Job Family :
Cyber Consulting
Travel Required :
Up to 25%
Clearance Required :
Active Top Secret SCI with Polygraph
What You Will Do :
The Network Defense Analyst is responsible for conducting a review of an organization's cybersecurity services and completing checklists to ensure an organization is meeting IC policy requirements. These cybersecurity services include the Cybersecurity Framework Functions of Identify, Protect, Detect, Respond, and Recover. The IC policy checklists are for ICS 502-01, IC CIO 2018-124 Technical Implementation Guide (TIG), CNSS Directive 504, and others will be added over time. The tools evaluated will vary, but the minimum tools expected are ArcSight, Splunk, McAfee Host Base Security, Tanium, and ACAS. This includes the following during an inspection:
Responsibilities of this 100% on-site role include but are not limited to:
Coordination with multiple organizations and the reviewer staff
Consolidating reports on an organization's enterprise
Validating tools are configured to provide the full scope of data able to be captured (i.e., Splunk forwarding, and indexing provide data to UAM tools)
Conducting interviews and tabletop exercises
Developing and creating exercises based on specific vulnerabilities and likely scenarios
Completing and developing checklists
Verifying IDS/IPS rules implementation
Providing input to written reports on compliance and associated risks
Validating specific events (i.e., malware detection alerts) for use in polling other security systems to ensure events are captured
Coordination with the purple team and cyber threat emulation activities
What You Will Need :
An ACTIVE and MAINTAINED TS/SCI Federal or DoD security clearance with a COUNTERINTELLIGENCE (CI) polygraph
THREE (3) or more years of experience as a Security Operations Center (SOC), Computer Network Defense (CND) or Cyber Security Service Provider (CSSP) analyst.
Bachelor's degree
IAT Level III certifications (i.e. CASP+CE, CISSP, CISA, CCNP, etc.)
What Would Be Nice To Have :
FIVE (5) or more years of experience as an SOC,CND,CSSP senior analyst or consultant
Experience working in a DoD or Intelligence Community Environment
CSSP Auditor certification
Capable of multitasking with efficient time management and possessing a comprehensive understanding of cyber threats, vulnerabilities, and network security methodologies.
What We Offer :
Guidehouse offers a comprehensive, total rewards package that includes competitive compensation and a flexible benefits package that reflects our commitment to creating a diverse and supportive workplace.
Benefits include:
Medical, Rx, Dental & Vision Insurance
Personal and Family Sick Time & Company Paid Holidays
Position may be eligible for a discretionary variable incentive bonus
Parental Leave and Adoption Assistance
401(k) Retirement Plan
Basic Life & Supplemental Life
Health Savings Account, Dental/Vision & Dependent Care Flexible Spending Accounts
Short-Term & Long-Term Disability
Student Loan PayDown
Tuition Reimbursement, Personal Development & Learning Opportunities
Skills Development & Certifications
Employee Referral Program
Corporate Sponsored Events & Community Outreach
Emergency Back-Up Childcare Program
Mobility Stipend
About Guidehouse
Guidehouse is an Equal Employment Opportunity / Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, national origin, ancestry, citizenship status, military status, protected veteran status, religion, creed, physical or mental disability, medical condition, marital status, sex, sexual orientation, gender, gender identity or expression, age, genetic information, or any other basis protected by law, ordinance, or regulation.
Guidehouse will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of applicable law or ordinance including the Fair Chance Ordinance of Los Angeles and San Francisco.
If you have visited our website for information about employment opportunities, or to apply for a position, and you require an accommodation, please contact Guidehouse Recruiting at 1-571-633-1711 or via email at RecruitingAccommodation@guidehouse.com . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodation.
Guidehouse does not accept unsolicited resumes through or from search firms or staffing agencies. All unsolicited resumes will be considered the property of Guidehouse and Guidehouse will not be obligated to pay a placement fee.