Talent.com
Cybersecurity Data Analyst
Cybersecurity Data AnalystGeneral Dynamics Information Technology • St Louis, Missouri, United States of America
Cybersecurity Data Analyst

Cybersecurity Data Analyst

General Dynamics Information Technology • St Louis, Missouri, United States of America
[job_card.30_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]

GDIT is seeking a motivated, career and customer-oriented Cybersecurity Data Analyst to perform on our Cybersecurity Data Analysis Services team in Saint Louis, MO.

The team members shall provide cybersecurity data analysis services, which design, develop, build, configures, employ, operates, integrates, sustains, and refreshes the Security Information Events Management (SIEM) capability (i.e. Enterprise Audit), long-term analytics platform, log aggregation platform, and the cyber threat intelligence capability, signature development and deployment, and reputation management services. This includes the onboarding of all new and existing IT resources and ensuring the correct routing of all audit events to mission partners in accordance with Intelligence Community Standards (ICS) -27.

Job Duties Include :

Provide all preventative and corrective maintenance to ensure consistent, reliable, and secure service availability. This includes all actions required to return the service to full operational capability such as vendor RMA processes, removal and proper disposal of broken equipment / software, installation and testing of new equipment / software, and configuration of new equipment / software

Maintain system availability and reliability with a threshold of 99.99%

Detect and ticket degradations (volume / velocity) of all SIEM data flows within 60 minutes of the start of the degradation

Perform day-to-day maintenance, and specific scheduled maintenance activities that result from manufacturers recommended service intervals, alerts, bulletins, available patches, and updates according to agency approved change management processes. This includes maintaining updated documentation, changing logs, and service bulletin libraries for all supported equipment and software in the CSOC knowledge management platform

Execute emergency maintenance actions with sufficient urgency to preclude unacceptable outage durations, approved by the Government prior to execution, and coordinated through and approved by CSOC and ESC government management

Perform all development, engineering, testing, integration, and implementation actions necessary for major vendor revisions

Perform continuous engineering assessments to improve the performance, effectiveness, coverage, and maturity of this service.

Retain documentation regarding loss of event logs (e.g. June 5-7th DNS logs were not ingested from SBU and are lost)

Configure all assets assigned to this service within the Government Furnished Information - Software Tools list in accordance with all Federal, DoD, IC, and laws, directives, orders, polices, guidance, procedures etc.

Perform all development, design, engineering, testing, integration, and implementation actions needed for the total integration and interoperability between all applicable assets in the Government Furnished Information - Software Tools list. This includes ensuing all data flows are properly parsed for ingestion / transmission to internal and external automated reporting systems (e.g. JFHQ DoDIN – Joint Incident Management System, DoD CIO – DoD Scorecard / Get to green reporting, IC CIO – Cybersecurity Performance Evaluation Model reporting, etc.)

Utilize agency approved ticketing systems to document, track, assign, update, and coordinate all engineering, integration, configuration, and maintenance actions

Use various monitoring, analysis, and visualization tools to track effectiveness, status, performance metrics, and other information as needed or required by Government staff and contractors assigned Cybersecurity Operations Services and Cybersecurity Readiness Services

Required Skills :

SIEM experience with one of the following ArcSight, Elasticsearch, Splunk, Event Broker, User Behavioral Analysis (UBA)

Experience providing support to Cybersecurity Operations Cell (CSOC) in creating alerting rules

Create SIEM playbooks

Linux (RHEL) Expert (administration and engineering)

Proficient in manipulating SIEM filters to better find and analyze potential malicious / atypical activity and reduce false positives

Experience with content development within ArcSight and Kibana to facilitate Cyber Analysts ability to investigate malicious events

Creation of ArcSight rules based on use cases of malicious events

Tuning and aggregation of queries and filters

Skilled in troubleshooting event flow through Enterprise Audit infrastructure

Skilled in troubleshooting event format and parsing for ingest into data storage and into SIEM tools

Active TS / SCI with POLY

DoD .01-M IAT Level II and CSSP Infrastructure Support certifications

6+ years’ Experience with SIEM and Development Projects

6+ years’ Experience with SIEM support for projects and technical exchange meetings

6+ years’ Experience developing and maintaining enterprise audit projects

Desired Skills :
  • Kibana
  • Data Analytics
  • [job_alerts.create_a_job]

    Cybersecurity Data Analyst • St Louis, Missouri, United States of America

    [internal_linking.similar_jobs]
    Network Cybersecurity Developer

    Network Cybersecurity Developer

    Match Point Solutions • Maryland Heights, MO, United States
    [job_card.full_time]
    [filters_job_card.quick_apply]
    MatchPoint Solutions is a fast-growing, young, energetic global IT-Engineering services company with clients across the US. We provide technology solutions to various clients like Uber, Robinhood, N...[show_more]
    [last_updated.last_updated_variable_days]
    St. Louis / Midwest New Business Analyst

    St. Louis / Midwest New Business Analyst

    Aon • St. Louis, MO, United States
    [job_card.full_time] +1
    Aon Is Looking for a New Business Analyst (NBA) in St.As the local NBA, you will partner with local and sub-regional commercial leaders to plan, implement and track key growth initiatives.You work ...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Sr Analyst Shopper Consumer Insights

    Sr Analyst Shopper Consumer Insights

    Advantage Solutions • St. Louis, MO, United States
    [job_card.full_time]
    Sr Analyst Shopper Consumer Insights.Primary Posting Location : City.Primary Posting Location : State / Province.Primary Posting Location : Postal Code. Primary Posting Location : Country.Category Man...[show_more]
    [last_updated.last_updated_1_day] • [promoted]
    Data Entry Product Support - No Experience

    Data Entry Product Support - No Experience

    GLOCPA • Arnold, Missouri
    [job_card.full_time]
    We’re looking for Customer Support Product Testers across the US to work from home and help top brands improve their products before they hit the market.[show_more]
    [last_updated.last_updated_30] • [promoted]
    Online Research Participant - Earn Cash for Sharing Your Views

    Online Research Participant - Earn Cash for Sharing Your Views

    Opinion Bureau • Arnold, Missouri, US
    [job_card.full_time]
    Take quick online surveys and earn rewards for sharing your thoughts.Join today — it's free and easy!.[show_more]
    [last_updated.last_updated_1_day] • [promoted]
    Cybersecurity Alerts Analyst

    Cybersecurity Alerts Analyst

    VirtualVocations • Saint Louis, Missouri, United States
    [job_card.full_time]
    A company is looking for a Cybersecurity Alerts Analyst to monitor and respond to cybersecurity events in cloud environments. Key Responsibilities Review and triage alerts generated by Prisma Clou...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Cybersecurity Solutions Analyst (Business Development)

    Cybersecurity Solutions Analyst (Business Development)

    MAXIMUS • St Louis, MO, United States
    [job_card.full_time]
    This opportunity offers the candidate the ability to gain insight into the end-to-end solution lifecycle-from strategy and design to delivery. It also offers a chance to work alongside business lead...[show_more]
    [last_updated.last_updated_variable_hours] • [promoted] • [new]
    Data Analytics Analyst II

    Data Analytics Analyst II

    Staffing the Universe • St Louis, MO, United States
    [job_card.full_time]
    Job Type : Full-Time / Contract.Opportunity Overview : Preparation, design, and development of customized management-level reports and dashboards in support of the Firm's initiatives or programs.Docu...[show_more]
    [last_updated.last_updated_variable_hours] • [promoted] • [new]
    Behavioral Health Associate - Full time, Mercy Jefferson

    Behavioral Health Associate - Full time, Mercy Jefferson

    Mercy • Valmeyer, IL, United States
    [job_card.full_time] +1
    Under the direction of the RN or LPN, assists in the individualized care of the patient to achieve the patients highest level of wellness. Works cooperatively with others as part of a team; recogniz...[show_more]
    [last_updated.last_updated_1_day] • [promoted]
    Remote FP&A Manager - AI Trainer ($50-$60 / hour)

    Remote FP&A Manager - AI Trainer ($50-$60 / hour)

    Data Annotation • Columbia, IL, US
    [filters.remote]
    [job_card.full_time] +1
    We are looking for a finance professional to join our team to train AI models.You will measure the progress of these AI chatbots, evaluate their logic, and solve problems to improve the quality of ...[show_more]
    [last_updated.last_updated_variable_hours] • [promoted] • [new]
    Blockchain Intelligence Analyst

    Blockchain Intelligence Analyst

    TRM Labs • St Louis, MO, United States
    [job_card.full_time]
    Blockchain Intelligence Analyst.TRM is on a mission to build a safer financial system for billions of people.We deliver a blockchain intelligence data platform to financial institutions, crypto com...[show_more]
    [last_updated.last_updated_variable_hours] • [promoted] • [new]
    CI Cyber Threat Analyst IV

    CI Cyber Threat Analyst IV

    TechGuard Security • St Louis, MO, United States
    [job_card.full_time]
    The senior Contractor CI Cyber Threat Analyst will ensure all required reports are complete with minimal errors and that all processes, activities, and reports are conducted within established time...[show_more]
    [last_updated.last_updated_variable_hours] • [promoted] • [new]
    Expert Cybersecurity Engineer

    Expert Cybersecurity Engineer

    IC-CAP, LLC • St Louis, MO, United States
    [job_card.full_time]
    Assists with leading development teams working to design and develop information systems or upgrade legacy systems.Conducts product research and support Analysis of Alternative (AoA) activities tha...[show_more]
    [last_updated.last_updated_variable_hours] • [promoted] • [new]
    Security Operations Center Analyst

    Security Operations Center Analyst

    TechBiz Global GmbH • St. Louis, MO, US
    [job_card.full_time]
    At TechBiz Global, we are providing recruitment service to our TOP clients from our portfolio.Security Operations Center Analyst. If you're looking for an exciting opportunity to grow in a innovativ...[show_more]
    [last_updated.last_updated_30]
    Lead Data Engineer - Finance & Accounting Focus

    Lead Data Engineer - Finance & Accounting Focus

    Zelis Healthcare, LLC • St. Louis, MO, United States
    [job_card.full_time]
    Zelis is modernizing the healthcare financial experience across payers, providers, and healthcare consumers.We serve more than 750 payers, including the top five national health plans, regional hea...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Senior Cybersecurity Analyst

    Senior Cybersecurity Analyst

    VirtualVocations • Saint Louis, Missouri, United States
    [job_card.full_time]
    A company is looking for a Senior Cybersecurity Analyst to serve as an Authority to Operate Subject Matter Expert for federal clients. Key Responsibilities Perform systems security assessments and...[show_more]
    [last_updated.last_updated_less] • [promoted] • [new]
    Hiring Now - Work from Home - No Experience

    Hiring Now - Work from Home - No Experience

    OCPA • Barnhart, Missouri, us
    [filters.remote]
    [job_card.part_time] +1
    Product Testers are wanted to work from home nationwide in the US to fulfill upcoming contracts with national and international companies. We guarantee 15-25 hours per week with an hourly pay of bet...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Senior Analyst, CSIRT

    Senior Analyst, CSIRT

    Mondelez International • St Louis, MO, United States
    [job_card.full_time]
    Are You Ready to Make It Happen at Mondelez International?.Join our Mission to Lead the Future of Snacking.You work with the information security team as a competent and experienced information sec...[show_more]
    [last_updated.last_updated_variable_hours] • [promoted] • [new]