Job Family:Cyber Consulting
Travel Required:Up to 25%
Clearance Required:Active Top Secret SCI with Polygraph
What You Will Do:The Network Defense Analyst is responsible for conducting a review of an organization's cybersecurity services and completing checklists to ensure an organization is meeting IC policy requirements. These cybersecurity services include the Cybersecurity Framework Functions of Identify, Protect, Detect, Respond, and Recover. The IC policy checklists are for ICS 502-01, IC CIO 2018-124 Technical Implementation Guide (TIG), CNSS Directive 504, and others will be added over time. The tools evaluated will vary, but the minimum tools expected are ArcSight, Splunk, McAfee Host Base Security, Tanium, and ACAS. This includes the following during an inspection:
Responsibilities of this 100% on-site role include but are not limited to:
- Coordination with multiple organizations and the reviewer staff
- Consolidating reports on an organization's enterprise
- Validating tools are configured to provide the full scope of data able to be captured (i.e., Splunk forwarding, and indexing provide data to UAM tools)
- Conducting interviews and tabletop exercises
- Developing and creating exercises based on specific vulnerabilities and likely scenarios
- Completing and developing checklists
- Verifying IDS/IPS rules implementation
- Providing input to written reports on compliance and associated risks
- Validating specific events (i.e., malware detection alerts) for use in polling other security systems to ensure events are captured
- Coordination with the purple team and cyber threat emulation activities
What You Will Need:- An ACTIVE and MAINTAINED TS/SCI Federal or DoD security clearance with a COUNTERINTELLIGENCE (CI) polygraph
- THREE (3) or more years of experience as a Security Operations Center (SOC), Computer Network Defense (CND) or Cyber Security Service Provider (CSSP) analyst.
- Bachelor's degree
- IAT Level III certifications (i.e. CASP+CE, CISSP, CISA, CCNP, etc.)
What Would Be Nice To Have:- FIVE (5) or more years of experience as an SOC,CND,CSSP senior analyst or consultant
- Experience working in a DoD or Intelligence Community Environment
- CSSP Auditor certification
- Capable of multitasking with efficient time management and possessing a comprehensive understanding of cyber threats, vulnerabilities, and network security methodologies.
What We Offer:Guidehouse offers a comprehensive, total rewards package that includes competitive compensation and a flexible benefits package that reflects our commitment to creating a diverse and supportive workplace.
Benefits include:
- Medical, Rx, Dental & Vision Insurance
- Personal and Family Sick Time & Company Paid Holidays
- Position may be eligible for a discretionary variable incentive bonus
- Parental Leave and Adoption Assistance
- 401(k) Retirement Plan
- Basic Life & Supplemental Life
- Health Savings Account, Dental/Vision & Dependent Care Flexible Spending Accounts
- Short-Term & Long-Term Disability
- Student Loan PayDown
- Tuition Reimbursement, Personal Development & Learning Opportunities
- Skills Development & Certifications
- Employee Referral Program
- Corporate Sponsored Events & Community Outreach
- Emergency Back-Up Childcare Program
- Mobility Stipend
About GuidehouseGuidehouse is an Equal Employment Opportunity / Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, national origin, ancestry, citizenship status, military status, protected veteran status, religion, creed, physical or mental disability, medical condition, marital status, sex, sexual orientation, gender, gender identity or expression, age, genetic information, or any other basis protected by law, ordinance, or regulation.
Guidehouse will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of applicable law or ordinance including the Fair Chance Ordinance of Los Angeles and San Francisco.
If you have visited our website for information about employment opportunities, or to apply for a position, and you require an accommodation, please contact Guidehouse Recruiting at 1-571-633-1711 or via email at RecruitingAccommodation@guidehouse.com. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodation.
Guidehouse does not accept unsolicited resumes through or from search firms or staffing agencies. All unsolicited resumes will be considered the property of Guidehouse and Guidehouse will not be obligated to pay a placement fee.