Cyber Malware Reverse Engineer - Reston, United States - Base-2 Solutions

    Default job background
    Full time
    Description
    Required Security Clearance:Top Secret/SCI City:Reston State/Territory:Virginia Travel:None Potential for Teleworking:No Schedule:Full Time DoD 8570 IAT Requirement:IAT II (Security+, CySA+, CCNA Security, GICSP, GSEC, SSCP) DoD 8570 IAM Requirement:None DoD 8570 IASAE Requirement:None DoD CSSP Requirement:CSSP Analyst (CySA+, CEH, CFR, GCIA, GCIH, GICSP, SCYBER) Last Updated:4/28/24 8:00 PM Requisition ID:194211 US Citizenship Required?:Yes

    Job Description

    • Work will provide customer understanding of current malware and how to apply appropriate countermeasures.
    • Outstanding problem-solving skills are essential. When serious malware threats are identified, you will work closely with other areas of the security team to identify appropriate solutions. You must be passionate about technology, and able to learn the ropes of new security solutions rapidly.
    • Recognize common behavior patterns that are primarily found in malware.
    • Indicators of Compromise (IOC)s will be obtained through: forensic analysis of digital information, Open-Source Intel (OSINT) review/monitoring, available tools both customer provided and open source, and pivoting/researching on previously reported IOCs.
    • Participate in collaborative sessions with other CNDSPs and IC agencies on malicious intrusions, attacks or suspicious activities, as well as share emerging Cyber Threat Intel data.
    • Assist in the development of IOCs for active defensive countermeasures and passive detection signatures.
    • Day or Swing shift position available.

    Required Skills

    • Expertise in reverse engineering malware, and familiarity with today's tools and operational needs.
    • Ability to identify vulnerabilities in software and hardware, analyze and reverse engineer software and hardware systems.
    • Attention to detail and ability to work with team-members and independently.
    • Must have common knowledge of standard network infrastructure.
    • Familiar with monitoring emerging threats through Tools, Techniques, and Procedures (TTPs) and how they relate to the MITRE ATT&CK Framework.
    • Knowledge of debuggers and disassemblers and familiar with linkers and loaders.
    • Knowledge of domain masquerading, certificates, and file hashing.
    • Strong written communications skills are necessary to properly document and report the malware.

    Characteristics

    • Investigates, analyzes, and responds to cyber incidents within a network environment or enclave.
    • Uses data collected from a variety of cyber defense tools (e.g., IDS alerts, firewalls, network traffic logs) to analyze events that occur within their environments for the purposes of mitigating threat.
    • Interprets, analyzes, and reports all events and anomalies in accordance with computer network directives, including initiating, responding, and reporting discovered events.
    • Evaluates, tests, recommends, coordinates, monitors, and maintains cybersecurity policies, procedures, and systems, including access management for hardware, firmware, and software.
    • Ensures that cybersecurity plans, controls, processes, standards, policies, and procedures are aligned with cybersecurity standards.
    • Identifies security risks and exposures, determines the causes of security violations, and suggests procedures to halt future incidents and improve security.
    • Researches and evaluates new concepts and processes to improve performance.
    • Analyzes cross-functional problem sets, identifies root causes, and resolves issues.
    • Develops techniques and procedures for conducting cybersecurity risk assessments and compliance audits, the evaluation and testing of hardware, firmware, and software for possible impact on system security, and the investigation and resolution of security incidents such as intrusion, frauds, attacks or leaks.
    • May coach and provide guidance to less-experienced professionals.
    • May serve as a team or task lead.

    Education and Experience

    • HSD/GED+16yrs
    • Associates+14yrs
    • Bachelors+12yrs
    • Masters+10yrs
    • PhD+8yrs

    NOTE: Relevant professional certifications will be considered equivalent to six (6) months of relevant experience

    Pay & Benefit Highlights

    Compensation

    • Above market fixed salary or hourly pay.
    • Up to $10,000 bonus for each referral.
    • Additional bonuses for exceptional performance, assisting with business development and company growth.

    Health

    • 100% paid premiums for health insurance. Choose from over 80 gold-level medical plans from Aetna, CareFirst, Kaiser and UnitedHealthcare. Choose from PPO, EPO, POS, HMO, and HSA-compatible.
    • HSA and FSA options.
    • 100% paid premiums for dental insurance.
    • 100% paid premiums for vision insurance.

    Income Protection

    • 100% paid premiums for short-term disability.
    • 100% paid premiums for long-term disability.
    • 100% paid premiums for accidental death & dismemberment.
    • 100% paid premiums for life insurance with a $200,000 max benefit.

    Retirement

    • 8% company contribution to 401k with immediate vesting.
    • 401k pre-tax and Roth options.

    Leave

    • Up to 20 days of flexible paid time off (PTO).
    • 11 days of paid floating holidays.

    Work-Life Balance

    • Flexible work schedules including flex time and compressed work period.
    • Remote work including partial or fully remote (contract and project-dependent).

    View our detailed Pay & Benefits

    Equal Opportunity Employer

    Base-2 Solutions is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.