Job Summary:
ECS is seeking a Senior Cybersecurity Analyst (CDAP) to support the Army National Guard's Enterprise Network Operations and Cybersecurity Support program. The role involves monitoring and analyzing security telemetry, conducting alert triage, and supporting remediation tracking to enhance the cybersecurity posture of ARNG networks.
Responsibilities:
โข Monitor and analyze CDAP security telemetry to identify potential threats, anomalous activity, and security misconfigurations affecting ARNG classified and unclassified network environments.
โข Perform alert triage, log review, and basic correlation using established analytic rules to support Task 3 cybersecurity operations and continuous monitoring objectives.
โข Document investigative findings, maintain clear records of observed conditions, and support remediation tracking in coordination with SOC and defensive cyber personnel.
โข Assist with dashboard updates to improve visibility into cyber conditions, incident trends, and operational status across the DoDIN-Army-NG area of responsibility.
โข Support detection tuning under senior oversight to improve the quality and relevance of cyber alerts and monitoring outputs within CDAP.
โข Contribute to monitoring activities that align with integrated SIEM/C2C/DLP analytics and USIEM-enabled visibility used to centralize threat detection and response.
โข Apply established analytic approaches that support MITRE ATT&CK-based detection and analysis methods used across ENOCS cybersecurity operations.
โข Coordinate with cybersecurity operations stakeholders supporting 24x7x365 monitoring, incident escalation, and defensive actions in concert with broader SOC processes.
โข Support cybersecurity activities performed in coordination with the NETCOM Global Cyber Center and DISA DCDC to help maintain ARNG cyber freedom of action and policy compliance.
Qualifications:
Required:
โข U.S. Citizenship is required
โข Security Clearance: Secret Eligible
โข Required Certifications: DCWF Work Role 511-Cyber Defense Analyst โ Basic proficiency; must hold ONE OR MORE of the following: CC, CEH, GFACT, GISF
โข Experience: 3+ years of experience in cybersecurity
โข Experience monitoring security events, alerts, and logs to identify suspicious activity, misconfigurations, or indicators requiring further analysis.
โข Experience documenting findings and maintaining remediation or follow-up actions with accuracy and attention to detail.
โข Familiarity with continuous monitoring activities supporting DoD and ARNG cybersecurity policy compliance.
โข Ability to support dashboard maintenance and reporting used to communicate cybersecurity status and trends.
โข Experience working with SOC or defensive cyber personnel in an operational cybersecurity environment.
โข Familiarity with security telemetry analysis and rule-based alert correlation.
โข Ability to support cybersecurity operations across both classified and unclassified environments.
โข Familiarity with MITRE ATT&CK-based analytic methods and SIEM-driven monitoring concepts referenced in the ENOCS environment.
Preferred:
โข Security Clearance: Active Secret (preferred)
โข Experience supporting DoDIN operations or Defensive Cyberspace Operations - Internal Defensive Measures (DCO-IDM) in an Army or ARNG environment.
โข Familiarity with USIEM, SIEM/C2C/DLP analytics, or related centralized monitoring environments used for enterprise cyber visibility.
โข Experience supporting cybersecurity operations for large, geographically dispersed enterprises with multiple sites and mission partners.
โข Familiarity with cybersecurity support in SIPRNet and unclassified enclaves.
โข Experience coordinating with organizations such as NETCOM, DISA DCDC, RCCs, or related Army cyber stakeholders.
Company:
Everforth ECS is the federal segment of Everforth, a $4B global organization with over 10,000 employees. Founded in 2001, the company is headquartered in Fairfax, USA, with a team of 1001-5000 employees. The company is currently Late Stage.