Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cyber Defense Analyst Network Threat & IDS Expert

$112k - $179k

Payfuture Technologies

Cyber Network Security Analyst job at Peraton. Arlington, VA. Program Overview About The Role Peraton is hiring a Cyber Network Security Analyst for its' Federal Strategic Cyber programs. Location: Arlington, VA As the world’s leading mission capability integrator and transformativeenterprise IT provider, Peraton delivers trusted and highly differentiated national security solutions and technologies that keep people safe and secure. We serve as a valued partner to essential government agencies across the intelligence, space, cyber, defense, civilian, health, and state and local markets. In this role, you will: Perform technical analysis on a wide range of cybersecurity issues, with a focus on network activity and data; this includes, but is not limited to network flow (i.e., NetFlow) or related forms of session summary data, signature-based IDS alert/event data, full packet capture (PCAP) data, proxy, and application server logs (various types). Triage IDS alerts, collect related data from various network analysis systems, review available open and closed source information on related threats & vulnerabilities, diagnose observed activity for likelihood of system infection, compromise, or unintended/high-risk exposure. Prepare analysis reports detailing background, observables, analysis process & criteria, and conclusions. Analyze large volumes of network flow data for specific patterns/characteristics or general anomalies, to trend network activity and to correlate flow data with other types of data or reporting regarding enterprise-wide network activity. Leverage lightweight programming/scripting skills to automate data-parsing and simple analytics. Document key event details and analytic findings in analysis reports and incident management systems. Identify, extract, and characterize network indicators from cyber threat intelligence sources, incident reporting and published technical advisories/bulletins. Assess cyber indicators/observables for technical relevance, accuracy, and potential value/risk/reliability in monitoring systems. Recommend detection and prevention/mitigation signatures and actions as part of a layered defensive strategy leveraging multiple capabilities and data types. Develop IDS signatures, test, and tune signature syntax, deploy signatures to operational sensors, and monitor and tune signature and sensor performance. Fuse open-source threat & vulnerability information with data collected from sensors across the enterprise into cohesive and comprehensive analysis. Provide technical assessments of cyber threats and vulnerabilities. Communicate and collaborate with analysts from other SOC organizations to investigate cyber events. Produce final reports and review incident reports from junior analysts. Monitor and report on trends and activity on network sensor platforms. Produce and update technical analysis documentation (processes, procedures, analysis criteria, report templates, etc.). #CISA Qualifications Minimum Requirements Are: 6 years related technical experience. Working knowledge of security concepts, protocols, processes, architectures, and tools (vulnerabilities, threats and exploitation, authentication & access control technologies, threat intelligence data and sources, WHOIS and DNS referential data and sources, intrusion detection/prevention capabilities, network traffic analysis, SIM technology, incident handling, media/malware analysis, etc.). Working knowledge of networking concepts, protocols, and architectures (OSI-model, TCP/IP, major application protocols such as DNS/ LAN/WANs, VPNs, routers/routing, addressing, etc.). Detailed knowledge of intrusion detection engines, capabilities, and signature formats in general, with a specific focus on Snort/Sourcefire variations and regular expressions (REGEX). Understanding of ICS systems and components that make up an ICS environment Know and explain the different devices and roles they have within an ICS environment Experience analyzing ICS Network traffic with various tools (Wireshark, Bro/Zeek, etc.) Knowledge of cyber policy & issues, the global cyber community, roles of major organizations how they interrelate and interact, and challenges in these structures. Analyze host forensic data for possible malicious activity. Analyze a variety of OT, host, and network logs to determine intent. Utilize an OT network Sensor for network investigations. Awareness of the common cyber products and services, an understanding of their limitations, and a comprehensive understanding of the disciplines of cybersecurity. Demonstrated ability to be innovative in solving problems and providing solutions. Ability to produce results in a fast-paced environment with the ability to meet iterative deadlines. U.S. citizenship required. An active Top Secret security clearance with SCI eligibility required. In addition, selected candidate must be able to obtain and maintain a favorably adjudicated DHS background investigation (EOD) for continued employment. SCA / Union / Intern Rate or Range Details Target Salary Range: $112,000 - $179,000. This represents the typical salary range for this position based on experience and other factors. EEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law. #J-18808-Ljbffr

Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Cyber Defense Analyst Network Threat & IDS Expert in Arlington, VA vacancy
  •  ...focus on high-profile, high-threat, private and public-...  ...recognized members of the Cyber Elite, we work together...  ...for: We are seeking an Expert Cyber Defense Analyst (TS/SCI Clearance) to analyze...  ...detection system (IDS) alerts, firewalls and network traffic logs to identify... 
    Network

    ShorePoint Inc

    Washington DC
    5 days ago
  •  ...Cyber Threat Intelligence Analyst (On-Site) page is loaded## Cyber Threat Intelligence...  ...27 Days Agojob requisition id: JR101279Nightwing provides...  ...cyber space operations, cyber defense and resiliency,...  ...Customers* Experience performing network security or application security... 
    Network

    Nightwing Group

    Arlington, VA
    5 days ago
  •  ...A leading cybersecurity firm in Arlington, Virginia is seeking Cyber Network Defense Analysts to support critical missions by analyzing network traffic and identifying threats. The ideal candidate requires U.S. Citizenship, active TS/SCI Clearance, and 5+ years of experience... 
    Network

    NewGen Technologies (Maryland)

    Arlington, VA
    4 days ago
  •  ...One Technologies in Washington, DC, is looking for a Junior Cyber Network Defense Analyst to provide 24x7 support, monitor network security, and...  ...DoD TS/SCI clearance is mandatory. This role involves shift work and demands proactive threat analysis. #J-18808-Ljbffr... 
    Network
    Shift work

    Base One Technologies

    Washington DC
    4 days ago
  •  ...of the Department of Defense (DoD), Intelligence Community...  ...mission is to empower analysts and decision-makers...  ...skilled Senior Cyber Threat Analyst to join our team...  ...intelligence to protect critical networks and information...  .... Our team of experts-skilled in cloud computing... 
    Network
    Full time
    Local area

    Praescient Analytics

    Arlington, VA
    5 days ago
  •  ...A cybersecurity firm in Arlington, Virginia, is seeking a Computer Network Defense Analyst to monitor network activity, analyze cyber threats, and recommend proactive measures to contain incidents. The ideal candidate will have over 5 years of experience in cyber defense... 
    Network

    Base One Technologies

    Arlington, VA
    5 days ago
  •  ...A technology company supporting government clients is seeking a Cyber Network Defense Analyst to monitor and analyze network activity for signs of suspicious behavior. The position involves characterizing network traffic, coordinating with cyber defense teams, and documenting... 
    Network

    ARSIEM Corporation

    Arlington, VA
    4 days ago
  •  ...premises and cloud platforms (Entra ID/Azure AD, M365, AWS, GCP, SaaS...  ...control-plane events and network telemetry (e.g., Azure...  ...PowerShell, Python, Bash), integrating threat intelligence feeds and...  ...experience 5+ years of experience in cyber forensic investigations with... 
    Network

    NewGen Technologies (Maryland)

    Arlington, VA
    4 days ago
  •  ...necessary. Duties include network security monitoring...  ...searching for threats. Inspect traffic for anomalies...  ...to investigate cyber security alerts Analyze...  ...Firewall, Proxy logs, IDS logs, etc) Collaborate...  ...Junior Cyber Network Defense Analyst candidates shall have... 
    Network
    Shift work
    Night shift
    Afternoon shift

    Base One Technologies

    Washington DC
    4 days ago
  •  ...Cyber Network Defense Analyst (CNDA) - Cloud Forensics Location: Remote / Onsite (as required) Clearance:...  ...Systems delivers advanced cybersecurity and threat-hunting capabilities to safeguard...  ...and hybrid environments (Azure AD/Entra ID, M365, AWS, GCP, SaaS). Investigate... 
    Network
    Remote work

    ARGO Cyber Systems, LLC

    Arlington, VA
    4 days ago
  •  ...resolution using host-based, network-based and cloud-based...  ...hunting for malicious cyber activity. They are seeking Cyber Network Defense Analysts (CNDA) to support this...  ..., and networks from threats. Responsibilities...  ...detection system (IDS) alerts against network... 
    Network
    Immediate start
    Remote work

    New Gen

    Arlington, VA
    2 days ago
  •  ...Cyber Network Defense Analysts (CNDA) Our partner provides remote and onsite advanced technical assistance...  ...-premises and cloud platforms (Entra ID/Azure AD, M365, AWS, GCP, SaaS) to...  ...PowerShell, Python, Bash), integrating threat intelligence feeds and indicators Produce... 
    Network
    Immediate start
    Remote work

    NewGen Technologies (Maryland)

    Arlington, VA
    1 day ago
  •  ...The Computer Network Defense Analyst uses information collected from a variety of sources...  ...systems, and networks from threats. CNDAs review data collected to analyze cyber events, and the network environment...  ...intrusion detection system (IDS) alerts against network traffic... 
    Network
    Local area
    Immediate start
    Flexible hours

    BCMC, LLC

    Arlington, VA
    1 day ago
  •  ...secures the Nation's cyber and communications infrastructure...  ...using host-based, network-based and cloud-based...  ...a Cyber Network Defense Analyst (CNDA) to support this...  ...systems, and networks from threats. CNDAs review data...  ...intrusion detection system (IDS) alerts against... 
    Network
    Full time
    Contract work
    Work at office
    Local area
    Immediate start
    Remote work

    Castalia Systems

    Arlington, VA
    3 days ago
  • $70k - $125k

     ...Description Spry Squared is looking for a Cyber Network Defense Analyst for our client to provide Network...  ..., mitigate, and respond to cyber threats and adversarial activity on the enterprise...  ...device functions (e.g. Firewall, IDS/IPS, Proxy, DNS, etc.) Expertise with... 
    Network
    Shift work
    Night shift
    Afternoon shift

    sprysquared.com

    Washington DC
    4 days ago
  •  ...advanced full-spectrum cyber, data operations,...  ...space operations, cyber defense and resiliency, vulnerability...  ...is seeking a Cyber Network Defense Analyst to support this...  ...systems, and networks from threats. Responsibilities: -...  ...intrusion detection system (IDS) alerts against... 
    Network
    Contract work
    Immediate start

    Nightwing

    Arlington, VA
    4 days ago
  • $58k - $74k

     ...Tier 1 Cyber Network Defense Analyst - Shift Schedule (w/ active TS) Location: Washington, DC Full-time...  ...detection. Proactively searching for threats. Inspect traffic for anomalies and new...  ...e.g. Full PCAP, Firewall, Proxy logs, IDS logs, etc) Collaborate with team... 
    Network
    Full time
    Immediate start
    Flexible hours
    Shift work
    Night shift

    Critical Solutions

    Washington DC
    3 days ago
  •  ...Title: Cyber Threat Hunt Analyst Location: McLean, VA Clearance: Active TS/SCI w/ Polygraph needed to apply Company Overview: Cornerstone Defense is the Employer of Choice within the Intelligence, Defense...  ...of malicious activity in our network and systems. Develop and... 
    Network

    Cornerstone Defense

    McLean, VA
    4 days ago
  •  ...Cyber Eviction Analyst - Principal page is loaded## Cyber...  ...Todayjob requisition id: JR101542...  ...operations, cyber defense and resiliency, vulnerability...  ..., using host and network-based...  ...response subject matter expert (SME), applying...  ...knowledge on threat actor (TA) tools,... 
    Network
    Immediate start

    Nightwing Group

    Arlington, VA
    5 days ago
  • $107.9k - $195.05k

     ...sector is looking for a Cyber Threat Intelligence Analyst to support a Defensive Cyber Operations (DCO) team...  ...of protecting federal networked systems and services...  ...computing security elements (IDS/IPS, Firewalls), and...  ...Framework Proficiency: Expert-level understanding of the... 
    Network
    Summer work
    Casual work
    Remote work
    Shift work
    Night shift
    Rotating shift

    Leidos

    Washington DC
    3 days ago
  • ## (Cyber) Incident Management Analyst - Weekend Night ShiftApplylocations:...  ...Todayjob requisition id: JR101730Nightwing...  ...space operations, cyber defense and resiliency,...  ...Performing Computer Network Defense incident triage...  ...Network Defense threat condition and determine... 
    Network
    Contract work
    Immediate start
    Shift work
    Night shift
    Weekend work

    Nightwing Group

    Arlington, VA
    4 days ago
  •  ...Incident Response Expert / Cyber Eviction Analyst Location: Arlington, VA Must have...  ...applying deep knowledge of threat actor tools, techniques, and...  ...Strong understanding of network architecture, network security...  ...security review and defense‑in‑depth strategies Expertise... 
    Network

    Node.Digital

    Arlington, VA
    5 days ago
  •  ...Incident Response Expert III (Cyber Eviction Analysts) The DHS's Hunt and Incident Response...  ..., using host and network-based cybersecurity analysis...  ...applying in-depth knowledge on threat actor (TA) tools,...  ...knowledge of Computer Network Defense policies, procedures and regulations... 
    Network
    Local area
    Immediate start

    Argo Cyber Systems

    Arlington, VA
    5 days ago
  •  ...technology solutions provider in Arlington, VA, is seeking a Cyber Network Defense Analyst. The candidate will monitor network activity, analyze cyber events, and recommend proactive measures against threats. Responsibilities include documenting incidents, performing trend... 
    Network

    ARSIEM Corporation

    Arlington, VA
    5 days ago
  •  ...established industry player is on the lookout for skilled Cyber Network Defense Analysts to join their team. This role involves critical...  ...protect vital information systems and networks from emerging threats. If you have a passion for cybersecurity and a knack for... 
    Network

    Beyond SOF

    Arlington, VA
    4 days ago
  •  ...technically advanced full-spectrum cyber, data operations, systems...  ...space operations, cyber defense and resiliency,...  ...services. Nightwing is seeking a Network Forensics Analyst to support this critical customer...  ...correlation and tracking, threat analysis, and advising on... 
    Network
    Contract work
    Immediate start

    Nightwing

    Arlington, VA
    5 days ago
  •  ...A leading technology company is seeking Cyber Network Defense Analysts (CNDA) to provide advanced technical support both remotely and onsite. Duties...  ...response investigations, analyzing network activity for threats, and providing cybersecurity recommendations. Ideal... 
    Network
    Remote work

    NewGen Technologies (Maryland)

    Arlington, VA
    5 days ago
  •  ...Cyber Threat Fusion Analyst The client is looking for a Cyber Threat Fusion Analyst. This position...  ...support the Joint Service Provider (JSP) Defensive Cyber Operations (DCO) organization...  ...Threat Intelligence products and network security monitoring and will perform... 
    Network
    Remote work

    Beyond SOF

    Alexandria, VA
    2 days ago
  •  ...Senior Cyber Analyst Capstone Research Corporation is seeking to expand...  ...with Integrated Air and Missile Defense Systems Engineering expertise...  ...conventional and asymmetric threats. This position supports...  ...unmanned systems, or adversarial network operations. Familiarity with... 
    Network
    Immediate start

    Capstone Research Inc

    Arlington, VA
    5 days ago
  • $62k - $141k

     ...Cyber Defense Forensics Analyst The Opportunity: As a cyber professional, you know that understanding...  ...decisions. As a cyber threat specialist on our team, you'll be trusted...  ..., you'll impact the Army enterprise network by identifying and assessing digital... 
    Network
    Full time
    Contract work
    Temporary work
    Part time
    Work at office
    Local area
    Remote work

    BOOZ, ALLEN & HAMILTON, INC.

    Arlington, VA
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cyber Defense Analyst Network Threat & IDS Expert. Be the first to apply!