Leidos Holding
Network and Security Operations Center (NSOC) Incident Responder
Leidos Holding, HAMPTON, VA
Description
Leidos is seeking an experienced Incident Response Analyst to support a highly visible NSOC position. Reporting to the Leidos Incident Response Lead, the NSOC Incident Responder is responsible to perform incident response actions with focus on analysis, containment, eradication, and recovery.
The position may require occasional short-term travel to CONUS and OCONUS sites. This position may require an infrequent shift in workday schedule to support exercises occurring over weekends.
Primary Responsibilities
Basic Qualifications
Preferred Qualifications
Original Posting Date: 2024-11-27While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.
Pay Range: Pay Range $108,550.00 - $196,225.00
The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.
About Leidos Leidos is a Fortune 500® innovation company rapidly addressing the world's most vexing challenges in national security and health. The company's global workforce of 47,000 collaborates to create smarter technology solutions for customers in heavily regulated industries. Headquartered in Reston, Virginia, Leidos reported annual revenues of approximately $15.4 billion for the fiscal year ended December 29, 2023. For more information, visit www.Leidos.com .
Pay and Benefits Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available here .
Securing Your Data Beware of fake employment opportunities using Leidos' name. Leidos will never ask you to provide payment-related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work). Further, Leidos will only communicate with you through emails that are generated by the Leidos.com automated system - never from free commercial services (e.g., Gmail, Yahoo, Hotmail) or via WhatsApp, Telegram, etc. If you received an email purporting to be from Leidos that asks for payment-related information or any other person a l information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at [email protected] .
If you believe you are the victim of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission .
Commitment to Diversity All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.
Leidos is seeking an experienced Incident Response Analyst to support a highly visible NSOC position. Reporting to the Leidos Incident Response Lead, the NSOC Incident Responder is responsible to perform incident response actions with focus on analysis, containment, eradication, and recovery.
The position may require occasional short-term travel to CONUS and OCONUS sites. This position may require an infrequent shift in workday schedule to support exercises occurring over weekends.
Primary Responsibilities
- Execute assigned triage missions, incident response missions, and dynamic taskings in accordance with NIST SP 800-61 Rev. 2 .
- Conduct in-depth analysis on hosts and networks, forensic analysis, log analysis, and triage in support of incident response.
- Recognize attacker and APT activity, tactics, and procedures as indicators of compromise (IOCs) that can be used to improve monitoring, analysis, and incident response processes.
- U tilize technologies such as host forensics tools, Endpoint Detection & Response tools, log analysis and full packet capture to perform hunt and investigative activity to examine endpoint and network-based data.
- Assess, categorize, recommend prioritization, develop, report on, and guide recommended remediation actions for tasking to the NSOC as necessary.
- Occasionally assume Security Analyst role for specific mission needs .
- Develop artifacts supporting Information Assurance and Risk Management Framework (RMF) processes .
Basic Qualifications
- Bachelor's degree in Computer Science , MIS, or related technical field .
- Typically requires 12 - 15 years of related experience.
- Top Secret clearance with ability to obtain and maintain TS/SCI.
- Knowledge of the Incident Response Lifecycle and applicability to various types of incidents.
- Understanding of cyber threats, information security, and monitoring and detection.
- Familiarity with TCP/IP ports and protocols, intrusion detection systems, and NetFlow analysis .
- Demonstrated technical skills, such as system administration, network administration, programming, technical support, or intrusion detection .
- Ability to collaborate with technical staff and customers to identify , assess, and resolve security problems, issues, and risks, facilitate resolution, and implement risk mitigation.
- Good problem-solving skills and critical thinking abilities.
- At least one current DoD 8140 certification .
Preferred Qualifications
- Masters degree in Computer Science , MIS, or related technical field .
- Experience with virtualized environments (VMware, RedHat ) .
- Experience working with cloud computing and infrastructure security (AWS, Azure, etc.) to IL6 .
- Experience as a member of agile programs .
- Experience in Federal Government, DOD or Law Enforcement in CND, CIRT or SOC role .
- Knowledge of the Cyber Kill Chain and the MITRE ATT&CK framework .
Original Posting Date: 2024-11-27While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.
Pay Range: Pay Range $108,550.00 - $196,225.00
The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.
About Leidos Leidos is a Fortune 500® innovation company rapidly addressing the world's most vexing challenges in national security and health. The company's global workforce of 47,000 collaborates to create smarter technology solutions for customers in heavily regulated industries. Headquartered in Reston, Virginia, Leidos reported annual revenues of approximately $15.4 billion for the fiscal year ended December 29, 2023. For more information, visit www.Leidos.com .
Pay and Benefits Pay and benefits are fundamental to any career decision. That's why we craft compensation packages that reflect the importance of the work we do for our customers. Employment benefits include competitive compensation, Health and Wellness programs, Income Protection, Paid Leave and Retirement. More details are available here .
Securing Your Data Beware of fake employment opportunities using Leidos' name. Leidos will never ask you to provide payment-related information during any part of the employment application process (i.e., ask you for money), nor will Leidos ever advance money as part of the hiring process (i.e., send you a check or money order before doing any work). Further, Leidos will only communicate with you through emails that are generated by the Leidos.com automated system - never from free commercial services (e.g., Gmail, Yahoo, Hotmail) or via WhatsApp, Telegram, etc. If you received an email purporting to be from Leidos that asks for payment-related information or any other person a l information (e.g., about you or your previous employer), and you are concerned about its legitimacy, please make us aware immediately by emailing us at [email protected] .
If you believe you are the victim of a scam, contact your local law enforcement and report the incident to the U.S. Federal Trade Commission .
Commitment to Diversity All qualified applicants will receive consideration for employment without regard to sex, race, ethnicity, age, national origin, citizenship, religion, physical or mental disability, medical condition, genetic information, pregnancy, family structure, marital status, ancestry, domestic partner status, sexual orientation, gender identity or expression, veteran or military status, or any other basis prohibited by law. Leidos will also consider for employment qualified applicants with criminal histories consistent with relevant laws.