At Agile Defense, we believe that proactive action shapes outcomes, and facing new challenges demands innovative solutions. Our forward-thinking mindset drives us to embrace change with determination and the courage to prepare for the future.
Our mission is to deliver adaptive innovation that supports our nation’s critical missions by seamlessly integrating cutting-edge technologies, exceptional talent, and unparalleled agility—building on a foundation of speed, flexibility, and creativity to safeguard our nation's essential interests.
Requisition #: 1388
Job Title: Intermediate Data Security Analyst
Location: Ft. Huachuca, AZ
Clearance: Secret
Candidates must hold one of the following valid certifications prior to their start date:
· Security+ CE or higher, Certified Ethical Hacker (CEH) or CySA+.
Summary
We are looking for a dedicated and experienced Sensor and SIEM Administrator to join our Defensive Cyber Infrastructure team. The right candidate will be crucial in safeguarding our organization by proactively managing and maintaining Intrusion Detection and Prevention Systems (IDPS) and Security Information and Event Management (SIEM) technologies, as well as analyzing and assessing alerts produced by these systems. A background in cybersecurity, IT infrastructure support, and familiarity with military or Department of Defense (DoD) operational environments is preferred.
Key Responsibilities
The Sensor and SIEM Administrator will perform essential functions including but not limited to:
§ IDPS Installation and Maintenance: Collaborating with clients to configure, install, and maintain IPS and IDS sensors, ensuring they receive regular updates and maintenance.
§ IDPS Troubleshooting: Monitoring IPS and IDS for alerts and alarms, following established troubleshooting procedures, and coordinating with vendors for resolution.
· Generate IDPS Reports: Deliver weekly sensor reports to clients and develop products based on sensor statistics.
· SIEM Configuration: Work with clients to integrate various log types into the CSSP SIEM while monitoring the health of data feeds.
· Cross-Functional Collaboration: Effectively collaborate with internal teams, including Incident Response, Content Development, and other security operations teams to enhance security efforts and response strategies.
· STIG and Compliance Support: Conduct weekly Security Technical Implementation Guide (STIG) checks on team-maintained appliances and servers, provide patch management, and update compliance records.