CASY-MSCCN Jobs

CASY-MSCCN Logo

Job Information

ManTech Cyber Incident Response Watch Officer in Mclean, Virginia

Secure our Nation, Ignite your Future

Are you interested in defending the most coveted targets in the world? Is advancing today's technology for tomorrow's threats to national security constantly on your mind? Join ManTech and help protect our country against our adversaries while working on innovative projects that offer opportunities for advancement. We encourage our team members to share and grow their skills and expertise while creating robust and cutting-edge solutions.

ManTech is seeking a highly skilled and motivated Cyber Incident Response Watch Officer to join our dynamic Cyber Incident Response Team in McLean, VA. Our team provides 24x7x365 cyber incident support to our customer. The Watch Officer will be scheduled Monday - Friday.

Responsibilities include, but are not limited to:

  • Identify misuse, malware, or unauthorized activity on monitored networks.

  • Analyze all relevant cyber security event data and other data sources for attack indicators and potential security breaches.

  • Assist in coordination during incidents.

  • Identify intrusions utilizing various detection and prevention systems and other security event data sources on 24x7x365 basis.

  • Analyze intrusion related data to determine root cause and identify follow on activity while coordinating with Incident Handlers, Hunters, and various partners.

  • Correlate data from intrusion detection and prevention systems with data from other sources such as firewall, web server, and DNS logs, to include netflow, metadata, and pcap analysis.

  • Contributes in tuning and filtering of events and information, creating custom views and content using all available tools.

  • Review assembled data with firewall administrators, engineering, system administrators and other appropriate groups to determine the risk of a given event.

  • Contribute to the development of playbooks and procedures for handling each security event detected.

Required Qualifications:

  • 2+ years of experience in Cyber Security, InfoSec, Security Engineering or Network Engineering with emphasis in cyber security issues and operations, computer incident response, systems architecture or data management.

  • 1+ years of experience with leading a team while in an individual contributor role.

  • Experience with Security Information and Event Management (SIEM) systems, Network Intrusion Detection System/Intrusion Prevention Systems (IDS/IPS), Host Intrusion Detection System/Intrusion Prevention Systems (IDS/IPS), Network and Host malware detection, prevention and Host forensic applications or Web/Email gateway security technologies.

  • DOD 8570 IAT Level I or CSSP-A (Can be obtained within 6 months of start date).

  • Active TS/SCI with polygraph security clearance.

Desired Qualifications:

  • Bachelor's degree in a technical field of study. An additional four years of experience may be substituted for degree.

  • Ability work effectively in a fast paced environment with shifting priorities, and deadlines.

  • Ability to demonstrate effective analytical , critical thinking and problem solving skills

  • Ability to demonstrate effective interpersonal and oral and written communication kills.

  • Ability to demonstrate effective organizational, prioritization and multitasking skills

Clearance requirement: Active/Current TS/SCI with polygraph

Physical Requirements: Must be able to remain in a stationary position 50%

SKN.7.23

For all positions requiring access to technology/software source code that is subject to export control laws, employment with the company is contingent on either verifying U.S.-person status or obtaining any necessary license. The applicant will be required to answer certain questions for export control purposes, and that information will be reviewed by compliance personnel to ensure compliance with federal law. ManTech may choose not to apply for a license for such individuals whose access to export-controlled technology or software source code may require authorization and may decline to proceed with an applicant on that basis alone.

ManTech International Corporation, as well as its subsidiaries proactively fulfills its role as an equal opportunity employer. We do not discriminate against any employee or applicant for employment because of race, color, sex, religion, age, sexual orientation, gender identity and expression, national origin, marital status, physical or mental disability, status as a Disabled Veteran, Recently Separated Veteran, Active Duty Wartime or Campaign Badge Veteran, Armed Forces Services Medal, or any other characteristic protected by law.

If you require a reasonable accommodation to apply for a position with ManTech through its online applicant system, please contact ManTech's Corporate EEO Department at (703) 218-6000. ManTech is an affirmative action/equal opportunity employer - minorities, females, disabled and protected veterans are urged to apply. ManTech's utilization of any external recruitment or job placement agency is predicated upon its full compliance with our equal opportunity/affirmative action policies. ManTech does not accept resumes from unsolicited recruiting firms. We pay no fees for unsolicited services.

If you are a qualified individual with a disability or a disabled veteran, you have the right to request an accommodation if you are unable or limited in your ability to use or access http://www.mantech.com/careers/Pages/careers.aspx as a result of your disability. To request an accommodation please click careers@mantech.com and provide your name and contact information.

DirectEmployers