Watch Analyst / Active Top Secret
$80,000–$128,000 year
On-siteWashington, District of Columbia, United States or Washington, United States
Job Summary
Monitor classified databases, alerting services, news, and social media for threats to national critical infrastructure. Perform initial triage and analysis of cyber, physical, and communication incidents to determine impact severity and reporting requirements. Collaborate with a small team to coordinate incidents and deliver accurate, timely reports to government leadership and federal stakeholders. Troubleshoot equipment issues and coordinate resolutions with the help desk as needed. Work in a 24x7x365 classified operations environment with rotating shifts under the direction of a federal Duty Officer. Maintain strict adherence to security protocols and confidentiality requirements while evaluating data and synthesizing information for non-technical audiences.
Required Qualifications
- Bachelor's degree
- 2 years of relevant experience
- 4 years of experience (substitutable in lieu of bachelor's degree)
- Excellent written and verbal communication skills
- Broad capabilities and expertise in research, analysis, and report writing skills
- Flexibility to work within a 24x7x365 operations support environment
- Experience with open-source analysis and alerting systems
- Knowledge of Microsoft Office automation solutions
- Experience/expertise in one or more critical infrastructure sectors (as defined by HSPD-7 and the NIPP), cyber and/or emergency management
- Knowledge of National Incident Management System (NIMS) structure, emergency management operations, and background knowledge of one (1) or more critical infrastructure sectors
- Completion of FEMA IS-100.c, IS-453, IS-520, IS-545.a, IS-551, IS-700.b, IS-800.d, IS-860.c and IS-1300 before first day on the contract
- U.S. citizenship
- Active Top Secret security clearance
- Ability to obtain and maintain a favorably adjudicated DHS background investigation for continued employment
Desired Qualifications
- Specialized operations center experience
- Experience in drafting and publishing national level reporting
- Experience with email triage and requests for information (RFIs)
- Experience as an All-Source Intelligence Analyst in Joint Operations Center and/or Fusion Center
- Experience with cyber incident management and analysis
- Obtained Cyber certifications (i.e., CompTIA Security+)
- Experience with Knowledge Management Systems and ServiceNow
- Ability to read technical cyber reporting, including IOCs and TTPs, and be able to extract the important information to provide clear and concise reporting for a non-technical audience
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.