Cyber Incident Responder – Fusion- TS/SCI w. Poly

Clearance Level
Top Secret/SCI
Category
Information Security
Location
Reston, Virginia
Onsite Workplace
Key Skills For Success

Affirmative Action Plans

TTPs (Inactive)

Written Communication

REQ#: RQ146743
Public Trust: None
Requisition Type: Regular
Your Impact

Own your opportunity to serve as a critical component of our nation’s safety and security. Make an impact by using your expertise to protect our country from threats.

Job Description
  • The successful applicant should be expected to identify potential cyber threats, determine levels of risk, and produce analytical reports for a variety of audiences. You will occasionally be required to present your findings in front of senior executives, so the ability to translate technical indicators into layperson’s terms is vital.
  • Outstanding problem-solving skills are essential. When serious threats are identified, you will work closely with other areas of the security team to identify appropriate solutions. You must be passionate about technology, and able to learn the ropes of new security solutions rapidly.
  • Indicators of Compromise (IOC)s will be obtained through: forensic analysis of digital information, Open Source Intel (OSINT) review/monitoring, available tools both customer provided and free, and pivoting/researching on previously reported IOCs.
  • Must have common knowledge of standard network infrastructure.
  • Other items that would be good to know include: domain masquerading, certificates, and file hashing.
  • Familiar with monitoring emerging threats through Tools, Techniques, and Procedures (TTPs) and how they relate to the MITRE ATT&CK framework
  • Participate in collaborative sessions with other CNDSPs and IC agencies on malicious intrusions, attacks or suspicious activities, as well as share emerging Cyber Threat Intel data. 
  • Assist in the development of IOCs for active defensive countermeasures and passive detection signatures.
  • Good written communications skills are necessary in order to properly document and report the identification and sharing of newly identified IOCs.
  • Attention to detail and ability to work with team-members and independently.
  • Security+ CE or other DoD 8570 baseline certification prior to employment.

    DoD 8570 IAT II certification as well as a DoD 8570 CSSP Infrastructure certification . Viable certifications that meet this requirement are CEH, CySA+, GICSP, SSCP, CHFI or CFR.

Work Requirements
Years of Experience

8 + years of related experience

* may vary based on technical training, certification(s), or degree

Certification

CompTIA - Security+ CE - CompTIA

Travel Required

None

Citizenship

U.S. Citizenship Required

About Our Work

We are GDIT. The people supporting some of the most complex government, defense, and intelligence projects across the country. We deliver. Bringing the expertise needed to understand and advance critical missions. We transform. Shifting the ways clients invest in, integrate, and innovate technology solutions. We ensure today is safe and tomorrow is smarter. We are there. On the ground, beside our clients, in the lab, and everywhere in between. Offering the technology transformations, strategy, and mission services needed to get the job done.

COVID-19 Vaccination

GDIT does not have a vaccination mandate applicable to all employees. To protect the health and safety of its employees and to comply with customer requirements, however, GDIT may require employees in certain positions to be fully vaccinated against COVID-19. Vaccination requirements will depend on customer site requirements.

GDIT is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status, or any other protected class.