Cyber Network Forensic Analyst III
Nightwing
Nightwing provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges. Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical surveillance, data intelligence, lifecycle mission enablement, and software modernization. Nightwing brings disruptive technologies, agility, and competitive offerings to customers in the intelligence community, defense, civil, and commercial markets.
Nightwing provides technically advanced full-spectrum cyber, data operations, systems integration and intelligence mission support services to meet our customers' most demanding challenges. Our capabilities include cyber space operations, cyber defense and resiliency, vulnerability research, ubiquitous technical surveillance, data intelligence, lifecycle mission enablement, and software modernization. Nightwing brings disruptive technologies, agility, and competitive offerings to customers in the intelligence community, defense, civil, and commercial markets. Nightwing is supporting a U.S. Government customer to provide support for onsite incident response to civilian Government agencies and critical asset owners who experience cyber-attacks, providing immediate investigation and resolution. Contract personnel perform investigations to characterize of the severity of breaches, develop mitigation plans, and assist with the restoration of services. Nightwing is seeking a Network Forensics Analyst to support this critical customer mission. Responsibilities:- Assists the Government lead in coordinating teams in preliminary incident response investigations
- Assists the Government lead with interfacing with the customer while on site
- Determines appropriate courses of actions in response to identified and analyses anomalous network activity
- Assesses network topology and device configurations identifying critical security concerns and providing security best practice recommendations
- Assists with the writing and publishing of Computer Network Defense guidance and reports on incident findings to appropriate constituencies
- Collects network intrusion artifacts (e.g., PCAP, domains, URI's, certificates, etc.) and uses discovered data to enable mitigation of potential Computer Network Defense incidents
- Analyzes identified malicious network activity to determine weaknesses exploited, exploitation methods, effects on system and information
- Collects network device integrity data and analyze for signs of tampering or compromise
- Assists with real-time CND incident handling (i.e., forensic collections, intrusion correlation and tracking, threat analysis, and advising on system remediation) tasks to support onsite engagements Required Skills:
- U.S. Citizenship
- Must have an active TS/SCI clearance
- Must be able to obtain DHS Suitability
- 8+ years of directly relevant experience in network investigations
- In depth knowledge of CND policies, procedures and regulations
- In depth knowledge of TCP/IP protocols
- In depth knowledge of standard protocols - ICMP, DNS, SSH, SMTP, SMB, NFS, etc.
- In depth knowledge and experience of Wifi networking
- In depth knowledge and experience of network topologies - DMZ's, WAN's, etc.
- Substantial knowledge of Splunk (or other SIEM's)
- Understanding of MITRE Adversary Tactics, Techniques and Common Knowledge (ATT&CK)
- Knowledge of Computer Network Defense policies, procedures, and regulations
- Knowledge of defense-in-depth principles and general attack stages with respect to network security architecture
- Ability to characterize and analyze network traffic to identify anomalous activity and potential threats to network resources
- Ability to identify and analyze anomalies in network traffic using metadata
- Experience with reconstructing a malicious attack or activity based on network traffic
- Experience examining network topologies to understand data flows through the network
- Must be able to work collaboratively across physical locations Desired Skills:
- Substantial knowledge of network device integrity concepts and methodologies
- Proficiency with network analysis software (e.g. Wireshark)
- Proficiency with carving and extracting information from PCAP data
- Proficiency with non-traditional network traffic (e.g. Command and Control)
- Proficiency with preserving evidence integrity according to standard operating procedures or national standards
- Proficiency with designing cyber security systems and environments in a Linux and/or Windows environment
- Proficiency with virtualized environments Required Education:
BS Computer Science, Cyber Security, Computer Engineering, or related degree; or HS Diploma & 10+ years of network investigations experience. Desired Certifications:
- DoD 8140.01 IAT Level II, IASAE II, CSSP Analyst
- DoD 8140.01 GCIA, GCIH, CSSP Analyst/CSSP Incident Responder
- DoD 8140.01 CEH, CSSP Analyst
- SANS GIAC GNFA preferred Arlington, VA At Nightwing, we value collaboration and teamwork. You'll have the opportunity to work alongside talented individuals who are passionate about what they do. Together, we'll leverage our collective expertise to drive innovation, solve complex problems, and deliver exceptional results for our clients. Thank you for considering joining us as we embark on this new journey and shape the future of cybersecurity and intelligence together as part of the Nightwing team. Nightwing is An Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age or any other federally protected class.
- ...Cyber Network Defense Analyst (CNDA) - Cloud Forensics Location: Remote / Onsite (as required) Clearance: Active TS/SCI (DHS EOD eligibility required) Company: Argo Cyber Systems, LLC - A Service-Disabled Veteran-Owned Small Business (SDVOSB) About Argo...CyberRemote work
- ...Cyber Network Defense Analysts (CNDA) Our partner, as a prime contractor to a US Government Customer, performs investigations to develop a preliminary... ...personnel provide front line response for digital forensics/incident response (DFIR) and proactively hunting for...CyberContract workFor contractorsLocal areaImmediate startRemote work
- ...Host Based Cyber Systems Analyst III Host-Based Systems Analyst III (HBA03) - Full Performance Location... ...onsite and remote response, advanced forensics, and proactive threat-hunting capabilities across federal civilian networks and high-value assets. As part of...CyberRemote work
- ...Security Clearance! Host Based Systems Analyst - III - HBA03 - Full Performance Argo Cyber Systems provides remote and... ...and resolution using host-based, network-based and cloud-based... ...front line response for digital forensics/incident response (DFIR) and proactively...CyberImmediate startRemote work
- ...Network Engineering Analyst -Level III Kingfisher Systems, Inc. (Kingfisher) specializes in providing a full range of Information Technology, Cybersecurity... ...'s degree in a STEM discipline, e.g., Computer Science, Cyber Security, Engineering, Mathematics, or Statistics....CyberWork experience placement
$100k - $125k
Incident Response Expert III (Cyber Eviction Analysts) Location: Washington DC Metro Area (On-Site) Citizenship... ...rapid incident response, advanced forensics, and coordinated recovery operations... ...investigation, using host and network-based cybersecurity analysis capabilities...CyberLocal areaImmediate start- ...Network Based Systems Analyst - II The client provides remote and onsite advanced technical assistance, proactive... ...provide front line response for digital forensics/incident response (DFIR) and proactively hunting for malicious cyber activity. We are seeking Cyber Network...CyberImmediate startRemote work
- ...and resolution using host-based, network-based and cloud-based... ...front line response for digital forensics/incident response (DFIR) and proactively... ...hunting for malicious cyber activity. They are seeking Cyber Network Defense Analysts (CNDA) to support this critical...CyberImmediate startRemote work
- A leading cybersecurity firm is seeking a Network Forensics Analyst to support critical incident response missions. Candidates must have 8+ years of experience in network investigations, preferably with an active TS/SCI clearance. The role involves coordinating teams, analyzing...Cyber
- ...Cyber Network Defense Analysts (CNDA) Our Partner provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident... .... Team personnel provide front line response for digital forensics/incident response (DFIR) and proactively hunting for...CyberImmediate startRemote work
$3,500 per month
...opportunities to grow and the ability to have an impact on every client you work with. ARSIEM is looking for a Cyber Network Defense Analyst to monitor network activity and identify and report events that occur, or might occur, within the network, in order to...CyberLocal areaImmediate start- A cybersecurity and intelligence firm in Arlington, VA, is seeking a qualified candidate to support computer network defense operations. The role involves coordinating incident response investigations and analyzing network traffic for security issues. Candidates must have...Cyber
- ...response to identified and analyses anomalous network activity o Assesses network topology and... ...real-time CND incident handling (i.e., forensic collections, intrusion correlation and... ...Required Education: BS Computer Science, Cyber Security, Computer Engineering, or related...Cyber
- ...Network Forensics Cybersecurity Analysts Our partner provides support for on and offsite incident response to government agencies and critical infrastructure owners who experience cyber-attacks. They offer advanced technical assistance, proactive hunting, rapid onsite...CyberImmediate start
- ...infrastructure owners who experience cyber-attacks. They offer advanced technical... ...investigation, using host and network-based cybersecurity analysis capabilities... ...remediation plans. They are seeking Network Forensics Cybersecurity Analysts to support this critical customer...CyberImmediate start
- Cyber Incident Manager Location: Onsite (CONUS) / Shift Work Clearance... ...incident response, advanced forensics, and coordinated recovery... ...vectors using host and network data. Research and document... ...functional teams-including threat analysts, forensics personnel, SOC operators...CyberImmediate startShift work
- A cybersecurity company in Arlington, VA, is seeking experienced Network Forensics Cybersecurity Analysts to support incident response missions for government clients facing cyber threats. The ideal candidate has at least 8 years of experience in network investigations...Cyber
- A cybersecurity firm is seeking a Cyber Network Defense Analyst (CNDA) with expertise in Cloud Forensics to support federal missions. The role includes conducting forensic analyses across hybrid environments, investigating incidents, and providing comprehensive reports...CyberRemote job
$60k - $180k
...Penetration Tester III Chandler, AZ or Washington, DC - Secret clearance required M9 Solutions is dedicated to providing IT services... ...include IT Talent Solutions, Data Delivery & Analytics, Cyber Security, Cloud Migration, Applications and Infrastructure, Software...CyberContract work- ...The Cyber Security Specialist II/III supports cybersecurity engineering and compliance execution in a NAVSEA Program Office Support role. This role helps implement controls, monitor security posture, and remediate vulnerabilities across supported systems. This position...CyberWork at office
- ...Host Based Systems Analyst - IV The client provides remote and... ...resolution using host-based, network-based and cloud-based cybersecurity... ...line response for digital forensics/incident response (DFIR) and... ...hunting for malicious cyber activity. We are seeking Cyber...CyberImmediate startRemote work
- ...analyzing, and responding to cyber threats to inform the customer... ...Customers • Experience performing network security or application... ...Security Plus (SEC+) • Intelligence Analyst Certified (IAC) • Certified... ...leave Incident Manager - III - IMG03 ESS 3322, 3324...CyberLocal areaFlexible hours
- A technology firm specializing in cybersecurity is seeking a Cyber SME III in Arlington, VA. The candidate should have extensive technical expertise in cyber engineering, with at least 15 years of experience and 10 years in project management. Key qualifications include...Cyber
$3,500 per month
...ARSIEM is looking for a Host Forensics Analyst to provide front line response for digital... ...and proactively hunting for malicious cyber activity. This position will support one... ...Knowledgeable in proactive analysis of systems and networks, to include creating trust levels of...Cyber- ...Federal leads with overseeing and leading forensic teams at onsite engagements by... ...years of directly relevant experience in cyber forensic investigations using leading-edge... ...Knowledgeable in proactive analysis of systems and networks, to include creating trust levels of...Cyber
- ...contract award *** Overview SOSi is seeking a Data Scientist III to support cybersecurity data science and enrichment activities... ...behavior analytics, and data correlation services supporting cyber defense operations. Responsibilities • Develop and apply data...CyberContract workWork at officeWorldwideMonday to FridayWeekend workAfternoon shift
- ...Host Forensic Analyst/Host Based Systems Analyst Location: Arlington, VA Must have Top Secret... ...of directly relevant experience in cyber forensic investigations using leading-edge... ...in a proactive analysis of systems and networks, including creating trust levels of...Cyber
- ...Sr. Solutions Architect III - Cyber Washington, DC Type: Permanent Category: Architecture... .... Design and implement controls for networks and infrastructure services across IL5... ...Drive incident response processes and forensic analysis to contain and eradicate...CyberHourly payPermanent employmentFull timeLocal area
- ...speed, ownership, and execution over bureaucracy. Title: Cyber Intelligence Analyst III Location: Washington, DC or Chandler, AZ Terms: Full-... ...(one required) CFR (CyberSec First Responder), CompTIA Network+, CompTIA Security+, or CEH (Certified Ethical Hacker) Nice...CyberFull timeWork experience placementFlexible hours
- Elevate Ventures in Washington is seeking a Cyber Security Specialist II/III to support cybersecurity engineering and compliance in a NAVSEA Program Office. The role involves implementing controls, monitoring security posture, and fixing vulnerabilities across systems....CyberWork at office
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Cyber Network Forensic Analyst III. Be the first to apply!
- remote cyber security analyst Arlington, VA
- cyber security analyst Arlington, VA
- information security consultant Arlington, VA
- manufacturing systems analyst Arlington, VA
- senior network analyst Arlington, VA
- network security analyst Arlington, VA
- system integration analyst Arlington, VA
- network analyst Arlington, VA
- systems development analyst Arlington, VA
- information technology system analyst Arlington, VA

