Cyber Intrusion Analyst
Company: General Dynamics
Location: Savannah
Posted on: March 17, 2023
|
|
Job Description:
Responsibilities for this Position Cyber Intrusion Analyst
(210170) Req Id 210170 - Posted Feb 13, 2023 - Savannah, GA, US
Cyber Intrusion Analystin GAC Savannah Unique Skills: The following
attributes are all important and experience and/or working
knowledge will be a plus. Experience in other fields will be
considered if skills are transferable. Looking for a seasoned cyber
security professional who remains current on the evolving cyber
security environment and technologies. Experience with UEBA, EDR,
XDR, DLP, SIEM and SOAR concepts/technologies Deep understanding of
the life cycle of cybersecurity threats, attacks, attack vectors
and methods of exploitation with an understanding of intrusion set
tactics, techniques and procedures (TTPs) Experience in
Intelligence Driven Defense, Cyber Kill Chain methodology, and/or
MITRE ATT&CK framework. Threat Hunting Strong analytical and
troubleshooting skills Experience with vulnerability management
tools and /or programs Experience with reverse engineering malware
Experience in the area of Cloud Security - CCSP or CCSK a plus
Experience securing MS AD/Azure environments Experience in the
digital forensics field Experience in Networking and/or Firewalls a
plus Willing and capable of training team members Python
programming (These positions include shift work required to cover
24x7 Security Operations, Position is on site with possibility of
some hybrid remote work, but primary location is on site) Education
and Experience Requirements Bachelor's Degree or equivalent
combination of education and experience to successfully perform the
essential functions of the job. Degree in information security,
Computer Sciences or Technology related field preferred. . Position
Purpose: Under supervision, the Cyber Intrusion Analyst I will
provide frontline security monitoring, analysis, investigations and
incident response. The analyst will perform monitoring and analysis
of security systems data from multiple security systems. Job
Description Principle Duties and Responsibilities: Essential
Functions: The analyst will perform monitoring and analysis of
security systems data from multiple security components including
firewalls, IPS, VPN, web filtering, SIEM systems, host based
intrusion detection, email filtering etc. Monitor Intrusion
Detection systems (IDS) Analyze security data to effectively detect
intrusions & attempted intrusions and to initiate and engage the
proper resources to mitigate the risk and validating (IDS) alerts.
Collecting and analyzing investigative information and data (e.g.
internet history information, system logs, network traffic
activity, encrypted or erased data) to identify signs or sources of
compromise, poor security practices and unauthorized activities.
Enforcing procedures for preventing web abuse; guiding the
administration of security tools that monitor web security.
Conducting preliminary security investigations related to employee
abuse of security policies. Examining and analyzing network
traffic, related applications and operating systems to identify
potential threats, anomalous or malicious activities to network
resources . Conducts preliminary forensic collections of electronic
evidence including information system and network devices for
legal, human resources, ethics, and information security. Support
of customers with security and general technology needs. Additional
Functions: Able to be on call for incidents and problems; also able
to work different shifts. . Able to travel as needed. . Proficient
in the use of incident response and forensics tools such as FTK,
Encase, and Cellebrite. . Perform other duties as assigned. Other
Requirements: Must have an understanding of cyber forensics,
networking, and information security technologies and be able to
demonstrate outside-the-box thinking and continuous learning.
Experience with the following operating systems: Windows, OSX, IOS,
Linux or UNIX. Security Certification such as CISSP, CEH, ACE,
EnCE, CCE, Security+ etc. is a plus. A credit history check from a
national credit bureau will be conducted for all candidates for
this position including new hires and current employees seeking
promotion or transfer. Additional Information Requisition Number:
210170 Category: Information Systems Percentage of Travel: Up to
25% Shift: Third Employment Type: Full-time Posting End Date:
03/20/2023 Equal Opportunity Employer/Veterans/Disabled. Gulfstream
does not provide work visa sponsorship for this position, unless
the applicant is a currently sponsored Gulfstream employee. Legal
Information - Site Utilities - Contacts - Sitemap Copyright 2020
Gulfstream Aerospace Corporation. All Rights Reserved. A General
Dynamics Company . Gulfstream Aerospace Corporation, a wholly-owned
subsidiary of General Dynamics (NYSE: GD), designs, develops,
manufactures, markets, services and supports the world's most
technologically-advanced business jet aircraft Nearest Major
Market: Savannah Job Segment: Cyber Security, Information Security,
Computer Forensics, Aerospace, Security, Technology, Aviation
Keywords: General Dynamics, Savannah , Cyber Intrusion Analyst, Professions , Savannah, Georgia
Click
here to apply!
|