Solutions3 LLC is seeking an Incident Manager III to perform investigations to characterize the severity of breaches, develop mitigation plans, and assist with the restoration of services. The role requires 5+ years of directly relevant experience in cyber incident management or cybersecurity operations.
Requirements
- Must be a US Citizen
- Must have an active TS/SCI clearance
- Must be able to obtain DHS Suitability prior to starting employment
- 5+ years of directly relevant experience in cyber incident management or cybersecurity operations
- Knowledge of incident response and handling methodologies
- Having close familiarity with NIST 800-62 (latest revision), and FISMA standards as they pertain to reporting incidents.
- Knowledge of the NCCIC National Cyber Incident Scoring System to be able to prioritize triaging of incident
- Knowledge of general attack stages (e.g., foot printing and scanning, enumeration, gaining access, escalation of privileges, maintaining access, network exploitation, covering tracks, etc.)
- Skill in recognizing and categorizing types of vulnerabilities and associated attacks
- Knowledge of basic system administration and operating system hardening techniques, Computer Network Defense policies, procedures, and regulations
Benefits
- Tracking and documenting Computer Network Defense (CND) incidents from initial detection through final resolution
- Receiving and analyzing network alerts from various sources within the enterprise and determine possible causes of such alerts
- Providing support during assigned shifts