Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cyber Network Forensic Analyst III

Nightwing

Nightwing provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges. Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical surveillance, data intelligence, lifecycle mission enablement, and software modernization. Nightwing brings disruptive technologies, agility, and competitive offerings to customers in the intelligence community, defense, civil, and commercial markets.

Nightwing provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges. Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical surveillance, data intelligence, lifecycle mission enablement, and software modernization. Nightwing brings disruptive technologies, agility, and competitive offerings to customers in the intelligence community, defense, civil, and commercial markets.

Nightwing is supporting a U.S. Government customer to provide support for onsite incident response to civilian Government agencies and critical asset owners who experience cyber-attacks, providing immediate investigation and resolution. Contract personnel perform investigations to characterize of the severity of breaches, develop mitigation plans, and assist with the restoration of services. Nightwing is seeking a Network Forensics Analyst to support this critical customer mission.

Responsibilities:
- Assists the Government lead in coordinating teams in preliminary incident response investigations
- Assists the Government lead with interfacing with the customer while on site
- Determines appropriate courses of actions in response to identified and analyses anomalous network activity
- Assesses network topology and device configurations identifying critical security concerns and providing security best practice recommendations
- Assists with the writing and publishing of Computer Network Defense guidance and reports on incident findings to appropriate constituencies
- Collects network intrusion artifacts (e.g., PCAP, domains, URI's, certificates, etc.) and uses discovered data to enable mitigation of potential Computer Network Defense incidents
- Analyzes identified malicious network activity to determine weaknesses exploited, exploitation methods, effects on system and information
- Collects network device integrity data and analyze for signs of tampering or compromise
- Assists with real-time CND incident handling (i.e., forensic collections, intrusion correlation and tracking, threat analysis, and advising on system remediation) tasks to support onsite engagements

Required Skills:
- U.S. Citizenship
- Must have an active TS/SCI clearance
- Must be able to obtain DHS Suitability
- 8+ years of directly relevant experience in network investigations
- In depth knowledge of CND policies, procedures and regulations
- In depth knowledge of TCP/IP protocols
- In depth knowledge of standard protocols - ICMP, DNS, SSH, SMTP, SMB, NFS, etc.
- In depth knowledge and experience of Wifi networking
- In depth knowledge and experience of network topologies - DMZ's, WAN's, etc.
- Substantial knowledge of Splunk (or other SIEM's)
- Understanding of MITRE Adversary Tactics, Techniques and Common Knowledge (ATT&CK)
- Knowledge of Computer Network Defense policies, procedures, and regulations
- Knowledge of defense-in-depth principles and general attack stages with respect to network security architecture
- Ability to characterize and analyze network traffic to identify anomalous activity and potential threats to network resources
- Ability to identify and analyze anomalies in network traffic using metadata
- Experience with reconstructing a malicious attack or activity based on network traffic
- Experience examining network topologies to understand data flows through the network
- Must be able to work collaboratively across physical locations

Desired Skills:
- Substantial knowledge of network device integrity concepts and methodologies
- Proficiency with network analysis software (e.g. Wireshark)
- Proficiency with carving and extracting information from PCAP data
- Proficiency with non-traditional network traffic (e.g. Command and Control)
- Proficiency with preserving evidence integrity according to standard operating procedures or national standards
- Proficiency with designing cyber security systems and environments in a Linux and/or Windows environment
- Proficiency with virtualized environments

Required Education:
BS Computer Science, Cyber Security, Computer Engineering, or related degree; or HS Diploma & 10+ years of network investigations experience.

Desired Certifications:
- DoD 8140.01 IAT Level II, IASAE II, CSSP Analyst
- DoD 8140.01 GCIA, GCIH, CSSP Analyst/CSSP Incident Responder
- DoD 8140.01 CEH, CSSP Analyst
- SANS GIAC GNFA preferred

Arlington, VA

At Nightwing, we value collaboration and teamwork. You'll have the opportunity to work alongside talented individuals who are passionate about what they do. Together, we'll leverage our collective expertise to drive innovation, solve complex problems, and deliver exceptional results for our clients.

Thank you for considering joining us as we embark on this new journey and shape the future of cybersecurity and intelligence together as part of the Nightwing team.

Nightwing is An Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age or any other federally protected class.
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Cyber Network Forensic Analyst III in Arlington, VA vacancy
  •  ...Cyber Network Defense Analyst (CNDA) - Cloud Forensics Location: Remote / Onsite (as required) Clearance: Active TS/SCI (DHS EOD eligibility required) Company: Argo Cyber Systems, LLC - A Service-Disabled Veteran-Owned Small Business (SDVOSB) About Argo... 
    Cyber
    Remote work

    Argo Cyber Systems

    Arlington, VA
    1 day ago
  •  ...Cyber Network Defense Analysts (CNDA) Our partner, as a prime contractor to a US Government Customer, performs investigations to develop a preliminary...  ...personnel provide front line response for digital forensics/incident response (DFIR) and proactively hunting for... 
    Cyber
    Contract work
    For contractors
    Local area
    Immediate start
    Remote work

    NewGen Technologies (Maryland)

    Arlington, VA
    2 days ago
  •  ...Host Based Cyber Systems Analyst III Host-Based Systems Analyst III (HBA03) - Full Performance Location...  ...onsite and remote response, advanced forensics, and proactive threat-hunting capabilities across federal civilian networks and high-value assets. As part of... 
    Cyber
    Remote work

    Argo Cyber Systems

    Arlington, VA
    2 days ago
  •  ...Security Clearance! Host Based Systems Analyst - III - HBA03 - Full Performance Argo Cyber Systems provides remote and...  ...and resolution using host-based, network-based and cloud-based...  ...front line response for digital forensics/incident response (DFIR) and proactively... 
    Cyber
    Immediate start
    Remote work

    ARGO Cyber Systems, LLC

    Arlington, VA
    3 days ago
  •  ...Network Engineering Analyst -Level III Kingfisher Systems, Inc. (Kingfisher) specializes in providing a full range of Information Technology, Cybersecurity...  ...'s degree in a STEM discipline, e.g., Computer Science, Cyber Security, Engineering, Mathematics, or Statistics.... 
    Cyber
    Work experience placement

    Kingfisher Systems

    Falls Church, VA
    2 days ago
  • $100k - $125k

    Incident Response Expert III (Cyber Eviction Analysts) Location: Washington DC Metro Area (On-Site) Citizenship...  ...rapid incident response, advanced forensics, and coordinated recovery operations...  ...investigation, using host and network-based cybersecurity analysis capabilities... 
    Cyber
    Local area
    Immediate start

    ARGO Cyber Systems

    Arlington, VA
    3 days ago
  •  ...Network Based Systems Analyst - II The client provides remote and onsite advanced technical assistance, proactive...  ...provide front line response for digital forensics/incident response (DFIR) and proactively hunting for malicious cyber activity. We are seeking Cyber Network... 
    Cyber
    Immediate start
    Remote work

    Beyond SOF

    Arlington, VA
    14 days ago
  •  ...and resolution using host-based, network-based and cloud-based...  ...front line response for digital forensics/incident response (DFIR) and proactively...  ...hunting for malicious cyber activity. They are seeking Cyber Network Defense Analysts (CNDA) to support this critical... 
    Cyber
    Immediate start
    Remote work

    New Gen

    Arlington, VA
    4 days ago
  • A leading cybersecurity firm is seeking a Network Forensics Analyst to support critical incident response missions. Candidates must have 8+ years of experience in network investigations, preferably with an active TS/SCI clearance. The role involves coordinating teams, analyzing... 
    Cyber

    Nightwing

    Arlington, VA
    2 days ago
  •  ...Cyber Network Defense Analysts (CNDA) Our Partner provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident...  .... Team personnel provide front line response for digital forensics/incident response (DFIR) and proactively hunting for... 
    Cyber
    Immediate start
    Remote work

    NewGen Technologies (Maryland)

    Arlington, VA
    2 days ago
  • $3,500 per month

     ...opportunities to grow and the ability to have an impact on every client you work with. ARSIEM is looking for a Cyber Network Defense Analyst to monitor network activity and identify and report events that occur, or might occur, within the network, in order to... 
    Cyber
    Local area
    Immediate start

    ARSIEM Corporation

    Arlington, VA
    2 days ago
  • A cybersecurity and intelligence firm in Arlington, VA, is seeking a qualified candidate to support computer network defense operations. The role involves coordinating incident response investigations and analyzing network traffic for security issues. Candidates must have... 
    Cyber

    Nightwing

    Arlington, VA
    1 day ago
  •  ...response to identified and analyses anomalous network activity o Assesses network topology and...  ...real-time CND incident handling (i.e., forensic collections, intrusion correlation and...  ...Required Education: BS Computer Science, Cyber Security, Computer Engineering, or related... 
    Cyber

    Base One Technologies

    Arlington, VA
    5 days ago
  •  ...Network Forensics Cybersecurity Analysts Our partner provides support for on and offsite incident response to government agencies and critical infrastructure owners who experience cyber-attacks. They offer advanced technical assistance, proactive hunting, rapid onsite... 
    Cyber
    Immediate start

    NewGen Technologies (Maryland)

    Arlington, VA
    4 days ago
  •  ...infrastructure owners who experience cyber-attacks. They offer advanced technical...  ...investigation, using host and network-based cybersecurity analysis capabilities...  ...remediation plans. They are seeking Network Forensics Cybersecurity Analysts to support this critical customer... 
    Cyber
    Immediate start

    New Gen

    Arlington, VA
    3 days ago
  • Cyber Incident Manager Location: Onsite (CONUS) / Shift Work Clearance...  ...incident response, advanced forensics, and coordinated recovery...  ...vectors using host and network data. Research and document...  ...functional teams-including threat analysts, forensics personnel, SOC operators... 
    Cyber
    Immediate start
    Shift work

    ARGO Cyber Systems, LLC

    Arlington, VA
    3 days ago
  • A cybersecurity company in Arlington, VA, is seeking experienced Network Forensics Cybersecurity Analysts to support incident response missions for government clients facing cyber threats. The ideal candidate has at least 8 years of experience in network investigations... 
    Cyber

    Nightwing

    Arlington, VA
    4 days ago
  • A cybersecurity firm is seeking a Cyber Network Defense Analyst (CNDA) with expertise in Cloud Forensics to support federal missions. The role includes conducting forensic analyses across hybrid environments, investigating incidents, and providing comprehensive reports... 
    Cyber
    Remote job

    ARGO Cyber Systems, LLC

    Arlington, VA
    1 day ago
  • $60k - $180k

     ...Penetration Tester III Chandler, AZ or Washington, DC - Secret clearance required M9 Solutions is dedicated to providing IT services...  ...include IT Talent Solutions, Data Delivery & Analytics, Cyber Security, Cloud Migration, Applications and Infrastructure, Software... 
    Cyber
    Contract work

    M9 Solutions

    Washington DC
    3 days ago
  •  ...The Cyber Security Specialist II/III supports cybersecurity engineering and compliance execution in a NAVSEA Program Office Support role. This role helps implement controls, monitor security posture, and remediate vulnerabilities across supported systems. This position... 
    Cyber
    Work at office

    Warrant Technologies LLC

    Washington DC
    2 days ago
  •  ...Host Based Systems Analyst - IV The client provides remote and...  ...resolution using host-based, network-based and cloud-based cybersecurity...  ...line response for digital forensics/incident response (DFIR) and...  ...hunting for malicious cyber activity. We are seeking Cyber... 
    Cyber
    Immediate start
    Remote work

    Beyond SOF

    Arlington, VA
    29 days ago
  •  ...analyzing, and responding to cyber threats to inform the customer...  ...Customers • Experience performing network security or application...  ...Security Plus (SEC+) • Intelligence Analyst Certified (IAC) • Certified...  ...leave Incident Manager - III - IMG03 ESS 3322, 3324... 
    Cyber
    Local area
    Flexible hours

    BCMC, LLC

    Arlington, VA
    4 days ago
  • A technology firm specializing in cybersecurity is seeking a Cyber SME III in Arlington, VA. The candidate should have extensive technical expertise in cyber engineering, with at least 15 years of experience and 10 years in project management. Key qualifications include... 
    Cyber

    Blue Sky Innovators, Inc

    Arlington, VA
    3 days ago
  • $3,500 per month

     ...ARSIEM is looking for a Host Forensics Analyst to provide front line response for digital...  ...and proactively hunting for malicious cyber activity. This position will support one...  ...Knowledgeable in proactive analysis of systems and networks, to include creating trust levels of... 
    Cyber

    ARSIEM Corporation

    Arlington, VA
    2 days ago
  •  ...Federal leads with overseeing and leading forensic teams at onsite engagements by...  ...years of directly relevant experience in cyber forensic investigations using leading-edge...  ...Knowledgeable in proactive analysis of systems and networks, to include creating trust levels of... 
    Cyber

    Base One Technologies

    Arlington, VA
    5 days ago
  •  ...contract award *** Overview SOSi is seeking a Data Scientist III to support cybersecurity data science and enrichment activities...  ...behavior analytics, and data correlation services supporting cyber defense operations. Responsibilities • Develop and apply data... 
    Cyber
    Contract work
    Work at office
    Worldwide
    Monday to Friday
    Weekend work
    Afternoon shift

    SOSi

    Washington DC
    2 days ago
  •  ...Host Forensic Analyst/Host Based Systems Analyst Location: Arlington, VA Must have Top Secret...  ...of directly relevant experience in cyber forensic investigations using leading-edge...  ...in a proactive analysis of systems and networks, including creating trust levels of... 
    Cyber

    Node.Digital

    Arlington, VA
    6 days ago
  •  ...Sr. Solutions Architect III - Cyber Washington, DC Type: Permanent Category: Architecture...  .... Design and implement controls for networks and infrastructure services across IL5...  ...Drive incident response processes and forensic analysis to contain and eradicate... 
    Cyber
    Hourly pay
    Permanent employment
    Full time
    Local area

    Eliassen Group

    Washington DC
    6 days ago
  •  ...speed, ownership, and execution over bureaucracy. Title: Cyber Intelligence Analyst III Location: Washington, DC or Chandler, AZ Terms: Full-...  ...(one required) CFR (CyberSec First Responder), CompTIA Network+, CompTIA Security+, or CEH (Certified Ethical Hacker) Nice... 
    Cyber
    Full time
    Work experience placement
    Flexible hours

    Revolutional

    Washington DC
    5 days ago
  • Elevate Ventures in Washington is seeking a Cyber Security Specialist II/III to support cybersecurity engineering and compliance in a NAVSEA Program Office. The role involves implementing controls, monitoring security posture, and fixing vulnerabilities across systems.... 
    Cyber
    Work at office

    Elevate Ventures

    Washington DC
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cyber Network Forensic Analyst III. Be the first to apply!