Cyber Data Analytics Engineer
BRB SPRINGFIELD VA, United States
Full Time Mid-level / Intermediate Clearance required USD 74K - 156K
CACI International Inc
The Opportunity:
Responsible for building/maintaining data-pipelines for associated information used for cybersecurity investigation within the enterprise. In this role you will have the opportunity to contribute to one or more areas including (but not limited to) data ingest, data normalization, SIEM management, Linux/Windows host administration, virtual machine (VM) management, and cloud asset management. To support our team, you will need to be experienced, driven, and have strong Linux, Windows, and/or networking experience. You will be collaborating closely with peers and customers which means you need to be an active listener, detail oriented, and a clear communicator.
Responsibilities:
- Resolve escalated issues and perform root cause analysis for complex issues
- Have ability to communicate with program SMEs as well as other customers with less technical backgrounds
- Demonstrate a high attention to detail, examining every aspect of the system
- Be able to multi-task, working with several different customers in various stages of onboarding process
- Apply Configuration Management disciplines to maintain hardware/software revisions, security patches, hardening, and documentation
- Coordinate and conducts event collection, log management, event management, compliance activities, and identity monitoring activities for the customer's system
- Works with other Service Providers to support areas of common interest
- Provide all preventative and corrective maintenance to ensure consistent, reliable, and secure service availability
- Maintain system availability and reliability with a threshold of 99.99%
- Detect and ticket degradations (volume/velocity) of all SIEM data flows within 60 minutes of the start of the degradation
- Perform day-to-day maintenance, and specific scheduled maintenance activities that result from manufacturers recommended service intervals, alerts, bulletins, available patches, and updates according to agency approved change management processes
- Execute emergency maintenance actions with sufficient urgency to preclude unacceptable outage durations, approved by the Government prior to execution, and coordinated through and approved by CSOC and ESC government management
- Perform all development, engineering, testing, integration, and implementation actions necessary for major vendor revisions
- Retain documentation regarding loss of event logs (e.g. June 5-7th DNS logs were not ingested from SBU and are lost)
- Configure all assets assigned to this service within the Government Furnished Information - Software Tools list in accordance with all Federal, DoD, IC, and NGA laws, directives, orders, polices, guidance, procedures etc.
- Utilize agency approved ticketing systems to document, track, assign, update, and coordinate all engineering, integration, configuration, and maintenance actions
Qualifications
Required:
- 5+ years of Systems Engineer or similar experience
- IAT II certification and obtain CSSP Infrastructure Support certification 120 days of hire
- Possesses a strong work ethic, be self-directed, and be a detail-oriented professional
- Willing to learn and adapt to new, cutting-edge technologies
- Possess excellent time management skills and the drive to work unsupervised
- Demonstrated ability to use problem solving techniques such as root cause analysis to resolve issues
- Advanced Linux proficiency
- Knowledge of network communication principles, common infrastructure components (IPAM, DNS, DHCP), load balancers, firewalls, virtual and physical infrastructure design
- Experience with hypervisors such as VMware ESXi, Citrix XenServer, Microsoft Hyper-V
- Advanced knowledge of systems engineering principles, methods, and techniques
Preferred:
- Experience with public clouds such as AWS, Google, Rackspace.
- Experience with private clouds such as VMWare, OpenStack.
- Strong background in Unix, or Windows servers.
- Experience with SIEM technologies such as Elastic, Splunk, and/or ArcSight
- Familiarity with Cribl data aggregation/normalization technology
- Scripting experience with Python, Bash, and/or Powershell
________________________________________________________________________________________
What You Can Expect:
A culture of integrity.
At CACI, we place character and innovation at the center of everything we do. As a valued team member, you’ll be part of a high-performing group dedicated to our customer’s missions and driven by a higher purpose – to ensure the safety of our nation.
An environment of trust.
CACI values the unique contributions that every employee brings to our company and our customers - every day. You’ll have the autonomy to take the time you need through a unique flexible time off benefit and have access to robust learning resources to make your ambitions a reality.
A focus on continuous growth.
Together, we will advance our nation's most critical missions, build on our lengthy track record of business success, and find opportunities to break new ground — in your career and in our legacy.
Your potential is limitless. So is ours.
________________________________________________________________________________________
Pay Range: There are a host of factors that can influence final salary including, but not limited to, geographic location, Federal Government contract labor categories and contract wage rates, relevant prior work experience, specific skills and competencies, education, and certifications. Our employees value the flexibility at CACI that allows them to balance quality work and their personal lives. We offer competitive compensation, benefits and learning and development opportunities. Our broad and competitive mix of benefits options is designed to support and protect employees and their families. At CACI, you will receive comprehensive benefits such as; healthcare, wellness, financial, retirement, family support, continuing education, and time off benefits. Learn more here.
Since this position can be worked in more than one location, the range shown is the national average for the position.
The proposed salary range for this position is:
$74,600-$156,700CACI is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, pregnancy, sexual orientation, gender identity, age, national origin, disability, status as a protected veteran, or any other protected characteristic.
Tags: AWS Data Analytics Engineering Linux OpenStack Pipelines Python Security Splunk Testing
Perks/benefits: Career development Competitive pay Flex hours Flex vacation Startup environment Team events Wellness
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.