Full-Time

Cyber Incident Detection and Response Analyst

Posted on 9/9/2024

ManTech

ManTech

5,001-10,000 employees

Provides technology solutions for government agencies

Government & Public Sector
Cybersecurity
Defense

Senior

Reston, VA, USA

US Top Secret Clearance Required

Category
Cybersecurity
IT & Security
Required Skills
Management
Splunk
Requirements
  • An 8570 compliant certification
  • One of the following relevant certifications: Certified Information Systems Security Professional (CISSP), Certified Incident Handler (GCIH), Certified Information Security Manager (CISM), Certified Ethical Hacker (CEH)
  • A bachelor’s degree in computer science, information technology, cybersecurity, or a related field of study (or equivalent experience).
  • A minimum of (10) ten years of experience in cybersecurity, with a focus on incident detection and response.
  • Proficiency with SIEM tools (e.g., Splunk, ArcSight).
  • Experience with intrusion detection/prevention systems (IDS/IPS), endpoint detection and response (EDR) tools, and firewalls.
  • Strong understanding of network protocols, operating systems, and security architectures.
  • Familiarity with digital forensics tools and techniques.
Responsibilities
  • Provide 24/7 support for incident data flow and response, content, and remediation, and interfaces with other incident response centers in maintaining an understanding of threats, vulnerabilities, and exploits that could impact networks and assets.
  • Monitor network traffic and system logs for signs of cyber threats and suspicious activity.
  • Perform the role of Incident Coordinator for IT Security events requiring focused response, containment, investigation, and remediation.
  • Perform real-time proactive event investigation on various security enforcement systems, such as SIEM, Anti-virus, Internet content filtering/reporting, malcode prevention, Firewalls, IDS & IPS, Web security, antispam, etc.
  • Assist with forensic analysis on hosts supporting investigations.
  • Conduct malware analysis in out of-band environment (static and dynamic), including complex malware.
  • Analyze operational anomalies, network behavior and perform mitigation actions derived from cyber threat monitoring and anomaly analysis, and actively monitor the networks for cybersecurity threats and vulnerabilities.
  • Perform quality assurance on Incident Closures.
  • Assist with Knowledge Management - Standard Operating Procedures and procedural support data.
  • Develop and implement detection use cases and signatures to enhance threat identification capabilities.
  • Respond promptly to security incidents, conducting thorough investigations and mitigating threats.
  • Stay current with emerging threats and vulnerabilities, updating detection and response strategies accordingly.
  • Produce comprehensive incident reports, including root cause analysis and recommendations for future prevention.
  • Work closely with other cybersecurity teams, including threat intelligence, vulnerability management, and risk assessment.
  • Communicate findings and provide actionable recommendations to management and other relevant parties.
  • Participate in cybersecurity exercises and incident response training to maintain a high state of readiness.
  • Continuously assess and improve incident detection and response processes.
  • Provide training and guidance to junior analysts and other team members, support and report to the Cyber Security Incident Response Lead.

ManTech International Corporation provides advanced technological solutions and services to U.S. government agencies, including defense, intelligence, and federal civilian sectors. The company offers a variety of services such as cybersecurity, data analytics, enterprise IT, logistics, and systems engineering, which are essential for national security and operational efficiency. ManTech's products work by securing long-term contracts with government entities, allowing them to deliver specialized services that meet the unique needs of these agencies. Unlike many competitors, ManTech focuses exclusively on government contracts, ensuring a deep understanding of the specific requirements and challenges faced by these organizations. The company's goal is to enhance national security and operational effectiveness while investing in its workforce to maintain a high level of expertise in technology.

Company Stage

Acquired

Total Funding

N/A

Headquarters

Herndon, Virginia

Founded

1968

Simplify Jobs

Simplify's Take

What believers are saying

  • ManTech secured a $1.4 billion DoD cybersecurity task order in December 2024.
  • The company benefits from increased demand for AI-driven cybersecurity solutions.
  • Partnerships with firms like Librestream enhance military maintenance efficiency.

What critics are saying

  • Dependence on government contracts may expose ManTech to policy changes.
  • Intense competition in the defense technology sector could impact market share.
  • Cybersecurity threats evolve rapidly, requiring constant innovation and adaptation.

What makes ManTech unique

  • ManTech specializes in advanced tech solutions for U.S. government agencies.
  • The company offers a wide range of services crucial for national security.
  • ManTech invests in employee development through educational partnerships.

Help us improve and share your feedback! Did you find this helpful?

INACTIVE