Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Cyber Network Defense Analyst (CNDA) 3 image - Rise Careers
Job details

Cyber Network Defense Analyst (CNDA) 3

About ARSIEM Corporation


At ARSIEM Corporation we are committed to fostering a proven and trusted partnership with our government clients.  We provide support to multiple agencies across the United States Government.  ARSIEM has an experienced workforce of qualified professionals committed to providing the best possible support.


As demand increases, ARSIEM continues to provide reliable and cutting-edge technical solutions at the best value to our clients.  That means a career packed with opportunities to grow and the ability to have an impact on every client you work with. 


ARSIEM is looking for a Cyber Network Defense Analyst 3. This position will support one of our Government clients in Arlington, VA.


Responsibilities
  • Assists the Government lead in coordinating teams in preliminary incident response investigations
  • Assists the Government lead with interfacing with the customer while on-site
  • Determines appropriate courses of action in response to identified and analyses anomalous network activity
  • Assesses network topology and device configurations, identifying critical security concerns and providing security best practice recommendations
  • Collects network intrusion artifacts (e.g., PCAP, domains, URIs, certificates, etc.) and uses discovered data to enable mitigation of potential Computer Network Defense incidents
  • Analyzes identified malicious network activity to determine weaknesses exploited, exploitation methods, effects on system and information
  • Collects network device integrity data and analyzes for signs of tampering or compromise
  • Assists with real-time CND incident handling (i.e., forensic collections, intrusion correlation, and tracking, threat analysis, and advising on system remediation) tasks to support onsite engagements


Minimum Qualifications
  • BS Computer Science, Cyber Security, Computer Engineering, or related degree; or HS Diploma & 7-9 years of network investigations experience.
  • 5+ years of directly relevant experience in network investigations
  • In-depth knowledge of CND policies, procedures, and regulations
  • In-depth knowledge of TCP/IP protocols
  • In-depth knowledge of standard protocols – ICMP, HTTP/S, DNS, SSH, SMTP, SMB, NFS, etc.  
  • In-depth knowledge and experience in Wifi networking 
  • In-depth knowledge and experience of network topologies DMZ, WANs, etc.
  • Substantial knowledge of Splunk (or other SIEMs)
  • Understanding of MITRE Adversary Tactics, Techniques, and Common Knowledge (ATT&CK)
  • Knowledge of Computer Network Defense policies, procedures, and regulations
  • Knowledge of defense-in-depth principles and general attack stages concerning network security
  • Ability to characterize and analyze network traffic to identify anomalous activity and potential ability to identify and analyze anomalies in network traffic using metadata
  • Experience examining network topologies to understand data flows through the network
  • Must be able to work collaboratively across physical locations


Preferred Qualifications
  • Substantial knowledge of network device integrity concepts and methodologies
  • Proficiency with network analysis software (e.g. Wireshark)  
  • Proficiency with carving and extracting information from PCAP data 
  • Proficiency with nontraditional network traffic (e.g. Command and Control)  
  • Proficiency in preserving evidence integrity according to standard operating procedures or national standards
  • Proficiency with virtualized environments
  • DoD 8140.01 IAT Level II, IASAE II, CSSP Analyst, GCIA, GCIH, CSSP Analyst/CSSP Incident Responder, CEH
  • SANS GIAC GNFA preferred


Clearance Requirement: This position requires an Active TS/SCI clearance and the ability to obtain Department of Homeland Security (DHS) Entry on Duty (EOD) Suitability.

 

Candidate Referral: Do you know someone who would be GREAT at this role? If you do, ARSIEM has a way for you to earn a bonus through our referral program for persons presenting NEW (not in our resume database) candidates who are successfully placed on one of our projects. The bonus for this position is 5,000,  and the referrer is eligible to receive the sum for any applicant we place within 12 months of referral. The bonus is paid after the referred employee reaches 6 months of employment.


ARSIEM is proud to be an Equal Opportunity and Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age, or any other federally protected class.

Average salary estimate

$100000 / YEARLY (est.)
min
max
$80000K
$120000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Cyber Network Defense Analyst (CNDA) 3, ARSIEM

ARSIEM Corporation is on the lookout for a talented Cyber Network Defense Analyst 3 to join our dynamic team in Arlington, VA. As a key player in supporting various government clients, you’ll take on the important task of assisting in incident response investigations and serving as a point of contact during on-site customer interactions. Your skills will be essential in analyzing network activities, determining the most effective responses to anomalies, and providing crucial recommendations on security best practices. You’ll dive deep into network topologies and device configurations to identify security concerns and gather evidence for potential Computer Network Defense incidents. Your extensive experience in network investigations will allow you to assess threats effectively and apply your knowledge of CND policies and TCP/IP protocols to real-time incident handling. Collaborating with our government lead, you’ll help maintain the integrity of network operations and ensure the security of sensitive information. If you have a passion for cybersecurity and a desire to make a meaningful impact on our clients, ARSIEM Corporation is the perfect place for you to grow your career while working on cutting-edge technical solutions.

Frequently Asked Questions (FAQs) for Cyber Network Defense Analyst (CNDA) 3 Role at ARSIEM
What are the responsibilities of a Cyber Network Defense Analyst 3 at ARSIEM Corporation?

As a Cyber Network Defense Analyst 3 at ARSIEM Corporation, your primary responsibilities include assisting in incident response investigations, analyzing anomalous network activities, and collaborating with government leads to ensure effective communication with clients. You'll assess network configurations for security vulnerabilities, collect intrusion artifacts, and provide recommendations to mitigate potential threats while performing real-time incident handling to safeguard sensitive information.

Join Rise to see the full answer
What qualifications are needed for the Cyber Network Defense Analyst 3 position at ARSIEM Corporation?

To qualify for the Cyber Network Defense Analyst 3 role at ARSIEM Corporation, you should have a BS in Computer Science, Cyber Security, or a related field or a High School Diploma with 7-9 years of relevant experience. Additionally, candidates typically need a minimum of 5 years of experience in network investigations, strong knowledge of CND policies, TCP/IP protocols, and hands-on experience with network analysis tools like Splunk.

Join Rise to see the full answer
What cybersecurity knowledge is required for a Cyber Network Defense Analyst 3 at ARSIEM Corporation?

A Cyber Network Defense Analyst 3 at ARSIEM Corporation is expected to have in-depth knowledge of computer network defense policies and practices, TCP/IP protocols, standard protocols like HTTP, DNS, and the MITRE ATT&CK framework. Understanding defense-in-depth principles and the ability to analyze network traffic for anomalies is critical to effectively protect our clients' networks against sophisticated threats.

Join Rise to see the full answer
What tools and software should a Cyber Network Defense Analyst 3 be proficient with at ARSIEM Corporation?

Candidates for the Cyber Network Defense Analyst 3 role at ARSIEM Corporation should be proficient in network analysis software such as Wireshark, and familiar with SIEM tools like Splunk. Knowledge of PCAP data extraction, network device integrity concepts, and experience with virtualized environments are also essential to successfully carry out the role, as they play a significant part in incident detection and response.

Join Rise to see the full answer
What clearance is required for the Cyber Network Defense Analyst 3 position at ARSIEM Corporation?

To apply for the Cyber Network Defense Analyst 3 position at ARSIEM Corporation, candidates must have an active TS/SCI clearance. Additionally, the ability to obtain Department of Homeland Security (DHS) Entry on Duty (EOD) Suitability is required, ensuring that all personnel can operate securely and effectively within sensitive environments.

Join Rise to see the full answer
Common Interview Questions for Cyber Network Defense Analyst (CNDA) 3
Can you describe your experience with incident response investigations as a Cyber Network Defense Analyst?

In your answer, recount specific scenarios where you played a role in incident response, detailing the methods and tools you used to investigate anomalies, your decision-making process during the investigation, and how your actions contributed to mitigating threats.

Join Rise to see the full answer
How familiar are you with the MITRE ATT&CK framework?

Discuss your understanding of the MITRE ATT&CK framework by explaining its importance in threat intelligence and how you have utilized it in past roles to identify tactics and techniques used by attackers, ultimately strengthening your organization's security posture.

Join Rise to see the full answer
What network security tools have you used in your previous roles?

Detail the network security tools you have hands-on experience with, such as Splunk or Wireshark, describing specific instances where these tools helped uncover vulnerabilities or respond to incidents effectively.

Join Rise to see the full answer
Can you explain how you analyze network traffic to identify threats?

Provide an overview of your methodology for analyzing network traffic, including the use of monitoring software and patience when identifying unusual patterns or anomalies. Reference any specific techniques you've learned that help you detect potential security incidents.

Join Rise to see the full answer
What steps would you take if you identified a significant security breach?

Share a step-by-step approach detailing how you would respond, including immediate actions like containment, evidence gathering, notifying stakeholders, and analyzing the breach to prevent future occurrences.

Join Rise to see the full answer
How do you stay updated on the latest cybersecurity trends and threats?

Mention your methods for staying informed, such as subscribing to cybersecurity newsletters, participating in webinars, attending conferences, and following relevant blogs or forums that discuss emerging threats and practices in the field.

Join Rise to see the full answer
Can you describe your experience with TCP/IP protocols?

Discuss your hands-on experience with various TCP/IP protocols and how it has shaped your understanding of network behavior and enabled you to identify abnormalities that indicate potential security issues in previous roles.

Join Rise to see the full answer
What is your approach to collaborating with team members across different locations?

Share your strategies for effective remote communication and collaboration, such as regular check-ins, using collaborative tools, and establishing clear roles within the team to facilitate smooth coordination and project management.

Join Rise to see the full answer
What are defense-in-depth principles, and how have you applied them in your work?

Explain the concept of defense-in-depth and how you've implemented these principles in your previous roles to provide layered security measures, ensuring that multiple safeguards are in place to protect against various attack vectors.

Join Rise to see the full answer
How do you gather and preserve evidence during a network intrusion investigation?

Detail your methods for gathering evidence, emphasizing the importance of following procedures to maintain evidence integrity, ensuring that all data collected will be credible and useful for forensic analysis or potential legal actions.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
ARSIEM Remote Hybrid, Remote, Columbia, MD
Posted 2 days ago

Join ARSIEM Corporation to develop and manage impactful training programs for government clients.

Photo of the Rise User
ARSIEM Remote Hybrid, Remote, Columbia, MD
Posted 2 days ago

Leverage your expertise in instructional design to create impactful training solutions at ARSIEM Corporation, supporting various government agencies.

Posted 10 days ago

Seeking an experienced AWS Consultant specialized in API development for an engaging contract role in Juno Beach, FL.

Join PacificSource as an Application Developer II, where you'll play a key role in shaping healthcare solutions in Springfield, OR.

Photo of the Rise User
Cedar Point Amusement Park Hybrid US, Lorain County, OH; Ohio, Avon, OH
Posted 9 days ago

Lead IT audit efforts focused on SOX compliance and IT controls as the IT Audit Manager at our company.

Photo of the Rise User

Join Palo Alto Networks as an Inside Systems Engineer and contribute to protecting digital lives with innovative cybersecurity solutions.

Posted 2 days ago

Join The Ohio State University to support and elevate training for clinical and revenue cycle systems as an Information Technology Training Analyst.

Photo of the Rise User
Posted 5 days ago
Customer-Centric
Rapid Growth
Diversity of Opinions
Reward & Recognition
Friends Outside of Work
Inclusive & Diverse
Empathetic
Feedback Forward
Work/Life Harmony
Casual Dress Code
Startup Mindset
Collaboration over Competition
Fast-Paced
Growth & Learning
Open Door Policy
Rise from Within
Maternity Leave
Paternity Leave
Flex-Friendly
Family Coverage (Insurance)
Medical Insurance
Dental Insurance
Vision Insurance
Mental Health Resources
Life insurance
Disability Insurance
Health Savings Account (HSA)
Flexible Spending Account (FSA)
401K Matching
Paid Holidays
Paid Sick Days
Paid Time-Off

A dynamic team is looking for a skilled Salesforce Developer to create innovative solutions and enhance user experiences.

Photo of the Rise User
Posted 10 days ago

Join RoadRunner as a Platform Engineering Lead and help shape a sustainable future through innovative technology solutions.

Photo of the Rise User

Join Aetos Systems, Inc. as an Information System Security Officer and play a key role in safeguarding critical information systems.

ARSIEM Corporation is a proven and trusted partner to its government clients. ARSIEM has an experienced workforce of qualified professionals committed to providing the best possible support. As demand increases, ARSIEM Corporation continues to pro...

22 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
April 17, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!