×
Register Here to Apply for Jobs or Post Jobs. X

RFQ C004645 - First Line Security Event Analyst

Job in McLean, Fairfax County, Virginia, USA
Listing for: McBride International
Full Time position
Listed on 2026-02-20
Job specializations:
  • IT/Tech
    Cybersecurity, Network Security
Salary/Wage Range or Industry Benchmark: 60000 USD Yearly USD 60000.00 YEAR
Job Description & How to Apply Below
RFQ C004645 - First Line Security Event Analyst

McBride, based in McLean, VA, USA, and with offices in Brussels, BEL and Bucharest; ROU through its wholly owned subsidiary McBride International, is a Prime Contractor on the NCIA Advisory and Assistance Services Plus (AAS+) Framework.

We are a management and IT consulting firm with significant professional services experience that includes IT transformation, project management, digital transformation, strategic planning, business process improvement, change management, human capital management, systems engineering, and operations. Due to our excellent relationship with NATO and the first-class, security cleared candidates that we source and supply from all 32 NATO nations, we are extremely privileged to ask you to review this role to assess your suitability of skills.

You will be working as a contractor for our client the NATO Communications and Information Agency (NCIA)
NATO Communications and Information Agency (NCIA)
NCIA was established on 1 July 2012 from a merger of several NATO entities. It has a 65-year legacy of supporting NATO operations, missions, and exercises and is on the front lines against cyber threats, protecting NATO's networks 24/7. NCIA provides expertise and services that are critical to NATO's ability to fulfill its core tasks of consultation, collective defence, and crisis management.

Job Description

As a First Line Security Event Analyst (FLSEA), you will perform initial analysis of logs and network traffic, determine alert

severity and escalate when required. You will collate information and present findings in a clear, structured format,

providing remediation recommendations and first line response where applicable. Your main responsibilities will be to:

  • Conduct research and assessments of security events within NATO Cyber Security Centre (NCSC) team;
  • Provide analysis of firewall, IDS, anti-virus and other network sensor produced events and present findings;
  • Appropriately leverage the comprehensive extended toolset (e.g. Log Collection, Intrusion Detection, Packet Capture, VA, Network Devices etc.) for enhancing investigations;
  • Support the end-to-end Incident Handling process;
  • Support threat intelligence sharing and block list management activities; and
  • Propose optimisations and enhancements which help to maintain and improve NATO's Cyber Security posture.
Requirements

Essential education, experience, and training:

  • A university degree in a technical subject with a focus on Information Technology (IT), obtained from a nationally recognised/certified institution in addition to a minimum of 1 year experience in the field of cyber security analysis. The lack of a degree may be compensated by at least 3 years of relevant experience in field of cyber security analysis. Similarly, candidate's lacking experience can compensate by demonstrating a high level of knowledge in the field of cybersecurity.
  • Comprehensive knowledge of the principles of computer and communications security including knowledge of TCP/IP networking, Windows and Linux operating systems.
  • Broad understanding of common network security threats and mitigation techniques.
  • Experience with Security Information and Event Management products (SIEM) – e.g. Splunk.
  • Experience with analysis of Network Based Intrusion Detection Systems (NIDS) events– e.g. Fire Power, Palo Alto Network Threat Prevention.
  • Experience with log analysis from a variety of sources (e.g. Firewalls, Proxies, Routers, DNS and other security appliances).
  • Experience with network traffic capture analysis using Wireshark.
  • Logical approach to analysis and ability to perform structured security investigations using large, complex data sets.
  • Good written and spoken communication skills.
  • Ability to work independently and as part of a team.
Desirable education, experience, and training:
  • Holding industry leading certifications in the area of cyber security such as GCIA, GNFA, GCIH.
  • Proficiency in Intrusion/Incident Detection and Handling.
  • Experience in the following areas:
  • Full Packet Capture systems – e.g. RSA/Net Witness.
  • Endpoint Detection and Response Systems (EDR).
  • Computer forensics tools (stand alone, online and network).
  • Military communication systems and networks.
Education and Clearance

Valid Personnel Security Clearance (PSC) at level NATO Secret

#J-18808-Ljbffr
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)

Job Posting Language
Employment Category
Education (minimum level)
Filters
Education Level
Experience Level (years)
Posted in last:
Salary