MANTECH seeks a motivated and detail-oriented Principal Cyber Security Analyst to join our team in Cape Canaveral, FL .
The Principal Cyber Security Analyst will support cybersecurity operations by performing as the technical expert for the organization. This senior-level position involves leading incident response efforts, ensuring the integrity of enterprise data, and providing high-level technical guidance to maintain mission-critical security postures.
Responsibilities include but are not limited to:
- Performing as the technical expert and interacting with senior external personnel on significant technical matters often requiring coordination between organizations
- Directly managing security incidents from inception to final after-action reporting, including coordinating documentation, work efforts, and resource utilization
- Coordinating enterprise incident response efforts and command and control functions in response to cyber security incidents
- Providing detection, identification, and reporting of possible cyber-attacks, intrusions, anomalous activities, and misuse activities
- Characterizing and performing analysis of network traffic and system data to identify potential threats to resources
- Performing security event and incident correlation using information gathered from a variety of sources within the enterprise
- Analyzing and assessing damage to the data and infrastructure as a result of cyber incidents
- Writing and publishing cyber incident reports detailing findings and mitigation or remediation recommendations
- Developing and documenting incident response guidance, processes, and procedures
- Acting as a lead professional and managing the work of others to
- Ensure complete and functioning systems that meet all requirements
- Recommending, and when approved, implementing process and policy improvements
Minimum Qualifications:
- Bachelors degree or 4+ years of additional IT experience in lieu of degree
- 7+ years of cyber experience
- IAT Level II certification (GSEC, Security+, SSCP, CySA+, or CCNA-Security) required at start
- CSSP-IR certification (GCIH, CSIH, or CEH) required within 6 months of hire
- Experience working in a Cybersecurity Operations Center environment and with associated COTS technologies
- Experience managing complex security incidents and coordinating resources across a large team to drive a security agenda
Preferred Qualifications:
- Experience with Windows and Linux operating systems
- Working knowledge of database security, operating system security, and the latest security principles and protocols
Clearance Requirements:
- An active TS/SCI with Polygraph.
Physical Requirements:
- Must be able to remain in a stationary position 50%.
- Needs to occasionally move about inside the office to access file cabinets, office machinery, etc.
- Frequently communicates with co-workers, management, and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations.