Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Cyber Security Operations Incident Responder/Day- Shift Lead Analyst

TekSynap

Job Description

Job Description

Overview

We are seeking a Cyber Security Operations Incident Responder/Day- Shift Lead Analyst to support our Prime Contract with the Defense Threat Reduction Agency at Fort Belvoir. This position requires an active Top-Secret Clearance and a DOD IAT level II and CSSP Analyst Support certification is required.

TekSynap is a fast growing high-tech company that understands both the pace of technology today and the need to have a comprehensive well planned information management environment. “Technology moving at the speed of thought” embodies these principles – the need to nimbly utilize the best that information technology offers to meet the business needs of our Federal Government customers.

We offer our full-time employees a competitive benefits package to include health, dental, vision, 401K, life insurance, short-term and long-term disability plans, vacation time and holidays.

Visit us at

Apply now to explore jobs with us!

The safety and health of our employees is of the utmost importance. Employees are required to comply with any vaccination requirements mandated by contract, applicable law or regulation.

By applying to a role at TekSynap you are providing consent to receive text messages regarding your interview and employment status. If at any time you would like to opt out of text messaging, respond "STOP".

As part of the application process, you agree that TekSynap Corporation may retain and use your name, e-mail, and contact information for purposes related to employment consideration

Responsibilities

RESPONSIBILITIES

  • Collect and analyze network and/or host artifacts from a variety of sources to include logs, system images and packet captures to characterize activity, determine root cause, operational impact, and to enable rapid remediation and/or mitigation of cyber threats within the Enterprise Network through the investigation process.
  • Perform cyber incident triage; to include determining scope, urgency, and potential impact; identifying the specific vulnerability; and making recommendations that enable expeditious remediation.
  • Must have working knowledge of the CJCSM 6510.01B (Cyber Incident Handling Program)
  • Must be proficient with Splunk SIEM or similar tools.
  • Provide expert technical support and perform real-time cyber defense incident handling (e.g., forensic collections, intrusion correlation and tracking, threat analysis, and direct system remediation) tasks to support subordinate organizations and system owners.
  • Manage and document cyber defense incidents from initial detection through final resolution methods.
  • Provide technical guidance to Tier I analysts and QA alert closures for the shift.
  • Maintain an average of at least two new detection use cases per month during each year of contract execution. Detection use cases shall be based on current threats, the MITRE ATT&CK framework, or Government direction.
  • Maintain metadata for all detection use cases to include use case, owner, number of false positives identified, number of true positives identified, and average time to execute (based on incident detection monitoring analyst feedback).
  • Analyze all completed incident records and make improvements to related detection use cases.
  • Collect and analyze network and/or host artifacts from a variety of sources to include logs, system images and packet captures to characterize activity, determine root cause, operational impact, and to enable rapid remediation and/or mitigation of cyber threats within the Enterprise Network through the investigation process.
  • Make recommendations to correlation rules, filters, signatures, or plays to enhance overall effectiveness by lowering false/benign-positive rates. Track and validate refinement requests and provide metrics for these activities monthly.
  • Assist with developing methods for automating the execution of incident detection use cases that result in false-positive rates below 10%. Provide monthly reports on new automation actions and their results.
  • At the direction and under the supervision of Government personnel, validate the effectiveness of any plays created by emulating adversary tactics to trigger the necessary alerts (blue team).
  • Demonstrate effectiveness by creating detection use cases that successfully detect Red Team (penetration testing) activity.
  • Utilize the MITRE ATT&CK matrix and other threat frameworks to develop detection use cases. Continually refine these processes with the goal of automating their execution.
  • Provide subject matter expertise in creation, editing, and management of signatures, rules and filters for specialized network defense systems including but not limited to network and ESS IDS, IPS, firewall, web application firewall, proxy and SIEM systems.
  • Perform duties as the alternate of the D&R technical lead when needed and effectively disseminate taskings among the team under the guidance of the technical lead.

REQUIRED QUALIFICATIONS

  • BS 5-7 Years, MS 3-5, PhD 0-2
  • Experience with cyber security architecture principles that achieve cybersecurity framework goals
  • Minimum of a Top-Secret Clearance with SCI eligibility
  • DOD 8570 IAT II and CSSP Analyst Certifications (DoD 8140)

Qualifications

WORK ENVIRONMENT AND PHYSICAL DEMANDS

The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of the job. Reasonable accommodation may be made to enable individuals with disabilities to perform the essential functions.

  • Location: Fort Belvoir, VA
  • Type of environment: Office
  • Noise level: Medium
  • Work schedule: 0600 – 1400 Sunday - Thursday. May be requested to work evenings and weekends to meet program and contract needs.
  • Amount of Travel: 1-2 weeks/annually (rare deployment occasions and training attendance)

PHYSICAL DEMANDS

The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

While performing the duties of this job, the employee is regularly required to use hands to handle, feel, touch; reach with hands and arms; talk and hear. The employee is regularly required to stand; walk; sit; climb or balance; and stoop, kneel, crouch, or crawl. The employee is regularly required to lift up to 10 pounds. The employee is frequently required to lift up to 25 pounds; and up to 50 pounds. The vision requirements include close vision, distance vision, peripheral vision, depth perception, and ability to adjust focus.

WORK AUTHORIZATION/SECURITY CLEARANCE

  • Citizenship: US Citizen
  • Maintain an active Top-Secret with SCI eligibility clearance

OTHER DUTIES

Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice.

TekSynap is a drug-free workplace. We reserve the right to conduct drug testing in accordance with federal, state, and local laws. All employees and candidates may be subject to drug screening if deemed necessary to ensure a safe and compliant working environment.

EQUAL EMPLOYMENT OPPORTUNITY

In order to provide equal employment and advancement opportunities to all individuals, employment decisions will be based on merit, qualifications, and abilities. TekSynap does not discriminate against any person because of race, color, creed, religion, sex, national origin, disability, age, genetic information or any other characteristic protected by law (referred to as “protected status”). This nondiscrimination policy extends to all terms, conditions, and privileges of employment as well as the use of all company facilities, participation in all company-sponsored activities, and all employment actions such as promotions, compensation, benefits, and termination of employment.

.

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Cyber Security Operations Incident Responder/Day- Shift Lead Analyst in Fort Belvoir, VA vacancy
  • $150k - $165k

     ...highly motivated Security Operations Center (SOC) Analyst to support a...  ...investigating, and responding to cybersecurity events and incidents across enterprise...  ...response, cyber defense operations...  ...Participate in shift operations supporting...  ...% Shift Day Shift Note... 
    Day shift
    Operations
    Contract work
    Local area
    Shift work

    Northern Technologies Group

    Alexandria, VA
    1 day ago
  •  ...we want to hear from you. We lead with technical expertise, but...  ...are dot‑connecting leaders that operate in a mutually accountable...  ...Technologies is seeking a Dissemination Analyst Team Lead to join our company....  ...by overseeing the timely, secure, and policy‑compliant... 
    Operations

    Medium

    Fort Belvoir, VA
    3 days ago
  •  ...systems, programming, and operations documentation...  ...seeking a Business Data Analyst II to join our team!...  ...out of text messaging, respond "STOP".As part of the...  ...schedule: Schedule is day shift Monday – Friday. May be...  ...WORK AUTHORIZATION/SECURITY CLEARANCE U.S. Citizen... 
    Day shift
    Operations
    Full time
    Contract work
    Temporary work
    Work at office
    Local area
    Monday to Friday
    Weekend work
    Afternoon shift

    TekSynap

    Fort Belvoir, VA
    5 days ago
  •  ...RiVidium is seeking an Incident Response Analyst to support our...  ...Cybersecurity, and Data Operations - Core Operations and...  ...Responsibilities Support cyber incident response...  ...reporting in a shift-based environment....  ...Government personnel security requirements for the... 
    Operations
    Full time
    Contract work
    Part time
    Shift work
    Night shift

    Rividium Inc

    Alexandria, VA
    2 days ago
  •  ...RiVidium is seeking an Incident Response Analyst to support our...  ...Cybersecurity, and Data Operations - Core Operations and...  ...Responsibilities Support cyber incident response...  ...response reporting in a shift-based environment....  ...Government personnel security requirements for the... 
    Operations
    Contract work
    Shift work
    Night shift

    Rividium Inc

    Alexandria, VA
    4 days ago
  •  ...network monitoring, analysis, and security operations in compliance with DoD Directive 8570.01-M. This role leads the implementation of robust...  ...vulnerability management, incident detection and response, and...  ...assurance ~ CSSP Incident Responder, CSSP Auditor, or CSSP... 
    Operations
    Temporary work
    Local area

    JCS Solutions LLC

    Fort Belvoir, VA
    3 days ago
  • The Contractor shall conduct Collection Operations Management and intelligence analysis to support operational HUMINT oversight and risk...  ...full-spectrum intelligence analysis support, training, security, and RD&E support solutions to the Department of Defense and throughout... 
    Operations
    For contractors

    Prescient Edge

    Fort Belvoir, VA
    2 days ago
  •  ...Information Technology Support Analyst Hot Job Alexandria, VA...  ...Position Type Full Time Job Shift Day Education Level 4 Year Degree...  ...end-user systems and network operations. Must be a US Citizen. Must...  ...Cybersecurity practices and security implementation Intimate working... 
    Operations
    Full time
    Contract work
    Work at office
    Remote work
    Shift work

    Mayvin®

    Alexandria, VA
    2 days ago
  • $106.68k - $246.98k

     ...Computer/Network Security Systems Specialist (Lead) Requisition Number:28508 Required...  ...with network architects and operations personnel to secure and...  ...at least 2+ years leading cyber or IA personnel or teams Must...  ...accommodation will be responded to from this email address... 
    Operations
    Full time
    Local area

    Huntington Ingalls Industries

    Fort Belvoir, VA
    4 days ago
  • $106.68k - $246.98k

     ...81.00 - $246,980.00 Security Clearance: TS/SCI Level...  ...Systems comprises cyber and mission IT; electronic...  ...and cyber operations communities to defend...  ...and assist operations leads in creating deployment...  ...accommodation will be responded to from this email address... 
    Operations
    Full time
    Work experience placement
    Local area
    Worldwide

    Huntington Ingalls Industries

    Fort Belvoir, VA
    1 day ago
  •  ...(5) years of relevant Operation Technology. Demonstrated...  ...CompTIA Advanced Security Practitioner with Continuing...  ...) GIAC Certified Incident Handler (GCIH)...  ...schedule: Schedule is day shift Monday – Friday. May be...  ...out of text messaging, respond "STOP". As part of the... 
    Day shift
    Operations
    Full time
    Contract work
    Temporary work
    Work at office
    Local area
    Remote work
    Monday to Friday
    Weekend work
    Afternoon shift

    TekSynap

    Fort Belvoir, VA
    25 days ago
  • $23 - $26 per hour

     ...Description Dock Sortation Lead Full-Time Hourly · Operations · Alexandria, Virginia...  ...THE JOB LOOKS LIKE Your shift starts around 5:00am. Pallets...  ...ones immediately Respond to partner communications...  ...for early-morning shifts, 7-day rotation WHAT WE OFFER... 
    Day shift
    Operations
    Hourly pay
    Full time
    Temporary work
    Local area
    Immediate start
    Flexible hours
    Shift work
    Early shift

    Saltbox

    Alexandria, VA
    12 days ago
  •  ...We are seeking an Incident Support Manager...  ...Network(s) Management, Operations, and Maintenance...  ...65 with three (3) shifts of mid to senior...  ...schedule: Schedule is day shift Monday –...  ...WORK AUTHORIZATION/SECURITY CLEARANCE U.S....  ...of text messaging, respond "STOP". As part of... 
    Day shift
    Operations
    Full time
    Contract work
    Temporary work
    Work at office
    Local area
    Remote work
    Monday to Friday
    Shift work
    Night shift

    TekSynap

    Springfield, VA
    5 days ago
  • Rividium Inc is looking for an Incident Response Analyst to join the MODES III team...  ..., Cybersecurity, and Data Operations to achieve mission-focused...  ...responsibilities include cyber incident response, triage,...  ...skills as the position requires shift work and teamwork in a... 
    Operations
    Shift work

    Rividium Inc

    Alexandria, VA
    3 days ago
  • Anomalous Health Incidents (AHI) Staff Program Analyst Mission Concepts and Capabilities (MCC) Division of Applied...  ..., procurement, finance or business operations applicable to execution of...  ...to perform without outside help Job Security: Inspired to perform well by the knowledge... 
    Operations
    Contract work
    Work at office

    Applied Research Associates, Inc.

    Alexandria, VA
    4 days ago
  •  ...Cybersecurity SME - Lead. REQUIRED QUALIFICATIONS...  ...skills for resolving security issues. Hands-on...  ...environment, requirements, and operational landscape, is highly...  ...schedule: Schedule is day shift Monday – Friday. May...  ...of text messaging, respond "STOP". As part of the... 
    Day shift
    Full time
    Contract work
    Temporary work
    Local area
    Remote work
    Monday to Friday
    Weekend work
    Afternoon shift

    TekSynap

    Fort Belvoir, VA
    10 days ago
  • $131.3k - $237.35k

     ...sector is seeking an experienced SME Incident Response Analyst to support the delivery, enhancement,...  ...other industry teammates to translate operational and strategic requirements into...  ...capabilities with real‑world national security outcomes. Primary Responsibilities... 
    Operations

    Leidos

    Alexandria, VA
    2 days ago
  • $24.75 - $26.75 per hour

     ...sales goals   ~ Leading a team of...  ...Leader,   no two days   are ever the...  ...and consistent operations.   ~ Actively...  ...assisting   with incident response, and...  ...execution of physical security processes   in...  ...assigned shifts based on store...  ...the building to respond to guest or team... 
    Day shift
    Operations
    Hourly pay
    Temporary work
    Work experience placement
    Shift work
    Night shift

    Target

    Alexandria, VA
    12 hours ago
  •  ...experienced Senior Cybersecurity Incident Response & Penetration Testing Lead to support enterprise cybersecurity operations. This role will play a...  ...incident response, security operations, threat intelligence...  ...LPT) Certified Security Analyst (ECSA) ASSYST is an... 
    Operations
    Local area

    ASSYST, Inc.

    Alexandria, VA
    26 days ago
  • $99k - $225k

    Cyber Defense Incident Responder The Opportunity: As a security operations center analyst, you’re in the middle of the action, responding to and mitigating...  ..., including government leads, vendors, and technical...  ...posting will close within 90 days from the Posting Date.... 
    Operations
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    Booz Allen Hamilton

    Alexandria, VA
    6 hours ago
  • $103.5k - $181.1k

     ...is an expert responsible for leading high-impact initiatives,...  ...organizational challenges. The analyst operates with significant autonomy, advising...  ...SCI clearance of higher. Security Clearance Requirement: An...  ...qualified to deliver cyber/converged security, technology... 
    Operations
    Local area
    Worldwide
    Flexible hours

    Parsons Company

    Springfield, VA
    1 day ago
  •  ...ServiceNow Technical Business Analysts to join our MAJESTIC...  ...enterprise IT operations using the ServiceNow platform...  ..., ITOM, ITAM, CMDB, Incident, Problem, and Service...  ...with governance and security policies in all...  ...GIAC Global Industrial Cyber Security Professional... 
    Operations
    For subcontractor
    Work at office

    Science Applications International Corporation

    Springfield, VA
    15 hours ago
  •  ...experienced Information Assurance Cybersecurity Specialist to manage advanced cybersecurity operations at Fort Belvoir, VA. Responsibilities include leading vulnerability management, incident detection, and developing robust IA policies. The ideal candidate will possess a BA/... 
    Operations

    JCS Solutions LLC

    Fort Belvoir, VA
    4 days ago
  • $90.42k - $170k

     ...$170,000.00 Security Clearance: TS/SCI...  ...comprises cyber and mission IT;...  ...intelligence and cyber operations communities to...  ...Business Analyst. This role will...  ...Responsibilities Lead solution design...  ...with CMDB, Incident, Change, and Request...  ...will be responded to from this email... 
    Operations
    Full time
    Work experience placement
    Local area
    Worldwide

    Huntington Ingalls Industries

    Springfield, VA
    3 days ago
  • # Lead Firefighter (Basic Life Support).Obsolete...  ...emergency response operations.* Directs fire...  ...This position requires shift work to provide coverage...  ...situations; 2) Responding to hazardous materials incidents and/or specialized rescue...  ...hired by the last day of the month he/she... 
    Operations
    Permanent employment
    Full time
    Part time
    Work experience placement
    Local area
    Relocation package
    Shift work
    Rotating shift
    Weekend work
    Afternoon shift

    TryApplyNow

    Fort Belvoir, VA
    8 hours ago
  • $112.8k - $257k

     ...Enterprise Architect, Lead The Opportunity: Designs enterprise...  ...highly innovative solutions. Operates with substantial latitude for...  ...areas, such as development, cyber security, data engineering and...  ...posting will close within 90 days from the Posting Date. Identity... 
    Operations
    Full time
    Contract work
    Part time
    Work at office
    Local area
    Remote work

    BOOZ, ALLEN & HAMILTON, INC.

    Fort Belvoir, VA
    7 days ago
  • Information Operations (IO) Planning Analyst Salary: 105K Location: Ft. Belvoir, VA Clearance: TS/SCI Position...  ...warfighters and protect our national security. Comprehend, manage, and support...  ...into areas like data science, cyber, and information security. Share your... 
    Operations

    Beyond SOF

    Fort Belvoir, VA
    2 days ago
  •  ...new positions become available. Imagery Analyst/ NGA Production Specialist This job is located...  ...Experience in a high-tempo operational or mission environment Familiarity with...  ...customer mission space Details Schedule: Day Shift (No Shift Work) Travel: ~10% Hours: flexible... 
    Day shift
    Operations
    Temporary work
    Remote work
    Flexible hours

    Quick

    Springfield, VA
    3 days ago
  • $73.19k - $135k

     ...how often (in days) to receive an...  ...0-$135,000.00 Security Clearance:TS/SCI...  ...Systems comprises cyber and mission IT;...  ...and cyber operations communities to...  ...Technologies is leading the next evolution...  ...Cyber Network Analyst, you'll play a...  ...accommodation will be responded to from this... 
    Operations
    Hourly pay
    Full time
    Work experience placement
    Local area
    Remote work
    Worldwide

    Huntington Ingalls Industries

    Fort Belvoir, VA
    15 hours ago
  •  ...that matters. The Tier II Help Desk Shift Lead will be responsible for providing support for the Integration Operations Center (IOC) for numerous security applications including but not limited...  ...of the application on a day-to-day basis Installation and troubleshoot... 
    Day shift
    Operations
    Remote work
    Monday to Friday
    Flexible hours
    Shift work
    Rotating shift

    Page Mechanical Group Inc

    Alexandria, VA
    8 hours ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Cyber Security Operations Incident Responder/Day- Shift Lead Analyst. Be the first to apply!