Host Based Cyber Systems Analyst IV
Job Description
Job Description
Argo Cyber Systems provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based and cloud-based cybersecurity analysis capabilities. Team personnel provide front line response for digital forensics/incident response (DFIR) and proactively hunting for malicious cyber activity. We are seeking Cyber Network Defense Analysts (CNDA) with Cloud Forensics experience to support this critical customer mission.
Responsibilities:- Conduct forensic acquisition and analysis from on-premises and cloud platforms (Entra ID/Azure AD, M365, AWS, GCP, SaaS) to identify compromise activity, persistence mechanisms, and data exfiltration.
- Investigate and respond to incidents and attacks targeting cloud and hybrid identity.
- Correlate cloud control-plane events and network telemetry (e.g., Azure Activity Logs, AWS CloudTrail, VPC Flow Logs) to reconstruct attacker timelines, validate IOCs, and identify post-compromise privilege escalation.
- Develop and operationalize detection logic and automation using cloud-native tools (Microsoft Defender, Sentinel, AWS GuardDuty, GCP Chronicle) and scripting (PowerShell, Python, Bash), integrating threat intelligence feeds and indicators.
- Produce technical reports, incident documentation, and containment recommendations integrating cloud, identity, and endpoint findings; support development of incident response playbooks and procedures for cloud and hybrid environments.
- Support cloud development and automation projects to enhance threat emulation, investigative, and hunting capabilities.
- Coordinate with internal teams, government staff, and external stakeholders to validate alerts and investigate preliminary findings. Required Skills:
- U.S. Citizenship
- Active TS/SCI clearance
- Ability to obtain Department of Homeland Security (DHS) Entry on Duty (EOD) Suitability
- 8+ years of experience in cyber forensic investigations with leading tools and techniques.
- Strong understanding of SaaS, PaaS, and IaaS in cloud environments, and hybrid identity security.
- Expertise in acquiring forensically sound evidence, analyzing attacks, and reporting findings.
- Knowledge of M365/Azure, hybrid identity, and threats targeting these solutions.
- Knowledge of AWS, IAM, and best practices for cloud identity security. Desired Skills:
- Strong API and scripting skills (PowerShell, Python, Bash, JavaScript) for automation and threat detection.
- Knowledge of common and advanced cloud attacks and techniques, and how to detect and mitigate these threats.
- Proficiency with cloud automation and orchestration tools (Terraform, Kubernetes, CloudFormation, Azure Resource Manager, Docker).
This position requires a minimum of a USG Top Secret Security Clearance!
Argo Cyber is an Equal Opportunity Employer.
Recommended Jobs
Commercial Concrete Estimator
General Description: The primary function of the Concrete Estimator is to provide accurate bid proposals and scope analysis for potential construction projects. Additional responsibilities include q…
Licensed Physical Therapist - Outpatient Orthopedics
ATTENTION: This position requires graduation as a Doctor of Physical Therapy (or equivalent standing) and a state license as a Physical Therapist. Now Hiring Physical Therapist - Full-time …
Registered Nurse Mental Health (MH RN) - Part-Time (24 Hours/Week)
Job Description Job Title: Mental Health Registered Nurse (MH RN) - Part-Time (24 Hours/Week) Location: * North Chesterfield, VA 23236 * Newbrook Drive, Chantilly, VA 20151 (N 27th & Eagle Run) …
DevOps Engineer- ACTIVE TS/SCI REQUIRED
Job Description Job Description Overview CTG is seeking to fill a Cleared DevOps Engineer opening for our client in Arlington, VA. Location: Arlington, VA Duration: Permanent Placeme…
Advanced Practice Provider PRN
Job Description Job Description Benefits/Perks Great small business work environment Flexible scheduling Company Overview American Family Care (AFC) is one of the largest primary an…
Nursing Supervisor - 11-7 Shift Every Other Weekend
Job Description Job Description Nursing Supervisor - Part-time Non-exempt, Essential Personnel Vierra Falls Church is seeking a Nursing Supervisor to join our dynamic team! Are you looking …
Policy and Plans Officer (2025-0078)
Acclaim Technical Services, founded in 2000, is a leading language and intelligence services company supporting a wide range of U.S. Federal agencies. We are an Employee Stock Ownership Plan (ESOP) c…
Skilled Laborer
About Us D.H. Griffin Wrecking Co., Inc., is one of the leading demolition specialists in the country and we are growing our team! Our Richmond, Va. Division is accepting applications for Skilled …
Car Mechanic
Job Description Job Description Looking for a Auto technician that can do heavy lifting. Requirements are honest hard working individual who would like to grow with Arlington Auto Repair. Can per…
Enterprise Architect TS/SCI CI poly
TENICA is looking to hire a Ground Engineering Enterprise Architect. This position provides expertise in Enterprise system architecture, technology standards, and enterprise frameworks. Supports …