Quick Overview
Job Description
Job Title: Network Forensics Cybersecurity Analyst Location: Arlington, VA (On-Site) Clearance: Active TS/SCI Required Company: Quantum Science Solutions (QSS) Compensation: Open Rate Position Overview Quantum Science Solutions (QSS) is seeking a Network Forensics Cybersecurity Analyst to support a critical customer mission. This position will support network investigations and Computer Network Defense (CND) activities, including incident response investigations, network traffic analysis, forensic collection, intrusion correlation and tracking, threat analysis, and system remediation.
The Network Forensics Cybersecurity Analyst will work alongside Government leads and customer teams to investigate anomalous and malicious network activity, collect and analyze network intrusion artifacts, assess network security concerns, and provide recommendations to strengthen network defenses.
Key Responsibilities • Assist the Government lead in coordinating teams during preliminary incident response investigations. • Assist the Government lead with customer engagement while on site. • Determine appropriate courses of action in response to identified and analyzed anomalous network activity. • Assess network topology and device configurations to identify critical security concerns and provide security best-practice recommendations. • Assist with writing and publishing Computer Network Defense guidance and reports documenting incident findings for appropriate constituencies. • Collect network intrusion artifacts, including PCAP data, domains, URIs, certificates, and other relevant information, to support mitigation of potential Computer Network Defense incidents. • Analyze identified malicious network activity to determine exploited weaknesses, exploitation methods, and effects on systems and information. • Collect network device integrity data and analyze it for signs of tampering or compromise. • Assist with real-time CND incident handling, including forensic collections, intrusion correlation and tracking, threat analysis, and advising on system remediation during onsite engagements.
Mandatory Skills • U.S.
Citizenship. • Active Secret clearance. • Ability to obtain DHS Suitability. • 2+ years of directly relevant experience in network investigations. • In-depth knowledge of Computer Network Defense policies, procedures, and regulations. • In-depth knowledge of TCP/IP protocols. • In-depth knowledge of standard protocols, including ICMP, HTTP/S, DNS, SSH, SMTP, SMB, and NFS. • In-depth knowledge and experience with Wi-Fi networking. • In-depth knowledge and experience with network topologies, including DMZs and WANs. • Substantial knowledge of Splunk or other SIEM platforms. • Understanding of MITRE Adversary Tactics, Techniques and Common Knowledge (ATT&CK). • Knowledge of defense-in-depth principles and general attack stages as they relate to network security architecture. • Ability to characterize and analyze network traffic to identify anomalous activity and potential threats to network resources. • Ability to identify and analyze anomalies in network traffic using metadata. • Experience reconstructing malicious attacks or activity based on network traffic. • Experience examining network topologies to understand data flows through the network. • Ability to work collaboratively across physical locations.
Preferred Skills • Substantial knowledge of network device integrity concepts and methodologies. • Proficiency with network analysis software, such as Wireshark. • Proficiency with carving and extracting information from PCAP data. • Proficiency with non-traditional network traffic, including Command and Control (C2) traffic. • Proficiency with preserving evidence integrity according to standard operating procedures or national standards. • Proficiency with designing cybersecurity systems and environments in Linux and/or Windows environments. • Proficiency with virtualized environments Education • Bachelor's degree in Computer Science, Cyber Security, Computer Engineering, or a related field
OR
- High School Diploma with 4–6 years of network investigations experience.
Desired Certifications • DoD 8140.01 IAT Level II, IASAE II, CSSP Analyst. • DoD 8140.01 GCIA, GCIH, CSSP Analyst/CSSP Incident Responder. • DoD 8140.01 CEH, CSSP Analyst. • SANS GIAC GNFA preferred Why QSS? At QSS, you'll support a critical customer mission while applying network forensics, incident response, and Computer Network Defense expertise to investigate malicious activity, identify network threats, and support the remediation of cybersecurity incidents.
Benefits Include: • Competitive compensation with annual performance bonuses • Premium Medical, Dental, & Vision coverage • Generous PTO plus Federal Holidays • 401(k) with company match • Professional development and certification support
Similar jobs
- MA
Personnel Security Specialist
NewMANTECH
Los Angeles, California🇺🇸Hybrid1 hour agoData Entry - MA
Acquisition Security Analyst
NewMANTECH
Los Angeles, California🇺🇸Hybrid1 hour agoTechnology - RT
Senior Security Engineer
NewRequest Technology, LLC
Chicago, IL🇺🇸$135k - $165k/yrHybrid18 hours agoEncryptionActive DirectoryAzure+5Technology - GD
Cyber Security Architect
NewGDH
United States🇺🇸$80 - $90/hrRemote18 hours agoActive DirectoryPKIZero TrustTechnology - MA
Physical and Industrial Security Specialist
NewMANTECH
El Segundo, California🇺🇸On-site1 hour agoAdministrative - BT
OKTA Engineer
NewBoston Technology Corporation
Malvern, PA🇺🇸Hybrid18 hours agoEngineering