The Department of Homeland Security (DHS), Customs and Border Protection (CBP) Security Operations Center (SOC) is a US Government program responsible to prevent, identify, contain and eradicate cyber threats to CBP networks through monitoring, intrusion detection and protective security services to CBP information systems including local area networks/wide area networks (LAN/WAN), commercial Internet connection, public facing websites, wireless, mobile/cellular, cloud, security devices, servers and workstations. The CBP SOC is responsible for the overall security of CBP Enterprise-wide information systems, and collects, investigates and reports any suspected and confirmed security violations.
Leidos has an immediate need for a Digital Media Analyst (DMA) Subject Matter Expert to join our CBP Team.
The DMA SME shall have the following qualifications: an in-depth knowledge of network tools used to assess traffic at the application layer, rendering the ability to identify and interpret anomalous activity in packet details, will also be able to perform static analysis, dynamic analysis, network attack characterization and reconstruction development of mitigation strategies and have experience in use of commercial forensics tools such as EnCase, Forensics Tool Kit (FTK) and other COTS Forensics Tool sets to image and review computer drives and data, determine if an incident occurred, and discover the intrusion method; ability to generate IDS and other Signatures and use various in-house, commercial and freeware tools to interpret and analyze technical data and the ability to document and report results of analysis; experience with Incident Response, Monitoring and Analysis and Digital Media Analytic tools and databases; SME in Computer Networking technologies, experience with ad-hoc training to junior members in a collaborative environment
T he candidate must currently possess a Secret Clearance. In addition to clearance requirement, all CBP personnel must have a current or be able to favorably pass a 5 year background investigation (BI).
BS degree in Science, Technology, Engineering, Math or related field and 12 - 15 years of prior relevant experience with a focus on cyber security or Masters with 10 - 13 years of prior relevant experience.
Should have 5 years of experience serving as a digital media analyst or as a computer forensic analyst.
Ability to work independently with minimal direction; self-starter/self-motivated
Must have one of the following certifications:
Certified Information System Security Professional (CISSP).
EnCase Certified Examiner (EnCE) (v6 certification or higher).
SANS Global Information Assurance Certification (GIAC), Certified Forensic Analyst (GCFA).