GDIT is seeking Systems Administrator at McChord Air Force Base in Tacoma, Washington.
The Executive Airlift Communications Network (EACN) Cyber Security Team provides End Point technologies support and expertise including, but not limited to, Splunk, McAfee HBSS (ePO), Tenable ACAS (Nessus) scanners and-Security Center, IDS/IPS, Firewall monitoring, and more.
Roles and Responsibilities:
Maintain up-to-date knowledge of the IT security industry including awareness of new or revised security solutions, improved security processes and the development of new attacks and threat vectors.
Lead root cause analysis of critical events for improving preventative and reactive processes.
Utilize the McAfee ePolicy orchestrator engine, HIPS, software compliance profiler (SCP), rogue system detection (RSD), asset baseline manager (ABM), and assets software within the EACN infrastructure.
Utilize ACAS (Nessus) Security Center with attached scanners to report the current vulnerability standing of the EACN infrastructure.
Utilize Splunk for data analysis across the EACN infrastructure for any unusual activity.
Generate a thorough analysis using current tools and policies for leadership.
Appropriately respond to Cyber Security Breaches, Viruses, and Vulnerabilities.
1-3+ years of hands on experience with security monitoring tools such as Log collection and searching, IPS/IDS, Firewalls, HBSS (ePolicy Orchestrator), ACAS (Nessus Security Center), etc.
1-3+ years of operating SysLog Servers, Splunk, or similar applications.
1-3+ years of Systems and Network analysis.
Experience in the use of network monitoring tools with a strong understanding of network protocols.
Experience in working with other security technologies to develop use cases, data models, and connectors.
Shift work, team responsibilities.
Technical writing/creation of formal documentation such as reports, training material, and architecture diagrams.
Ability to perform security analysis, development and implementation of security policies, standards and guidelines.
Experience with both the Linux and Windows operating systems.
Understanding of TCP/IP and networking fundamentals.
Comfortable working with command line interface.
Ability to listen and collaborate with audiences ranging from IT administrators and engineers to executive level customers.
Self-motivated and self-educating, yet willing and able to work collaboratively with both customers and team members.
Well organized with a healthy sense of urgency, able to set; communicate; and meet aggressive deadlines with competing priorities.
BS with preferred degree in Computer Science, Information Systems, Information Assurance, Cyber Security, or 4+ years equivalent work experience in Information Technology.
Splunk Certified Administration
DISA HBSS 201 and 301 courses
Certified Ethical Hacker certificate
Active Secret Clearance Required
DoD 8570 Certification Required IAT Level 2, i.e. Comp TIA Security+
Intermediate Experience working with Windows and Linux Server Operating Systems
This position requires being fully vaccinated against COVID-19 by December 8, 2021 or the start date, if after December 8. Individuals who work in or reside in Texas or Montana or work outside of the United States may be excluded from this requirement.
We are GDIT. The people supporting some of the most complex government, defense, and intelligence projects across the country. We deliver. Bringing the expertise needed to understand and advance critical missions. We transform. Shifting the ways clients invest in, integrate, and innovate technology solutions. We ensure today is safe and tomorrow is smarter. We are there. On the ground, beside our clients, in the lab, and everywhere in between. Offering the technology transformations, strategy, and mission services needed to get the job done.
GDIT is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status, or any other protected class.