- Create Threat Models to better understand the DHS IT Enterprise, identify defensive gaps, and prioritize mitigations
- Author, update, and maintain SOPs, playbooks, work instructions
- Utilize Threat Intelligence and Threat Models to create threat hypotheses
- Plan and scope Threat Hunt Missions to verify threat hypotheses
- Proactively and iteratively search through systems and networks to detect advanced threats
- Analyze host, network, and application logs in addition to malware and code
- Prepare and report risk analysis and threat findings to appropriate stakeholders
- Create, recommend, and assist with development of new security content as the result of hunt missions to include signatures, alerts, workflows, and automation.
- Coordinate with different teams to improve threat detection, response, and improve overall security posture of the Enterprise
- Work with the customer to understand and obtain the scope and requirements of the requests
- Provide guidance and direction to team members Required Qualifications
- The candidate must possess an active TS/SCI Clearance. In addition to clearance requirement, all DHS personnel must obtain an EOD.
- BS degree in Science, Technology, Engineering, Math or related field and 12+ years of prior relevant experience with a focus on Cyber Security or Masters with 8 years of prior relevant experience.
- Should have at least 4 years of experience serving as a SOC Analyst or Incident Responder
- Ability to work independently with minimal direction; self-starter/self-motivated Must Have One of the Following J3 Certifications
- SANS GCIH (GIAC Certified Incident Handler)
- SANS GCFA (GIAC Certified Forensic Analyst)
- SANS GCIA (GIAC Certified Intrustion Analyst)
- SANS GNFA (GIAC Network Forensic Analyst)
- SANS GWAPT (GIAC Web Application Pentester)
- SANS GPEN (GIAC Penetration Tester)
- Offensive Security Certified Professional (OSCP) Preferred Qualifications
- Expertise in network and host based analysis and investigation
- Demonstrated experience planning and executing threat hunt missions
- Understanding of complex Enterprise networks to include routing, switching, firewalls, proxies, load balancers
- Working knowledge of common (HTTP, DNS, SMB, etc) networking protocols
- Familiar with operation of both Windows and Linux based systems
- Proficient with scripting languages such as Python or PowerShell
- Familiarity with Splunk Search Processing Language (SPL) and/or Elastic Domain Specific Language (DSL)
- Demonstrated experience triaging and responding to APT activities.
- Experience working with various technologies and platform such as AWS, Azure, O365, containers, etc.
- Understanding of current cyber threat landscape, the different tactics commonly used by adversaries and how you would investigate, contain and recover against their attacks.
-
Security Engineer with Security Clearance
1 week ago
NAIS San Francisco, United States PermanentContract/Location: National Capital Region / Pensacola, FL Overview: · NAIS LLC is seeking an experienced Security Engineer to provide services on a contract supporting a U.S. Government agency. The ideal candidate will have excellent problem-solving and communications skills as ...
-
Security Specialist with Security Clearance
3 weeks ago
IntePros Federal Washington, United StatesThe Opportunity: IntePros Federal is seeking a Security Specialist in support of our federal government customer. The IT Systems Security Specialist supports our customer to provide technical, analytical, and liaison support for implementing systems and network engineering functi ...
-
ISSO with Security Clearance
1 week ago
Anonymous Employer San Francisco, United States PermanentSenior ISSO · Washington, DC - Hybrid $140k + bonus My client is looking for a Senior ISSO to be on site in a hybrid role. This position requires someone with an active top secret clearance, to be considered for this role you need experience with the following: Required: TS Clear ...
-
IT Manager with Security Clearance
3 weeks ago
Peraton Washington, United StatesAbout Peraton Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deli ...
-
Security Architect with Security Clearance
4 days ago
Experis San Francisco, United States PermanentExperis is looking for a Security Architect. This will be an onsite role in Washington DC and will have travel, 25% of the time. Role Description: - Plan, Design, and Implement secure cloud strategies and policies that meet client, program, and federal guidelines. · - Interface w ...
-
Security Engineer with Security Clearance
4 days ago
Experis San Francisco, United States PermanentAs a Security Engineer specializing in Vulnerability Mitigation and Intelligence, you will be responsible for devising and implementing effective strategies to mitigate vulnerabilities, enhance cybersecurity defenses, and provide actionable intelligence. Your expertise will be cr ...
-
Planner with Security Clearance
3 weeks ago
MELE Associates, Inc. Washington, United StatesMELE Associates maintains a contract with the National Nuclear Security Administration (NNSA) Office of Infrastructure (NA-90), which works to maintain, operate, and modernize NNSA infrastructure to enable program results. NNSA's infrastructure protects global security through un ...
-
Interdisciplinary with Security Clearance
3 weeks ago
Department of the Army Washington, United StatesDuties * Serves as senior staff advisor, consultant, and technical expert in the formulation, implementation, and evaluation of policies related to the execution of design, solicitation, and construction as performed by U.S. Army Corps of Engineers (USACE). * Serves as a senior d ...
-
Logistician with Security Clearance
3 weeks ago
VTG Washington, United StatesOverview VTG is staffing a Logistician for professional support services contract related to the planning, design, construction, delivery, and testing of ships overseen by the Guided Missile Frigate (FFG) Program Office (PMS 515). VTG is tasked with providing these services to PM ...
-
Tester - Security Clearance Required
2 weeks ago
ManTech Washington, United States Full timeSecure our Nation, Ignite your Future · Become an integral part of a diverse team while working at an Industry Leading Organization, where our employees come first. At ManTech, you'll help protect our national security while working on innovative projects that offer opportunities ...
-
ISSO with Security Clearance
3 weeks ago
Powder River Industries Washington, United States: · Powder River Industries, LLC provides technical services across the entire system development life cycle (SDLC). As a prime we are responsible for complete end to end system management for a customer's mission system. This includes a data center, integrated logistics support, ...
-
Cartographer - Security Clearance Required
6 days ago
Booz Allen Hamilton Washington, United StatesCartographerThe Opportunity: · With a thorough understanding of cartographic standardization principles, best practices, and procedures, a skilled cartographer can turn map data into valuable information. If that sounds like you, we have an opportunity for you to use your geospa ...
-
Electrician - Security Clearance Required
2 weeks ago
Amentum Washington, United StatesAmentum is looking for an Electrician to join our team in Washington, DC. You will inspect, repair, replace, install, adjust, maintain, and make necessary tests on all medium and low voltage utility systems, equipment, motors, MCC panels, generators, transformers, switch-gears, s ...
-
FMS Lead with Security Clearance
3 weeks ago
CACI Washington, United StatesFMS Lead Job Category: Project and Program Management Time Type: Full time Minimum Clearance Required to Start: Secret Employee Type: Regular Percentage of Travel Required: Up to 10% Type of Travel: Local * * * CACI is seeking a Foreign Military Sales (FMS) Lead to manage a team ...
-
Security Analyst with Security Clearance
3 weeks ago
The Tatitlek Corporation Arlington, United StatesOverview This Security Analyst works with the current Security team to support program activities and processes. The Personnel Security & Suitability Security Analyst should be familiar with all aspects of industrial, information, insider threat, communication, personnel, operati ...
-
Security Engineer with Security Clearance
5 days ago
Gridiron IT Solutions Arlington, United StatesGridironIT is seeking a Security Engineer local to the Arlington, VA area. · 100% onsite. · TS/SCI is required. The Challenge: · Everyone knows security needs to be "baked in" to a system architecture, but you actually know how to bake it in. You can identify and implement ways t ...
-
Peraton Washington, United StatesAbout Peraton Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deli ...
-
Senior Security Engineer with Security Clearance
3 weeks ago
Agile Defense, Inc. Washington, United StatesAt Agile Defense we know that action defines the outcome and new challenges require new solutions. That's why we always look to the future and embrace change with an unmovable spirit and the courage to build for what comes next. Our vision is to bring adaptive innovation to suppo ...
-
Security Engineer II with Security Clearance
3 weeks ago
Agile Defense, Inc. Washington, United StatesAt Agile Defense we know that action defines the outcome and new challenges require new solutions. That's why we always look to the future and embrace change with an unmovable spirit and the courage to build for what comes next. Our vision is to bring adaptive innovation to suppo ...
-
Analyst with Security Clearance
3 weeks ago
WWC Global Arlington, United StatesWWC Global is seeking multiple Analysts to serve on a potential contract supporting the Office of the Undersecretary of Defense for Research and Engineering (OUSD R&E). Responsibilities may include, but are not limited to: * Assisting with planning and executing meetings and even ...
Cyber Threat Hunter Lead with Security Clearance - San Francisco, United States - Base One Technologies
Description
Our Stennis, MS, DC metro and Ashburn VA based client is looking for Cyber Threat Hunter Lead. If you are qualified for this position, please email your updated resume in word format to Cyber Threat Hunter LeadRequired Education/Experience
The candidate must possess an active TS/SCI Clearance. In addition to clearance requirement, all DHS personnel must obtain an EOD. BS degree in Science, Technology, Engineering, Math or related field and 12+ years of prior relevant experience with a focus Primary Responsibilities