Coordinate and implement cyber security response tasks, including:
Performing analysis and documentation
Implementing containment measures (e.g., IP/domain blocks, disabling user accounts per Government direction)
Coordinate with:
Security and Installations Directorate (SI)
Office of Counterintelligence (SIC)
Insider Threat Office (SIII)
Law enforcement and counterintelligence personnel for advanced incident triage
Collaborate with appropriate authorities to produce security incident reports
Categorize security incidents and events
Ensure proper incident reporting, containment, and eradication by coordinating with:
Other contracts
Organizations
Activities and services
De-conflict red/blue team activity with open incidents/events
Ensure full recovery from incidents/events across the NGA enterprise
Build timelines, briefings, documentation, and other products to inform stakeholders of:
Incident response actions
Adversary activities
Blue force (defensive) responses
Log detailed actions and analysis in the authorized ticketing system to enable full reconstruction of events
Generate and update incident reports in:
Joint Incident Management System (JIMS)
Incident Case Management System (ICMS)
Other authorized systems as directed
Develop and execute (with Government approval) custom tools, scripts, and capabilities for data collection and incident response
Perform digital forensics and media analysis on host, server, and network data, including:
Volatile/non-volatile memory
System artifacts
Develop and disseminate indicators of compromise (IOCs) to cybersecurity stakeholders
Provide adversary attribution and perform malware analysis/signature development
Coordinate with CSOC Tier 1 & 2 teams to:
Remediate discrepancies
Provide recommendations to prevent reoccurrence
Bachelor’s degree or 6+ years of cybersecurity experience (CSOS)
Active TS/SCI clearance; ability to obtain polygraph
DoDD 8140.01 and DoD 8570.01-M:
IAT Level II
CSSP Incident Responder
Provide input and coordination for:
Daily CSOC Significant Activity Report
Daily CSOC Operations Update
Weekly CSOC Status Report
Serve as a C-IRT member under Government C-IRT Commander direction
Develop and coordinate courses of action with Government/contract stakeholders
When authorized, execute Defensive Cyberspace Operations – Internal Defensive Measures (DCO-IDM) on NGA networks
Perform malware reverse engineering and digital media analysis
Develop and execute custom scripts, tools, and capabilities (as authorized)
Deliver incident investigation reports within 30 days of C-IRT stand-down, covering:
Full incident lifecycle
Host/network analysis
Recommendations for TTP improvements
Conduct weekly Quality Control reviews of closed Tier 2 CSOC tickets to ensure:
Proper categorization
Thorough documentation
Appropriate notifications
Master’s degree
IAT Level III certification
...as a critical liaison between Sales, Finance, Contracts, and Customer... ...related field. Possesses internship experience in finance,... ...operations, ideally within the medical device, pharmaceutical, or broader... ...401(k) with company match ~ Paid time off (PTO) and holidays...
...Program Overview About The Role We are hiring a Cyber Security Engineer for our program in Stuttgart, Germany. What you'll do: This role requires a broad range of cybersecurity skills and knowledge, covering both technical and strategic aspects of information...
...authenticity, which is why we bring exclusive styles of high-quality fashion and performance sunglasses to all. A world leader in the... ...accommodations to individuals with disabilities who need assistance in the application and hiring process. To request a reasonable...
IF YOU'RE PASSIONATE ABOUT WINE AND WOULD LIKE TO EDUCATE CONSUMERS ABOUT IT, THEN YOU CAN GET PAID TO DO JUST THAT!! NEEDED: Part-Time Wine Samplers for FLOW WINE GROUP PAY RATE: $28-32 -Based on experience WORK TYPE: Your task is to conduct wine tastings (3-6...
RESPONSIBILITIES: - Notarizing at home in-person and remote online signings for buyers, sellers, and borrowers on real estate transactions.... .... - Making phone calls to clients. KEY BACKGROUND: - Notary Public license. - Must be a U.S. citizen. - High School...