Jobs
>
New Carrollton

    Threat Hunter - New Carrollton, United States - Piper Companies

    Piper Companies
    Piper Companies New Carrollton, United States

    3 weeks ago

    Default job background
    Description
    Zachary Piper Solutions is in search of an

    Incident Response Analyst - Threat Hunter

    for a legacy project supporting the IRS, with a focus on safeguarding the IRS Network and its associated data/assets. This role, based in

    New Carrollton, MD , operates in a

    hybrid (1 day/week onsite)

    capacity within the IRS Computer Security Response Center (CSIRC).

    Responsibilities of the Treat Hunter:
    Establishing normalized traffic and data flow baselines for anomaly identification.
    Developing technical theories based on threat intelligence.
    Identifying adversary techniques, tactics, and procedures through behavior pattern analysis.
    Demonstrating comprehensive knowledge of threat vectors and their implications on cybersecurity risks for the federal government.


    Qualifications of the Threat Hunter:
    Incident Handling Experience working in SOC/CIRT Environment (Not Screen Watchers)Proficiency in Splunk Search Processing Language (SPL) for query execution.
    Hands on (in a production environment) experience in Packet Capture (PCAP) Analysis.3-4 years of relevant professional experience.

    Ability to secure an IRS Public Trust security clearanceCitizenship:
    United States Citizenship requiredPreferred Qualifications (not required):

    Attacker methodology, Red Team, and Penetration testingExperience using a scripting language to solve Cyber Security challenges. (Python preferred)

    Ability to Correlate Logs from multiple sources- Log Analysis, Correlation Rules, etc.
    SANS GIAC Certified- with analyzing malware and extracting indicators/call outExtracurricular experience is huge bonus points. E.g.- Capture the Flag competitions, Hack The Box, Cyber Club in College, home lab cyber practice to further skills in the fieldCompensation for the Threat Hunter:


    Salary:
    $75,000 - $85,000/ year (depending on experience)

    Term:
    long term contractBenefits: Cigna Medical, Dental, Vision, 401K, 2 weeks Paid Time Off (PTO)

    Work Location:
    Hybrid - 1x day per week at IRS in New Carrollton, MDShift: 6am-2pm

    Keywords:

    Cybersecurity, Incident Response, Splunk, Packet Capture, Network Forensics, Threat Hunting, Intrusion Detection, Log Analysis, SIEM (Security Information and Event Management), Malware Analysis, Network Traffic Analysis, Forensic Analysis, Threat Intelligence, Security Operations Center (SOC), Vulnerability Assessment, IDS/IPS (Intrusion Detection System/Intrusion Prevention System), PCAP Analysis, Network Security, Anomaly Detection, Endpoint Detection and Response (EDR), Cyber Threats, Cyber Attack, Threat Mitigation, Forensic Investigation, Digital Forensics, Security Incident, Data Breach, Advanced Persistent Threat (APT), Insider Threat, Security Policies, Compliance Management, Security Architecture, Security Operations, Incident Handling, Network Security Monitoring (NSM), Security Awareness Training, Security Risk Assessment, Threat Intelligence Platforms (TIP), Security Analytics, Insider Threat Detection, splunk, Splunk, cyber, cyber security, incident response, IR, threat hunter, threating hunting, IDS tools, IDS, PCAP, packet capture analysis, Wireshark, WireShark, Snort, Configures, implements, troubleshoots, Virtual Local Area Networks, Access Control Lists, 802.

    1x port-based network access control, Virtual Private Networks, Network Time Protocol, Simple Network Management Protocol version 3, Remote Authentication Dial-In User Service, Dynamic Host Configuration Protocol, Microsoft's Network Policy Server, and General Dynamics' GEM One Encryptor Manager, cisco, network admin, network engineer, NetOps, NetworkOps, Net Ops, network operations, CASP, CISA, CISSP, CCNP, CCNA, transitioning veteran, veteran, IT, military, army, navy, national guard, data integrator, data scientist, terraform, AWS, Azure, Google Cloud, cloud, migration, consulting, engineer, CloudFormation, Solutions, infrastructure, functionality, SQL DBA, SQL, SQL database, MS SQL Server, MS SQL, Microsoft SQL, Tableau, Power BI, Crystal, Crystal Reports, SQL Server Report Builder, MS SSRS, SSRS, Database administrator, SQL, DBA, Windows, ACAS, STIG's, STIGS, HBSS, server, server maintenance, Sec+, Security+, IAT, CompTIA, certification, Active Directory, Powershell, scri[ting, windows deployment server, WDS, AD, PKI, Smart Card Login, Windows 2016, Windows 2010, desktop, DevOps, dev ops, fsp, fullscope, full-scope, polygraph, poly, databricks, AWS, YAML, python, java, EC2, S3, cloud formation, Nifi, Pentaho, Apache airflow, UI/UX, Lifecycle, Jenkins, Git, Puppet, DOD, Secret, Top Secret, SAS, R Studio, SPSS, Python, Power BI, Secret Cleared, Top Secret Cleared, TS/SCI Cleared, Laboratory, Data, Data gathering science, DHA, public health, health science, DoD, Department of Defense, Life Cycle Sustainment Plan, Acquisition Strategy, Simplified Acquisition Management Plan, Level of Repair Analysis, Source of Repair Analysis, Logistics Demonstration Planning and Execution, Product Support Package, Technical Manual Development and Finalization, Equipment Standardization, Memorandum of Agreements/Understanding, CDRL Reviews, Property Accountability of all GFE, APSR System updates, IUID Plan, biometrics, life cycle sustainment, life cycle, DoD, CPI, secret clearance, secret, SF, military, accounting, audit readiness, Finance, fund receipt, audit, auditor, financial, financial analyst, Disbursement, Military Pay, Civilian Pay, Travel Pay, Reimbursement Budget Authority and Execution, Contract Pay, Vendor Pay, Data Analysis, Machine Learning Engineer, Data Architect, Military Health, Data Operations Engineer, epidemiologist, disease control, COVID-19, Data Mining, Data Warehousing, Data Modeling, Data Visualization, DoD, CISA, security controls assessor, security control, security, CISSP, CISM, MCSE, CAP,


    FISMA regulation, FIPS standards, NIST 800 series, NIST Special Publications, Risk Management Framework, IT security, infrastructure, vulnerability assessment, reporting, firewalls, VPN, Data Loss Prevention, IDS/IPS, Web-Proxy, security audits, .Net, .net, SQL, server, framework, Kendo UI, query, data, integration, deduplication, interface, SAFe, agile, reconciliation, jira, confluence, COTS, OS patching, VersionOne, NetApp, Linux, linux, windows, Windows, Cloud, Commvault, active directory, Ansible, Jenkins, AccuRev, Gitlab Teradici, PCoIP, scripting, remote display protocols, sharepoint, SharePoint, Sharepoint, .NET, C#, developer, virtual machines, VMware VCenter hypervisor, Citrix XenDesktop, XenApp, Desktop Director, systems engineer, engineer, system, systems, systems engineering, citrix, Citrix, secret, system admin, administator, systems administrator, contracts, contract, contracts specialist, contract specialist, procurement, PD2, procurement desktop, technical writing, technical editor, editor, cybersecurity, cyber security, secret, TS, Top Secret, top secret, sci, clearance, government, DARPA, TS/SCI, DHS, federal, technical writer, business analyst, CONOPS, SOPs, standard operating procedures, sec+, security+, ITIL, ITILV4, adobe, Microsoft office, MS, .NET Framework, C#, AngularJS, Hyper Text Markup Language HTML, AJAX, ASP.

    NET, XML, JavaScript, Jquery, CSS, Microsoft SharePoint Designer, SharePoint Workflows, Web Services, REST, Keyword Query Language, KQL, SharePoint Server, Internet Information Server, IISsuite, SCI, sensitive compartmented information, operation procedures, mission notes, editing, 508 compliance, documentation, cyber, APT, advanced persistent threat, incident management, incident response, concept of operations mitigation plan, incident response, PTO, Arlington, Virginia, on-site, onsite, on site, benefits, 401k, medical, homeland security, DOD, ci polygraph, counterintelligence, cyber intelligence, cyber investigation, cybersecurity investigation, PTO, technical writing, technical writer, business analyst, technical analyst, technology write, air force, digital forensics, project management, jira, army, military, Patrick space force base, Patrick SFB, SFB, Lompoc, California, CA, cocoa beach, satellite beach, space, research, technology research, technical investigations, secret clearance, ts/sci, top secret, ts, secret clearance, dod, clearance, clearance, cloud project, aws, azure, veterans, retired veterans, #LI-AC3
    #J-18808-Ljbffr

  • Zachary Piper Solutions

    Cyber Threat Hunter

    2 weeks ago


    Zachary Piper Solutions New Carrollton, United States

    Zachary Piper Solutions is currently seeking a Public-Trust cleared Cyber Threat Analyst/Hunter to support a government client. The Public-Trust cleared Cyber Threat Analyst/Hunter will be utilizing security tools to analyze network data and protect from cyber threats and attac ...

  • Leidos

    Cyber Threat Hunter

    2 days ago


    Leidos Adelphi, United States Full time

    Description · The Defensive Cyber Solutions Branch (DCSB), Security Operations Center (SOC) Cyber is a US Government program responsible to prevent, identify, contain and eradicate cyber threats to DCSB customer networks through monitoring, intrusion detection and protective sec ...

  • cFocus Software Incorporated

    Cyber Threat Hunter

    2 weeks ago


    cFocus Software Incorporated Washington, United States

    Job Description · Job DescriptioncFocus Software seeks a Cyber Threat Hunter (Senior) to join our program supporting United States Courts, Information Technology Security Office in Washington, DC. This position requires US Citizenship and the ability to obtain a Public Trust clea ...

  • cFocus Software Incorporated

    Cyber Threat Hunter

    3 weeks ago


    cFocus Software Incorporated Washington, United States

    cFocus Software seeks a Cyber Threat Hunter (Mid-Level) to join our program supporting United States Courts, Information Technology Security Office in Washington, DC. This position requires US Citizenship and the ability to obtain a Public Trust clearance. · **Qualifications**: · ...


  • Base One Technologies San Francisco, United States Permanent

    Required Education/Experience · The candidate must possess an active TS/SCI Clearance. In addition to clearance requirement, all DHS personnel must obtain an EOD. BS degree in Science, Technology, Engineering, Math or related field and 8+ years of prior relevant experience with a ...


  • ManTech Washington, United States Paid Work

    Secure our Nation, Ignite your Future · Become an integral part of a diverse team while working at an Industry Leading Organization, where our employees come first. At ManTech International, you'll help protect our national security while working on innovative projects that offer ...


  • Base One Technologies San Francisco, United States Permanent

    Our Stennis, MS, DC metro and Ashburn VA based client is looking for Cyber Threat Hunter Lead. If you are qualified for this position, please email your updated resume in word format to Cyber Threat Hunter Lead · Required Education/Experience · The candidate must possess an activ ...


  • Base One Technologies San Francisco, United States Permanent

    Our client is seeking Cyber Forensics Analysts to support the Govt Hunt and Incident Response Team. This team secures the Nation's cyber and communications infrastructure while providing front line response for cyber incidents and hunting for malicious cyber activity. Contract pe ...


  • MissionSquare Retirement Washington, United States

    Join a great place to work with MissionSquare Retirement, a FINANCIAL SERVICES LEADER in public sector employee retirement products and services. Headquartered in Washington, DC, MissionSquare Retirement was founded to provide portable retirement benefits for city and county mana ...


  • Base One Technologies San Francisco, United States Permanent

    Required Education/Experience · The candidate must possess an active TS/SCI Clearance. In addition to clearance requirement, all DHS personnel must obtain an EOD. BS degree in Science, Technology, Engineering, Math or related field and 12+ years of prior relevant experience with ...


  • Zachary Piper Solutions Bowie, United States

    Zachary Piper Solutions is seeking aIncident Response Analyst to join a long-term, classified federal program in New Carrollton, MD. This is a hybrid position that requires 1 day per week onsite. The Incident Response Analyst will be responsible for protecting the network and all ...


  • Booz Allen Hamilton Washington, United States Full time

    Cyber Machine Learning EngineerThe Opportunity: · Are you excited at the prospect of unlocking the secrets held by a data set? Are you fascinated by the possibilities presented by the IoT, machine learning, and artificial intelligence advances? In an increasingly connected world, ...

  • Edgewater Federal Solutions, Inc.

    2024-3231

    3 weeks ago


    Edgewater Federal Solutions, Inc. Washington, United States

    Edgewater Federal Solutions is currently seeking a Senior Threat Hunter to provide advanced threat hunting expertise and support to maximize cyber fusion throughout the Client's SOC, ensuring the Client's infrastructure and operations remain safe and secure from the full spectrum ...

  • SAIC

    Cyber Threat

    1 week ago


    SAIC Chantilly, United States

    Description · SAIC is seeking Cyber Threat & Vulnerability Hunter to join its Blue Team Vulnerability Assessment Program in Chantilly, Virginia. This position requires an active TS/SCI Clearance with Polygraph. · Positional Overview: · Perform technical reviews and analysis of n ...


  • CACI Fort Belvoir, United States

    Counter Threat Network Intelligence AnalystJob Category: IntelligenceTime Type: Full timeMinimum Clearance Required to Start: TS/SCIEmployee Type: Regular-Rotational TravelerPercentage of Travel Required: Up to 10%Type of Travel: Local* * *What You'll Get to Do: · As a CACI-Wexfo ...

  • Huntress

    Staff Product Manager

    2 weeks ago


    Huntress Ellicott City, United States

    Staff Product Manager - EDR · at Huntress Remote US Reports To: Interim CPO (when hired, Portfolio Leader for EDR) · Location: Remote US · Compensation: $180,000.00 to $220,000.00 base plus bonus and equity · What We Do: · Founded in 2015 as a fully remote company by forme ...


  • Huntress Ellicott City, United States

    Senior Salesforce Administrator · at Huntress Remote US Reports to: Vice President of Revenue Operations · Location: Remote US · Compensation Range: $160,000 to $175,000 base plus bonus and equity · What We Do: · Founded in 2015 as a fully remote company by former NSA cyb ...


  • Clarion Security Arlington, United States

    Clarion Security is seeking candidates for a Business Development Manager (BMD) to join our sales team based in the fast-growing Dallas branch. The mission of the BDM is to sell security officer and technology hybrid services to commercial and government properties for the new Da ...


  • Palo Alto Networks Reston, United States

    Company Description · Our Mission · At Palo Alto Networks everything starts and ends with our mission: · Being the cybersecurity partner of choice, protecting our digital way of life. · Our vision is a world where each day is safer and more secure than the one before. We are a co ...


  • Nightwing Arlington, United States

    Date Posted: · Country: · United States of America · Location: · VA149: 1110 N Glebe Road Arlington 1110 North Glebe Road Suite 630, Arlington, VA, 22201 USA · Position Role Type: · Hybrid · You have been redirected to RTXs career page as we have recently transitioned from ...