Jobs
>
Maryland City

    Cybersecurity Hunt Analyst - Laurel, United States - The Johns Hopkins University Applied Physics Laboratory

    The Johns Hopkins University Applied Physics Laboratory
    Default job background
    Description
    Are you interested in being part of a highly collaborative Cybersecurity Hunt Team?
    Are you inquisitive and analytical with a Cybersecurity focus?
    If so, we 're looking for someone like you to join our team at APL
    We are ranked as one of Computerworld 's Top Places to Work in IT 5 years running and w


    e are seeking a Cybersecurity Hunt Analyst to help us hunt for sophisticated cyber threats operating in an actively changing cyber threat landscape.

    You will perform real-time incident handling, independently following and creating procedures to analyze and contain malicious activity. Collect evidence to include digital media, logs, and malware to perform analysis associated with cyber intrusions. Maintain an understanding of attack methodologies and use information operationally. Make recommendations and create or modify processes and procedures based on knowledge of sophisticated threat behaviors. Identify and analyze threats, using OSINT, Threat Intelligence and enrichment resources.
    As a Cybersecurity Hunt Analyst, y


    our main responsibility will be to proactively hunt, monitor, analyze, and respond to infrastructure threats, contribute to Computer Network Defense, and create solutions to augment Defensive Cyber Operations at APL.

    In addition, you will...
    Develop and enhance content and methods for monitoring and incident response, using data extraction for further analysis.
    Develop and enhance processes, work flows, and documentation.
    Determine high fidelity behavioral patterns and create content in multiple tools.

    Participate in project and multi-functional security teams requiring interaction with system administrators, networking staff, application developers, IT operations staff, and cyber research and development areas within the organization in order to identify and implement information assurance controls and make risk mitigation recommendations for IT operations.

    Qualifications

    You meet the minimum requirements of the job if you...

    Possess a Bachelor's Degree in Information Security, a security related field, or equivalent experience that provides the necessary knowledge, skill and abilities.

    Have 7 or more years of experience working in a complex network environment

    Have a proficient understanding of Linux operating systems (focus RHEL and Ubuntu), OS normal activities, OS internals, MITRE ATT&CK TTPs mapped to Linux systems, and identifying anomalous behaviors on Linux systems; and proficiency with extracting and manipulating data, using scripting languages such as Python, PowerShell, SPL or others.

    Have an understanding of operating systems normal activities and OS internals (Windows and Mac).

    Are able to demonstrate ambition to further current knowledge and understanding by exploring new concepts and applying to cyber security.

    Have experience analyzing and base-lining data with technologies like Splunk, ELK, Hadoop, or SQL.

    Are flexible to work outside of normal business hours, to include some overnight and/or weekend work, in support of incident response and project implementation tasks.

    Are able to obtain Secret level security clearance.

    If selected, you will be subject to a government security clearance investigation and must meet the requirements for access to classified information.

    Eligibility requirements include U.S. citizenship.
    You go above and beyond our minimum qualification if you...
    Possess a Master 's Degree in Information Security Assurance or security related field
    Have demonstrated ability in operational cybersecurity environment
    Are experienced with Assume Breach methodologies and proficient understanding of advanced attack methodologies of Nation State adversaries, including living off the land;

    TTPs outlined in MITRE ATT&CK framework.
    Can develop and enhance content and methods for monitoring and incident response

    Have technical experience in some of the following areas: Endpoint Detection & Response, Active Directory and authentication anomalies, Suricata, Zeek, Full Packet capture technologies, Firewall, Proxy, and Sandbox technologies.

    Have experience with memory analysis, host-based anomaly detection, network anomaly detection, and authentication anomaly detection.
    Have experience and understanding of Red Team and Threat Emulation TTPs.
    Why work at APL?

    The Johns Hopkins University Applied Physics Laboratory (APL) brings world-class expertise to our nation's most critical defense, security, space and science challenges.

    While we are dedicated to solving complex challenges and pioneering new technologies, what makes us truly outstanding is our culture.

    We offer a vibrant, welcoming atmosphere where you can bring your authentic self to work, continue to grow, and build strong connections with inspiring teammates.

    At APL, we celebrate our differences and encourage creativity and bold, new ideas. Our employees enjoy generous benefits, including a robust education assistance program, unparalleled retirement contributions, and a healthy work/life balance. APL's campus is located in the Baltimore-Washington metro area. Learn more about our career opportunities at .

    About Us

    APL is an Equal Opportunity/Affirmative Action employer.

    All qualified applicants will receive consideration for employment without regard to race, creed, color, religion, sex, gender identity or expression, sexual orientation, national origin, age, physical or mental disability, genetic information, veteran status, occupation, marital or familial status, political opinion, personal appearance, or any other characteristic protected by applicable law.

    APL is committed to promoting an innovative environment that embraces diversity, encourages creativity, and supports inclusion of new ideas. In doing so, we are committed to providing reasonable accommodation to individuals of all abilities, including those with disabilities.

    If you require a reasonable accommodation to participate in any part of the hiring process, please contact Only by ensuring that everyone's voice is heard are we empowered to be bold, do great things, and make the world a better place.

    #J-18808-Ljbffr


  • The Johns Hopkins University Applied Physics Laboratory Laurel, United States

    Are you interested in being part of a highly collaborative Cybersecurity Research & Hunt Team? · Are you inquisitive and analytical with deep knowledge in Cybersecurity? · If so, we're looking for someone like you to join our team at APL · We are ranked as one of Computerworld ...


  • Johns Hopkins Applied Physics Laboratory Laurel, United States

    · Are you interested in being part of a highly collaborative Cybersecurity Research & Hunt Team? · Are you inquisitive and analytical with deep knowledge in Cybersecurity? · If so, we're looking for someone like you to join our team at APL · We are ranked as one of Computerwor ...


  • The Johns Hopkins University Applied Physics Laboratory Laurel, United States

    Are you interested in being part of a highly collaborative Cybersecurity Research & Hunt Team? · Are you inquisitive and analytical with deep knowledge in Cybersecurity? · If so, we're looking for someone like you to join our team at APL · We are ranked as one of Computerworld ...


  • Federal Staffing Solutions Inc. Washington, United States

    We connect our employees with some of the best opportunities around. · Time and again, our employees tell us that the most important thing we offer is respect. Federal Staffing Solutions puts people to work in all types of jobs. When you work with us, you build a relationship wit ...

  • Evolver Federal

    Threat Hunt Analyst

    1 week ago


    Evolver Federal Reston, United States

    Job Description · Job DescriptionEvolver Federal is looking for a Threat Hunt Analyst to join our team on a large Security Operations program with our Federal client located in Washington, DC. · This is a Remote position that allows for 100% Work from Home · The Threat Hunt Analy ...

  • Evolver Federal

    Threat Hunt Analyst

    6 days ago


    Evolver Federal Reston, United States

    Evolver Federal is looking for a · Threat Hunt Analyst · to join our team on a large Security Operations program with our Federal client located in · Washington, DC. · This is a Remote position that allows for 100% Work from Home · The Threat Hunt Analyst (THA) works to iden ...

  • OneZero Solutions

    Threat Hunt Analyst

    5 hours ago


    OneZero Solutions Washington, United States

    Job Description · Job DescriptionWe are an employee-centric company that truly appreciates our team members and their value to our customers and the missions they support. We pride ourselves on being forward-leaning thinkers and fostering teams that are and continue to be technic ...


  • GuidePoint Security Springfield, United States

    GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk. By taking a three-tiered, holistic approach for evaluating security posture and ecosystems, GuidePoint enables some of the nation' ...


  • XOR Security Arlington, United States

    Job Description: · XOR Security, An Agile Defense Company is actively seeking a Cyber Threat Intel Analyst to apply their technical and analytic expertise to evaluate advanced and emerging cyber threats targeting Federal Departments and Agencies (D/A) and National Critical Functi ...


  • XOR Security Arlington, United States

    Job Description:XOR Security, An Agile Defense Company is actively seeking a Cyber Threat Intel Analyst to apply their technical and analytic expertise to evaluate advanced and emerging cyber threats targeting Federal Departments and Agencies (D/A) and National Critical Functions ...


  • Phia Arlington, United States

    At phia we hire talented and passionate people who are focused on collaborative, meaningful work, providing technical and operational subject matter expertise and support services to our partners and clients. We are seeking a Senior Cyber Hunt & Incident Response Analyst to suppo ...


  • I2X Technologies Washington, United States

    Minimum Clearance Required Secret Responsibilities I2X Technologies is a reputable technology services company to the Federal Government. Whether the focus is on space exploration, national security, cyber security, or cutting-edge engineering applications, I2X is ready to offer ...


  • phia Arlington, United States

    At phia we hire talented and passionate people who are focused on collaborative, meaningful work, providing technical and operational subject matter expertise and support services to our partners and clients. We are seeking a Senior Cyber Hunt & Incident Response Analyst to suppo ...


  • Computer World Services Washington, United States

    The Threat Hunt (TH) Lead oversees a team responsible for proactively assessing data collected from various cyber defense tools to analyze events within organizational environments for identifying and mitigating threats. This role requires a deep understanding of cyber threats, a ...

  • Paradigm Press Group

    Managing Editor

    1 week ago


    Paradigm Press Group Baltimore, United States

    Are you an exceptional writer who consistently delivers high-quality content that moves the needle? Do you thrive in a fast-paced environment where your ideas and execution directly impact the success and growth of a business? · Paradigm Press Group, a leading independent publish ...


  • Raytheon Arlington, United States

    **Date Posted**: · **Country**: · United States of America · **Location**: · VA149: 1110 N Glebe Road Arlington 1110 North Glebe Road Suite 630, Arlington, VA, 22201 USA · **Position Role Type**: · Hybrid · You have been redirected to RTX's career page as we have recently transit ...


  • Computer World Services Washington, United States

    Key Tasks and Responsibilities · - Provide 24x7 SOC support, participating in daily DHS SOC status calls and monthly DHS SOC working group meetings. · - Utilize CUSTOMER enterprise security information and event management (SIEM) and other monitoring tools for security monitoring ...

  • Rapid7

    Associate Detection

    4 days ago


    Rapid7 Arlington, United States

    **Associate Detection & Response Analyst - MDR** · We are seeking someone with a passion for cyber security to join our team. As a SOC Analyst with Rapid7 you will work with Rapid7's advanced tools to investigate and triage high priority security events. Working with Rapid7's Tac ...


  • Raytheon Arlington, United States

    **Date Posted**: · **Country**: · United States of America · **Location**: · VA149: 1110 N Glebe Road Arlington 1110 North Glebe Road Suite 630, Arlington, VA, 22201 USA · **Position Role Type**: · Hybrid · You have been redirected to RTX's career page as we have recently transit ...


  • Raytheon Arlington, United States

    **Date Posted**: · **Country**: · United States of America · **Location**: · VA149: 1110 N Glebe Road Arlington 1110 North Glebe Road Suite 630, Arlington, VA, 22201 USA · **Position Role Type**: · Onsite · You have been redirected to RTX's career page as we have recently transit ...