Cyber Network Defense Analysts (CNDA) - 8 years experience Job at BCMC, Arlington, VA

M1lJNUhHYVBkZVh6ZVBTRmlaL0pDZHExSHc9PQ==
  • BCMC
  • Arlington, VA

Job Description

BCMC provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based and cloud-based cybersecurity analysis capabilities. Team personnel provide front line response for digital forensics/incident response (DFIR) and proactively hunting for malicious cyber activity. We are seeking Cyber Network Defense Analysts (CNDA) with Cloud Forensics experience to support this critical customer mission.

Responsibilities:
- Conduct forensic acquisition and analysis from on-premises and cloud platforms (Entra ID/Azure AD, M365, AWS, GCP, SaaS) to identify compromise activity, persistence mechanisms, and data exfiltration.
- Investigate and respond to incidents and attacks targeting cloud and hybrid identity.
- Correlate cloud control-plane events and network telemetry (e.g., Azure Activity Logs, AWS CloudTrail, VPC Flow Logs) to reconstruct attacker timelines, validate IOCs, and identify post-compromise privilege escalation.
- Develop and operationalize detection logic and automation using cloud-native tools (Microsoft Defender, Sentinel, AWS GuardDuty, GCP Chronicle) and scripting (PowerShell, Python, Bash), integrating threat intelligence feeds and indicators.
- Produce technical reports, incident documentation, and containment recommendations integrating cloud, identity, and endpoint findings; support development of incident response playbooks and procedures for cloud and hybrid environments.
- Support cloud development and automation projects to enhance threat emulation, investigative, and hunting capabilities.
- Coordinate with internal teams, government staff, and external stakeholders to validate alerts and investigate preliminary findings.

Required Skills:
- U.S. Citizenship
- Active TS/SCI clearance

- Ability to obtain Department of Homeland Security (DHS) Entry on Duty (EOD) Suitability
- 8+ years of experience in cyber forensic investigations with leading tools and techniques.
- Strong understanding of SaaS, PaaS, and IaaS in cloud environments, and hybrid identity security.
- Expertise in acquiring forensically sound evidence, analyzing attacks, and reporting findings.
- Knowledge of M365/Azure, hybrid identity, and threats targeting these solutions.
- Knowledge of AWS, IAM, and best practices for cloud identity security.

Desired Skills:
- Strong API and scripting skills (PowerShell, Python, Bash, JavaScript) for automation and threat detection.
- Knowledge of common and advanced cloud attacks and techniques, and how to detect and mitigate these threats.
- Proficiency with cloud automation and orchestration tools (Terraform, Kubernetes, CloudFormation, Azure Resource Manager, Docker).

Required Education:
- BS in Computer Science, Cybersecurity, Computer Engineering, or related field; OR HS Diploma with 10+ years relevant experience.

Desired Certifications:
- GCLD, GCFR, GCFA, GCFE, GCIH, EnCE, CCE, CFCE, CISSP, CCSP, AWS or Microsoft Cloud/Security certifications.

Our Company Overview
Business Computers Management Consulting Group, LLC (BCMC) is a small business specializing in Information Technology (IT), Cybersecurity, Information Assurance (IA), SOA, Big Data Management, Program Management, and more for Federal, State, and Local agencies. We possess highly skilled engineers, providing innovative solutions backed by strong past performances. We are ISO 9001:2015, ISO 27001:2013, 20000:2018, and CMMI L3 certified and registered promising highest quality and services to all of our clients.

Benefits
Extremely competitive salary 
95% employer paid for employee medical, dental, & vision coverages 
100% employer paid for employee life, STD & LTD disability coverages 
401k with company match and profit sharing 
Flexible Spending Account (FSA) for dependent & health care 
11 standard holidays & 3 weeks of annual leave

Host Based Systems Analyst - IV HBA04
ESS-3286 

Job Tags

Full time, Local area, Immediate start, Remote work, Flexible hours,

Similar Jobs

Cloud Analytics Technologies LLC

Sr. Golang Developer Job at Cloud Analytics Technologies LLC

 ...Job Title: Sr. Golang Developer Job Location: Los Angeles CA Work Mode: Remote Job Description: Seeking an experienced Golang Developer with expertise in Golang and Microservices to design and develop scalable backend systems within the GOLANG, AWS domain... 

NBCUniversal

Reporter/News Anchor, Telemundo T49 Tampa Job at NBCUniversal

 ..., and experiences. We own and operate leading entertainment and news brands, including NBC, NBC News, NBC Sports, Telemundo, NBC Local...  ...our world. Job Description The News Reporter/Anchor position is responsible for local on- air delivery of newscasts.... 

Premier Parking Enforcement - New Orleans

Parking Enforcement Agent (Booter) 4:30PM-12:30AM Thurs-Sun Job at Premier Parking Enforcement - New Orleans

 ...Description This job consists of auditing prepaid parking lots in downtown New Orleans to ensure parking patrons have paid to park. Individuals that have not paid will have their vehicle immobilized (boot applied to wheel of vehicle) and charged a fee. Current need... 

Love's Travel Stops & Country Stores

Inside Telephone Sales Representative Job at Love's Travel Stops & Country Stores

 ...or equivalent required. Bachelor's degree preferred. Experience: 1-5 years of experience in call center, customer service, or telemarketing environment is preferred. SKILLS AND PHYSICAL DEMANDS: Skills: Bilingual in English and Spanish preferred. Knowledge of factoring... 

WilsonHCG

Account Executive - Access Control/CCTV Job at WilsonHCG

 ...successful organization that understands that its greatest value are its people. This person would need a working knowledge of the access control, CCTV, and security industries and have a strong learning mentality to improve and grow. Experience with creating and...