Host-Based Security System (HBSS) Support Specialist
ManTechAbout the role
Secure our Nation, Ignite your Future
Become an integral part of a diverse team while working at an Industry Leading Organization, where our employees come first. At ManTech, you’ll help protect our national security while working on innovative projects that offer opportunities for advancement.
Currently, ManTech is seeking a motivated, career and customer-oriented Host-Based Security System (HBSS) Support Specialist to join our team in the DMV area. We have opportunities in the Washington, DC area as well as Northern Virginia and Maryland. If you are looking for an opportunity in any of those locations, we encourage you to apply. This is an onsite position.
Responsibilities include but are not limited to:
- Provides operational and technical engineering support for ManTech SOC Security Team. This includes implementation, testing, integration, and sustainment of information technologies in SOC environments across multiple customer multilevel domains.
- Managing, deploying, and troubleshooting HBSS clients for Windows, Solaris, and Linux systems.
- Provide operational support and system administration on HBSS servers, including upgrades and patches for clients.
- Perform vulnerability scans, troubleshoot and fix scan issues, and ensure hardware/software compatibility.
- Working with multiple domains, network and cloud security zones, subnetting, virtual routing and forwarding (VRF), and virtual local area network (VLAN) environments.
- Adhere to mission architecture, SOPs, and Implementation Plans to fully operationalize HBSS as per Federal policies and standards, as well as customer directives.
- Monitoring HBSS client activity using dashboards and queries, analyze certification Tests, evaluate vulnerabilities, and recommend security countermeasures to mitigate risks.
Basic Qualifications:
- 5 years of position-specific relevant experience.
- Bachelor's degree in an IT-related discipline.
- DoD 8570.01-m IAT Level III (CISSP, CASP+CE, CCNP Security, CISA, CISSP, GCED, GCIH, CCSP) within 6 months of commencing work on the Task Order.
- Experience in TCP/IP, common networking ports and protocols, traffic flow, system administration, OSI model, defense-in-depth, and common security elements, and malware and other threats targeting large government enterprises.
- Experience performing DoD military active duty or defense contractor work with designated End Point security solutions, HBSS capabilities and HBSS/McAfee ePolicy Orchestrator (ePO) operations
Preferred Qualifications:
- Experience with Computer Network Defense (CND) within a Computer Incident Response organization.
- Demonstrated understanding of the life cycle of network threats, attacks, attack vectors, and methods of exploitation with an understanding of intrusion set tactics, techniques, and procedures (TTPs).
- Advanced knowledge of TCP/IP, common networking ports and protocols, traffic flow, system administration, OSI model, defense-in-depth, and common security elements.
- Experience analyzing high volumes of logs, network data (e.g., Netflow, Full Packet Capture), and other attack artifacts in support of incident investigations and in-depth knowledge of architecture, engineering, and operations of at least one enterprise SIEM platform (e.g., Google Chronicle, ArcSight, Splunk,Nitro/McAfee Enterprise Security Manager, QRadar, LogLogic).
- Experience and proficiency with any of the following: Anti-Virus, HIPS/HBSS, IDS/IPS, Full Packet Capture, Network Forensics. Experience with malware analysis concepts and methods and Unix/Linux command line.
Clearance Requirements:
- This role requires an active TS/SCI clearance
Physical Requirements:
- Must be able to be in a stationary position more than 50% of the time
- Must be able to communicate, converse, and exchange information with peers and senior personnel
- Constantly operates a computer and other office productivity machinery, such as a computer
- The person in this position frequently communicates with co-workers, management, and customers, which may involve delivering presentations. Must be able to exchange accurate information in these situations
- The person in this position needs to occasionally move about inside the office to access file cabinets, office machinery, etc.
For all positions requiring access to technology/software source code that is subject to export control laws, employment with the company is contingent on either verifying U.S.-person status or obtaining any necessary license. The applicant will be required to answer certain questions for export control purposes, and that information will be reviewed by compliance personnel to ensure compliance with federal law. M
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s