CSSP Analyst, Senior P42- P45

FEDITC LLCIndianapolis, IN
13dOnsite

About The Position

FEDITC, LLC is a fast-growing business supporting DoD and other intelligence agencies worldwide. FEDITC develops mission critical national security systems throughout the world directly supporting the Warfighter, DoD Leadership, & the country. We are proud & honored to provide these services. Overview of position: We are looking for a CSSP Analyst, Senior to work in Indianapolis, IN. An active Top Secret and a United States Citizenship is required to be considered for this position.

Requirements

  • 8+ years cybersecurity/SOC analyst experience
  • CySA+ certification demonstrating advanced defensive analysis skills
  • DoD 8140 Cyber Defensive Analyst (Advanced) Playlist qualification
  • Expert-level SIEM analysis (Azure Sentinel, ArcSight, Splunk)
  • Experience with threat hunting and event correlation
  • Incident response and digital forensics experience
  • Knowledge of malware analysis and phishing investigation
  • Experience with ESS, ACAS, and network monitoring tools
  • Understanding of DFAS CSIRP incident reporting procedures
  • Active Top Secret clearance is required.
  • Must be a United States Citizen and pass a background check.
  • Maintain applicable security clearance(s) at the level required by the client and/or applicable certification(s) as requested by FEDITC and/or required by FEDITC’S Client(s)/Customer(s)/Prime contractor(s).

Nice To Haves

  • GIAC certifications (GCIH, GCFA, GCIA)
  • Experience with DFAS CSSP SOC operations
  • Prior 24/7 SOC experience in DoD environment
  • Threat intelligence experience
  • Experience with Azure Sentinel KQL queries
  • Digital forensics certifications
  • Experience with classified network monitoring

Responsibilities

  • Provide senior-level 24/7 security monitoring, analysis, and incident response (ON-SITE REQUIRED)
  • Lead security event correlation and threat hunting activities
  • Monitor tools designed to protect DFAS networks from internal and external attacks (data exfiltration, malware, web attacks, unauthorized access)
  • Provide incident response, reporting (internal and external), and resolution on all CCE enclaves (NIPRNet, SIPRNet, JWICS)
  • Ensure 100% threat processing compliance for ESS management
  • Achieve 95% CMRS compliance for endpoint security
  • Support Command Cyber Readiness Inspection (CCRI) maintaining audit readiness state
  • Complete break/fix actions on schedule achieving 95% compliance
  • Complete assigned projects achieving 97% completion rate
  • Operate ESS, ACAS, ArcSight and incident response on JWICS network
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service