• Operations Analyst

    ManTechHerndon, VA 22095

    Job #2681333729

  • Secure our Nation, Ignite your Future

    Currently, we are seeking a motivated, career and team-oriented Operations Analyst in support of the U.S. Department of Homeland Security (DHS) Cybersecurity and Infrastructure Security Agency (CISA) Continuous Diagnostic & Mitigation (CDM) DEFEND E Program. The CDM DEFEND E Program is a critical component of CISA's national effort to ensure the defense and resilience of cyberspace.

    The CDM DEFEND E Program mission is to provide a standardized platform to collect, transform, and integrate cybersecurity data from relevant authoritative data sources into a coherent data, delivering actionable information into Agency and Federal Dashboards to identify risk areas in support of mitigation as well as to facilitate coordinated agency and national response to cyber-threats.

    This is a remote position where the candidate can work from any location within the United States provided, they are able to work on an eastern time zone schedule.

    The O perations Analyst is responsible for providing operational technical support for a cloud-based, multi-vendor, multi-tenant data aggregation, analytics, and presentation solution. The Operations Analyst will primarily be responsible for monitoring, analyzing, and responding to any solution performance issues or security incidents using established tools, escalating to engineering support as required.

    Responsibilities

    The Operations Analyst will:

    • Support the overall operations, maintenance, and health of the CDM integration layer and dashboard platform environment. The CDM dashboard provides its customers situational awareness of risks, based upon data gathered from security tools and sensors, providing hardware and software asset management, vulnerability management, configuration management, and privileged account and identity and access management for multiple Federal Government Agencies.

    • Manage and oversee the performance and security monitoring tools, responding to alerts, triggers, and other warning conditions.

    • Closely coordinate with Engineering to generate root cause analyses (RCAs), update tickets, and resolve problems and incidents within established performance SLAs.

    • Develop and maintain technical documentation and standard operating procedures (SOPs).

    • Participate on shift-transition calls to ensure all open tickets and tasks are properly managed and addressed.

    • Periodically report metrics and corresponding analysis for client review and strategic information security program adjustments and planning.

    • Follow established documented methods and practices to deliver effective, efficient, and professional operations support.

    • Create, update, peer-review and implement standard operating procedures (SOPs) for Operations and Maintenance (O&M) support.

    • Maintain the confidentiality, integrity, and availability of data across physical and logical solution boundaries in multi-Agency environments.

    • Coordinate with government engineering resources and OEMs to patch, upgrade or refresh tool and sensor software and hardware.

    • Understand and monitor operations processes, including but not limited to Business Continuity Planning and Incident Response Planning.

    • Ensure effective controls, countermeasures, processes are in place and optimized to maintain a strong organizational and system security posture.

    • Identify gaps and bottlenecks in the presentation and reporting of data within and to the dashboard, including issues related to performance, capacity, interoperability, scalability, and manageability.

    • Maintain accountability and ownership of assigned issues and support tickets.

    Position Requirements

    • Fundamental knowledge of cloud-based architectures and experience performing operations and maintenance support services in SaaS and PaaS environments in AWS and Azure.

    • Demonstrated ability to troubleshoot difficult issues through creative problem-solving skills and arrive at elusive root cause diagnoses.

    • Familiarity with the Elasticsearch deployments such as Elastic Cloud Enterprise (ECE) and Elastic Cloud on Kubernetes (ECK) platforms.

    • Familiarity and experience with Elasticsearch and Kibana or other similar data aggregation and analytics platforms. Familiarity with opensource alternatives, e.g., OpenSearch.

    • Understanding of containerized PaaS platforms such as Azure Kubernetes Service (Azure) or Elastic Kubernetes Service (AWS) as well as IaaS hosted platforms such as Docker and Podman

    • Understanding of network protocols, TCP/IP, and DNS configurations.

    • Proficiency in scripting languages such as Python, Powershell, or Bash.

    • Familiarity with DevOps principles and practices, including continuous integration and deployment.

    • Knowledge of incident management and change management processes.

    • Experience with automated monitoring tools such as Dynatrace, Azure Sentinel, Zabbix, Nagios, Datadog, etc.

    • Experience with the Linux operating system.

    • Demonstrated customer service skills.

    Preferred Skills

    • Bachelor's Degree, preferably in a technical discipline, e.g., computer science, data science, engineering, applied mathematics, or closely related field or equivalent on-the-job experience.

    • 3+ years of IT operations support experience in a customer service role, ideally working in either a NOC or SOC environment.

    • Strong analytical skills with the ability to collect, organize, analyze, and disseminate significant amounts of information with attention to detail and accuracy.

    • Knowledge of and experience with reporting packages (Business Objects, etc.), databases (SQL, MySQL, etc.), programming (XML, JavaScript, or ETL frameworks)

    • Proven ability to analyze complex problems, theorize root causes, and develop creative solutions.

    • Knowledge of REST API authentication types, REST methods, and ability to mine APIs to meet data requirements.

    • Experience with database query languages like SQL, T-SQL, KQL.

    • Basic understanding of API calls for data ingestion.

    • Proficient at queries, report writing and presenting findings.

    • Manage escalation of complex technical support issues with Engineering and Development teams as well as customers.

    • Ability to manage multiple tasks and work with cross-functional teams.

    • Excellent time management and organizational skills with the ability to prioritize workload.

    • Strong customer-facing communication skills, both verbal and written.

    Security Clearance Requirements

    • Must be a US citizen (Non-Dual citizenship)

    • Able to obtain and maintain a DHS Suitability (EOD)

    Physical Requirements

    • Must be able to be in a stationary position more than 50% of the time

    • Must be able to communicate, converse, and exchange information with peers and senior personnel

    • Constantly operates a computer and other office productivity machinery, such as a computer

    • The person in this position frequently communicates with co-workers, management, and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations

    • The person in this position needs to occasionally move about inside the office to access file cabinets, office machinery, etc.

    The projected compensation range for this position is $90,200-$149,600. There are differentiating factors that can impact a final salary/hourly rate, including, but not limited to, Contract Wage Determination, relevant work experience, skills and competencies that align to the specified role, geographic location (For Remote Opportunities), education and certifications as well as Federal Government Contract Labor categories. In addition, ManTech invests in it's employees beyond just compensation. ManTech's benefits offerings include, dependent upon position, Health Insurance, Life Insurance, Paid Time Off, Holiday Pay, Short Term and Long Term Disability, Retirement and Savings, Learning and Development opportunities, wellness programs as well as other optional benefit elections.

    For all positions requiring access to technology/software source code that is subject to export control laws, employment with the company is contingent on either verifying U.S.-person status or obtaining any necessary license. The applicant will be required to answer certain questions for export control purposes, and that information will be reviewed by compliance personnel to ensure compliance with federal law. ManTech may choose not to apply for a license for such individuals whose access to export-controlled technology or software source code may require authorization and may decline to proceed with an applicant on that basis alone.

    ManTech International Corporation, as well as its subsidiaries proactively fulfills its role as an equal opportunity employer. We do not discriminate against any employee or applicant for employment because of race, color, sex, religion, age, sexual orientation, gender identity and expression, national origin, marital status, physical or mental disability, status as a Disabled Veteran, Recently Separated Veteran, Active Duty Wartime or Campaign Badge Veteran, Armed Forces Services Medal, or any other characteristic protected by law.

    If you require a reasonable accommodation to apply for a position with ManTech through its online applicant system, please contact ManTech's Corporate EEO Department at ~~~. ManTech is an affirmative action/equal opportunity employer - minorities, females, disabled and protected veterans are urged to apply. ManTech's utilization of any external recruitment or job placement agency is predicated upon its full compliance with our equal opportunity/affirmative action policies. ManTech does not accept resumes from unsolicited recruiting firms. We pay no fees for unsolicited services.

    If you are a qualified individual with a disability or a disabled veteran, you have the right to request an accommodation if you are unable or limited in your ability to use or access ~~~ as a result of your disability. To request an accommodation please click ~~~ and provide your name and contact information.

  • You Can Also Try Searching