Logo
OneZero Solutions

Cyber Network Defense Analyst

OneZero Solutions, Washington, District of Columbia, us, 20022

Save Job

We are an employee-centric company that truly appreciates our team members and their value to our customers and the missions they support. We pride ourselves on being forward-leaning thinkers and fostering teams that are and continue to be technically proficient and technically capable across a comprehensive range of cyber mission areas. OneZero full-time employees receive an extremely competitive benefits package that includes health/dental/vision/life insurance plans, 401K with company matching, PTO & paid holidays, employee referral program, and educational assistance. Additional details can be found on our website at: https://www.onezerollc.com/careers/

Position Title Cyber Network Defense Analyst

Location Washington DC

Shift M-F Full Time Afternoon 3pm to 11pm

Clearance TS/SCI

Responsibilities

Utilize client SIEM for enterprise monitoring and detection

Create Security Event Notifications to document investigation findings

Perform critical thinking and analysis to investigate cyber security alerts

Analyze network traffic using enterprise tools (e.g. Full PCAP, Firewall, Proxy logs, IDS logs, etc)

Collaborate with team members to analyze an alert or a threat

Monitor shared email box for notifications and requests

Utilize OSINT to aid in their investigation

Contribute to content-tuning requests

Have familiarity with dynamic malware analysis and experience analyzing malicious websites

Review and provide feedback to junior analysts' investigation

Review and implement network/host countermeasures

Attend briefings and take appropriate actions to defend the enterprise

Assist in the training of junior analyst

Qualifications

Active TS/SCI clearance

5+ years of relevant experience in Cyber Security and/or Cyber Defense

Must possess excellent verbal and written communication skills

Understanding of security tools such as IDS, IPS, Proxy, Firewall, Antivirus, DLP

Working knowledge of Windows OS and standard system logs

Have experience performing analysis of network traffic, host logs, and correlating diverse security logs

Working knowledge of DOD CND methodologies and SOC processes

Working knowledge of common network ports and protocols (e.g. TCP/UDP, HTTP, ICMP, DNS, SMTP, etc.)

Knowledge of common end-user and web application attacks and countermeasures

Experience in creating SOP and providing guidance to junior analyst

Experience in a scripting language (e.g. python, PowerShell, JavaScript, VBS, etc)

Familiarity with cloud technologies, architecture, monitoring tools, and TTP

Hands‑on experience utilizing network security tools (e.g. IDS/IPS, Full PCAP, WAF, etc.) and SIEM (Elastic preferred)

Understanding of various Threat Intel Frameworks (e.g. CKC, MITRE ATT&CK, Diamond model, etc)

Required Certifications

Must possess a DOD 8570 IAT III qualifying certification

Must possess one or more of the following DOD 8570 CSSP-A qualifying certifications:

CEH

CFR

CCNA Cyber Ops

CCNA‑Security

CySA+

GCIA

GCIH

GICSP

Cloud+

SCYBER

PenTest+

OneZero Solutions, LLC is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, or protected veteran status and will not be discriminated against on the basis of disability.

If you are a qualified individual with a disability or a disabled veteran, you have the right to request an accommodation if you are unable or limited in your ability to use or access www.onezerollc.com/careers as a result of your disability.

To request an accommodation, please contact us at recruiting@onezerollc.com or call (202) 987-2580.

#J-18808-Ljbffr