ECST - Suricata/Gigamon Engineer, Mid with Security Clearance
Network and Data Solutions Integrators
2024-11-07 16:41:34
Washington, District of Columbia, United States
Job type: fulltime
Job industry: I.T. & Communications
Job description
LCAT: Cyber Tools Engineer - Mid Position Description: Work individually or in a small integrated team to ensure project completion. Provide expertise in engineering design, development, direction, and implementation of enterprise network cyber defense capabilities. Apply familiarity with the utilization, configuration, and implementation of cyber defense capabilities such as web content filters, email security capabilities, IDS, IPS, HBSS, SEIM, DNS security practices, advanced log analysis, network monitoring, network flow analysis, packet capture analysis, network proxies, firewalls, anti-virus capabilities, Linux/UNIX command line, and access control lists. Focuses on tools configurations, installments, updates, integrations; operated with code management tools. Basic Qualifications: • 3+ years of Professional Experience in technical roles
• 2+ years' experience with privileged and elevated access with cybersecurity tools
• Experience using code management tools (e.g., Git, ClearCase, Helix Core)
• Experience with Windows and Linux Server
• Familiarity with DoD Risk Management Framework
• HS diploma or GED and 7+ years of experience with supporting IT projects and activities, Associate's degree and 5+ years of experience with supporting IT projects and activities, Bachelor's degree and 3+ years of experience with supporting IT projects and activities, or Master's degree and 2+ years of experience with supporting IT projects and activities
• Active TS/SCI clearance; willingness to take a polygraph exam
• DoD 8570.01-M Information Assurance Technician (IAT) Level II Certification, including Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND
• Ability to obtain a DoD 8570.01-M Cyber Security Service Provider - Infrastructure Support Certification, including CEH, CySA+, GICSP, SSCP, CHFI, CFR, Cloud+, or CND prior to start date Optional Qualifications: • Experience with Gigamon, Suricata, FireEye, Ansible, Encase, Fidelis, Varonis, or VMWare tools
• Experience with Commercial Cloud Enterprise
• Experience with big data analytics, machine learning, artificial intelligence, or anomaly detection
• Experience with cloud services, including AWS, Azure, or GCP
• Experience with Zero-Trust Architecture
• Experience with DevSecOps, CI/CD, IaC/CaC, ITIL, and/or ITSM
• Ability to automate security configurations of Linux and Windows systems
• Experience in a consulting or client-facing environment
• Possession of excellent oral and written communication skills, including using presentation expertise to convey complex ideas to client and internal staff
• Possession of excellent problem-solving skills