CSIRT Analyst

Kiln, MS Full Time
POSTED ON 4/4/2024

Evolver Federal is seeking a CSIRT Analyst to join our team supporting our federal customer located at Stennis Space Center, MS. CSIRT is the primary entity of the SOC and the heart of Incident Response Operations. They are responsible for monitoring, incident recording, and reporting of cyber security events or incidents. The goal of CSIRT is to minimize and control the damage resulting from cybersecurity events or incidents, provide effective guidance for response, coordinate recovery activities, and work to prevent future incidents from occurring. Additionally, they provide coverage to ensure a proactive approach to defending against email attacks and a reactive approach when responding to successful attacks.


Responsibilities:

  • Provide 24x7x365 on site coverage monitoring and incident recording of security alerts and security event information received from all of our customer's security feeds, tools and designated system logs in near real time;
  • Track all security incidents via Swimlane, ServiceNow and DHS ECOP;
  • Provide remedial recommendations and produce consistent comprehensive reports on findings. Activities include:
    • Traffic analysis (at the packet level) and reconstruction of network traffic to discover anomalies, trends, and patterns affecting our customer's networks
    • Analysis and recommendation of hardware and/or software tools that will assist in traffic analysis
    • Implementation, training, and SOP development and maintenance of implemented solutions
    • In-depth Web log analysis to determine trend, patterns, and suspicious activity
    • Pattern analysis, trend analysis, behavior analysis, and other specialized analysis
    • Reporting results of all analyses to the SOC GWO and PM
  • Coordinate and advise on incident response actions taken by Incident Response Handlers for incidents affecting their areas
  • Develop and maintain formal, documented SOPs that are delivered for the SOC GWO's review and approval when developed or modified. SOPs provide the operational basis for the customer's SOC Concept of Operations (CONOPS)
  • Investigate and identify anomalous events that are detected by security devices or reported to the SOC from external entities, other DHS Components, system administrators, and the user community via Security Orchestration and Automation Response (SOAR) platform security tools, incoming phone calls, emails, and SNOW/ECOP tickets
  • Analyze suspicious web or email files for malicious code discovered through SPAM email monitoring and any other available sources
  • Determine indicators, including command and control channels, of malicious code
  • Collaborate with the Malware Analysis team to dissect Targeted Spear Phishing attacks from general mass email attacks

Basic Requirements

  • Must be a US Citizen able to obtain an Agency-specific clearance prior to starting
    • Must also be able to obtain a DoD Top Secret Clearance (this can be done while working on the program)
  • Must have at least one active certification to include: Security CE, ISC2 CISSP or other comparable certification approved by the customer
  • Bachelor's Degree and a minimum of 1 year of applicable experience is required. 4 years of additional applicable experience may substitute for a degree.

Preferred Requirements

  • Familiarity with the Splunk and McAfee EPO
  • Current Active DOD Top Secret Clearance

Evolver Federal is an equal opportunity employer and welcomes all job seekers. It is the policy of Evolver Federal not to discriminate based on race, color, ancestry, religion, gender, age, national origin, gender identity or expression, sexual orientation, genetic factors, pregnancy, physical or mental disability, military/veteran status, or any other factor protected by law.

Salary.com Estimation for CSIRT Analyst in Kiln, MS
$66,314 to $81,583
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

Sign up to receive alerts about other jobs that are on the CSIRT Analyst career path.

Click the checkbox next to the jobs that you are interested in.

Income Estimation: 
$84,814 - $105,034
Income Estimation: 
$109,421 - $144,274
Income Estimation: 
$106,443 - $130,769
Income Estimation: 
$131,710 - $172,421
Income Estimation: 
$66,762 - $81,440
Income Estimation: 
$76,385 - $106,504
Income Estimation: 
$84,814 - $105,034
Income Estimation: 
$131,710 - $172,421

Sign up to receive alerts about other jobs with skills like those required for the CSIRT Analyst.

Click the checkbox next to the jobs that you are interested in.

  • Account Reconciliation Skill

    • Income Estimation: $66,273 - $105,432
    • Income Estimation: $68,965 - $96,140
  • Business Valuation Skill

    • Income Estimation: $92,722 - $114,838
    • Income Estimation: $112,862 - $144,046
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Evolver Federal

Evolver Federal
Hired Organization Address Washington, DC Full Time
The Discovery Paralegal includes but is not limited to the following: Analyze and interpret requests from customers Rese...
Evolver Federal
Hired Organization Address Washington, DC Full Time
Evolver Federal believes our employees are key to our success and continued growth. We attract and retain our diverse wo...
Evolver Federal
Hired Organization Address Fort Knox, KY Full Time
Evolver Federal is looking for a Systems Management Technologist (IMO) to join our team in support of our DoD customer l...

Not the job you're looking for? Here are some other CSIRT Analyst jobs in the Kiln, MS area that may be a better fit.

PROGRAM ANALYST

US United States Fleet Forces Command, Stennis Space Center, MS

PROCUREMENT ANALYST

US United States Fleet Forces Command, Stennis Space Center, MS