Company Overview
AMS Technologies is a leader in providing technological solutions tailored to meet the ever-changing needs of our customers. We pride ourselves on delivering scalable, customer-focused, and cost-effective solutions that drive success in complex environments.
Summary
As a Cybersecurity Analyst at AMS Technologies, you will play a crucial role in safeguarding our clients' information systems. This position is vital for ensuring the security and integrity of our technological solutions, allowing us to maintain our commitment to excellence and customer satisfaction.
PRIMARY RESPONSIBILITIES:
- Detect, analyze, and respond to computer network incidents by identifying anomalous activities that may pose threats to the enterprise.
- Monitor security tools and applications for suspicious activity, investigate alerts, and recommend appropriate mitigation strategies.
- Analyze subtle (“low and slow”) events to uncover unauthorized actions using problem-solving and self-learning techniques.
- Conduct near real-time event triage and analysis, leading to network traffic validations or incident reporting to Mission Partners.
- Follow established policies and utilize DoD-approved network monitoring and traffic analysis tools to identify suspicious or malicious traffic around the clock.
- Review and analyze logs promptly to detect intrusions and formally notify Mission Partners of findings through incident reports.
- Develop, apply, and fine-tune countermeasures to prevent or reduce cyber event impacts.
- Perform detailed network traffic analysis using raw packet data, net flow, IDS/IPS, and custom sensor outputs to protect communication networks.
- Maintain a thorough understanding of attack signatures, tactics, techniques, and procedures used by advanced threats.
- Document all events and analyses clearly in a ticketing system, requiring strong technical writing skills.
- Communicate effectively with customers and team members, with regular face-to-face interactions and ongoing coordination.
BASIC QUALIFICATIONS:
- Active DoD Top Secret clearance required.
- Bachelor’s Degree plus 4+ years of relevant experience; relevant cyber courses, certifications, or DISA customer experience may substitute for the degree.
- Current DoD 8570 IAT Level II Certification (e.g., Security+ CE) or higher at start.
- Current DoD 8570 CSSP Analyst Certification (e.g., CEH, CySA+), or ability to obtain within 180 days of start.
- Experience performing Computer Network Defense (CND) duties, including Protect, Defend, Respond, and Sustain.
- Experience working with DoD and government leadership at multiple levels.
- Strong knowledge of computing systems and networking, including protocols and security elements like IDS/IPS and firewalls.
- Experience analyzing packet captures.
PREFERRED QUALIFICATIONS:
- Proficiency in command-line scripting (PERL, Python, Shell) for automating analysis tasks.
- Understanding of hacker tactics, techniques, and procedures (TTP).
- Familiarity with security frameworks such as MITRE ATT&CK and Cyber Kill Chain.
- Experience monitoring intrusion detection systems and defense tools (e.g., Splunk, Elastic) and analyzing associated alerts.
- Knowledge of advanced threat actor tactics and software exploits.
- Ability to analyze packed and obfuscated code.
If you are passionate about cybersecurity and eager to make a difference in a dynamic environment, we invite you to apply today and join our team at AMS Technologies!