Network Based Systems Analyst IV
Job description
About the role
The serves as a senior technical expert responsible for guiding digital evidence from initial network capture through final interpretation, directly shaping how clients understand complex events. Decisions made during this investigative process influence the direction of active security incidents, and the work performed establishes the level of trust internal teams place in the findings presented to them. The analyst will own the complete lifecycle of network-based evidence, transforming raw information into actionable intelligence that supports critical government missions. This role requires the ability to translate highly technical network behaviors and protocol anomalies into clear, concise language for diverse stakeholders, including leadership and technical responders. The position is integral to maintaining the integrity of the investigative process, ensuring that every conclusion is defensible and traceable. You will be expected to construct detailed timelines and behavioral models that convert scattered packet data into coherent, understandable sequences of events for client consumption. Collaboration is a core component, as you will coordinate directly with incident response teams to ensure findings are communicated in a manner suitable for immediate operational action. Finally, the role demands a commitment to continuous improvement, where the analyst uses discovered patterns to update playbooks and modify detection logic to enhance future response capabilities for the client.
Key facts
What you'll do
- Interpret network traffic and digital evidence to chart raw data streams and convert them into structured, defensible evidence while meticulously documenting each procedural step.
- Design specific intake rules to isolate relevant network traffic, ensuring critical signals are identified efficiently for analysis.
- Construct detailed timelines and behavioral models that convert scattered packet data into coherent, understandable sequences of events for stakeholders.
- Examine digital artifacts and system logs, searching for specific indicators that explain how security incidents unfolded and impacted the client environment.
- Coordinate with incident response teams, translating complex technical findings into concise operational language suitable for immediate action and remediation.
- Maintain comprehensive analysis notes that must withstand rigorous scrutiny, linking every conclusion directly to observed data and evidence.
- Share insights with partner organizations, ensuring findings align with their immediate investigative priorities and broader mission objectives.
- Update playbooks and modify detection logic based on patterns discovered during investigations to improve future response capabilities.
- Operate analysis platforms specifically used for network-based examinations and reporting with a high degree of proficiency and accuracy.
- Ensure strict adherence to evidence management procedures that preserve the chain of custody for every digital artifact handled during the analysis.
Requirements
Applicants must hold United States citizenship that permits the granting of a Top Secret security clearance, which is a non-negotiable requirement for this position. A minimum of three years of recent, hands-on network analysis experience is a mandatory prerequisite for this role and must be demonstrable through professional history. The ideal candidate will demonstrate proficiency in handling network protocols at various layers and must work comfortably with command-line tools on a daily basis as part of standard operations. Meticulous evidence management is required, with strict adherence to procedures that preserve the chain of custody for every digital artifact without exception. The analyst must be adept at operating analysis platforms specifically used for network-based examinations and reporting, including associated data export and interpretation features. Exceptional communication skills are necessary to convey technical concepts effectively to both technical and non-technical audiences, ensuring clarity in high-stakes environments. Candidates must be able to pass a background investigation that confirms eligibility for access to classified information and sensitive government data. The role requires a demonstrated ability to work independently with minimal supervision while managing multiple analytical priorities in a demanding operational setting. All applicants must comply with the contractual security requirements mandated by the United States government for this client engagement.
Nice to have
Experience working directly with government clients is preferred, along with familiarity with classified network environments and the operational constraints they entail. A background in intelligence or law enforcement investigative methodologies is considered a significant advantage for understanding the investigative mindset required.
Practical notes
Details regarding the application process and specific job requirements must be confirmed This ensures candidates have the most current information regarding submission procedures and necessary documentation.