Incident Response Analyst, Overnight Shift

Posted 13ds ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Incident response analyst protecting the Federal Reserve’s economic, financial, and payments systems. Triaging security events, conducting network forensics, and responding to cyberattacks overnight.

Responsibilities:

  • Investigate and respond to security events within the Federal Reserve System with minimal oversight
  • Perform security event triage and analysis using knowledge of current security threats and techniques
  • Analyze high volumes of security event data from multiple sources to identify suspicious and malicious activity
  • Perform postmortem analysis of traffic flows
  • Conduct network forensics
  • Conduct follow-up analysis throughout the incident life cycle
  • Complete projects and tasks associated with security monitoring, detection, and incident response
  • Analyze relevant data sources for attack indicators and potential network and host compromises
  • Respond to data exfiltration, DDoS, malware, insider risk, phishing, and other attack vectors
  • Develop scripts and tools to improve incident detection and response efficiency
  • Interface with NIRT customers and stakeholders

Requirements:

  • Bachelor's Degree or equivalent experience with 3+ years of relevant work experience
  • In-depth understanding of information technologies and information security topics
  • SIEM/SOAR utilization skills for analyzing security events from multiple monitoring and logging sources
  • Knowledge of incident response and handling methodologies
  • Knowledge of common adversary tactics, techniques, and procedures (TTPs)
  • Knowledge of cyber threats and vulnerabilities
  • Knowledge of cyber-attack stages
  • Knowledge of system files containing relevant information and where to find them
  • Knowledge of attack indicators and potential network and host compromises
  • Knowledge of current security threats, techniques, and the information security landscape
  • Understanding of IT infrastructure designs, technologies, products, and services
  • Knowledge of networking protocols, firewall functionality, host and network intrusion detection systems, operating systems, databases, encryption, and load balancing
  • One or more relevant security certifications/degrees and/or commensurate experience
  • Ability to communicate complex information through verbal, written, and/or visual means
  • Ability to evaluate information for reliability, validity, and relevance
  • Ability to function effectively in a dynamic, fast-paced environment
  • Ability to collaborate with analysts and experts
  • Ability to think critically and think like threat actors
  • Ability to develop productive working relationships with business and operational professionals
  • United States citizenship required
  • Must be currently authorized to work in the United States without visa sponsorship now or in the future
  • Must complete additional screening requirements, which may include education/employment verification, criminal history, credit history, and reference checks
  • Ability to work three consecutive twelve-hour night shifts from 8:00pm–8:00am ET, with possible day shifts for coverage

Benefits:

  • Ability to work remotely within a commutable distance to a Federal Reserve Bank location
  • Shift differential while working the 3rd shift
  • Four days off following three consecutive twelve-hour night shifts
  • Equal employment opportunity and an environment where employees are valued for their differences