Security Clearance Jobs for Defense and Intelligence Careers

Questions? Call Us 888-725-6997


View Job

Computer Network Defense Intrusion Analyst

ManTech | Hill AFB UT 84056 USA | Full Time | Posted: 07/31/2020

Job Descriptiontop

Secure our Nation, Ignite your Future

Become an integral part of a diverse team while working at an Industry Leading Organization, where our employees come first.  At ManTech International Corporation, you’ll help protect our national security while working on innovative projects that offer opportunities for advancement.

Currently, ManTech is seeking a motivated, career and customer-oriented Computer Network Defense Intrusion Analyst to join our team at either Hill AFB, UT or Scott AFB, IL.

We support the Defense Information Systems Agency’s (DISA) cyber operations with positions at Hill AFB, UT and Scott AFB, IL. We support this critical mission providing a globally accessible enterprise information infrastructure directly supporting joint war-fighters and national level leaders across the full spectrum of military operations.

The successful candidate will work with multiple components in support of the subscribers of the Defense Information Systems Agency (DISA) Computer Network Defense Service Provider (CND-SP) and other supported components. The candidate will interact with members of intrusion analysis, incident response, vulnerability assessment, external assessment, and cyber threat analysis teams to support the capabilities of the organization and provide effective services to its subscribers.  

Responsibilities include, but are not limited to:

  • First-level/follow-on intrusion incident analysis.
  • Incident, event, and mission impact determination/escalation/prioritization.
  • Data entry into incident management and tracking database.
  • Coordination of incident and event feedback to customers.
  • Customer Support Desk operations.
  • Support IA Ops reviews, assessments, exercises, and operations surges.
  • Incident-event-network outage correlation.
  • Anti-virus software support – Assist with download, setup and configuration errors.
  • Coordination between Theater CND teams, other Computer Emergency Response Teams (CERT), Global, Joint or Theater Command and Control Centers, and Service Theater CERTs.

Basic Qualifications:

  • DoD 8570 IAT Level II (Security+ CE or equivalent) – MANDATORY to start.
  • Certified Ethical Hacker (CEH) will be required within 4 months of start date.
  • Bachelor's degree in a computer science, electrical engineering, or similarly related technical discipline + 5 years of experience in a technical environment, or Master’s Degree + 2 years’ experience, or relevant certification + 10 years’ experience, two years of which shall be with an accredited Computer Network Defense Service Provider or equivalent.
  • US Citizenship is required.
  • Knowledge of security concepts, protocols (TCP/IP, HTTP, etc.), well-known ports (DNS, SMTP, FTP, LDAP, etc.), processes, architectures, and tools (authentication and access control technologies, intrusion detection, network traffic analysis, SIM technology, incident handling, media/malware analysis, etc.).
  • Experience with analyzing network traffic for suspicious and malicious activity using tools such as Wireshark (or equivalent) for packet capture analysis and the Carnegie-Mellon SiLK suite for flow data analysis.
  • Experience with incident/event correlation tools such as ArcSight.

Preferred Qualifications:

  • Scripting Language (one or more of the following): Perl/Python/BASH.
  • Current knowledge of CYBERCOM CNDSP policies and procedures.
  • Knowledge of Snort intrusion detection signatures.

Security Clearance Requirements:

  • Candidate must have an active TS clearance (or TS/SCI).  Will be processed for TS/SCI.

Hours: 40 hrs/week; Shift work with ability to work on a schedule that may include nights, weekends, and holidays.

Location:  Hill AFB (Ogden, UT), and also Scott AFB (O'Fallon, IL)

Contract:   The GSM-O 7-year contract is fully funded.  Our GSM-O II re-compete award was announced and is valid for an additional 10 years.

POC:   If interested, please apply to this position online/upload your resume and also directly contact our DISA GSM-O Recruiting Lead, Tom Stack,, 410-272-8989 (please send copy of your resume and certifications).


ManTech International Corporation, as well as its subsidiaries proactively fulfills its role as an equal opportunity employer. We do not discriminate against any employee or applicant for employment because of race, color, sex, religion, age, sexual orientation, gender identity and expression, national origin, marital status, physical or mental disability, status as a Disabled Veteran, Recently Separated Veteran, Active Duty Wartime or Campaign Badge Veteran, Armed Forces Services Medal, or any other characteristic protected by law.

If you require a reasonable accommodation to apply for a position with ManTech through its online applicant system, please contact ManTech's Corporate EEO Department at (703) 218-6000. ManTech is an affirmative action/equal opportunity employer - minorities, females, disabled and protected veterans are urged to apply. ManTech's utilization of any external recruitment or job placement agency is predicated upon its full compliance with our equal opportunity/affirmative action policies. ManTech does not accept resumes from unsolicited recruiting firms. We pay no fees for unsolicited services.

If you are a qualified individual with a disability or a disabled veteran, you have the right to request an accommodation if you are unable or limited in your ability to use or access as a result of your disability. To request an accommodation please click and provide your name and contact information.

Job Detailstop

Location Hill AFB, UT, 84056, United States
Categories Professional
Sec Clearances Top Secret (TS)

Location Maptop

Contact Informationtop

Contact Name -
How to apply Employer provided a link where your application will be accepted. Click on the link below and follow instructions.
Apply Click Here (apply to job)
Job Code R11285