SavannahRecruiter Since 2001
the smart solution for Savannah jobs

Cyber Intrusion Analyst

Company: General Dynamics
Location: Savannah
Posted on: March 17, 2023

Job Description:

Responsibilities for this Position Cyber Intrusion Analyst (210170) Req Id 210170 - Posted Feb 13, 2023 - Savannah, GA, US Cyber Intrusion Analystin GAC Savannah Unique Skills: The following attributes are all important and experience and/or working knowledge will be a plus. Experience in other fields will be considered if skills are transferable. Looking for a seasoned cyber security professional who remains current on the evolving cyber security environment and technologies. Experience with UEBA, EDR, XDR, DLP, SIEM and SOAR concepts/technologies Deep understanding of the life cycle of cybersecurity threats, attacks, attack vectors and methods of exploitation with an understanding of intrusion set tactics, techniques and procedures (TTPs) Experience in Intelligence Driven Defense, Cyber Kill Chain methodology, and/or MITRE ATT&CK framework. Threat Hunting Strong analytical and troubleshooting skills Experience with vulnerability management tools and /or programs Experience with reverse engineering malware Experience in the area of Cloud Security - CCSP or CCSK a plus Experience securing MS AD/Azure environments Experience in the digital forensics field Experience in Networking and/or Firewalls a plus Willing and capable of training team members Python programming (These positions include shift work required to cover 24x7 Security Operations, Position is on site with possibility of some hybrid remote work, but primary location is on site) Education and Experience Requirements Bachelor's Degree or equivalent combination of education and experience to successfully perform the essential functions of the job. Degree in information security, Computer Sciences or Technology related field preferred. . Position Purpose: Under supervision, the Cyber Intrusion Analyst I will provide frontline security monitoring, analysis, investigations and incident response. The analyst will perform monitoring and analysis of security systems data from multiple security systems. Job Description Principle Duties and Responsibilities: Essential Functions: The analyst will perform monitoring and analysis of security systems data from multiple security components including firewalls, IPS, VPN, web filtering, SIEM systems, host based intrusion detection, email filtering etc. Monitor Intrusion Detection systems (IDS) Analyze security data to effectively detect intrusions & attempted intrusions and to initiate and engage the proper resources to mitigate the risk and validating (IDS) alerts. Collecting and analyzing investigative information and data (e.g. internet history information, system logs, network traffic activity, encrypted or erased data) to identify signs or sources of compromise, poor security practices and unauthorized activities. Enforcing procedures for preventing web abuse; guiding the administration of security tools that monitor web security. Conducting preliminary security investigations related to employee abuse of security policies. Examining and analyzing network traffic, related applications and operating systems to identify potential threats, anomalous or malicious activities to network resources . Conducts preliminary forensic collections of electronic evidence including information system and network devices for legal, human resources, ethics, and information security. Support of customers with security and general technology needs. Additional Functions: Able to be on call for incidents and problems; also able to work different shifts. . Able to travel as needed. . Proficient in the use of incident response and forensics tools such as FTK, Encase, and Cellebrite. . Perform other duties as assigned. Other Requirements: Must have an understanding of cyber forensics, networking, and information security technologies and be able to demonstrate outside-the-box thinking and continuous learning. Experience with the following operating systems: Windows, OSX, IOS, Linux or UNIX. Security Certification such as CISSP, CEH, ACE, EnCE, CCE, Security+ etc. is a plus. A credit history check from a national credit bureau will be conducted for all candidates for this position including new hires and current employees seeking promotion or transfer. Additional Information Requisition Number: 210170 Category: Information Systems Percentage of Travel: Up to 25% Shift: Third Employment Type: Full-time Posting End Date: 03/20/2023 Equal Opportunity Employer/Veterans/Disabled. Gulfstream does not provide work visa sponsorship for this position, unless the applicant is a currently sponsored Gulfstream employee. Legal Information - Site Utilities - Contacts - Sitemap Copyright 2020 Gulfstream Aerospace Corporation. All Rights Reserved. A General Dynamics Company . Gulfstream Aerospace Corporation, a wholly-owned subsidiary of General Dynamics (NYSE: GD), designs, develops, manufactures, markets, services and supports the world's most technologically-advanced business jet aircraft Nearest Major Market: Savannah Job Segment: Cyber Security, Information Security, Computer Forensics, Aerospace, Security, Technology, Aviation

Keywords: General Dynamics, Savannah , Cyber Intrusion Analyst, Professions , Savannah, Georgia

Click here to apply!

Didn't find what you're looking for? Search again!

I'm looking for
in category
within


Log In or Create An Account

Get the latest Georgia jobs by following @recnetGA on Twitter!

Savannah RSS job feeds