CACI International Advanced Cybersecurity Analytics in Springfield, Virginia
You will provide advanced cybersecurity analytics (ACA) services which aggregates and analyzes products, data, and information to identify trends and patterns, anomalous activity, provide situational awareness of NGA’s networks, missions and threats, and provide operational recommendations, visualizations, tuning requests, and custom signature creation to the CSOC and other internal and external stakeholders. All personnel performing ACA services shall have a certification that is compliant with DoD 8140.01 and DoD 8570.01-M IAT Level III.
Analyzes trends and patterns of data on NGA networks to identify and predict previously undiscovered events and incidents, and develop or tune rules/signatures/scripts as needed;
Coordinates with other Cybersecurity Operations to develop or tune rules/signatures/scripts;
Coordinates with other Cybersecurity Operations Services to investigate and obtain information about potential sources of compromise on NGA systems, and develop or tune rules/signatures/scripts as needed;
Correlates and analyzes precursors to incidents, and develop or tune rules/signatures/scripts as needed;
Improve SIEM alert efficiency though evaluation of valid alerts and false positives, and develop or tune rules/signatures/scripts as needed;
Assists the Cyber Incident Response Team by assessing ongoing incident activity to predict adversary responses and locations of compromise;
Documents all work in the authorized ticketing system with a sufficient level of detail to ensure the Government and other contract services can systematically reconstruct the analysis;
Provide input to the daily CSOC Significant Activity Report, the daily CSOC Operations Update, and the Weekly CSOC Status Report;
You will bring:
Active security clearance
IAT level III Certification (compliant with DoD 8140.01 and DoD 8570.01-M).
Must be willing to obtain a CSSP Certification wtihin 6 months of starting.
Would be nice if you had:
- CSSP Certification.
CACI employs a diverse range of talent to create an environment that fuels innovation and fosters continuous improvement and success. At CACI, you will have the opportunity to make an immediate impact by providing information solutions and services in support of national security missions and government transformation for Intelligence, Defense, and Federal Civilian customers. CACI is proud to provide dynamic careers for employees worldwide. CACI is an Equal Opportunity Employer - Females/Minorities/Protected Veterans/Individuals with Disabilities.