US Jobs US Jobs     UK Jobs UK Jobs     EU Jobs EU Jobs

   

Cyber Defense Incident Responder

Location: Oak Ridge, TN
Duration: 1 year with a 1 year option
Work Location: Y-12 National Security Complex (a combination of on-site at Y-12 and off-site telework)
Clearance: An active DOE Q Clerance is required Q or equivalent active clearance that can reciprocate as Q such as a Top Secret (TS) Clearance

KeyLogic has an opening for a Cyber Defense Incident Responder for the Y-12 National Security Complex in Oak Ridge, TN.

This position is responsible for investigating, analyzing, and responding to cyber incidents within the network environment or enclave.  Notifying designated managers, cyber incident responders, and cybersecurity service provider team members of suspected security incidents and communicating the event's history, status, and potential impact for further action in accordance with the organization's cyber incident response plan

Knowledge, Skillset, and Abilities (KSAs)


* Coordinate and provide senior level technical support to enterprise-wide cyber defense analysts to resolve cyber defense
Incidents


* Determine the scope, urgency and impact of cyber defense incidents


* Coordinate incident response functions and recommend incident remediation strategies


* Correlate incident data to identify specific vulnerabilities and make recommendations that enable expeditious remediation


* Perform analysis of log files from a variety of sources (e.g., individual host logs, network traffic logs, firewall logs, and intrusion detection system [IDS] logs) to identify possible threats to network security


* Perform cyber defense incident triage, to include determining scope, urgency, and potential impact, identifying the specific vulnerability, and making recommendations that enable expeditious remediation


* Perform real-time cyber defense incident handling (e.g., forensic collections, intrusion correlation and tracking, threat analysis, and direct system remediation) tasks to support deployable Incident Response Teams (IRTs)


* Receive and analyze network alerts from various sources within the enterprise and determine possible causes of such alerts


* Track and document cyber defense incidents from initial detection through final resolution Y‐12 IT/Cyber BOA


* Coordinate with intelligence analysts to correlate threat assessment data


* Perform cyber defense trend analysis and reporting

Education: An Associates degree in a technical field and 10-15 years experience, a Bachelors degree in a technical field and 5-10 years of related experience, or a Masters degree in a technical field with 2-5 years experience.

See Job Description





Share Job