Why This Role Stands Out
Advance your career as a Cyber Defense Analyst at The Swift Group, a leader in national security technology solutions, where you'll leverage your expertise in threat detection and analysis to protect critical missions. This hybrid role offers significant growth potential and the opportunity to mentor a talented team, making it ideal for experienced professionals seeking impactful work in a collaborative environment. Apply now to join a company dedicated to innovation and making a difference.
Quick Overview
Job Description
Swift is a privately held, mission-driven and employee-focused services and solutions company headquartered in Reston, VA. Our capabilities include Software Development, Engineering & IT, Data Science, Cyber Enablement, Logistics, and Training. Founded in 2019, Swift supports Civilian, Defense, and Intelligence Community customers across the country and around the globe. We are looking for a Cyber Defense Analyst 3 to join a growing team in Annapolis Junction, MD.
Responsibilities
- Use cyber defense tools to monitor, detect, analyze, categorize, and perform initial triage of anomalous activity.
- Generate cybersecurity cases (including event's history, status, and potential impact for further action) and route as appropriate.
- Perform advanced manual analysis to hunt previously unidentified threats.
- Identify cyber-attack phases based on knowledge of common attack vectors and network layers, models and protocols.
- Apply techniques for detecting host- and network-based intrusions.
- Analyze malicious activity to determine weaknesses exploited, exploitation methods, effects on system and information.
- Perform event correlation using information gathered from a variety of sources within the enterprise to gain situational awareness and determine the effectiveness of an observed attack.
- Possess deep knowledge of active directory abuse used by attackers for lateral movement and persistence.
- Perform after-action reviews of team products to ensure completion of analysis.
- Lead and mentor team members as a technical expert.
Requirements
- Eight (8) years of demonstrated experience as a CDA in programs and contracts of similar scope, type, and complexity.
- A technical bachelor's degree from an accredited college or university may be substituted for two (2) years of CDA experience.
- Two (2) years of demonstrated and practical experience in TCP/IP fundamentals.
- Two (2) years of demonstrated experience with tcpdump or Wireshark.
- Three (3) years of demonstrated experience using security information and event management suites (such as Splunk, ArcSight, Kibana, LogRhythm).
- Three (3) years of demonstrated experience in network analysis and threat analysis software utilization.
- CSSP Analyst baseline certification (e.g., CEH, CySA+, CFR, etc.)
- IAT Level I or II certification
- Computing Environment (CE) certification for supported systems
- Global Information Assurances Certificate (GIAC) OR Global Certified Incident Handler (GCIH)
- US citizenship and an active TS/SCI with Polygraph security clearance required
Similar jobs
- RD
SOAR Automation Engineer
Randstad Digital
DC🇺🇸$55 - $60/hrHybrid4 days agoAWSSplunkAzure+3Technology - MR
Information Security Analyst 4 - IAM Subject Matter Expert
NewMotion Recruitment Partners, LLC
Charlotte, NC🇺🇸HybridYesterdayAgileTechnology - AP
Senior Application Security Vulnerability Analyst / Security Architect 3658130
NewAxiom Path
Charlotte, NC🇺🇸HybridYesterdayTechnology - RH
Cyber Security Analyst
NewRobert Half
Dublin, OH🇺🇸HybridYesterdayTechnology - VB
Application Security Architect
Vaco by Highspring
United States🇺🇸$190k - $200k/yrRemote1 month agoSQLOWASPAzure+5Technology - EX
E01-M01 Cyber Security Engineer with Security Clearance
NewEXPANSIA
Albuquerque, NM🇺🇸$180k - $210k/yrOn-siteYesterdayAWSAgileAzure+1Technology