Our DC based client is looking for Cyber Forensics and Malware A with Security Clearance

3 weeks ago


Wash, United States Base One Technologies Full time
Our DC based client is looking for Cyber Forensics and Malware Analyst. If you are qualified for this position, please email your updated resume in word format to The Cyber Forensics and Malware Analyst (CFMA) team provide support during core business hours (7am – 7pm), Monday thru Friday. Flexible start times are considered. Participates in rotating on call schedule. Primary Responsibilities
• Help define requirements and identify gaps for performing remote compromise assessments
• Perform as a senior analyst and liaison between the customer and ESOC while performing remote assessments
• Conduct malware analysis using static and dynamic methodologies (e.g. debuggers [Ollydbg], disassembler [IDA Pro], sandbox execution, etc)
• Produce malware reports to disseminate to the watch floor and enterprise
• Capture forensic artifacts such as memory and disk images
• Work with the Splunk team to implement, enhance, or change existing use cases
• Pivot on the forensic data working with the Cyber Threat Intelligence team to determine if the malware is part of a larger campaign, how DHS is being targeted and take any further remediation required
• Lead remote compromise assessments and produce final assessment report
• Perform live box and dead box forensics to identify compromise and attack vector
• Provide input for SOC improvement and identify visibility gaps for enterprise monitoring
• Deploy and configure network sensors (Suricata), manage Linux VMs (Security Onion, Ubuntu, CentOS), and maintain a small network
• Potentially travel to other DHS locations (1-3 times/year) to support Incident Response investigations
• Develop and maintain SOPs and ROE templates Basic Qualifications
Requires a minimum of a Bachelors degree in Computer Science, Engineering, Information Technology, Cybersecurity, or related field AND eight (8) years of professional experience in incident detection and response, malware analysis, or cyber forensics.
Of the eight (8) years of professional experience requirements above, Cyber Forensics and Malware Analyst candidates shall have at least one (1) of the following specialized experience for their position:
• Digital Media Forensics Analyst: Candidates shall have a minimum of five (5) years of professional experience performing digital media forensic analysis, static malware code disassembly/analysis, and/or runtime malware code analysis.
• Incident Response Analyst: Candidates shall have a minimum of five (5) years of professional experience responding to information system security incidents. Ability to use the DHS furnished toolset to identify and determine root causes of incidents and provide any required documentation and possible evidence to security investigators. Must have TS/SCI. In addition to specific security clearance requirements, all Department of Homeland Security SOC employees are required to obtain an Entry on Duty (EOD) clearance to support this program. Must have at least one of the following certifications: • SANS GIAC:GCIA, GCFA, GPEN, GWAPT, GCFE, GREM, GXPN, GMON, GISF, or GCIH
• ISC2: CCFP, CCSP, CISSP CERT CSIH
• EC Council: CHFI, LPT, ECSA
• Offensive Security: OSCP, OSCE, OSWP and OSEE
• EnCase: EnCE
• Defense Cyber Investigative Training Academy: FTK WFE-FTK, CIRC, WFE-E-CI, FIW Preferred Qualifications
• Experience in supporting malware analysis and forensics in cyber operations, and/or federal law enforcement.
• Understand and utilize Threat Intel Frameworks (e.g. Cyber Kill Chain, MITRE ATT&CK, Diamond Model)
• Network tool (e.g. network tap, IDS sensors, etc) configuration for on-site assessment
• Hands-on experience with Enase, FTK, FireEye HX, volatility, Security Onion, Suricata, Gigamon, VMWare ESXi, Splunk
• Signature (e.g. Snort, Yara, Suricata) development/tuning
• Expert knowledge in host-based analysis/forensics
• Proficient in performing timeline analysis and extracting artifacts from digital media
• Experienced reverse engineering and analyzing malware and developing a malware analysis report
• Ability to perform in-depth network forensics
• Develop and implement hunt methodologies for fly away assessments and for the SOC
• Proficient in one more of the following computer languages Python, Bash, Visual Basic or Powershell in order to support cyber threat detection or reporting
• Extensive knowledge about network ports and protocols (e.g. TCP/UDP, HTTP, ICMP, DNS, SMTP, etc)
• Experienced with network topologies and network security devices (e.g. Firewall, IDS/IPS, Proxy, DNS, WAF, etc).
• Proficient working in a Windows and Linux operating system Potential for Telework: YES
Clearance Level Required: Top Secret/SCI
Travel: No
Scheduled Weekly Hours: 40 Shift: Day

  • Wash, United States Base One Technologies Full time

    Our Stennis, MS, DC metro and Ashburn VA based client is looking for Cyber Threat Hunter Lead. If you are qualified for this position, please email your updated resume in word format to Cyber Threat Hunter LeadRequired Education/ExperienceThe candidate must possess an active TS/SCI Clearance. In addition to clearance requirement, all DHS personnel must...


  • Wash, United States Base One Technologies Full time

    Required Education/ExperienceThe candidate must possess an active TS/SCI Clearance. In addition to clearance requirement, all DHS personnel must obtain an EOD. BS degree in Science, Technology, Engineering, Math or related field and 12+ years of prior relevant experience with a focus Primary ResponsibilitiesCreate Threat Models to better understand the DHS...


  • Wash, United States Base One Technologies Full time

    Threat Hunt Analyst Jr Primary ResponsibilitiesThe ideal Cyber Threat Hunter is someone who is process driven, curious, and enjoys identifying patterns and anomalies in data that are not immediately obvious. The Cyber Threat Hunter will:• Create Threat Models to better understand the CBP IT Enterprise, identify defensive gaps, and prioritize mitigations•...


  • Wash, United States Base One Technologies Full time

    Our Washington DC based client is looking for a Sr. Security Engineer. All applicants must be US CITIZENS with an active secret clearance. Primary responsibilities • The Sec/DevOps engineer will gather requirements, design, codify, integrate and implement secure solutions that support business functionality as well as the underlying infrastructure required...


  • Wash, United States Base One Technologies Full time

    Our Washington DC Metro based client is looking for a Cyber Security Lead / Analyst. Local candidates are preferred. In person meeting is required prior hiring. US CITIZENSHIP & ACTIVE TOP SECRET CLEARANCE ARE REQUIRED for this position. Work location: St. Elizabeth Campus DC Metro Qualifications: •8-10 years of information security management experience,...


  • Wash, United States Base One Technologies Full time

    Our DC Metro based client is looking for a Cyber Security Subject Matter Expert/ SOC Lead. This position requires an active Secret. If you are qualified for this position. Please email me your updated resume in word format to Work location:St. Elizabeths Campus, Washington, DC We are looking for a Cyber Security Subject Matter Expert/ SOC Lead that will...


  • Wash, United States Base One Technologies Full time

    Our Washington DC metro based client is looking for a DevSecOps Engineer. If you are interested in this opening. Please forward a copy of your updated resume in word format to The DevSecOps Engineer will gather requirements, design, codify, integrate and implement secure solutions that support business functionality as well as the underlying infrastructure...


  • Wash, United States Base One Technologies Full time

    Our DC Metro based client is looking for Senior Security Engineer Lead . If you are qualified for this position, please email your updated resume in word format to Primary Responsibilities:• Provide leadership, coaching, and mentorship to infrastructure team members• Conceptualize, Design, Build, and Maintain current and future NOSC supported tools and...


  • Wash, United States Softek International Inc. Full time

    RESPONSIBILITIESCreate and maintain dashboards and reports for all necessary cybersecurity functions utilizing CDM dashboard, Splunk, Crystal Reports, Power BI, or other authorized platformsCreate a draft and a final version of the cybersecurity report by coordinating, consolidating, and collecting the data and reports from multiple sources (i.e., SERR,...


  • Wash, United States Base One Technologies Full time

    Our DC metro based client is looking an Senior Security Engineer. If you are qualified for this opening. Please forward a copy of your updated resume in word format to . Preferred QualificationCASP, GCIH, GCWN, GISF, GISP, GSSP, GICSP, GSSP, SEI, CISSP, CCSP, CSSLP, SSCP, CCNP, CCNP Security, CCIE Security, ECSP, MCSE, RHCA, RHCE, VCP, VCAP, VCIX, VCDX...


  • Wash, United States Base One Technologies Full time

    Our DC Metro based client is looking for a Sr. Information Assurance Subject Matter Expert. This position requires an active Top Secret. If you are qualified for this position. Please email me your updated resume in word format to Work location:St. Elizabeths Campus, Washington, DC Sr. Information Assurance Subject Matter Expert Responsibilities:•...


  • Wash, United States Base One Technologies Full time

    Our DC metro based client is looking for a Cloud Security SME/Architect. Local candidates are preferred. In person meeting is required prior hiring. US CITIZENSHIP AND ACTIVE SECRET OR TS ARE required for this opening. Job Description •Design and develop security architectures for cloud and cloud/hybrid based systems. Possess a firm understanding of the...


  • Wash, United States RSCY Consultants, LLC Full time

    Field InvestigatorLocation: Washington, DC (499 South Capitol Street, SE)Clearance: DoD SecretSalary: $70,000 to $79,000 with a Commuter Stipend. Seeking an experienced professional to work as a Field Investigator to conduct full-scope background investigations on sworn and civilian applicants as assigned by the agency’s Background Investigations...


  • Wash, United States Base One Technologies Full time

    Our DC Metro based client is looking for a DevSecOps Engineer. If you are interested in this opening. Please forward a copy of your updated resume in word format to Primary Responsibilities• Develop, document, and implement CI/CD strategy for management of Infrastructure as Code (IaC) baseline• Develop and document shared infrastructure component...


  • Wash, United States Base One Technologies Full time

    Our DC Metro based client is looking for a Cloud System Engineer. This position requires an active Top Secret with SCI. If you are qualified and interested in this opening, please email your updated resume in word format to Job Description:The team is involved in the deployment and maintenance of multiple operational cloud deployed solutions. The candidate...


  • Wash, United States Base One Technologies Full time

    Required Education/ExperienceBS degree in Science, Technology, Engineering, Math or related field and 12 – 15 years of prior relevant experience with a focus on cyber security or Masters with 10 – 13 years of prior relevant experience. Required Security Clearance: Active TS/SCIPrimary Responsibilities• Conceptualize, Design, Build, and Maintain current...


  • Wash, United States Base One Technologies Full time

    Primary Responsibilities• Conceptualize, design, build, and maintain current and future NOSC supported tools and platforms• Manage multiple assignments, changing priorities, and work independently with little oversight• Support all support, guidance and develop processes to evaluate and improve all operating systems, hardware support, software,...


  • Wash, United States Base One Technologies Full time

    This position will provide support for maintaining and enhancing infrastructure as well as the day to maintenance and helpdesk support for troubleshooting applications on the workstations. Location: Washington, DCTravel Required: Yes, 10% of the timeShift: Standard Plus On CallPotential for Telework: NoClearance: Top Secret/SCI Primary Responsibilities•...


  • Wash, United States Esphera Concepts LLC Full time

    Esphera Concepts has an immediate opening for a Program Budget Analyst. Under general direction and federal oversight this employment opportunity assists the Department of Energy (DOE), National Nuclear Security Administration (NNSA), Defense Programs (DP), Office of Stockpile Sustainment (NA-122), Stockpile Services Division (NA-122.1) assigned federal...


  • Wash, United States Base One Technologies Full time

    Our client is seeking a broadly experienced TS/SCI cleared candidate to provide Tier 1 and 2 support for multiple domains with users locally and remotely. Excellent communications and ability to support VIP and VVIP customers. Working with Active Directory and Exchange to create/modify/terminate accounts. Troubleshooting workstation, printers, and other...