What are the responsibilities and job description for the Systems Security Analyst position at Strategos Consulting LLC?
Strategos Consulting LLC has an immediate opportunity for a Systems Security Analyst / Cyber Defense Analyst in Newport, RI. This requires a Top Secret/SCI clearance.
Target Start Date: Q1 2025
Responsibilities:
- Analysis, documentation, and development of integration, testing, operations, and maintenance of system security.
- Use data collected from a variety of cyber defense tools (e.g., IDS alerts, firewalls, network traffic logs) to analyze events from environments to mitigate threats.
- Apply defensive measures resulting from sources to identify, analyze, and report events from the enterprise network to protect information systems from threats.
- Coordinate threat and mitigation strategies across the enterprise.
Required Job Experience:
- Coordinating, installing, and maintaining information security devices and services on EDU, SIPRNET, DMZ, and commercial ISP networks.
- Ensure compliance of information security devices, services, and capabilities within DOD Security and Information Assurance protection requirements.
- Provide information security services to implement, maintain, and sustain all unclassified and classified information security support services.
- Setup, configure, modify, test, maintain, operate, and support information security tools.
- Operate ACAS for Information Assurance Vulnerability Alert (IAVA) management and scanning, McAfee HBSS, Corelight, and Cortex.
- IOT discovery, monitoring, SOAR orchestration, and SIEM event correlation and analysis.
- Cloud security systems for DLP, and Email and threat prevention/monitoring.
- Validate remediation of IT resources managed by departmental branches.
- Security incident reporting to the Security Operations Center.
- Administration of firewalls, Intrusion Detection System, policy server, IAVA management, Defense Information Systems Agency, Host-Based Security System, Secure Configuration Compliance Validation Initiative, and Secure Configuration Remediation Initiative tools.
- Virtual Private Network management, penetration testing, forensics research and analysis, web content filter management, security incident reporting, and vulnerability scanning.
- Knowledge of cybersecurity principles, cyber threats, and vulnerabilities.
- Analyze network alerts from enterprise sources determining causes of alerts.
- Conduct security reviews, gap analysis, and risk mitigation in security architecture.
- Experience with Intrusion Detection System / Intrusion Prevention System tools and applications.
- Cloud computing deployment models in private, public, and hybrid on/off-prem environments.
- Knowledge of information technology security principles and methods (e.g., firewalls, DMZ, encryption).
- Familiarity with network protocols TCP/IP, Dynamic Host Configuration, and Domain Name System.
- Understand network traffic flows, Transmission Control Protocol, Internet Protocol, Open System Interconnection Model, and Information Technology Infrastructure Library.
- Knowledge of common attack vectors and classes of attacks (passive, active, insider, close-in, distribution).
- Experience with packet-level analysis and collecting data from a variety of cyber defense resources.
Degree (Required or certifications below can be substituted in lieu of):
- BS degree in Information Technology, Cybersecurity, Data Science, Information Systems, or Computer Science, from an ABET accredited or CAE designated institution.
Certification (Preferred one of the following in lieu of Required Degree):
- Certified Ethical Hacker (CEH)
- CompTIA Cloud
- CompTIA PenTest
- CompTIA Security
- Cisco Certified CyberOps Associate
- CompTIA Cybersecurity Analyst (CySA )
- CyberSec First Responder (CFR)
- Federal IT Security Professional-Operator-NG (FITSP-O)
- GIAC Certified Enterprise Defender (GCED)
- GIAC Foundational Cybersecurity Technologies (GFACT)
- GIAC Information Security Fundamentals (GISF)
- GIAC Certified Forensics Analyst (GCFA)
- GIAC Certified Intrusion Analyst (GCIA)
- GIAC Defensible Security Architecture (GDSA)
- GIAC Global Industrial Cyber Security Professional (GICSP)
- GIAC Security Essentials Certification (GSEC)
Job Type: Full-time
Pay: $100,000.00 - $120,000.00 per year
Work Location: In person
Salary : $100,000 - $120,000