What are the responsibilities and job description for the Cyber Security Forensics Analyst position at ManTech International Corporation?
Description & Requirements
Transform the future of federal services with ManTech! Join a vibrant, energetic team committed to enhancing national security and public services through innovative tech. Since 1968, we've partnered with Federal Civilian sectors to deliver impactful solutions. Engage in exciting projects in Digital Transformation, Cybersecurity, IT, Data Analytics and more. Ignite your career and drive change. Your journey starts now-innovate and excel with ManTech!
Become an integral part of a diverse team while working at an Industry Leading Organization, where our employees come first. At ManTech International, you'll help protect our national security while working on innovative projects that offer opportunities for advancement.
We are seeking a highly skilled and motivated Cyber Security Forensics Analyst to join our team, providing crucial support to the Network Operations Security Center (NOSC). You will be responsible for conducting advanced digital forensics investigations, analyzing cyber threats, and developing strategies to mitigate risks. This role requires a deep understanding of cyber forensics, the MITRE ATT&CK framework, and the MITRE D3FEND framework.
Responsibilities include but are not limited to :
- Lead and conduct complex digital forensics investigations, including data recovery, analysis, and reporting.
- Utilize the MITRE ATT&CK framework and other techniques to identify, assess,
- and address cyber threats and vulnerabilities.
- Apply the MITRE D3FEND framework to develop and implement defensive measures against cyber threats.
- Collaborate with other cybersecurity professionals, law enforcement agencies, and intelligence organizations to share information and coordinate response efforts.
- Conduct technical analysis against target systems and networks, identify vulnerabilities, and support the development of new exploitation techniques.
- Analyze cyber activities to identify entities of interest, determine malicious behavior, and recognize patterns and linkages.
- Conduct dynamic malware analysis and performing memory and dead-box forensics.
- Investigate computer and information security incidents to determine the extent of compromise to information and automated information systems.
- Perform long-term and time-sensitive in-depth technical analysis of malicious code (malware), developing defensive countermeasures, and producing reports for dissemination.
- Using static and dynamic methodologies for malware analysis, such as debuggers, disassemblers, and sandbox execution.
- Write forensics and incident response reports, investigate computer attacks, and extract data from electronic systems.
- Perform technical analysis on suspicious or unknown activities.
- Draft and brief contract and government leadership, as needed.
- Collaborate with the Splunk team to implement, enhance, or change existing use cases.
- Assess scope of malware campaigns and determine necessary remediation actions.
- Conduct remote compromise assessments and producing assessment reports.
- Develop and maintain standard operating procedures (SOPs) and rules of engagement (ROE) templates.
- Cross-train and mentor other forensic analysts and staff on analysis, tools, and reporting.
Basic Qualifications :
Clearance Requirements :
Physical Requirements :
ManTech International Corporation, as well as its subsidiaries proactively fulfills its role as an equal opportunity employer. We do not discriminate against any employee or applicant for employment. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
If you are a qualified individual with a disability and require a reasonable accommodation to apply for a position with ManTech through its online applicant system, please email us at careers@mantech.com and provide your name and contact information.