Network Security Monitoring Analyst

Location: Springfield, VA
Job Location: NGA New Campus East (NCE), Springfield VA

Clearance Required: Must be a U.S. Citizen and possess a current and active TS/SCI clearance granted by the Department of Defense or an Intelligence Community agency. Must be able to pass a Counterintelligence (CI) Polygraph.

Assured Consulting Solutions provides strategic and innovative solutions for customer needs across the business, technology, and organizational spectrum. As a member of our team, you will have the chance to work with customers that are both Government and industry leaders and technology innovators.
We are seeking a highly motivated Network Security Monitoring Analyst to join our team.

Responsibilities include, but are not limited to:
  • Must possess strong organizational, analytical and attention to detail skills
  • Must have the ability and prior experience with analyzing information technology security events to discern events that qualify as legitimate security incidents as opposed to non-incidents. This includes the identification of malicious code present within a computer system as well as identification of malicious activities present within a computer system and/or enterprise network.
  • Must have experience working with a ticket management system to collect, document and maintain information pertinent to security investigations and incidents
  • Must possess excellent verbal and written communications skills and ability produce clear and thorough security incident reports and briefings
  • Must possess experience in monitoring the operational status of monitoring components and escalating and reporting outages of the components
  • Must possess a working knowledge of the various operating systems (e.g. Windows, OS X, Linux, etc.) commonly deployed in enterprise networks. A conceptual understanding of Windows Active Directory is also required.
  • Must possess a working knowledge of network communications and routing protocols (e.g. TCP, UDP, ICMP, BGP, MPLS, etc.) and common internet applications and standards (e.g. SMTP, DNS, DHCP, SQL, HTTP, HTTPS, etc.)
  • Must have experience working with various event logging systems and must be proficient in the review of security event log analysis. Previous experience with Security Information and Event Monitoring (SIEM) platforms such as Arcsight, that perform log collection, analysis, correlation, and alerting is also required.
  • Must have experience with the identification and implementation of counter-measures or mitigating controls for deployment and implementation in the enterprise network environment
  • Must possess experience in collecting and maintaining information pertinent to security investigations and incidents in a format that supports analysis, situational awareness reporting, and law enforcement investigation efforts
Required Qualifications:
  • CND-IR Certification (CEH Preferred)

Education Qualifications:
A Bachelor's degree (in Engineering, Computer Science or related field) or equivalent and ten (10) years of experience required, at least three (3) years of which working in a network security operations center environment performing security event monitoring and analysis. A Master's degree is preferred.

Years of Experience:
06-10 years w/ Master's Degree
10-12 years w/ Bachelor's Degree

Shift: Shift Team 4 - Days (Fri-Sun, 0600-1800) 
this job portal is powered by CATS