Host Based Systems Analyst SME Job at Gray Tier Technologies, Arlington, TX

ems4amw5VFF6TnEyTmowV2lYS25adHIzM1E9PQ==
  • Gray Tier Technologies
  • Arlington, TX

Job Description

Gray Tier Technologies is looking for a Cyber Forensics Analysts to support the DHS Hunt and Incident Response Team (HIRT). This team secures the Nation's cyber and communications infrastructure while providing front line response for cyber incidents and hunting for malicious cyber activity. Our team performs HIRT investigations to develop a diagnosis of the severity of breaches. Contract personnel provide front line response for digital forensics/incident response and proactively hunting for malicious cyber activity for this critical customer mission. 

Responsibilities:
- Perform event correlation using information gathered from a variety of sources within the enterprise to gain situational awareness and determine the effectiveness of an observed attack
- Assesses network topology and device configurations identifying critical security concerns and providing security best practice recommendations
- Collects network intrusion artifacts (e.g., PCAP, domains, URI's, certificates, etc.) and uses discovered data to enable mitigation of potential incidents
- Collects network device integrity data and analyze for signs of tampering or compromise
- Analyzes identified malicious network and system log activity to determine weaknesses exploited, exploitation methods, effects on system and information
- Tracking and documenting on-site incident response activities and providing updates to leadership through executive summaries and in-depth technical reports
- Planning, coordinating and directing the inventory, examination and comprehensive technical analysis of computer related evidence
- Serving as technical forensics liaison to stakeholders and explaining investigation details

Required Skills:
- U.S. Citizenship
- Active DoD Secret clearance. Must be able to obtain a TS/SCI clearance.
- Must be able to obtain DHS Suitability
- 8+ years of directly relevant experience in cyber forensic and network investigations using leading edge technologies and industry standard forensic tools
- Experience leading cross functional teams conducting cyber threat hunting activities
- Experience with reconstructing a malicious attack or activity
- Ability to characterize and analyze network traffic, identify anomalous activity / potential threats, analyze anomalies in network traffic using metadata
- Ability to create forensically sound duplicates of evidence (forensic images)
- Able to write cyber investigative reports documenting forensics findings
- In depth knowledge and experience of:
• utilizing COTS and custom developed tools to detect APT activity
• reviewing threat reports and searching the network for applicable IOC (Indicators of Compromise)
• identifying different classes and characterization of attacks and attack stages
• CND policies, procedures and regulations
• of network topologies, Wi-Fi Networking, and TCP/IP protocols
• Splunk (or other SIEMs)
• Vulnerability scanning, assessment and monitoring tools such as Security Center, Nessus, and Endgame
• MITRE Adversary Tactics, Techniques and Common Knowledge (ATT&CK)
- Must be able to work collaboratively across physical locations.

Desired Skills:
- Experience and proficiency with the following tools and techniques:
• EnCase, FTK, SIFT, X-Ways, Volatility, WireShark, Sleuth Kit/Autopsy, and Snort
• EDR Tools: Crowdstrike, Carbon Black, Etc
• Carving and extracting information from PCAP data
• Non-traditional network traffic: Command and Control
• Preserving evidence integrity according to national standards
• Designing cyber security systems and environments in a Linux environment
• Virtualized environments
• Conducting all-source research

Required Education:
BS Computer Science, Cybersecurity, Computer Engineering or related degree; or HS Diploma and 10+ years of host or digital forensics or network forensic experience.

Desired Certifications:
- GCFA, GCFE, EnCE, CCE, CFCE, CEH, CCNA, CCSP, CCIE, OSCP, GNFA

On-Site work 2-3 days per week

Job Tags

Full time, Contract work, 2 days per week, 3 days per week,

Similar Jobs

Routewise Logistics

Package Delivery Driver Job at Routewise Logistics

 ...Louisiana, 71303 We are currently seeking reliable and responsible Delivery Drivers to join our team. As a delivery driver, you will be an essential part of our operations, responsible for delivering packages to our valued customers in a safe and timely manner. Your... 

Airport Terminal Services

Ground Ramp Agent Job at Airport Terminal Services

 ...Airport Terminal Services - JobID: R-106801 [Warehouse Associate / Package Handler] As a Ramp Agent at Airport Terminal Services, you'll: Guide inbound/outbound airplanes to and from the gate; Transport, load and unload passenger baggage, cargo, and mail; Clean aircraft... 

Knott's Berry Farm

Cook Job at Knott's Berry Farm

Overview:$18.50 / hour pay rate may vary depending on experience. The Cook is responsible for preparation of meals such as cleaning and chopping vegetables, piecing together entrees, use of basic equipment such as fryer, grill, and other various kitchen equipment. Age... 

WITHIN

Ad Operations Specialist - USA Job at WITHIN

 ..., we're able to work with our brand partners in an integrated fashion, allowing us to align marketing strategies back to core business...  ...Carolina ~ Pennsylvania ~ Texas ~ Georgia ~ This is an entry level position. Training and development will be provided.... 

BAYADA Home Health Care

CNA - Private Duty Home Care Job at BAYADA Home Health Care

**Discover Rewarding Work as a CNA** Are you looking for a meaningful career, where you can make a difference in the lives of othersand...  ...Nursing Assistant. + A passion for caregiving, providing private home care, and a desire to help others. + A commitment to being...