).
  • Demonstrated experience in using Endpoint Detection and Response systems (e.g. MDE, ElasticXDR, CarbonBlack, Crowdstrike).
  • Knowledge of cloud security monitoring and incident response.
  • Knowledge of integrating IOCs and Advanced Persistent Threat actors.
  • Ability to analyze cyber threat intelligence reporting and understanding adversary methodologies and techniques.
  • Knowledge of malware analysis techniques.
  • Knowledge of the MITRE ATT&CK and D3FEND frameworks.
  • U.S. Citizenship required.
  • Active Interim Secret clearance in order to start.
  • Preferred :

  • Active Secret clearance.
  • Proficiency with Splunk for security monitoring, alert creation, and threat hunting.
  • Knowledge of Microsoft Azure access and identity management.
  • Proficiency with Microsoft Defender for Endpoint and Identity for security monitoring, response, and alert generations.
  • Experience in using digital forensics collection and analysis tools (e.g. Autopsy, MagnetForensics, Zimmerman-Tools, KAPE, CyLR, Volatility).
  • Experience with using ServiceNow SOAR for ticketing and automated response.
  • Knowledge of Python, PowerShell and BASH scripting languages.
  • Experience with cloud security monitoring and incident response.
  • Demonstrated ability to perform static / dynamic malware analysis and reverse engineering.
  • Experience with integrating cyber threat intelligence and IOC-based hunting.
  • Technical certifications such as : Security+, CySA+, Cloud+, Try Hack Me SAL1, Hack the Box CDSA, CyberDefenders, CCD, Azure SC-900, CCSP, GCIH, CCSK, GSEC, CHFI, GCLD, GCIA.
  • Advanced technical certifications such as : SecurityX / CASP+, PRMP, GREM, GEIR, GNFA, or GCFA.
  • Peraton is seeking an experienced Monitoring Cyber Incident Response Team (CIRT) Analyst to join Peratons' Federal Strategic Cyber Mission program.

    Location : Beltsville, MD; On-site

    Work Hours : Days Shift, 0600 – 1400 EST, SUN-THU.

    In this role, you will :

  • Detect, classify, process, track, and report on cyber security events and incidents.
  • Perform advanced in-depth analysis of coordinated Tier 1 alert triage and requests in a 24x7x365 environment.
  • Analyze logs from multiple sources (e.g., host logs, EDR, firewalls, intrusion detection systems, servers) to identify, contain, and remediate suspicious activity.
  • Characterize and analyze network traffic to identify anomalous activity and potential threats.
  • Protect against and prevent potential cyber security threats and vulnerabilities.
  • Perform forensic analysis of hosts artifacts, network traffic, and email content.
  • Analyze malicious scripts and code to mitigate potential threats.
  • Conduct malware analysis to generate IOCs to identify and mitigate threats.
  • Collaborate with Department of State teams to analyze and respond to events and incidents.
  • Monitor and respond to the CIRT Security Orchestration and Automation Response (SOAR) platform, hotline, email in-boxes.
  • Create tickets and initiate workflows as instructed in technical SOPs.
  • Coordinate and report incident information to the Cybersecurity and Infrastructure Security Agency (CISA).
  • Collaborate with other local, national and international CIRTs as directed.
  • Submit alert tuning requests.
  • DSCM

    J-18808-Ljbffr

    Create a job alert for this search

    Incident Response • Beltsville, MD, US

    Related jobs
    Mid Cyber Incident Analyst

    Mid Cyber Incident Analyst

    ECS • Arlington, VA, US
    Full-time
    ECS is seeking talented professionals to join our successful and growing team supporting the Cybersecurity and Infrastructure Security Agency's (CISA) Joint Cyber Defense Collaborative (JCDC).The J...Show more
    Last updated: 8 days ago • Promoted
    Tier 3 Incident Response Senior Analyst

    Tier 3 Incident Response Senior Analyst

    Resource Management Concepts, Inc. • Quantico, VA, US
    Full-time
    Quick Apply
    Tier 3 Incident Response Senior Analyst.Quantico, Virginia, providing defensive cyberspace operations and Cyber Security Service Provider (CSSP) functions. This position will support the government'...Show more
    Last updated: 25 days ago
    Senior Consultant, Cyber Incident Response

    Senior Consultant, Cyber Incident Response

    Control Risks • Washington, DC, US
    Full-time +1
    Quick Apply
    The Senior Consultant is responsible for delivering Incident Response support to our clients by helping them investigate and remediate the impacts of cyber attacks quickly and comprehensively.This ...Show more
    Last updated: 30+ days ago
    Senior Cyber Intrusion Detection Analyst

    Senior Cyber Intrusion Detection Analyst

    Vets Hired • Washington, D.C., District of Columbia, United States
    Full-time
    Quick Apply
    A Senior Cyber Intrusion Detection Analyst is needed to provide advanced incident response and monitoring support.This is a hybrid position based in Washington, D. Saturday & Sunday, Friday 11pm7am,...Show more
    Last updated: 30+ days ago
    Tier 2 Cyber Incident Response Team (CIRT) Analyst with Security

    Tier 2 Cyber Incident Response Team (CIRT) Analyst with Security

    INTERNETWORK CONSULTING SERVICES LLC • Beltsville, MD, US
    Full-time
    In this role, you will need to : .Detect, classify, process, track, and report on cyber security events and incidents.Perform advanced in–depth analysis of coordinated Tier 1 alert triage and request...Show more
    Last updated: 7 days ago • Promoted
    Mid Cyber Analyst (Technical Response Team)

    Mid Cyber Analyst (Technical Response Team)

    Prescient Edge • Quantico, VA, US
    Full-time
    Mid Cyber Analyst (Technical Response Team).At Prescient Edge, we believe that acting with integrity and serving our employees is the key to everyone's success. To that end, we provide employees wit...Show more
    Last updated: 8 days ago • Promoted
    Cybersecurity Vulnerability Analyst (Incident Manager III)

    Cybersecurity Vulnerability Analyst (Incident Manager III)

    Vervic • Arlington, VA, USA
    Full-time
    Quick Apply
    Cybersecurity Vulnerability Analyst (Incident Manager III.Supporting our prime contractor and their U.Government customer to provide cybersecurity vulnerability analysis support to reduce the preva...Show more
    Last updated: 4 days ago
    Cybersecurity Vulnerability Analyst (Incident Manager III)

    Cybersecurity Vulnerability Analyst (Incident Manager III)

    Solutions³ LLC • Arlington, VA, US
    Full-time
    Quick Apply
    Cybersecurity Vulnerability Analyst (Incident Manager III ) Description : Solutions³ LLC is supporting our prime contractor and their U. Government customer to provide cybersecurity vulne...Show more
    Last updated: 30+ days ago
    Senior SOC Analyst

    Senior SOC Analyst

    KeenLogic • Merrifield, VA, US
    Full-time
    Quick Apply
    Senior SOC Analyst and Incident Responder KeenLogic is seeking to hire a Senior SOC Analyst & Incident Responder to join our team at the Drug Enforcement Administration.All the duties listed su...Show more
    Last updated: 4 days ago
    Cybersecurity Service Provider / Incident Response (CSSP / IR) Analyst

    Cybersecurity Service Provider / Incident Response (CSSP / IR) Analyst

    Bespoke Corps LLC • Arlington, VA, US
    Full-time
    Bespoke Corps, LLC is looking for a qualified candidate to provide on-site support to one of our valued Department of Defense (DoD) customers. We are seeking a (CSSP / IR) specialist with specific ski...Show more
    Last updated: 8 days ago • Promoted
    Senior Cyber Analyst (Technical Response Team)

    Senior Cyber Analyst (Technical Response Team)

    Prescient Edge • Quantico, VA, US
    Full-time
    Senior Cyber Analyst (Technical Response Team).At Prescient Edge, we believe that acting with integrity and serving our employees is the key to everyone's success. To that end, we provide employees ...Show more
    Last updated: 8 days ago • Promoted
    Cyber Incident Manager / Incident Manager

    Cyber Incident Manager / Incident Manager

    Node.Digital • Arlington, VA, US
    Full-time
    Quick Apply
    Cyber Incident Manager / Incident Manager.Must have an active Top Secret Security Clearance.Government customer to provide support for onsite incident response to civilian Government agencies and cr...Show more
    Last updated: 30+ days ago
    Senior Cyber Defense Incident Responder

    Senior Cyber Defense Incident Responder

    Network Designs Inc. • Washington DC, DC, USA
    Full-time
    Quick Apply
    NDi) is a leading Federal contractor that specializes in designing, developing, and delivering information technology and network solutions for government customers. Founded in 1985, NDi's firmly de...Show more
    Last updated: 6 days ago
    Tier 2 Cyber Incident Response Team (CIRT) Analyst at Peraton Beltsville, MD

    Tier 2 Cyber Incident Response Team (CIRT) Analyst at Peraton Beltsville, MD

    Itlearn360 • Beltsville, MD, US
    Temporary
    Tier 2 Cyber Incident Response Team (CIRT) Analyst job at Peraton.Encompasses technical, engineering, data analytics, cyber security, management, operational, logistical, and administrative support...Show more
    Last updated: 8 days ago • Promoted
    Jr. Cyber Incident Analyst

    Jr. Cyber Incident Analyst

    ECS • Arlington, VA, US
    Full-time
    ECS is seeking talented professionals to join our successful and growing team supporting the Cybersecurity and Infrastructure Security Agency's (CISA) Joint Cyber Defense Collaborative (JCDC).The J...Show more
    Last updated: 8 days ago • Promoted
    Tier 2 Cyber Incident Response Team (CIRT) Analyst

    Tier 2 Cyber Incident Response Team (CIRT) Analyst

    Peraton • Beltsville, MD, US
    Temporary
    Bachelor's degree and at least 2 years of experience or a High School diploma and 6 years of experience.Must possess one of the following certifications prior to start date : .A+ CE, CCNA-Security, C...Show more
    Last updated: 8 days ago • Promoted
    Cyber Incident Response Analyst IV

    Cyber Incident Response Analyst IV

    Nightwing • Sterling, VA, US
    Full-time
    Nightwing provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges.Our capa...Show more
    Last updated: 8 days ago • Promoted
    (Cyber) Incident Management Analyst - Hybrid

    (Cyber) Incident Management Analyst - Hybrid

    Nightwing Intelligence Solutions, LLC • Sterling, VA, US
    Full-time
    Cyber) Incident Management Analyst - Hybrid page is loaded.Cyber) Incident Management Analyst - Hybrid.Apply locations Sterling, VA time type Full time posted on Posted 30+ Days Ago job requisition...Show more
    Last updated: 2 days ago • Promoted