Talent.com
Cybersecurity Data Analyst
Cybersecurity Data AnalystGeneral Dynamics - IT • St Louis, Missouri, United States
Cybersecurity Data Analyst

Cybersecurity Data Analyst

General Dynamics - IT • St Louis, Missouri, United States
[job_card.variable_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]

GDIT is seeking a motivated, career and customer-oriented Cybersecurity Data Analyst to perform on our Cybersecurity Data Analysis Services team in Saint Louis, MO.

The team members shall provide cybersecurity data analysis services, which design, develop, build, configures, employ, operates, integrates, sustains, and refreshes the Security Information Events Management (SIEM) capability (i.e. Enterprise Audit), long-term analytics platform, log aggregation platform, and the cyber threat intelligence capability, signature development and deployment, and reputation management services. This includes the onboarding of all new and existing IT resources and ensuring the correct routing of all audit events to mission partners in accordance with Intelligence Community Standards (ICS) 500-27.

Job Duties Include :

Provide all preventative and corrective maintenance to ensure consistent, reliable, and secure service availability. This includes all actions required to return the service to full operational capability such as vendor RMA processes, removal and proper disposal of broken equipment / software, installation and testing of new equipment / software, and configuration of new equipment / software

Maintain system availability and reliability with a threshold of 99.99%

Detect and ticket degradations (volume / velocity) of all SIEM data flows within 60 minutes of the start of the degradation

Perform day-to-day maintenance, and specific scheduled maintenance activities that result from manufacturers recommended service intervals, alerts, bulletins, available patches, and updates according to agency approved change management processes. This includes maintaining updated documentation, changing logs, and service bulletin libraries for all supported equipment and software in the CSOC knowledge management platform

Execute emergency maintenance actions with sufficient urgency to preclude unacceptable outage durations, approved by the Government prior to execution, and coordinated through and approved by CSOC and ESC government management

Perform all development, engineering, testing, integration, and implementation actions necessary for major vendor revisions

Perform continuous engineering assessments to improve the performance, effectiveness, coverage, and maturity of this service.

Retain documentation regarding loss of event logs (e.g. June 5-7th DNS logs were not ingested from SBU and are lost)

Configure all assets assigned to this service within the Government Furnished Information - Software Tools list in accordance with all Federal, DoD, IC, and laws, directives, orders, polices, guidance, procedures etc.

Perform all development, design, engineering, testing, integration, and implementation actions needed for the total integration and interoperability between all applicable assets in the Government Furnished Information - Software Tools list. This includes ensuing all data flows are properly parsed for ingestion / transmission to internal and external automated reporting systems (e.g. JFHQ DoDIN – Joint Incident Management System, DoD CIO – DoD Scorecard / Get to green reporting, IC CIO – Cybersecurity Performance Evaluation Model reporting, etc.)

Utilize agency approved ticketing systems to document, track, assign, update, and coordinate all engineering, integration, configuration, and maintenance actions

Use various monitoring, analysis, and visualization tools to track effectiveness, status, performance metrics, and other information as needed or required by Government staff and contractors assigned Cybersecurity Operations Services and Cybersecurity Readiness Services

Required Skills :

SIEM experience with one of the following ArcSight, Elasticsearch, Splunk, Event Broker, User Behavioral Analysis (UBA)

Experience providing support to Cybersecurity Operations Cell (CSOC) in creating alerting rules

Create SIEM playbooks

Linux (RHEL) Expert (administration and engineering)

Proficient in manipulating SIEM filters to better find and analyze potential malicious / atypical activity and reduce false positives

Experience with content development within ArcSight and Kibana to facilitate Cyber Analysts ability to investigate malicious events

Creation of ArcSight rules based on use cases of malicious events

Tuning and aggregation of queries and filters

Skilled in troubleshooting event flow through Enterprise Audit infrastructure

Skilled in troubleshooting event format and parsing for ingest into data storage and into SIEM tools

Active TS / SCI with POLY

DoD 8570.01-M IAT Level II and CSSP Infrastructure Support certifications

6+ years’ Experience with SIEM and Development Projects

6+ years’ Experience with SIEM support for projects and technical exchange meetings

6+ years’ Experience developing and maintaining enterprise audit projects

Desired Skills :
  • Kibana
  • Data Analytics
  • Top Secret SCI + Polygraph

    Salary and Benefit Information

    The likely salary range for this position is $83,927 - $113,549. This is not, however, a guarantee of compensation or salary. Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

    View information about benefits and our total rewards program.

    About Our Work

    We are GDIT. A global technology and professional services company that delivers technology and mission services to every major agency across the U.S. government, defense and intelligence community. Our 30,000 experts extract the power of technology to create immediate value and deliver solutions at the edge of innovation. We operate across over 50 countries worldwide, offering leading capabilities in digital modernization, AI / ML, cloud, cyber and application development. Together with our customers, we strive to create a safer, smarter world by harnessing the power of deep expertise and advanced technology.

    Join our Talent Community to stay up to date on our career opportunities and events at gdit.com / tc .

    Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans

    [job_alerts.create_a_job]

    Cybersecurity Data Analyst • St Louis, Missouri, United States

    [internal_linking.similar_jobs]
    Analyst

    Analyst

    SSM Health • St Louis, MO, United States
    [job_card.full_time]
    It's more than a career, it's a calling.Experienced with 340B program operations and audits and Advanced 340B Operations Certificate within 18-months of hire date - Apexus.Remote - reside in MO, IL...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    GEOINT Deployer Analyst

    GEOINT Deployer Analyst

    Xcellent Technology Solutions, Inc. • St Louis, MO, United States
    [job_card.full_time]
    GEOINT Deployer Analyst (National Geospatial-Intelligence Agency).Directly immerse yourself into the world we are all responsible for protecting through this interactive and integral role within th...[show_more]
    [last_updated.last_updated_1_day] • [promoted]
    Quantitative Risk Senior Analyst, Risk Management

    Quantitative Risk Senior Analyst, Risk Management

    NISA Investment Advisors • Clayton, MO, United States
    [job_card.full_time]
    Quantitative Risk Senior Analyst, Risk Management.NISA Investment Advisors, LLC (NISA) offers customized investment solutions for tax-exempt and taxable institutional clients.NISA manages over $298...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Remote Cybersecurity Partner Growth Manager

    Remote Cybersecurity Partner Growth Manager

    Armis Security • St. Louis, MO, United States
    [filters.remote]
    [job_card.full_time]
    A leading cybersecurity company is seeking an Associate Regional Partner Manager to enhance their partner ecosystem.This remote position requires nurturing relationships with regional partners and ...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    CI Cyber Threat Analyst IV

    CI Cyber Threat Analyst IV

    TechGuard Security • St. Louis, MO, USA
    [job_card.full_time]
    [filters_job_card.quick_apply]
    The senior Contractor CI Cyber Threat Analyst will ensure all required reports are complete with minimal errors and that all processes, activities, and reports are conducted within established time...[show_more]
    [last_updated.last_updated_30]
    Sr. Business Intelligence Data Analyst

    Sr. Business Intelligence Data Analyst

    Hhaexchange • St. Louis, Missouri, United States
    [job_card.full_time]
    HHAeXchange is the leading technology platform for home and community-based care.Founded in 2008, HHAeXchange was born out of an idea to create a fully comprehensive end-to-end homecare solution to...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Remote Project Manager (Cybersecurity)

    Remote Project Manager (Cybersecurity)

    Workforce Connections • Saint Louis, MO, United States
    [filters.remote]
    [job_card.full_time]
    [filters_job_card.quick_apply]
    Project Manager for the Cybersecurity Team 6+ month with potential to Convert or Extend [show_more]
    [last_updated.last_updated_1_day]
    Lead Data Analyst, Marketing

    Lead Data Analyst, Marketing

    Launch Potato • St Louis, MO, United States
    [job_card.full_time]
    Launch Potato is a profitable digital media company that reaches over 30M+ monthly visitors through brands such as FinanceBuzz, All About Cookies, and OnlyInYourState. As The Discovery and Conversio...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Lead Analyst - ISSO

    Lead Analyst - ISSO

    MAXIMUS • St Louis, MO, United States
    [job_card.full_time]
    Essential Duties and Responsibilities : .Responsible for ensuring information security for an assigned area of Business / Project focusing on key areas of risk, as outlined in the Information Security ...[show_more]
    [last_updated.last_updated_variable_hours] • [promoted] • [new]
    Data Analyst

    Data Analyst

    The Timberline Group Company • St Louis, MO, United States
    [job_card.full_time]
    Candidates must be legally authorized to work in the US without sponsorship.Ever dream of doing work that makes a difference? Want to join a growing company?. Here it is! We seek the talent of a dyn...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Security Operations Center Analyst

    Security Operations Center Analyst

    TechBiz Global GmbH • St. Louis, MO, US
    [job_card.full_time]
    At TechBiz Global, we are providing recruitment service to our TOP clients from our portfolio.Security Operations Center Analyst. If you're looking for an exciting opportunity to grow in a innovativ...[show_more]
    [last_updated.last_updated_30]
    Security Analyst

    Security Analyst

    VirtualVocations • Saint Charles, Missouri, United States
    [job_card.full_time]
    A company is looking for a Security Analyst to enhance the protection of its systems, networks, and applications.Key Responsibilities : Monitor security dashboards, alerts, and logs; assist in tri...[show_more]
    [last_updated.last_updated_1_day] • [promoted]
    Specialist, Controlled Substances Compliance - Analyst

    Specialist, Controlled Substances Compliance - Analyst

    Endo Pharmaceuticals • Saint Louis, MO, US
    [job_card.full_time]
    Specialist, Controlled Substances Compliance - Analyst / h2pWe want the best and brightest people to help us achieve our mission to develop and deliver life-enhancing products through focused executi...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Non-Ferrous Settlement Analyst

    Non-Ferrous Settlement Analyst

    Alter Trading Corp • Saint Louis, MO, US
    [job_card.full_time]
    This individual will assist the Supervisor – Nonferrous Settlements, Sr.Vice President Nonferrous Marketing and the Nonferrous Traders with account settlements, tracking claims, downgrades, c...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Analyst, Compliance

    Analyst, Compliance

    NISA Investment Advisors, LLC • Clayton, Missouri, US
    [job_card.full_time]
    Analyst, Compliance Overview NISA Investment Advisors, LLC (NISA) offers customized investment solutions for tax-exempt and taxable institutional clients. NISA manages over $298 billion in fixed i...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Senior Analyst, CSIRT

    Senior Analyst, CSIRT

    Mondelez International • St Louis, MO, United States
    [job_card.full_time]
    Are You Ready to Make It Happen at Mondelez International?.Join our Mission to Lead the Future of Snacking.You work with the information security team as a competent and experienced information sec...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    GEOINT Deployer Analyst

    GEOINT Deployer Analyst

    Xcellent Technology Solutions • St. Louis, MO, US
    [job_card.full_time]
    [filters_job_card.quick_apply]
    GEOINT Deployer Analyst (National Geospatial-Intelligence Agency) Directly immerse yourself into the world we are all responsible for protecting through this interactive and integral role within th...[show_more]
    [last_updated.last_updated_variable_days]
    V&A Data Center Research Analyst

    V&A Data Center Research Analyst

    Cushman & Wakefield • St Louis, MO, United States
    [job_card.full_time]
    V&A Data Center Research Analyst.Provides accurate and reliable statistical real estate market data to C&W's V&A National Data Center valuation practice group. Provides an advanced level of research...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]