How do you protect against those with bad intentions? You create innovative technical processing solutions and collaborate with some of the finest talent in the IT field. Whether you're an Information Systems Technologist or an Encryption Strategy Expert, at Raytheon you'll grow a varied and rewarding career. And you'll be supported with a comprehensive and competitive benefits package that promotes work/life balance. If you're ready to take on today's big challenges, discover a world of opportunity at Raytheon.
* America's Best Large Employers by Forbes
* Career & Development Opportunities
* Entry, Mid, Senior
Back to Job Navigation (Overview)
Raytheon Intelligence and Information Services (IIS) - Cyber Security & Special Missions (CSM) has an immediate opening for Network-based Systems Analyst to support the customer team. The ideal candidate for this job will be an experienced information security practitioner who is goal-oriented and strives to exceed expectations.
Perform analysis of log files from a variety of sources (e.g., network traffic logs, firewall logs, intrusion detection system logs, Domain Name System (DNS) logs) to identify possible threats to network security.
b) Collect intrusion artifacts (e.g., domains, Uniform Resource Identifiers (URIs), certificates, etc.) and use discovered data to enable mitigation of potential CND hunts and incidents.
c) Analyze identified malicious network activity to determine weaknesses exploited, exploitation methods, effects on system and information.
d) Identify and document network based tactics, techniques, and procedures used by an attacker to gain unauthorized system access.
e) Track and document CND incidents from initial detection through final resolution.
f) Perform real-time CND Incident Handling (e.g., forensic collections, intrusion correlation and tracking, threat analysis, and direct system remediation) tasks to support deployable incident response teams.
g) Create and disseminate technical reports in response to conducted analysis.
h) Assist with writing CND guidance and reports on incident findings to appropriate constituencies.
i) Assist with developing and maintaining SOPs.
j) Participate in inter-agency sponsored community of interest analysis groups, participate in technical briefings and exchanges.
k) Serve as technical expert and liaison to leadership, NCCIC, the IC, and law enforcement personnel explaining incident details as required.
l) Manual review network device configurations for suspicious configurations or signs of compromise.
m) Assess network topology and network device configurations identifying critical security concerns and providing network security best practice recommendations to identify critical security concerns from an architecture perspective (e.g., external internet traffic bypassing firewall boundary) and a network device configuration perspective (e.g., default administrator account on a network device).
n) Collect network device integrity data, utilizing specialized tools, to detect unauthorized access (login access, configuration changes, interface changes, physical access, unscheduled reboots, blocked attempts, downgraded encryption, etc.).
o) Collect network device integrity data, utilizing specialized tools, to detect software modifications (file verification, online/offline hash, published hashed, memory verification, firmware verification, rootkit detection).
p) Collect network device integrity data, utilizing specialized tools, to detect hardware modifications (operating statistics, network traffic analysis).
q) Support network device integrity analysis on multi-vendor products (e.g., Cisco, Juniper, HP, Dell, etc.).
r) Assist with maintaining the readiness of all fly-away kits, storage media and forensic VM analyst images.
s) Divert/deploy teams of Contractor resources to provide on-site support and assistance in the event of an exercise or cyber incident.
* Demonstrated to advanced operational experience as an Incident Manager
* Experience in providing leadership and vision in incident handling, response, and analysis.
* Must be hands-on and have intimate knowledge and experience in cybersecurity, incident response, and analysis; digital forensics; security vulnerabilities/weaknesses and related attacks; network security issues and encryption technologies; management of lab environments to include flyaway kits.
* Demonstrated to advanced experience of current threats, vulnerabilities, and attack trends
* Critical thinking and problem solving skills
* Demonstrated to advanced experience working directly with customers to transfer Threat Hunting knowledge
* Possess good time management and written and oral communications skills
GNFA, GCIH, GCFA
This position require a Bachelor's degree in a related discipline with a minimum of six (6) years directly related experience. Equivalent years of directly related experience may be considered in lieu of educational requirements.
REQUIRED Clearance: TS/SCI
Location: Arlington VA
This position requires a U.S. Person who is eligible to obtain any required Export Authorization. 127676
Business Unit Profile
Raytheon Intelligence, Information and Services delivers innovative technology to make the world a safer place. Our expertise in cyber, analytics and automation allow us to reach beyond what others think is possible to underpin national security and give our global customers unique solutions to solve the most pressing modern challenges -- from the cyber domain to automated operations, and from intelligent transportation solutions to creating clear insight from large volumes of data. IIS operates at nearly 550 sites in 80 countries, and is headquartered in Dulles, Virginia. The business area generated $6.1 billion in 2017 revenues. As a global business, our leaders must have the ability to understand, embrace and operate in a multicultural world -- in the marketplace and the workplace. We strive to hire people who reflect our communities and embrace diversity and inclusion to advance our culture, develop our employees, and grow our business.
TS/SCI - Current
Computer/Management Information Systems
Type Of Job
VA - Arlington
Raytheon is an Equal Opportunity/Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, creed, sex, sexual orientation, gender identity, national origin, disability, or protected Veteran status.
Raytheon is a global company that specializes in defense and other government markets.