Cyber Incident Responses Engineer - Analyst (CSSP Analyst)
CYBER INCIDENT RESPONSES ENGINEER - ANALYST
TS/SCI Clearance Required__
FUNCTIONAL RESPONSIBILITIES: Familiar with industry standard malware reverse analysis methodologies. Possess knowledge of various malware encryption and compression / packing methodologies and protective encryption weaknesses. Ability to provide malware threat research on new attacks and exploits. Ability to script (ex. Python and/or PERL) and automate tasks and be able to discern malware based covert channel and command and control protocol analysis. Apply the proper techniques and procedures to the identification, collection, examination and analysis of data while preserving the integrity of the information and maintaining a strict chain of custody for the data. Provides computer forensic support to high technology investigations in the form of evidence seizure, computer forensic analysis, and data recovery. Able to take various data sources from different data feeds such as Intrusion Prevention, SIEM, Anti-Virus, Firewall, Router and Switch event logs.
Required Skills:
Must be a U.S. Citizen, and have the ability to pass or possess background investigation, or government clearance appropriate to the level to the SOC environment.
Must have a certification that meets the Cyber Workforce Management Program. The positions below and their DoD Approved Baseline Certifications:
CSSP ANALYST CSSP INCIDENT RESPONDER CSSP MANAGER
ECCouncil CEH ECCouncil CEH CISSP - ISSMP
CySA+ CFR CISM
CFR CCNA Cyber Ops
CCNA Cyber Ops CySA+
SCYBER GCFA
GCIA GCIH
GCIH SCYBER
GICSP