Sr. Network Forensics Support Specialist Job in Laurel, Maryland US
Sr. Network Forensics Support Specialist
TASC has a 40 year history of advanced systems engineering and advisory services across the Intelligence Community, Department of Defense and civilian agencies of the federal government. We continue to partner with our customers toward one goal - the success of their missions. Our customers rely on the brainpower of TASC employees to solve some of their most complex challenges. We?re looking for intelligent men and women ready to put their best thinking to work for great causes ? peace, freedom, safety and security for all Americans. The Intelligence Operations Business Unit provides leading-edge solutions and advisory services to the defense and intelligence communities worldwide. Our technical capabilities and domain expertise support war fighters and planners alike. We help modernize our customers? systems in an environment that facilitates information sharing. From the evaluation of alternatives to the fusion of data, we offer services and solutions that turn raw data into intelligence, and intelligence into actionable information. Our customers develop some of the most technically and operationally challenging systems and capabilities in the world, and we are proud to be an integral part of their mission. Expand your skills and broaden your experience by joining a team that directly supports national security. TASC is seeking a qualified Sr. Network Forensics Support Specialist. The candidate will have a minimum of 8 continuous years of work experience in computer forensics or a related field or a technical degree in computer science or engineering and 5 years of related experience. Forensics specialists must be able to independently and accurately evaluate multiple operating systems, network configurations, network architectures, and topologies for potential technical and/or operational vulnerabilities. The candidate must possess an in-depth knowledge of network tools used to assess traffic at the application layer, rendering the ability to identify and interpret anomalous activity in packet details. Qualified candidate will also be able to perform static analysis, dynamic analysis, network attack characterization and reconstruction, and the development of mitigation strategies and have experience in use of commercial forensics tools, such as Encase, Forensics Tool Kit (FTK), and DCFLDD (Defense Computer Forensics Lab imaging tool) to image and review computer drives and data, determine if an incident occurred, and discover the intrusion method. Must be able to generate SNORT and other Signatures and use various in-house, commercial and freeware tools to interpret and analyze technical data and the ability to document and report results of analysis. Candidate should have experience with CNO and SIGINT tools and databases used for the customer mission. Must be a Subject Matter Expert (SME) in Computer Networking technologies, and be able to serve as a SME for working groups and meetings in multiple customer environments. An active TS SCI with polygraph clearance is required.