Host Based Systems Analyst III

Solutions³ LLC
  • Arlington, VA
    5 days ago

    Job Description

    Title: Host Based Systems Analyst III Description:Solutions³ LLC is supporting our prime contractor and their U.S. Government customer on a large mission-critical provide remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based, and cloud-based cybersecurity analysis capabilities. Personnel provide front line response for digital forensics/incident response (DFIR) and proactively hunting for malicious cyber activity. Solutions³ LLC is seeking Cyber Network Defense Analysts (CNDA) with Cloud Forensics experience to support this critical customer mission.Eligibility:
    • Must be a US Citizen
    • Must have an active TS/SCIclearance
    • Must be able to obtain DHS Suitability prior tostarting employment 
    • 5+ years of direct relevant experience in cyber forensic investigations using leading tools and techniques
    Responsibilities Include:
    • Conduct forensic acquisition and analysis from on-premises and cloud platforms (Entra ID/Azure AD, M365, AWS, GCP, SaaS) to identify compromise activity, persistence mechanisms, and data exfiltration.
    • Investigate and respond to incidents and attacks targeting cloud and hybrid identity.
    • Correlate cloud control-plane events and network telemetry (e.g., Azure Activity Logs, AWS CloudTrail, VPC Flow Logs) to reconstruct attacker timelines, validate IOCs, and identify post-compromise privilege escalation.
    • Develop and operationalize detection logic and automation using cloud-native tools (Microsoft Defender, Sentinel, AWS GuardDuty, GCP Chronicle) and scripting (PowerShell, Python, Bash), integrating threat intelligence feeds and indicators.
    • Produce technical reports, incident documentation, and containment recommendations integrating cloud, identity, and endpoint findings; support development of incident response playbooks and procedures for cloud and hybrid environments.
    • Support cloud development and automation projects to enhance threat emulation, investigative, and hunting capabilities.
    • Coordinate with internal teams, government staff, and external stakeholders to validate alerts and investigate preliminary findings.
    Required Skills:
    • Strong understanding of SaaS, PaaS, and IaaS in cloud environments, and hybrid identity security.
    • Expertise in acquiring forensically sound evidence, analyzing attacks, and reporting findings.
    • Knowledge of M365/Azure, hybrid identity, and threats targeting these solutions.
    • Knowledge of AWS, IAM, and best practices for cloud identity security.
    Desired Skills: 
    • Strong API and scripting skills (PowerShell, Python, Bash, JavaScript) for automation and threat detection.
    • Knowledge of common and advanced cloud attacks and techniques, and how to detect and mitigate these threats.
    • Proficiency with cloud automation and orchestration tools (Terraform, Kubernetes, CloudFormation, Azure Resource Manager, Docker).
    Desired Certifications: One or more of the following certifications: GCLD, GCFR, GCFA, GCFE, GCIH, EnCE, CCE, CFCE, CISSP, CCSP, AWS or Microsoft Cloud/Security certificationsRequired Education: BS in Computer Science, Cybersecurity, Computer Engineering or related degree; or HS Diploma and 7+ years of relevant experience

    Powered by JazzHR

    Numbers & Facts

    LocationArlington, VA

    Skills

    • Amazon Web Services (AWS)unmatched
    • Analysis Skillsunmatched
    • Application Programming Interface (API)unmatched
    • Automationunmatched
    • Bash Scriptingunmatched
    • Best Practicesunmatched
    • CCSP - Cisco Certified Security Professionalunmatched
    • CISSP - Certified Information Systems Security Professionalunmatched
    • Cloud Computingunmatched
    • Computer Engineeringunmatched
    • Computer Forensicsunmatched
    • Computer Hackingunmatched
    • Computer Network Defense (CND)unmatched
    • Computer Scienceunmatched
    • Cyber Investigationunmatched
    • Dockerunmatched
    • Documentationunmatched
    • Forensic Scienceunmatched
    • GCFA - GIAC Certified Forensic Analystunmatched
    • GCIH - GIAC Certified Incident Handlerunmatched
    • GCP (Good Clinical Practices)unmatched
    • Governmentunmatched
    • Homeland Securityunmatched
    • Huntingunmatched
    • Hybrid Cloudunmatched
    • Incident Responseunmatched
    • Infrastructure as a Service (IaaS)unmatched
    • Internet Securityunmatched
    • JavaScriptunmatched
    • Microsoft Product Familyunmatched
    • Microsoft Windows Azureunmatched
    • Network Performance/Analysisunmatched
    • Network Securityunmatched
    • Operations Planningunmatched
    • Platform as a Service (PaaS)unmatched
    • Python Programming/Scripting Languageunmatched
    • Reporting Skillsunmatched
    • Resource Managementunmatched
    • Scripting (Scripting Languages)unmatched
    • Software as a Service (SaaS)unmatched
    • Systems Analysisunmatched
    • Technical Supportunmatched
    • Telemetryunmatched
    • United States Citizenunmatched
    • Windows PowerShellunmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder