Cyber Defense Firewall Admin ECND027
IC-CAP LLC is a Woman Owned / HUBZone Small Business working in the Department of Defense and Intelligence Community. We are always looking for highly talented, energetic, and dynamic professionals that are interested in protecting the defense of our nation.
Some of the positions are future positions. Please look at the opening line of the job description to determine if this is an open or future position.
Our positions are not remote unless stated in the job description below.
We are looking to fill this position at the following location(s):
- Reston, VA
Cyber Defense Firewall Admin:
Investigates, analyzes, and responds to cyber incidents within the network environment or enclave.
Skill Level 4:
Skills and Tasks: Exceptionally Complex, Inter-Discipline, Inter-Organizational. Can perform tasks of senior level technicians, specialists, and or managers not performed at Level 3 due to the size and/or complexity of the tasks.
Leadership/Management: May work individually or as a key member of a senior leadership team. Oversees and monitors performance across several disciplines, and when required, takes steps to resolve issues.
Guidance: Provides expert guidance and direction to Government and Vendor senior level technicians and managers. Directs multiple contractor and subcontractor teams through to project completion.
Performing Enterprise Defense Countermeasure (DC) activities and coordination with other government agencies to record and prepare incident reports and analysis
methodology and results.
Monitoring and analyzing signature alerts from Intrusion Detection/Prevention Systems (IDS/IPS) for false positives.
Providing technical enforcement of organizational security policies.
Providing "tune-or-drop" recommendations towards the DC team's Signature Lifecycle Review procedure.
Provide insight to Detection and Response teams on signature functionality and providing signature tuning as needed.
Providing guidance and work leadership to less-experienced staff.
Communicating with customers and teammates clearly and concisely.
Maintaining current knowledge of relevant technology as assigned and may have supervisory responsibilities.
Participating in special projects as required.
May serve as a technical team or task leader.
Position may require evening, weekend or shiftwork (depending on operational tempo).
Experience with Perl Compatible Regular Expressions (PCRE).
Experience authoring Yara rules.
Experience authoring Snort signatures.
Education and Experience:
HS/GED + 12 years
Associates Degree + 10 years
Bachelor’s Degree + 8 years
Master’s Degree + 6 years
PhD + 4 years
Training and Certifications:
IAT Level 2
TS/SCI with CI poly