Source description
About the role
Correlating incident data to identify specific trends in reported incidents
Recommending defense in depth principles and practices (i.e. Defense in Multiple Places, layered defenses, security robustness, etc.)
Performing Computer Network Defense incident triage to include determining scope, urgency, and potential impact
Researching and compiling known resolution steps or workarounds to enable mitigation of potential Computer Network Defense incidents within the enterprise
Applying cybersecurity concepts to the detection and defense of intrusions into small, and large-scale IT networks, and conduct cursory analysis of log data
Monitoring external data sources to maintain currency of Computer Network Defense threat condition and determine which security issues may have an impact on the enterprise
Identifying the cause of an incident and recognizing the key elements to ask external entities when learning the background and potential infection vector of an incident,
Receiving and analyzing network alerts from various sources within the enterprise and determine possible causes of such alerts
Tracking and documenting Computer Network Defense (CND) incidents from initial detection through final resolution, and work with other components within the organization to obtain and coordinate information pertaining to ongoing incidents
Candidates may be hired for shift work and be assigned to set schedules, triaging and researching incidents for Indicators of Compromise (IOCs), escalating to specialized analysts.
More at ARSIEM
Related open roles
Network Based Systems Analyst III
United States · Onsite
Network Based Systems Analyst III
United States · Onsite
Security Specialist
Remote · United States
Incident Manager III
United States · Onsite
382 - Analytic Developer
United States · Onsite
378 - Information System Security Engineer
United States · Onsite
