Job Title: Senior Network and Threat Media Forensics Support Specialist – TS/SCI with Polygraph Required! Honolulu, HIJob Number: 10006OFJob Category: Information SecurityPrimary Location: USA-HI: HAWAII-HONOLULUSchedule: Full-timeJob Type: RegularEmployee Status: RegularJob Posting: 2010-May-03 DescriptionSenior Network and Threat Media Forensics Support Specialist – Honolulu, Hawaii CSC is seeking a Senior Network and Threat Media Forensics Support Specialist to join our team of qualified, diverse Information Assurance professionals.
This position will be located in Honolulu, Hawaii Island.
The qualified applicant will become part of CSC’s Global Security Solutions (GSS) Division supporting the programs of Intelligence Business Unit.
The Senior Network and Threat Media Forensics Support Specialist will support the Intelligence Community performing Cyber Operations.
It is fast paced, demanding, and high visibility.
Candidates must have an Active TS/SCI with polygraph.
Essential Job Functions Applies more complex computer investigation and analysis techniques in the interests of determining potential security problems and to provide data recovery services for users.
Researches best practices and makes recommendations for new tools and procedures as appropriate.
Discovers files on the subject system including existing normal files, deleted yet remaining files, hidden files, password-protected files, and encrypted files.
Recovers discovered and deleted files to ensure that company information retained.
Provides expertise in static analysis, dynamic analysis, network attack characterization and reconstruction, and the development of mitigation strategies.
Experience using commercial forensics tools, such as Encase, Forensics Tool Kit (FTK), and DCFLDD (Defense Computer Forensics Lab imaging tool) to image and review computer drives and data, determine if an incident occurred, and discover the intrusion method Works independently and accurately evaluate multiple operating systems, network configurations, network architectures and topologies for potential technical and/or operational vulnerabilities.
Must demonstrate in-depth knowledge of network tools used to assess traffic at the application layer, rendering the ability to identify and interpret anomalous activity in packet details Aids in generating SNORT and other Intrusion Detection Signatures for multiple platforms, thus aiding with defeats and allowing for enhanced detection in collection.
Uses various in-house, commercial and freeware tools to interpret and analyze technical data and the ability to document and report technical findings for internal and external customer use. Provides expertise related to the use of relevant CNO and SIGINT tools and databases used for the customer mission to discover for exploitation an identified activity that is of an unknown or suspicious origin, be able to provide briefings of intrusion set activity to partner organizations / agencies, and be knowledgeable about all forms of reporting and experienced with creating each product type, and thus be able to organize training for other team members on analysis, tools, or reporting.
Provides analytic expertise to perform technical and overall analysis for exploitation of an identified activity that is of an unknown or suspicious origin, competence with relevant CNO and SIGINT tools and databases used for the customer mission, and communications skills that include the ability to provide formal documentation of analysis and/or research results.
Serves as a Subject Matter Expert in one or more fields appropriate to Intelligence Analysis or Computer Networking technologies, and be able to serve as a Subject Matter Expert for working groups and meetings with partner organizations / agencies Provides expertise in analyzing intelligence information and technical data, analyzing exploitation opportunities, documenting information and processes, gathering intelligence information of an identified activity through SIGINT and/or other intelligence disciplines, Internet, and other research means, interpreting analytical results, writing and editing skills at a technical/professional level, and managing internal and external customer relations.
Shall have demonstrated skills working through the SIGINT or other intelligence disciplines’ production processes, to include tasking, researching, processing, reporting, and disseminating of collection, information, or final products.
Shall demonstrate the ability to understand and interpret technical data through knowledge of technologies and topologies.
Documents overall analysis of the subject computer system, as well as a listing of possibly relevant files and discovered file data.
Determines approaches for analysis in order to ensure integrity and protection of the system.
Develops new processes and procedures for computer investigation.
Identifies evidence when computers systems and networks are used in the commission of crimes or in the abuse of company policies.
Creates custom investigative reports and presentations for courtroom use to provide a clear synopsis of analysis results.
Develops policies and procedures for the use of and creation of reports and presentations.
May provide expert consultation and/or testimony to provide expertise in support of litigation.
May provide leadership and work guidance to less experienced personnel.
Qualification Basic Qualifications Bachelor’s degree or equivalent combination of education and experience Bachelor’s degree in computer science or related field preferred Microsoft Certified Systems Engineer (MCSE) and Information Systems Security Professional (ISSP) certifications preferred Seven or more years of experience in computer forensic analysis Experience working with a wide range of computer hardware and software Experience working with computer forensics software and hardware Experience working with systems infrastructure including hardware configuration, operating system, and networks Experience working with legal policies and procedures Possess Department of Defense (DoD) security access of ADP I, ADP II, or ADP III Pass background checks such as NAC, NACLC, and/or SSBI Other Qualifications/Customer Specifications: Must hold active TS/SCI with Polygraph to qualify! Eight or more years of continuous work experience in network and vulnerability analysis, or a combination of a minimum of five continuous years of work experience in network and vulnerability analysis and a Bachelors degree in an applicable (math, science, computers, engineering) field Work experience must include five years of Intelligence Community experience in network and vulnerability analysis Strong communication skills to communicate with customers Strong analytical and creative problem solving skills Good Presentation skills to present test results to individuals and groups Good leadership skills to train and assist less experienced personnel Ability to keep sensitive and confidential material private Willingness to travel Remote Work Location Authorized: No Relocation Assistance: Not Available Clearance Level: TS/SCI w/ FS Polygraph
Senior Network and Threat Media Forensics Support Specialist Job in HONOLULU , Hawaii US