Cyber Network Defense Analyst
Company: Solutions³ LLC
Location: Arlington
Posted on: February 20, 2026
|
|
|
Job Description:
Job Description Job Description Title: Cyber Network Defense
Analyst Description: Solutions³ LLC is supporting our prime
contractor and their U.S. Government customer on a large mission
critical development and sustainment program for on and offsite
incident response to Government agencies and critical
infrastructure owners who experience cyber-attacks. Solutions³ LLC
provides remote and onsite advanced technical assistance, proactive
hunting, rapid onsite incident response, and immediate
investigation, using host-based, network-based, and cloud-based
cybersecurity analysis capabilities. Solutions³ LLC is seeking a
Cyber Network Defense Analyst (CNDA) to support this critical
mission by providing front line response for digital
forensics/incident response (DFIR) and proactively hunting for
malicious cyber activity. The CNDA will use information collected
from a variety of sources to monitor network activity and analyze
it for evidence of suspicious behavior. Monitoring and analysis are
performed to identify and report events that occur, or might occur,
within the network, to protect information, information systems,
and networks from threats. Eligibility: Must be a US Citizen Must
have an active TS/SCI clearance Must be able to obtain DHS
Suitability prior to starting employment 2 years of directly
relevant experience in cyber defense analysis using leading edge
technologies and industry standard cyber defense tools
Responsibilities Include: Characterize and analyze network traffic
to identify anomalous activity and potential threats to network
resources Coordinate with enterprise-wide cyber defense staff to
validate network alerts Document and escalate incidents (including
event's history, status, and potential impact for further action)
that may cause ongoing and immediate impact to the environment
Perform cyber defense trend analysis and reporting Perform event
correlation using information gathered from a variety of sources
within the enterprise to gain situational awareness and determine
the effectiveness of an observed attack Provide daily summary
reports of network events and activity relevant to cyber defense
practices Receive and analyze network alerts from various sources
within the enterprise and determine possible causes of alerts
Provide timely detection, identification, and alerting of possible
attacks/intrusions, anomalous activities, and misuse activities and
distinguish these incidents and events from benign activities Use
cyber defense tools for continual monitoring and analysis of system
activity to identify malicious activity Analyze identified
malicious activity to determine weaknesses exploited, exploitation
methods, effects on system and information Identify and analyze
anomalies in network traffic using metadata Validate intrusion
detection system (IDS) alerts against network traffic using packet
analysis tools Identify applications and operating systems of a
network device based on network traffic Reconstruct a malicious
attack or activity based off network traffic Identify network
mapping and operating system (OS) fingerprinting activities Assist
in the construction of signatures which can be implemented on cyber
defense network tools in response to new or observed threats within
the network environment or enclave Required Skills: Experience
successfully developing and deploying signatures Experience
detecting host and network-based intrusions via intrusion detection
technologies (e.g., Snort) Experience implementing incident
handling methodologies Experience implementing protocol analyzers
Experience collecting data from a variety of cyber defense
resources Experience reading and interpreting signatures (e.g.
snort) Experience performing packet-level analysis Experience
conducting trend analysis Desired Skills: Python programming
experience Strong math and science background Experience with
Carnegie Mellon SiLK tool suite Desired Certifications: One or more
of the following professional certifications: GNFA, GCIH, GCIA,
GSEC, CASP, CySA, PaLMS, FedVTE GSEC (SANS401), Arcsight (or other
SEIM solution), Network, Security Required Education: BS Computer
Science, Cyber Security, Computer Engineering, or related degree;
or HS Diploma and 4 years of network investigations experience
Powered by JazzHR pZZt5TaNFy
Keywords: Solutions³ LLC, Reston , Cyber Network Defense Analyst, IT / Software / Systems , Arlington, Virginia