Open Menu

Create a Job Alert.

Enter your email below to save this search and receive job recommendations for similar positions.
Thank you. We'll send jobs matching these to
You already suscribed to this job alert.
No Thanks
US
What job do you want?
Apply to this job.
Think you're the perfect candidate?
Apply on company site

You’re being taken to an external site to apply.

Enter your email below to receive job recommendations for similar positions.
SME Incident Responder at Leidos

SME Incident Responder

Leidos Fairmont, WV Full Time
Apply on company site

Create Job Alert.

Get similar jobs sent to your email

Description



Job Description:

Next stop – Leidos. Leidos is working with our NOAA customer to transform their Security Operations Center into an industry leading organization. As a part of a multi-year initiative, we are modernizing our IT infrastructure, implementing industry-leading cyber technologies, and transforming how analysts think and handle threats. Here, you will put your cyber security prowess in action and provide senior-level subject matter expertise. You will provide direction and management of cyber initiatives. Join our team in Fairmont, WV and watch your career grow with Leidos.

Responsibilities:

  • Provide technical direction and mentor junior and mid-level employees
  • Act as the go-to person for technical recommendation
  • Set and enforce the standard for effective cyber operations
  • Respond to cyber incidents through detection, investigation, analysis, remediation, and reporting of cybersecurity incidents
  • Support core hours but also 24x7 shifts when coverage is needed in rare situations

Required Skills:

  • 8+ years of cyber analyst experience
  • 3-5 years of incident response experience
  • Prior experience as an Incident Commander
  • Subject matter expertise in analyzing network packets, SIEM alerts, and server and application logs to investigate incidents for anomalous/malicious activities
  • Able perform advanced analysis on advanced persistent threats and map out the threat lifecycle
  • Solid understanding of cyber landscape and typical threat vectors
  • Have one of the following certifications: CISSP, GISF, GCIH, CEH, CERT-CSIH, Additional certifications at or above the level of this listing may also be accepted

Preferred Qualifications:

  • Experience tracking incidents against a framework such as MITRE ATT&CK or Cyber Kill Chain methodology
  • Experience with multiple vendor technologies such as RSA Archer, FireEye suite of products, ArcSight, Stealthwatch
  • Forensic investigation and malware analysis experience
  • Inquisitive, problem-solving oriented
  • Can-do attitude with a strong sense of ownership

Clearance:

  • Must be a US Citizen
  • Minimum fully adjudicated Secret and Interim Top Secret clearance

Location:

  • Fairmont, WV



External Referral Bonus:

Eligible



Potential for Telework:

No



Clearance Level Required:

Top Secret



Travel:

No



Scheduled Weekly Hours:

40



Shift:

Day



Requisition Category:

Manager



Job Family:

Cyber Operations

Pay Range:

 

Recommended Skills

Cyber Security
Incident Response
Forensic Sciences
Analysis
Certified Ethical Hacker
Giac Certified Incident Handler
Apply to this job.
Think you're the perfect candidate?
Apply on company site

Help us improve CareerBuilder by providing feedback about this job: Report this job

Report this Job

Once a job has been reported, we will investigate it further. If you require a response, submit your question or concern to our Trust and Site Security Team

Job ID: R-00052816

CareerBuilder TIP

For your privacy and protection, when applying to a job online, never give your social security number to a prospective employer, provide credit card or bank account information, or perform any sort of monetary transaction. Learn more.

By applying to a job using CareerBuilder you are agreeing to comply with and be subject to the CareerBuilder Terms and Conditions for use of our website. To use our website, you must agree with the Terms and Conditions and both meet and comply with their provisions.