Network Security Specialist
Location:Arlington, VA
Full-time or Part-time:Full Time
Open Date:6/14/2018
Requisition Code:201806-1331
  
Job Description

Network Security Specialist

? Perform analysis of log files from a variety of sources (e.g., network traffic logs, firewall

logs, intrusion detection system logs, Domain Name System (DNS) logs) to identify possible

threats to network security.

? Collect network intrusion artifacts (e.g., domains, Uniform Resource Identifiers (URIs),

certificates, etc.) and use discovered data to enable mitigation of potential CND hunts and

incidents.

? Analyze identified malicious network activity to determine weaknesses exploited,

exploitation methods, effects on system and information.

? Identify and document network based tactics, techniques, and procedures used by an attacker

to gain unauthorized system access.

? Track and document CND incidents from initial detection through final resolution.

? Perform real-time CND Incident Handling (i.e. forensic collections, intrusion correlation and

tracking, threat analysis, and direct system remediation) tasks to support deployable incident

response teams.

? Create and disseminate technical reports in response to conducted analysis.

? Write and publish CND guidance and reports (e.g. engagement reports) on incident findings

to appropriate constituencies.

? Assist with developing and maintaining SOPs.

? Participate in inter-agency sponsored community of interest analysis groups, participate in

technical briefings and exchanges.

? Serve as technical expert and liaison to leadership, NCCIC, the IC, and law enforcement

personnel explaining incident details as required.

? Manual review network device configurations for suspicious configurations or signs of

compromise.

? Assess network topology and device configurations identifying critical security concerns and

providing security best practice recommendations

? Collect network device integrity data, utilizing specialized tools, to detect unauthorized

access (login access, configuration changes, interface changes, physical access, unscheduled

reboots, blocked attempts, downgraded encryption, etc.).

? Collect network device integrity data, utilizing specialized tools, to detect software

modifications (file verification, online/offline hash, published hashed, memory verification,

firmware verification, rootkit detection).

? Collect network device integrity data, utilizing specialized tools, to detect hardware

modifications (operating statistics, network traffic analysis).

? Support network device integrity analysis on multi-vendor products (e.g. Cisco, Juniper, HP,

Dell, etc.).

? Divert/deploy teams of contractor resources to provide on-site support and assistance in the

event of an exercise or cyber incident.

Abilities Required:
• While performing the duties of this job the employee is regularly required to sit and use hands to finger, handle, or feel while typing at a computer keyboard.
• The employee is occasionally required to stand, walk, reach, or lift objects up to 10 pounds.
• The employee is frequently required to talk or hear. The vision requirements include: close vision.
EEO Statement
Catapult Consultants is an Equal Opportunity Employer. We believe that every employee has the right to work in a dignified work environment free from all forms of discrimination and harassment. It’s our policy to recruit, employ, retain, compensate, train, promote, discipline, terminate and otherwise treat all employees and job applicants based solely on qualifications, performance, and competence. This policy reflects our belief that providing equal opportunities for all employees is a both our legal and moral responsibility, and good management practice.

All employees and applicants are treated without regard to age, sex, color, religion, race, national origin, citizenship, veteran status, current or future military status, sexual orientation, gender identification, marital or familial status, disability or any other status protected by law.
Disclaimer
The above statements are intended to describe the general nature and level of work being performed by people assigned to this classification. They are not to be construed as an exhaustive list of all responsibilities, duties, and skills required of personnel so classified. All personnel may be required to perform duties outside of their normal responsibilities from time to time, as needed.