Description
SAIC isseekinga skilled and motivatedCyber Network Defense (CND) Analystto join ourMAJESTIC Joint Program Office (JPO) Teamin support of an on-premises enterprise IT environment. As part of a subcontract supporting a critical customer, the candidate will perform assessments of systems and networks toidentifydeviations from acceptable configurations, enclave policy, or local policy, while evaluating incident response procedures and capabilities. Responsibilities include exploiting system and network vulnerabilities to gather data from target systems. This role involves working within a complex environment of virtualized Windows and Linux servers, SQL Server databases, Oracle databases, and comprehensive networking layers to protect mission-critical systems and infrastructure.
All work must be performedon-sitein Springfield, VA.
Key Responsibilities:
- Perform assessments of systems and networks within the networking environment or enclave toidentifydeviations from acceptable configurations, policies, or security standards.
- Evaluate incident response procedures and capabilities to ensure readiness for detecting, responding to, and mitigating cyber threats.
- Exploit system and network vulnerabilities and misconfigurations for the purposes of gathering data from target systems or adversary networks to enable operations and intelligence collection capabilities.
- Leverage computer networks to disrupt, deny, degrade, or destroy information resident in computers and networks, or the computers and networks themselves.
- Identify, evaluate, and report cybersecurity vulnerabilities, providing actionable mitigation recommendations.
- Review andvalidatesystem configurations, changes, and security controls for compliance and effectiveness.
- Provide monitoring and analysis to detect signs of exploitation, unauthorized activity, or suspicious patterns.
- Maintain detailed documentation, including incident investigations, security findings, compliance reports, and remediation plans.
- Collaborate with stakeholders, such as Systems Administrators, Network Engineers, and Cybersecurity personnel, to assess and address risks effectively.
Qualifications
Education:
Certifications (CWF Requirements):
- Candidates must satisfyCybersecurity Workforce Framework (CWF)ID 511 (Cyber Defense Analyst)or531 (Cyber Defense Auditor, Intermediate Level)requirements, as outlined by Navy COOL.
This requirement can be met bypossessingone or more of the following qualifyingcertifications:
- Certified Ethical Hacker (CEH/Practical).
- CompTIA Cloud+.
- CompTIAPenTest+.
- CompTIA Security+.
- Federal IT Security Professional-Operator-NG (FITSP-O).
- GIAC Certified Enterprise Defender (GCED).
- GIAC Continuous Monitoring Certification (GMON).
- GIAC Defensible Security Architecture (GDSA).GIAC Response and Industrial Defense (GRID).
- GIAC Security Essentials Certification (GSEC).
- GIAC Certified Incident Handler (GCIH).
- GIAC Security Essentials Certification (GSEC).
- RochestonCertified Cybersecurity Engineer (RCCE) Level 1.
- Certified Cloud Security Professional (CCSP).
- Cisco Certified Network Associate (CCNA) Cybersecurity (formerly Cisco Cybersecurity Associate).
- EC-Council Certified Incident Handler (ECIH).
- Federal IT Security Professional-Operator-NG (FITSP-O).
ORThis requirement can be met through:
- ABachelor’s Degreein Cybersecurity, Computer Science, IT, or a related field.
Experience:
- 2-5 yearsof experienceperforming security audits, compliance assessments, or Cyber Network Defense-related (CND) functions in an enterprise IT environment.
Technical Skills:
- Proficiencyin cybersecurity frameworks (e.g., NIST 800-53, RMF, ICD 503).
- Experience with CND tools and technologies (e.g., Splunk, Nessus, ACAS).
- Solid understanding of Windows/Linux security configurations and enterprise network concepts.
- Familiarity with incident response procedures and database security for platforms like SQL Server and Oracle.
Clearance Requirement:
- ActiveTS/SCIclearance with the ability to obtain andmaintainaTS/SCI with Poly.
Work Environment and Notes:
- On-site Work:All work must be conducted on-site in Springfield, VA.
- Program Scope:Supports on-premises enterprise IT environments, including virtualized Windows/Linux servers, databases, and comprehensive networking layers.
- Subcontractor Role:Roles and responsibilities are defined per the subcontract agreement, with salary based on competitive market rates and role-specific requirements.
Target salary range: $120,001 - $160,000. The estimate displayed represents the typical salary range for this position based on experience and other factors.