We are looking for an Intrusion Analyst to analyze target digital network data and identify unauthorized activities using SIGINT and computer network defense resources. You will categorize network traffic, document malicious tactics, techniques, and procedures, and develop mitigation strategies to protect our systems. The Intrusion Analyst Level 3 shall possess the following capabilities: Analyze target digital network data to discover, analyze, and document malicious or unauthorized activity using information collected from a variety of SIGINT and computer network defense resources. Analyze metadata collected from tasked communications systems in order to identify, locate, and track targets, and to accurately report the intelligence gained from metadata analysis. Categorize traffic as benign, suspicious, or malicious activity; and document malicious tactics, techniques, and procedures (TTPs). Develop and implement mitigation strategies. Have a network and/or host-based focus. CASA, will need extra vetting; Deep packet/data inspection; hex dumps to tease out protocols; strong signals/protocol analysis capabilities (451/452 grad preferred); packetswing, DVT/WVT, VINTAGEHARVEST, BROADSKY, XKEYSCORE (FP, MP, schemas)
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level