Home       |     Overview      |     Candidate Login      |     Post Resume       |     Contact us
 
  
     
     
Search Jobs
     
Keywords,Title,Skills,Company  Location,City,State,Zip  
  Advanced Search
     
Splunk REST JSON SOAP API DevSecOps DNS TCPIP IDS System Administration LAN And WAN
 
Requirement id 102454
Job title Analyst
Job location in Dallas, TX
Skills required IT Systems Engineering, Splunk, Cyber Assessment Specialists, REST JSON SOAP API DevSecOps DNS TCPIP I
Open Date 23-Jan-2020
Close Date
Job type Contract to Hire
Duration 3 Months
Compensation DOE
Status requirement ---
Job interview type Face to Face interview
   Email Recruiter: coolsoft
Job Description Analyst: IT Systems Engineering, Splunk, Cyber Assessment Specialists, REST JSON SOAP API DevSecOps DNS TCPIP I

Candidate must be our W2 Employee.




Job Description :

Principal Security Analyst (Tier 3)

Overall Purpose:

The preferred candidate will have experience as a Team leader over other Security Analysts (peers and junior analysts. Experience in using the Splunk Enterprise Security SIEM technologies to support in-depth investigations and hunting activities. Experience with Splunk Enterprise Security required. Holds Certified Ethic Hacker (CEH) and/or Certified Incident Handler (GCIH or ECIH) and/or Certified Enterprise Defender (GCED) credentials. 5+ years of supervisory experience in an Analyst role.



Key Roles and Responsibilities:

Characterize and analyze network traffic to identify anomalous activity and potential threats to network resources.
Document and escalate incidents (including events history, status, and potential impact for further action) that may cause ongoing and immediate impact to the environment.
Perform cyber defense trend analysis and reporting.
Perform event correlation using information gathered from a variety of sources within the enterprise to gain situational awareness and determine the effectiveness of an observed attack.
Provide daily summary reports of network events and activity relevant to cyber defense practices.
Receive and analyze network alerts from various sources within the enterprise and determine possible causes of such alerts.

Provide timely detection, identification, and alerting of possible attacks/intrusions, anomalous activities, and misuse activities and distinguish these incidents and events from benign activities.
Use cyber defense tools for continual monitoring and analysis of system activity to identify malicious activity.
Analyze identified malicious activity to determine weaknesses exploited, exploitation methods, effects on system and information.
Determine tactics, techniques, and procedures (TTPs) for intrusion sets.
Recommend computing environment vulnerability corrections.
Conduct research, analysis, and correlation across a wide variety of all source data sets (indications and warnings).
Validate intrusion detection system (IDS) alerts against network traffic using packet analysis tools.
Reconstruct a malicious attack or activity based off network traffic.
Assist in the construction of signatures which can be implemented on cyber defense network tools in response to new or observed threats within the network environment or enclave.
Monitor external data sources (e.g., cyber defense vendor sites, Computer Emergency Response Teams, Security Focus) to maintain currency of cyber defense threat condition and determine which security issues may have an impact on the enterprise.
Provides cybersecurity recommendations to leadership based on significant threats and vulnerabilities.





Qualifying Experience and Attributes:

Minimum of three years of Splunk experience using Splunk Enterprise Security
Splunk Certified Administrator
Ability to apply techniques for detecting host and network-based intrusions using intrusion detection technologies.
Ability to interpret the information collected by network tools (e.g. Nslookup, Ping, and Traceroute).
Knowledge of computer networking concepts and protocols, and network security methodologies.
Knowledge of cybersecurity and privacy principles.
Knowledge of cyber threats and vulnerabilities.
Knowledge of encryption algorithms, cryptography, and cryptographic key management concepts.
Knowledge of host/network access control mechanisms (e.g., access control list, capabilities lists).
Knowledge of vulnerability information dissemination sources (e.g., alerts, advisories, err
 
Call 502-379-4456 Ext 100 for more details. Please provide Requirement id: 102454 while calling.
 
Other jobs in TX: Austin (21), Dallas (32), Fort Worth (30), Ft Worth (1), Grand Prairie (1), Houston (12), Hunstville (2), Huntsville (1), Irving (3), Plano (4), San Antonio (9), Woodlands (1),
 
 IT Systems Engineering job openings in other states
Jobs List

DHHS IT QA Test Lead (729527)
Create date: 18-Mar-2024
Remote

Start date :03/01/2024

End Date : 02/28/2025

Submission deadline : 03/21/2024

Client Info : NCDHHS-PMO

Description :
------------------------------------------------------
Please review the Skills matrix and place the information in a table at the top of the resume when submit.... (This job is for - job Jobs in NC Raleigh Tester - (in Raleigh, NC))

DHHS IT Vendor Management Specialist Lead T (725236)
Create date: 01-Dec-2023
Remote

Start date :01/08/2024

End Date : 01/07/2025

Submission deadline : 12/22/2023

Client Info : NCDHHS-OPCS

Description :
------------------------------------------------------
IT Vendor Management Specialist Lead – Contract Development and Compliance Job Description

NC.... (This job is for - job Jobs in NC Raleigh Specialist - (in Raleigh, NC))

IA-DOM DoIT-BA6-Business Analyst (721556)
Create date: 06-Oct-2023
Hybrid

Start date : 10/30/2023

End Date : 10/06/2024

Submission deadline : 10/11/2023

Client Info : OCIO: Office of the Chief Information Officer

Description :
------------------------------------------------------
The Office of the Chief Information Officer – PMO Division provides ad.... (This job is for - Stakeholders Jobs in IA DesMoines Analyst - (in Des Moines, IA))

DOAS Systems Analyst 2 (712729)
Create date: 12-Jun-2023
Hybrid

start date :07/05/2023

End date :06/30/2024

submission deadline : 06/13/2023

client info : DOAS

Description :

-------------------------------------------

Systems Analyst

This candidate will have experience w.... (This job is for - job Jobs in GA Atlanta Analyst - (in Atlanta, GA))

MES PBM Product Integration Specialist (712062)
Create date: 08-Jun-2023
Hybrid

start date :06/26/2023

End date :06/25/2024

submission deadline : 06/13/2023

client info : NCDHHS-HB

Description :

-------------------------------------------
The PBM Product Integration Specialist will serve as a member of t.... (This job is for - job Jobs in NC Raleigh Specialist - (in Raleigh, NC))
 
 IT Systems Engineering job openings in TX
Jobs List

Business Analyst - 44423
Create date: 07-Mar-2019
We should submitt only GC, GC EAD, L2 EAD, H4 EAD and Citizen.


Job Description :

Business Systems Analyst – IT

Contract (1 year+)

Requirements:

5 years of current and relevant experience with one of the following:
Experience in a highly regulated industries such as health.... (This job is for - Business Analyst Jobs in TX Austin Analyst - (in Austin, TX))
(Analyst: IT Systems Engineering, Splunk, Cyber Assessment Specialists, REST JSON SOAP API DevSecOps DNS TCPIP I in Dallas, TX)
     
Search Jobs
     
Keywords,Title,Skills,Company  Location,City,State,Zip  
  Advanced Search
     

    About Us     Services    Privacy policy    Legal     Contact us