CSOC Tier 3 Cyber Engineer - TS/SCI

General Dynamics Information Technology, Inc.

Springfield (VA)

On-site

USD 147,000 - 199,000

Full time

3 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Total Rewards package

Job summary

General Dynamics Information Technology, Inc. seeks a CSOC Tier 3 cybersecurity professional to provide expert 24x7x365 containment, eradication, and recovery actions for incidents. Responsibilities include malware analysis, forensic handling, and DoD-era certifications.

Candidate must hold TS/SCI with polygraph eligibility; DoD 8140.01/8570.01-M IAT Level II required or obtainable within six months. Strong collaboration with government partners is essential.

Qualifications

  • Active TS/SCI and Polygraph. Can sponsor for a polygraph.
  • Bachelor's Degree and 8 years’ experience in Cyber Security (CSOS).
  • DoDD 8140.01 and DoD 8570.01-M IAT Level II and CSSP Incident Responder.

Responsibilities

  • Coordinate and implement tasks during cyber security incident response, including containment and blocking actions.
  • Collaborate with SI, SIC, Insider Threat Office, and law enforcement as required for investigations.
  • Produce security incident reports and timelines; de-conflict blue/red team activities; analyze data for incidents.
  • Perform digital media analysis on host/server/network data for incident response.
  • Develop indicators of compromise and perform malware analysis and signature development.
  • Coordinate with CSOC Tier 1/2 to remediate discrepancies and provide prevention recommendations.

Skills

Cyber Defense
Malware
Malware Analysis
Network Analysis
Security Incident Response

Education

Bachelor's Degree
Master's degree

Job description

Req ID: RQ225855

Type of Requisition: Regular

Clearance Level Must Be Able to Obtain: Top Secret SCI + Polygraph

Public Trust/Other Required: None

Job Family: Cyber and IT Risk Management

Skills:

Cyber Defense,Malware,Malware Analysis,Network Analysis,Security Incident Response

Certifications:

CompTIA Security+ CE | CompTIA - CompTIA

Experience:

8 + years of related experience

US Citizenship Required:

Yes

Job Description:

Candidate will provide Expert CSOC Tier 3 services, which is 24x7x365 coordination, execution, and implementation of all actions required for the containment, eradication, and recovery measures for events and incidents. CSOC Tier 3 services includes malware and implant analysis, and forensic artifact handling and analysis. All Contractor personnel performing CSOC Tier 3 services shall have or obtain, within six months of start, a certification that is compliant with DoDD 8140.01 and DoD 8570.01-M IAT Level II and CSSP Incident Responder.

Job Duties:
  • Coordinate and implement tasks, performing analysis, and building/documenting response activities required during cyber security incident response, to include but not limited to actions such as implementing containment measures, IP blocks, domain blocks, and disabling user accounts on direction of the Government.
  • Coordinates with Security and Installations Directorate (SI) Office of Counterintelligence (SIC), Insider Threat Office (SIII), in addition to other law enforcement and counter intelligence personnel as required to perform advanced investigation and triage of incidents;
  • Collaborates with appropriate authorities in the production of security incident reports;
  • Categorizes incidents and events;
  • Coordinates with other contracts, organizations, activities, and other services as appropriate to ensure incidents are properly reported, contained, and eradicated;
  • Coordinates with other contracts, organizations, activities, and other services as appropriate to de-conflict blue / red team activity with open incidents/events;
  • and analyze data, and to respond to incidents/events;
  • Performs digital media analysis on host, server, and network data as required to analyze and respond to an incident, to include but not limited to volatile and non-volatile memory and/or system artifact collection and analysis;
  • Develops and identifies indicators of compromise to send to Cybersecurity stakeholders and other Contract Services;
  • Performs malware analysis and signature development;
  • Coordinate with CSOC Tier 1 and 2 services to remediate all discrepancies and provide recommendations to prevent reoccurrence.
Job Requirements:
  • Active TS/SCI and Polygraph. Can sponsor for a polygraph.
  • Bachelors Degree and 8 years’ experience in Cyber Security (CSOS)
  • DoDD 8140.01 and DoD 8570.01-M IAT Level II and CSSP Incident Responder.
  • Provides input to and coordinates with all applicable stakeholders to develop and deliver the daily CSOC Significant Activity Report, the daily CSOC Operations Update, and the Weekly CSOC Status Report;
  • Serve as C-IRT members as required and serve under the direct control of, and take direction from, the Government C-IRT Commander;
  • Develop and coordinate courses of action with various Government and contract stakeholders, and when properly authorized by the Government, execute Defensive Cyberspace Operations-Internal Defensive Measures on behalf of the customers’ networks and systems;
  • Performs digital media analysis and malware reverse engineering on host, server, and network data as required to analyze and respond to an incident, to include but not limited to volatile and non-volatile memory and/or system artifact collection and analysis.
  • When properly authorized by the Government, execute custom scripts, tools, and capabilities to collect and analyze data, and to respond to incidents/events;
  • Develops, documents, and provides to the Government incident investigation reports which include sufficient information to document the entire lifecycle of the incident and the response, including but not limited to adversary and friendly forces activity, host and network analysis, timelines, and recommendations for corrective actions, recommendations for new Tactics, Techniques, and Procedures (TTP) and other recommendations as appropriate, within 30 days of C-IRT stand-down;
  • Conduct Quality Control reviews of a percentage closed CSOC Tier 2 tickets each week to ensure proper analysis, categorization, documentation, and notification
Preferred Qualifications:
  • Masters degree
  • IAT III

The likely salary range for this position is $147,292 - $199,278. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

Total Rewards at GDIT:

Our benefits package for all US-based employees includes a variety of medical plan options, some with Health Savings Accounts, dental plan options, a vision plan, and a 401(k) plan offering the ability to contribute both pre and post-tax dollars up to the IRS annual limits and receive a company match. To encourage work/life balance, GDIT offers employees full flex work weeks where possible and a variety of paid time off plans, including vacation, sick and personal time, holidays, paid parental, military, bereavement and jury duty leave. To ensure our employees are able to protect their income, other offerings such as short and long-term disability benefits, life, accidental death and dismemberment, personal accident, critical illness and business travel and accident insurance are provided or available. We regularly review our Total Rewards package to ensure our offerings are competitive and reflect what our employees have told us they value most.

Our Identity Verification Process:

As part of the hiring process, we will ask you to complete an identity verification process that leverages advanced biometrics and artificial intelligence to ensure authenticity and protect against identity fraud. You are expected to be on camera during virtual interviews. We reserve the right to take your picture to verify your identity and prevent fraud. By proceeding, you authorize the collection, processing, and use of your biometric data for identity verification and security purposes.

About Our Work:

We are GDIT. A global technology and professional services company that delivers technology solutions and mission services to every major agency across the U.S. government, defense and intelligence community. Our 26,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across 50+ countries worldwide, offering leading mission-ready capabilities in AI, cloud, cyber and software development.

Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

CSOC Tier 3 Cyber Engineer
CSOC Tier 3 Cyber Engineer

General Dynamics Information Technology, Inc. • Springfield (VA)

On-site
USD 147,000 - 199,000
Cyber Threat Intelligence (Fusion) Analyst - TS/SCI with Polygraph
Cyber Threat Intelligence (Fusion) Analyst - TS/SCI with Polygraph

General Dynamics Information Technology • Reston (VA)

On-site
USD 145,000 - 196,000
CSSP DCO Analyst
CSSP DCO Analyst

General Dynamics Information Technology, Inc. • Bellevue Second IV Precinct (NE)

On-site
USD 98,000 - 117,000
Health benefits
401K with company match
Educational Assistance
CSSP DCO Analyst
CSSP DCO Analyst

General Dynamics Information Technology • Omaha (NE)

On-site
USD 87,000 - 117,000
Health benefits (Medical/Dental/Vision
401K with company match
Educational Assistance and eLearning
+2
Cyber Security Operations Specialist III - Tier 3
Cyber Security Operations Specialist III - Tier 3

CACI International Inc • Springfield (VA)

On-site
USD 86,600 - 181,800
Information Security Director
Information Security Director

gdit • Bellevue Second IV Precinct (NE)

On-site
USD 170,000 - 205,000
Health benefits
401(k) with company match
Educational assistance and eLearning
+3
Cyber Intrusion Detection System Administrator - TS/SCI with Polygraph
Cyber Intrusion Detection System Administrator - TS/SCI with Polygraph

General Dynamics Information Technology, Inc. • Reston (VA)

On-site
USD 149,000 - 201,000
Growth opportunities
Internal mobility team
Comprehensive benefits & 401K
+1
Cybersecurity Systems Engineer/Information Systems Security Engineer (ISSE) - TS/SCI with Polygraph
Cybersecurity Systems Engineer/Information Systems Security Engineer (ISSE) - TS/SCI with Polygraph

gdit • Washington

On-site
USD 164,000 - 207,000
Cyber Intrusion Detection System Administrator - TS/SCI with Polygraph
Cyber Intrusion Detection System Administrator - TS/SCI with Polygraph

General Dynamics Information Technology • Reston (VA)

On-site
USD 149,000 - 201,000
Medical, dental, vision plans
401(k) with company match
Paid time off
Cybersecurity Operations Specialist 720
Cybersecurity Operations Specialist 720

(EDO) Entertainment Data Oracle, Inc. • St. Louis (MO)

On-site
USD 110,000 - 150,000
Flexible work environment
401(k) matching
Paid training and tuition