Description
EOA Technologies is seeking a Cyber Threat Analyst with a TCP/IP background to identify and assess the capabilities and activities of cyber criminals or foreign intelligence entities. This role is suited for candidates with prior analytic experience in network security and network monitoring. Your role will provide advanced network protocol analysis and security expertise. This role will lead deep-dive analysis of complex network traffic to assess the capabilities and activities of cyber criminals. Your expertise in networks, telecommunications systems, and protocols will be essential in delivering actionable insights to stakeholders with the common goal to prevent and eradicate threats to critical U.S. systems.
Requirements
To be considered for this position you must have the following:
- Possess an active TS/SCI with Polygraph security clearance
- Must have a Bachelor’s Degree in computer science, information systems, network forensics or other data analysis roles.
- Seven (7+) years’ experience working in the areas of intelligence, information security, network forensics, insider threat or security operations.
- Ability to understand data in various formats to extract and enrich information to enhance its value.
- Experience with XKS creating general queries, fingerprinting, and identifying atypical events.
- Experience with Elastic/Splunk/ or other Security Information and Event Management (SIEM) experience creating visualizations and dashboards.
- Understanding of TCP/IP communication protocols and packet flows based on IP traffic; analysis of Packet Capture (PCAP) traffic in Wireshark
- Familiarity writing signatures in Zeek and/or Snort
- Strong understanding of common attack vectors and network defense strategies.
- Design and implement advanced network monitoring and detection strategies.
- Collaborate with development teams and articulate requirements/enhancements for capabilities, tools and strategies.
- Document findings and create detailed reports to ensure tradecraft is continually updated. Present results to technical and non-technical stakeholders.
Employment decisions are based solely on qualifications, merit, and business needs - not on any protected characteristic. EOA Technologies, LLC provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, ancestry, marital status, religious affiliation, hairstyle, or any other characteristic protected by federal, state or local laws. EOA is committed to providing reasonable accommodations when feasible to individuals with disabilities.
Skills Required
- Possess an active TS/SCI with Polygraph security clearance
- Bachelor's Degree in computer science, information systems, network forensics or related data analysis field
- Seven (7+) years' experience in intelligence, information security, network forensics, insider threat or security operations
- Ability to understand data in various formats to extract and enrich information
- Experience with XKS creating queries, fingerprinting, and identifying atypical events
- Experience with Elastic, Splunk, or other SIEM creating visualizations and dashboards
- Understanding of TCP/IP protocols and packet flows; analysis of PCAP traffic in Wireshark
- Familiarity writing signatures in Zeek and/or Snort
- Strong understanding of common attack vectors and network defense strategies
- Design and implement advanced network monitoring and detection strategies
- Collaborate with development teams and articulate requirements/enhancements for tools and capabilities
- Document findings and create detailed reports; present results to technical and non-technical stakeholders
What We Do
EOA Technologies, LLC is a technology consulting firm providing mission-critical IT solutions to federal agencies and commercial enterprises. The company specializes in enterprise IT architecture, data center buildout and optimization, and secure facilities management, including SCIF design. Utilizing a cleared workforce, they deliver innovative technical solutions, cybersecurity services, technical staffing, and IT training to transform organizations across corporate and classified environments.
.jpg)






