2 days ago Be among the first 25 applicants
Location: Arlington, VA
Must have an active Top Secret Security Clearance
Node is supporting a U.S. Government customer by providing onsite incident response to civilian Government agencies and critical asset owners experiencing cyber-attacks. Responsibilities include immediate investigation and resolution of incidents, characterizing breach severity, developing mitigation plans, and assisting with service restoration.
Node is seeking a Cyber Incident Manager to support this critical mission.
Responsibilities:
- Correlate incident data to identify trends
- Recommend defense-in-depth principles and practices
- Perform incident triage to determine scope, urgency, and impact
- Research and compile resolution steps or workarounds
- Apply cybersecurity concepts to detect and defend against intrusions
- Monitor external data sources for threat conditions
- Identify incident causes and ask external entities relevant questions
- Analyze network alerts and determine causes
- Track and document incidents from detection to resolution
- Provide support during assigned shifts (M-F Day Shift)
Requirements:
- U.S. Citizenship
- Active TS/SCI clearance
- Ability to obtain DHS Suitability
- 5+ years of relevant experience in cyber incident management or cybersecurity operations
- Knowledge of incident response methodologies
- Familiarity with NIST 800-62 and FISMA standards
- Knowledge of NCCIC Cyber Incident Scoring System
- Understanding of attack stages and vulnerabilities
- Basic system administration and security techniques
Desired Skills:
- Knowledge of operational threat environments
- Knowledge of system and application security threats
Education and Certifications:
- Bachelor's in Incident Management, Operations, Cybersecurity, or related; or HS Diploma with 7-9 years relevant experience
- Certifications such as GCIH, GCFA, GISP, GCED, CCFP, or CISSP
Company Overview and benefits are included in the original description.