Booz Allen Hamilton Inc. Job - 30019686 | CareerArc
  Search for More Jobs
Get alerts for jobs like this Get jobs like this tweeted to you
Company: Booz Allen Hamilton Inc.
Location: Durham, NC
Career Level: Associate
Industries: Business Services, Consulting

Description

Job Number: R0045838

Incident Response Analyst, Senior

Key Role:

Serve as an incident response analyst, including maintaining responsibility for identifying and responding to security threats. Maintain responsibility for incident confirmation, response, data collection, investigation, and analysis. Leverage comprehension of computer and network architecture to provide analysis during investigations, including identifying adversarial activity and methods for future detection and prevention. Use a combination of open source research, network and host-based forensic analysis, log review and correlation, and pcap analysis to complete investigations. Compose and present reports on findings to leadership for intrusion incidents. Manage the incident life cycle, ensuring that all investigations are kept current and are completed.

Basic Qualifications:

-Experience with systems administration, network engineering, and security engineering

-Experience with performing host or network incident response, malware analysis, or forensics

-Experience with working in a Computer Incident Response Team (CIRT), Computer Security Incident Response Center (CSIRC), or Security Operations Center (SOC)

-Knowledge of host and network log sources to apply to investigation and IR methodology in investigations

-Knowledge of networking, malware analysis, intrusion analysis, infection vector identification, and forensics

-Ability to work as a team player to analyze activity on a complex network and its end points with the goal of protecting the confidentiality, integrity, and availability of systems and data and to learn and adapt quickly

-Ability to work using standard operating procedures and be flexible to work beyond the standard daytime working hours, as needed

-Ability to obtain a security clearance

-HS diploma or GED and 4+ years of experience with Cyber or BA or BS degree

-CompTIA Net+, CompTIA A+, CompTIA Security+, GIAC Certified Incident Handler (GCIH), CISSP, or EC-Council Certified Incident Handler (ECIH) Certification

Additional Qualifications:

-Possession of excellent oral and written communication skills to document incident response

Clearance:
Applicants selected will be subject to a security investigation and may need to meet eligibility requirements for access to classified information.

We're an EOE that empowers our people—no matter their race, color, religion, sex, gender identity, sexual orientation, national origin, disability, veteran status, or other protected characteristic—to fearlessly drive change.

JHT


 Apply on company website