Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Cyber Network Defense Analyst (CNDA)/Network Based Systems Analyst image - Rise Careers
Job details

Cyber Network Defense Analyst (CNDA)/Network Based Systems Analyst

Cyber Network Defense Analyst (CNDA)/Network Based Systems Analyst

Location:  Arlington, VA

Must have Top Secret Security Clearance

Node is seeking a Cyber Network Defense Analyst (CNDA) to support this critical customer mission.

Responsibilities:

- Assists the Government lead in coordinating teams in preliminary incident response investigations

- Assists the Government lead with interfacing with the customer while on-site

- Determines appropriate courses of action in response to identified and analyses anomalous network activity

- Assesses network topology and device configurations identifying critical security concerns and providing security best practice recommendations

- Collects network intrusion artifacts (e.g., PCAP, domains, URIs, certificates, etc.) and uses discovered data to enable mitigation of potential Computer Network Defense incidents

- Analyzes identified malicious network activity to determine weaknesses exploited, exploitation methods, effects on system and information

- Collects network device integrity data and analyzes for signs of tampering or compromise

- Assists with real-time CND incident handling (i.e., forensic collections, intrusion correlation, and tracking, threat analysis, and advising on system remediation) tasks to support onsite engagements

Required Skills:

- U.S. Citizenship

- Must have an active TS/SCI clearance

- Must be able to obtain DHS Suitability

- 5+ years of directly relevant experience in network investigations

- In-depth knowledge of CND policies, procedures and regulations

- In-depth knowledge of TCP/IP protocols

- In-depth knowledge of standard protocols – ICMP, HTTP/S, DNS, SSH, SMTP, SMB, NFS, etc.

- In-depth knowledge and experience of Wifi networking

- In-depth knowledge and experience of network topologies - DMZs, WANs, etc.

- Substantial knowledge of Splunk (or other SIEM’s)

- Understanding of MITRE Adversary Tactics, Techniques and Common Knowledge (ATT&CK)

- Knowledge of Computer Network Defense policies, procedures, and regulations

- Knowledge of defense-in-depth principles and general attack stages with respect to network security architecture

- Ability to characterize and analyze network traffic to identify anomalous activity and potential threats to network resources

- Ability to identify and analyze anomalies in network traffic using metadata

- Experience with reconstructing a malicious attack or activity based on network traffic

- Experience examining network topologies to understand data flows through the network

- Must be able to work collaboratively across physical locations

Desired Skills:

- Substantial knowledge of network device integrity concepts and methodologies

- Proficiency with network analysis software (e.g. Wireshark)

- Proficiency with carving and extracting information from PCAP data

- Proficiency with non-traditional network traffic (e.g. Command and Control)

- Proficiency with preserving evidence integrity according to standard operating procedures or national standards

- Proficiency with virtualized environments

Required Education:

BS Computer Science, Cyber Security, Computer Engineering, or related degree; or HS Diploma & 7-9 years of network investigations experience.

Desired Certifications:

- DoD 8140.01 IAT Level II, IASAE II, CSSP Analyst, GCIA, GCIH, CSSP Analyst/CSSP Incident Responder, CEH

- SANS GIAC GNFA preferred

Company Overview:

Node. Digital is an independent Digital Automation & Cognitive Engineering company that integrates best-of-breed technologies to accelerate business impact.

Our Core Values help us in our mission. They include:

OUR CORE VALUES

Identifying the~RIGHT PEOPLE~and developing them to their full capabilities

Our customer’s “Mission” is our “Mission”. Our~MISSION FIRST~approach is designed to keep our customers fully engaged while becoming their trusted partner

We believe in~SIMPLIFYING~complex problems with a relentless focus on agile delivery excellence

Our mantra is “~Simple*Secure*Speed~” in the delivery of innovative services and solutions.

We are proud to offer competitive compensation and benefits packages to include:

  • Medical
  • Dental
  • Vision
  • Basic Life
  • Long-Term Disability
  • Health Saving Account
  • 401K
  • Three weeks of PTO
  • 10 Paid Holidays
  • Pre-Approved Online Training
Node.Digital Glassdoor Company Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
Node.Digital DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Node.Digital
Node.Digital CEO photo
Unknown name
Approve of CEO
What You Should Know About Cyber Network Defense Analyst (CNDA)/Network Based Systems Analyst, Node.Digital

Are you ready to take your cyber defense skills to the next level? Node is on the lookout for a passionate Cyber Network Defense Analyst (CNDA) to join our dynamic team in Arlington, VA! With a critical mission at hand, you'll be diving into the fascinating world of network forensics and cyber incident response. In this role, you'll work closely with our Government lead and collaborate with teams to investigate network anomalies, assess critical security concerns, and provide top-notch security recommendations. Your expertise will play a vital role in analyzing malicious network activity, gathering intrusion artifacts, and handling real-time cyber incidents. We are looking for someone with at least 5 years of experience in network investigations and a solid understanding of CND policies and procedures. If you have an in-depth knowledge of TCP/IP protocols and network topologies, along with a knack for identifying potential threats, we want to hear from you! Plus, with an active TS/SCI clearance, you’ll be a key player in supporting our mission. At Node, we believe in simplifying complex problems and delivering excellent services, which aligns perfectly with our core values. We offer competitive compensation, comprehensive benefits, and a collaborative work environment where your skills can shine. If you’re excited about cyber security and ready to make a significant impact, apply today!

Frequently Asked Questions (FAQs) for Cyber Network Defense Analyst (CNDA)/Network Based Systems Analyst Role at Node.Digital
What are the main responsibilities of a Cyber Network Defense Analyst at Node?

As a Cyber Network Defense Analyst (CNDA) at Node, your primary responsibilities include assisting in preliminary incident response investigations, analyzing anomalous network activities, and recommending security best practices. You'll work closely with the Government lead to determine appropriate courses of action in response to identified threats, collect network intrusion artifacts, and provide real-time incident handling support. Your expertise will be essential in maintaining the integrity of network devices and ensuring safe, secure data flow across the network.

Join Rise to see the full answer
What qualifications do you need to become a Cyber Network Defense Analyst at Node?

To qualify for the Cyber Network Defense Analyst position at Node, candidates must possess U.S. citizenship and an active TS/SCI clearance. We seek individuals with at least 5 years of relevant experience in network investigations, strong knowledge of CND policies, and proficiency in TCP/IP protocols and network topologies. A degree in Computer Science, Cyber Security, or a related field is required. Certifications such as DoD 8140.01 IAT Level II, GCIA, GCIH, and SANS GIAC GNFA are highly desirable.

Join Rise to see the full answer
What tools or software should a Cyber Network Defense Analyst at Node be familiar with?

As a Cyber Network Defense Analyst at Node, familiarity with network analysis software, especially Splunk, is crucial. You'll also benefit from expertise in tools like Wireshark for network traffic analysis. Knowledge of non-traditional network traffic and experience with virtualized environments will significantly enhance your ability to perform your duties effectively.

Join Rise to see the full answer
How does Node support the professional growth of a Cyber Network Defense Analyst?

Node is committed to the professional growth of its employees, including Cyber Network Defense Analysts. We offer competitive compensation and benefits packages, including medical, dental, and vision coverage, 401K, and paid time off. Additionally, we provide access to pre-approved online training and development opportunities to help you enhance your skills and advance in your career.

Join Rise to see the full answer
What workplace culture can a Cyber Network Defense Analyst expect at Node?

At Node, our workplace culture is built on collaboration, innovation, and excellence. We uphold our core values of a 'Mission First' approach, simplification of complex problems, and a commitment to agile delivery. As a Cyber Network Defense Analyst, you'll be part of a passionate team where your contributions are valued, and you have the opportunity to grow professionally while making a significant impact on our customers' missions.

Join Rise to see the full answer
Common Interview Questions for Cyber Network Defense Analyst (CNDA)/Network Based Systems Analyst
Can you describe your experience with incident response investigations in network security?

When answering this question, provide specific examples of past incident response investigations you've conducted. Highlight your method for identifying and analyzing incidents, any tools you used, and the outcomes of your analysis. Emphasize your decision-making process and how you collaborated with team members or led investigations to resolve complex security issues.

Join Rise to see the full answer
What is your approach to analyzing anomalous network activity?

This is a great opportunity to showcase your analytical skills. Outline your systematic approach to monitoring and analyzing network activity. Discuss the techniques and tools you use to detect anomalies, your understanding of traffic patterns, and how you prioritize different types of atypical behavior based on severity and potential threats.

Join Rise to see the full answer
What security best practices would you recommend for network configurations?

Share a set of security best practices that you believe are essential for maintaining secure network configurations. Discuss topics like segmentation, access control, regular updates and patching, intrusion detection systems, and maintaining the principle of least privilege. Be sure to tie your suggestions back to real-world examples or prior experiences.

Join Rise to see the full answer
How do you stay current with CND policies and cybersecurity trends?

Talk about your commitment to continual learning in the cybersecurity field. Mention specific resources such as industry blogs, forums, training courses, or certifications you pursue. Highlight your involvement in relevant communities, conferences, or networking opportunities that keep you informed about the latest trends and best practices in computer network defense.

Join Rise to see the full answer
Describe your familiarity with TCP/IP protocols and standard networking protocols.

For this question, explain your understanding of TCP/IP protocols and how they function within different networking environments. Discuss your experience with key protocols such as HTTP/S, DNS, SMTP, and others, highlighting any specific projects or situations where you had to deploy or troubleshoot these protocols.

Join Rise to see the full answer
How do you analyze and interpret network traffic data?

Provide insight into your methodology for examining network traffic data. Discuss the tools or software you use, how you identify patterns in the data, and your process for identifying signs of malicious activity. Mention any specific case studies where your analysis led to actionable insights or improved security measures.

Join Rise to see the full answer
Have you ever had to reconstruct a malicious attack or activity based on network traffic?

Share specific experiences where you reconstructed a malicious attack. Discuss your approach, including any methodologies or frameworks you used, and the types of data you analyzed to build an understanding of the attack vectors. Highlight the lessons you learned and how they informed your subsequent incident response strategies.

Join Rise to see the full answer
What steps do you follow to preserve evidence integrity during a forensic investigation?

Explain your knowledge of protocols and standards related to evidence preservation. Discuss the importance of ensuring chain-of-custody and how you document processes to maintain evidence integrity. Provide examples of how you have successfully preserved evidence in past investigations while adhering to best practices.

Join Rise to see the full answer
How do you handle collaboration across different locations or teams during incident response?

Detail your experience in working with remote teams or cross-functional groups. Discuss tools and communication strategies you use to coordinate efforts effectively. Emphasize your ability to maintain clarity and collaboration even when team members are spread across different physical locations.

Join Rise to see the full answer
What would you do if you identified a critical security weakness during your analysis?

Outline your response protocol if you discover a critical security weakness. Talk about the importance of typical escalation procedures, communicating threats to stakeholders, and recommending practical mitigations or interventions. Be sure to illustrate your analytical thinking and responsibility in safeguarding network integrity.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 11 hours ago
Photo of the Rise User
Node.Digital Hybrid No location specified
Posted 9 hours ago
Photo of the Rise User
Bosch Group Hybrid 2555 Smallman St, Pittsburgh, PA 15222, USA
Posted 5 days ago
Fortune Brands Remote 25300 Al Moen Drive, North Olmsted, Ohio
Posted 12 hours ago
Photo of the Rise User
Posted 12 days ago
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
January 9, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!