Job Description
TS/SCI w/FS Polygraph clearance required for consideration.
This position is part of a team that protects and defends the most coveted targets in the world to ensure the safety of information systems assets and protect systems from intentional or inadvertent access or destruction.
Of Note: This is a shift position working 4 days a week, 10 hours a day.
Responsibilities include:
Identifying misuse, malware, or unauthorized activity on monitored networks.
Analyzing all relevant cyber security event data and other data sources for attack indicators and potential security breaches.
Assisting in coordination during incidents.
Identifying intrusions utilizing various detection and prevention systems and other security event data sources on 24x7x365 basis.
Analyzing intrusion related data to determine root cause and identify follow on activity while coordinating with Incident Handlers, Hunters, and various partners.
Correlating data from intrusion detection and prevention systems with data from other sources such as firewall, web server, and DNS logs, to include netflow, metadata, and pcap analysis.
Contributing in tuning and filtering of events and information, creating custom views and content using all available tools.
Reviewing assembled data with firewall administrators, engineering, system administrators and other appropriate groups to determine the risk of a given event.
Contributing to the development of playbooks and procedures for handling each security event detected.
,
Required Skills
Experience with:
Security Information and Event Management (SIEM) systems.
Network Intrusion Detection System/Intrusion Prevention Systems (IDS/IPS).
Host Intrusion Detection System/Intrusion Prevention Systems (IDS/IPS).
Network and Host malware detection and prevention.
Network and Host forensic applications.
Web/Email gateway security technologies.
,
About WarCollar Industries
About us:
WarCollar Industries, LLC is a veteran-owned small business. We maintain a team of cybersecurity experts committed to protecting complicated data and distribution systems and providing decision makers with the most accurate assessment of residual risk possible. We work with our clients to solve the toughest challenges in the ever-evolving digital landscape. Services include network defense, computer network attack, secure network design, penetration testing and vulnerability assessment. WarCollar enables its clients to find, fix, stop, and ultimately solve cybersecurity problems across their entire enterprise.
WarCollar offers generous benefits including: Medical insurance premium coverage; PTO based on billable hours; federal holidays plus your birthday; matching 401k, education reimbursement plus paid training days; performance bonuses; referral bonuses; government shutdown protection; monthly team building events plus two major social events annually.
WarCollar Industries, LLC is an equal opportunity employer. WarCollar does not discriminate in employment based upon race, color, religion, sex (including pregnancy and gender identity), national origin, political affiliation, sexual orientation, marital status, disability, genetic information, age, membership in an employee organization, retaliation, parental status, status as a protected military veteran, or other non-merit factor.