DCSA Cyber Defense Engineer with Security Clearance
Broadleaf, Inc - Quantico, VA
Apply NowJob Description
JOB DESCRIPTION: * CDO support services include continuous monitoring, data to include but not limited to network and host vulnerability scanning IDS, firewall, network sensor tuning, net flow/packet capture (PCAP). Collect and keep audit data in order to conduct a technical analysis relating to misuse, penetration, or other incidents. * Traffic analysis, vulnerability analysis, cyber threat hunting, wireless scanning, end point security analysis, vulnerability analysis, network access control, network and computer forensics investigations, insider threat support, web traffic analysis, and various cybersecurity application/tools installed on (servers, workstations, to include maintenance and upkeep of the server. * Analysis reports, forensics investigations, trend reports. Analysis reports are conducted daily, covering the Security Information and Event Manager (SIEM), end point security, network access control, and vulnerability scanners, threat hunt operations. Analysis reports are produced daily covering 30 plus activities that are used to depict current network security and any anomalous activity. BASIC QUALIFICATIONS: EXPERIENCE: * At least three (3) Years- hands-on technical Cybersecurity Experience to include Incident response: * As part of a mid to large enterprise SOC team; OR * Experience with enterprise vulnerability management, endpoint security or web security; OR * As part of a mid to large enterprise red team or threat hunt team * Knowledge of computer network defense concepts, DISA Security Technical Information Guides, DoD A&A Process, NIST SP 800-53, NIST SP 800-61, CJCSM 6510.01 B, United States Cyber Command guidelines, and other applicable DoD Cybersecurity and Computer Network Defense Policies Cybersecurity and Computer Network Defense policies * Experience developing and reporting metrics, preferably in a near-real time dashboard or common operating picture. * Develop, maintain, and provide a weekly brief that captures all the cyber events including metrics and trends. * Be able to access to required commercial and/or DoD systems including NIPRNet, SIPRNet, and JWICS * Liaise with internal and external partners at all levels, government, and private sector, in order to benefit the organization and provide for more uniform situational awareness and common defense. * Correlate warning intelligence and attack sensing and warning (AS&W) data to search for advanced, persistent, and coordinated threats across the enterprise. * Analyze impact of cyber warning intelligence and AS&W. EDUCATION: * Associates or bachelor''s degree in Information Technology, Information Systems Management, Cybersecurity, or equivalent, or equivalent experience CERTIFICATION(S): * DoD 8570 IAT Level II required * One of the following vendor specific also required: * FireEye alert analysis & endpoint investigations; OR * Splunk Certification; OR * Forescout Admin Certification * DoD 8570 CSSP-Analyst preferred CLEARANCE LEVEL: * Active TS/SCI Clearance required * Active Secret with ability to obtain TS/SCI may be allowed for exceptionally qualified candidates WORK ENVIRONMENT: * This is a partial Telework position * If alternate worksite is other than DCSA facilities or corporate office space, must have the reliable ability to communicate over voice (cell phone preferred) and stable, capable internet connection. * Must communicate complex technical ideas to a diverse customer both verbally and in written form. Other Information BENEFITS: * Health, Dental, Vision, 401K Matching, AD&D Insurance EEO Employer F/M/Vet/Disabled
Created: 2025-11-01