Post Job Free
Sign in

Host Based Cyber Systems Analyst IV

Company:
Argo Cyber Systems
Location:
Arlington, VA, 22203
Pay:
13000USD - 160000USD per year
Posted:
December 25, 2025
Apply

Description:

Job Description

Argo Cyber Systems provides remote and onsite advanced technical assistance, proactive hunting, rapid onsite incident response, and immediate investigation and resolution using host-based, network-based and cloud-based cybersecurity analysis capabilities. Team personnel provide front line response for digital forensics/incident response (DFIR) and proactively hunting for malicious cyber activity. We are seeking Cyber Network Defense Analysts (CNDA) with Cloud Forensics experience to support this critical customer mission.

Responsibilities:

- Conduct forensic acquisition and analysis from on-premises and cloud platforms (Entra ID/Azure AD, M365, AWS, GCP, SaaS) to identify compromise activity, persistence mechanisms, and data exfiltration.

- Investigate and respond to incidents and attacks targeting cloud and hybrid identity.

- Correlate cloud control-plane events and network telemetry (e.g., Azure Activity Logs, AWS CloudTrail, VPC Flow Logs) to reconstruct attacker timelines, validate IOCs, and identify post-compromise privilege escalation.

- Develop and operationalize detection logic and automation using cloud-native tools (Microsoft Defender, Sentinel, AWS GuardDuty, GCP Chronicle) and scripting (PowerShell, Python, Bash), integrating threat intelligence feeds and indicators.

- Produce technical reports, incident documentation, and containment recommendations integrating cloud, identity, and endpoint findings; support development of incident response playbooks and procedures for cloud and hybrid environments.

- Support cloud development and automation projects to enhance threat emulation, investigative, and hunting capabilities.

- Coordinate with internal teams, government staff, and external stakeholders to validate alerts and investigate preliminary findings.

Required Skills:

- U.S. Citizenship

- Active TS/SCI clearance

- Ability to obtain Department of Homeland Security (DHS) Entry on Duty (EOD) Suitability

- 8+ years of experience in cyber forensic investigations with leading tools and techniques.

- Strong understanding of SaaS, PaaS, and IaaS in cloud environments, and hybrid identity security.

- Expertise in acquiring forensically sound evidence, analyzing attacks, and reporting findings.

- Knowledge of M365/Azure, hybrid identity, and threats targeting these solutions.

- Knowledge of AWS, IAM, and best practices for cloud identity security.

Desired Skills:

- Strong API and scripting skills (PowerShell, Python, Bash, JavaScript) for automation and threat detection.

- Knowledge of common and advanced cloud attacks and techniques, and how to detect and mitigate these threats.

- Proficiency with cloud automation and orchestration tools (Terraform, Kubernetes, CloudFormation, Azure Resource Manager, Docker).

This position requires a minimum of a USG Top Secret Security Clearance!

Argo Cyber is an Equal Opportunity Employer.

Job Posted by ApplicantPro

Full-time

Hybrid remote

Apply