United States Job Openings

cFocus Software Incorporated

NetWitness Cyber Incident Response Analyst (Senior)

Washington

FULL TIME

October 12, 2024

c Focus Software seeks a Net Witness Cyber Incident Response Analyst (Senior) to join our program supporting the Administrative Offices of the United States Courts in Washington, DC. This position requires an active Public Trust clearance.

Qualifications:
  • Bachelor’s Degree or equivalent experience in a computer, engineering, or science field.
  • Active Public Trust clearance.
  • Net Witness Certified XDR Administrator
  • Hold active certifications such as GCIA or GCIH or GSEC or GMON, and Splunk Core Power User.
  • 7+ years of relevant experience.
Duties:
  • Assist with implementation of RSA Net Wiitness
  • Perform a binary analysis and produce a report on what are the exploits that could potentially be available to an attacker and countermeasures to mitigate the exposure of those exploits
  • Support the development of staff schedules and staffing forecasts for approval.
  • Ensure shift members follow the appropriate incident escalation and reporting procedures.
  • Provide support promptly and efficiently through front-line telephone and email communications.
  • Assist with knowledge management – Standard Operating Procedures and procedural support data.
  • Accept and respond to government technical requests through the AOUSC ITSM ticket (e.g., HEAT or Service Now) for advanced subject matter expert (SME) technical investigative support for real-time incident response (IR).
  • IR includes cloud-based and non-cloud-based applications such as: Microsoft Azure, Microsoft O365, Microsoft Active Directory, and Cloud Access Security Brokers (e.g., Zscaler).
  • Create duplicates of evidence that ensure the original evidence is not unintentionally modified. AOUSC supplied procedures and tools shall be used to acquire the evidence.
  • Analyze forensic artifacts of operating systems (e.g., Windows, Linux, and mac OS) to discover elements of an intrusion and identify root cause.
  • Perform live forensic analysis based on SIEM data (e.g., Splunk).
  • Perform filesystem timeline analysis for inclusion in forensic report.
  • Extract deleted data using data carving techniques.
  • Collect and analyze data from compromised systems using EDR agents and custom scripts provided by the AOUSC.
  • Perform static and dynamic malware analysis to discover indicators of compromise (IOC).
  • Analyze memory images to identify malicious patterns using Judiciary tools (e.g. Volatility). Analysis results documented in forensics report.
  • Write forensic and malware analysis reports.

5s Oxqape0x
New Job Alerts
Carnegie Mellon University

Parking Security Officer - Facilites Management & Campus Services - Parking and Transportation Services

Pittsburgh

FULL TIME

November 14, 2024

View Job Description
Simply Right Inc.

Construction Cleaning Regional Manager

Salt Lake City

FULL TIME

November 14, 2024

View Job Description
Par Pacific

Process Safety Lead

Tacoma

FULL TIME

November 14, 2024

View Job Description
Par Pacific

Process Engineer

Newcastle

FULL TIME

November 14, 2024

View Job Description
Federal Bureau of Investigation

PARALEGAL SPECIALIST CDC

Anchorage

FULL TIME

November 14, 2024

View Job Description
Stellar Virtual

Secondary Teacher, Mathematics (Grades 6-12)

Indianapolis

FULL TIME

November 14, 2024

View Job Description
Uber

Senior Strategic Client Partner, Department of Defense - Uber for Business

Chicago

November 14, 2024

View Job Description
Children’s Hospital of Philadelphia

Clinical Research Coordinator - GI Nutrition

Philadelphia

FULL TIME

November 14, 2024

View Job Description
Ernest

Electrician

Miami

FULL TIME

November 14, 2024

View Job Description
Serco North America

DOL VETS TAP: Employment Facilitator (Part-time) - Fort Wainwright, AK

Fort Wainwright

PART TIME

November 14, 2024

View Job Description
Looking for similar job?
Aveva

Tech Support Engineer: Cyber Security Graduate - US

Lake Forest

FULL TIME

August 28, 2024

View Job Description
US United States Fleet Forces Command

IT CYBERSECURITY SPECIALIST (INFOSEC)

Suffolk

PART TIME

August 30, 2024

View Job Description
University of North Carolina at Pembroke

Computer Science / IT / Cybersecurity Adjuncts (2024-2025)

Pembroke

PART TIME

August 30, 2024

View Job Description
Capital One

Sr. Cyber Standards and Procedures Analyst,

McLean

FULL TIME

August 30, 2024

View Job Description
Granite Construction Inc.

Cybersecurity Engineer II

The Woodlands

FULL TIME

September 1, 2024

View Job Description
Liberty Mutual

Cybersecurity Co-op (January – June 2025)

Boston

September 3, 2024

View Job Description
New Job Alerts
Carnegie Mellon University

Parking Security Officer - Facilites Management & Campus Services - Parking and Transportation Services

Pittsburgh

FULL TIME

November 14, 2024

View Job Description
Simply Right Inc.

Construction Cleaning Regional Manager

Salt Lake City

FULL TIME

November 14, 2024

View Job Description
Par Pacific

Process Safety Lead

Tacoma

FULL TIME

November 14, 2024

View Job Description
Par Pacific

Process Engineer

Newcastle

FULL TIME

November 14, 2024

View Job Description
Federal Bureau of Investigation

PARALEGAL SPECIALIST CDC

Anchorage

FULL TIME

November 14, 2024

View Job Description
Stellar Virtual

Secondary Teacher, Mathematics (Grades 6-12)

Indianapolis

FULL TIME

November 14, 2024

View Job Description
Uber

Senior Strategic Client Partner, Department of Defense - Uber for Business

Chicago

November 14, 2024

View Job Description
Children’s Hospital of Philadelphia

Clinical Research Coordinator - GI Nutrition

Philadelphia

FULL TIME

November 14, 2024

View Job Description
Ernest

Electrician

Miami

FULL TIME

November 14, 2024

View Job Description
Serco North America

DOL VETS TAP: Employment Facilitator (Part-time) - Fort Wainwright, AK

Fort Wainwright

PART TIME

November 14, 2024

View Job Description