Detection Engineer with Security Clearance
4 weeks ago
Primary Responsibilities
• Identify gaps in malicious activity detection capabilities
• Create new signatures / rules to improve detection of malicious activity
• Test and tune existing signatures / rules to ensure low rate of false positives
• Assist in playbook development for alert triage and Incident Response
• Define and implement alert and threat detection metrics, statistics, and analytics
• Recommend new tools/technologies to improve network visibility
• Support Incident Response and Forensic operations as required to include static/dynamic malware analysis and reverse engineering
• Author and maintain scripts for threat detection and automation Basic Qualifications
The Cyber Threat Detection Engineer SME shall have the following qualifications: • In-depth knowledge of Firewalls/Proxies/Intrusion Detection Systems/ Domain Name Servers/DHCP/VPN and other network technologies and tools
• Experience updating, maintaining, and creating IDS variables within a complex enterprise network
• Expert in creating, modifying, tuning IDS signatures/SIEM Correlation Searches/yara rules and/or other detection signatures
• Familiarity with disk based forensic methodologies, Windows, and Linux forensic artifacts
• Experience with Endpoint Detection and Response (EDR) tools such as Carbon Black, Tanium, Crowdstrike, etc
• Able to create, modify, update, and maintain Python and Powershell scripts that enhance endpoint detection capabilities
• In-depth knowledge of attacker tactics, techniques, and procedures
• Author, test, and maintain automation scripts within SOAR platform The candidate must currently possess a Secret Clearance. In addition to clearance requirement, all CBP personnel must have a current or be able to favorably pass a 5 year background investigation (BI). Required Education/Experience
BS degree in Science, Technology, Engineering, Math or related field and 8 years of prior relevant experience with a focus on cyber security or Masters with 6 years of prior relevant experience.
Should have 5 years of experience serving as a digital media analyst or as a computer forensic analyst.
Ability to work independently with minimal direction; self-starter/self-motivated Must Have One of the Following J3 Certifications
Tier 3 DMA:
GCIH – Incident Handler
GCFA – Forensic Analyst
GCFE – Forensic Examiner
GREM – Reverse Engineering Malware
GISF – Security Fundamentals
GXPN – Exploit Researcher and Advanced Penetration Tester
OSCP (Certified Professional)
OSCE (Certified Expert)
OSWP (Wireless Professional)
OSEE (Exploitation Expert)
CCFP – Certified Cyber Forensics Professional
CISSP – Certified Information Systems Security
CHFI – Computer Hacking Forensic Investigator
LPT – Licensed Penetration Tester
ECSA – EC-Council Certified Security Analyst
EnCE
Windows Forensic Examinations – FTK WFE-FTK
Computer Incident Responders Course - CIRC
Windows Forensic Examination – EnCase – Counter Intelligence (CI) - WFE-E-CI
Forensics and Intrusions in a Windows Environment -FIWE Preferred Qualifications
One of the following certifications:
SANS Global Information Assurance Certification (GIAC) Certified Intrusion Analyst (GCIA) SANS Global Information Assurance Certification (GIAC) Certified Forensic Analyst (GCFA)
SANS Global Information Assurance Certification (GIAC) Certified Network Forensic Analyst (GNFA)
Certified Information System Security Professional (CISSP)
-
Detection Engineer with Security Clearance
4 weeks ago
Ashburn, United States Base One Technologies Full timeRequired Education/ExperienceBS degree in Science, Technology, Engineering, Math or related field and 8 years of prior relevant experience with a focus on cyber security or Masters with 6 years of prior relevant experience. Should have 5 years of experience serving as a digital media Primary Responsibilities• Identify gaps in malicious activity detection...
-
Detection Engineer with Security Clearance
4 weeks ago
Ashburn, United States Base One Technologies Full timePrimary Responsibilities• Identify gaps in malicious activity detection capabilities• Create new signatures / rules to improve detection of malicious activity• Test and tune existing signatures / rules to ensure low rate of false positives• Assist in playbook development for alert triage and Incident Response• Define and implement alert and threat...
-
Systems Engineer with Security Clearance
4 weeks ago
Ashburn, United States Base One Technologies Full timeOur Ashburn VA based client is looking for a Systems Engineer. If you are qualified for this position, please email your updated resume in word format to Primary ResponsibilitiesPerform research on current threats and vulnerabilities. Will be responsible for authoring security advisories. Manage enterprise vulnerability compliance and will conduct...
-
Detection Engineer- Secret Cleared
3 weeks ago
Ashburn, United States Federal Staffing Solutions Inc. Full timeJob DescriptionJob DescriptionWe connect our employees with some of the best opportunities around.Time and time again, our employees tell us that the most important thing we offer is respect. Federal Staffing Solutions puts people to work in all types of jobs. When you work with us, you build a relationship with a team of employment professionals in your...
-
Cyber Threat Detection Engineer SME
3 weeks ago
Ashburn, United States CareerBuilder Full timeBS degree in Science, Technology, Engineering, Math or related field and 8 years of prior relevant experience with a focus on cyber security or Masters with 6 years of prior relevant experience. Should have 5 years of experience serving as a digital media Primary Responsibilities Identify gaps in malicious activity detection capabilities Create new...
-
Cyber Security Engineer with Security Clearance
4 weeks ago
Ashburn, United States Base One Technologies Full timeWork location: Ashburn VA222 - Senior Security Engineer Must Have One of the Following J3 Certifications Sr. Security Engineer:CompTIA Advanced Security Practitioner (CASP)GCIH – Incident HandlerGCWN – Windows Security AdministratorGISF – Security FundamentalsGISP – Security ProfessionalGSSP – Secure Software ProgrammerGICSP –Cyber Security...
-
VAT Analyst with Security Clearance
4 weeks ago
Ashburn, United States Base One Technologies Full timePrimary ResponsibilitiesPerform research on current threats and vulnerabilities. Will be responsible for authoring security advisories. Manage enterprise vulnerability compliance and will conduct vulnerability assessments of IT systems. This position location is Ashburn, Virginia Basic QualificationsNEW REQUIREMENT as of 6/27/2022: In addition to uploading...
-
Cyber Security Engineer with Security Clearance
4 weeks ago
Ashburn, United States Base One Technologies Full timeOur Ashburn VA based client is looking for a Splunk Engineer. If you are interested in this opening. Please forward a copy of your updated resume in word format to Work location: Ashburn VA222 - Senior Security Engineer (CBP) Must Have One of the Following J3 Certifications Sr. Security Engineer:CompTIA Advanced Security Practitioner (CASP)GCIH – Incident...
-
Security Engineer with Security Clearance
4 weeks ago
Ashburn, United States Base One Technologies Full timePrimary ResponsibilitiesThe Cyber Security Engineer will support the full system engineering life-cycle, including requirements analysis, design, development, test, implementation, maintenance, integration, and documentation of SOC infrastructure and SOC tool suite. The Senior Security Engineer will be installing, configuring, monitoring, and troubleshooting...
-
Ashburn, United States Base One Technologies Full timeOur Ashburn VA based client is looking for multiple Senior Incident Response Analyst. If you are qualified for this position, please email your updated resume in word format to Required Education/ExperienceA bachelor’s degree in Computer Science, Engineering, Information Technology, Cybersecurity, or related field PLUS 4 years of experience in incident...
-
Penetration Tester with Security Clearance
5 days ago
Ashburn, United States Anonymous Employer Full timePrimary Responsibilities • Perform internal and external pentest against systems to determine vulnerabilities and offer mitigation strategies. • Perform web app pentests • Perform vulnerability risk assessment • Perform physical pentests and social engineering • Perform cyber incident response as needed for programs Basic Qualifications Bachelors'...
-
Tier 2 IR Night Shift with Security Clearance
4 weeks ago
Ashburn, United States Base One Technologies Full timePrimary ResponsibilitiesNight Shift Back -Shift schedule: 7pm-7am, Thur-Sat, every other Wednesday.• Utilize state of the art technologies such as host forensics tools(FTK/Encase), Endpoint Detection & Response tools, log analysis (Splunk) and network forensics (full packet capture solution) to perform hunt and investigative activity to examine endpoint...
-
Penetration Tester with Security Clearance
4 weeks ago
Ashburn, United States Base One Technologies Full timePrimary ResponsibilitiesPerform internal and external pentest against systems to determine vulnerabilities and offer mitigation strategies.Perform web app pentestsPerform vulnerability risk assessmentPerform physical pentests and social engineeringPerform cyber incident response as needed for programs Basic QualificationsBachelors’ degree from an...
-
Penetration Tester with Security Clearance
4 weeks ago
Ashburn, United States Anonymous Employer Full timePrimary Responsibilities• Perform internal and external pentest against systems to determine vulnerabilities and offer mitigation strategies.• Perform web app pentests• Perform vulnerability risk assessment• Perform physical pentests and social engineering• Perform cyber incident response as needed for programs Basic QualificationsBachelors’...
-
Threat Hunt Analyst with Security Clearance
4 weeks ago
Ashburn, United States Base One Technologies Full timeThreat Hunt Analyst MidPrimary Responsibilities• Create Threat Models to better understand the Agency's IT Enterprise, identify defensive gaps, and prioritize mitigations• Author, update, and maintain SOPs, playbooks, work instructions• Utilize Threat Intelligence and Threat Models to create threat hypotheses• Plan and scope Threat Hunt Missions to...
-
Security Engineer with Security Clearance
2 weeks ago
Ashburn, United States Gridiron IT Solutions Full timeGridiron IT is seeking a Security Engineer local to Ashburn, VA with a active DHS CBP Tier 4 Public Trust or equivalent of DoD Secret and up. Gridiron IT is hiring a Security Engineer to support a federal customer located in Ashburn, VA. Two to three days will be working on site in the Ashburn facility and the other days will be...
-
Splunk Engineers with Security Clearance
4 weeks ago
Ashburn, United States Base One Technologies Full timeOur Ashburn VA based client is looking for Splunk Engineers. All Applicants must be US CITIZENS with active Secret /Top Secret Clearance. If you are qualified for these openings, please forward a copy of your updated resume in word format to Work location: Ashburn VA Must Have One of the Following J3 CertificationsCompTIA Advanced Security Practitioner...
-
Sr. Splunk Engineer with Security Clearance
4 weeks ago
Ashburn, United States Base One Technologies Full timeOur Ashburn VA based client is looking for a Senior Splunk Engineer. All applicants must be US CITIZENS with an active Secret or TS clearance. Must Have One of the Following J3 Certifications• CompTIA Advanced Security Practitioner (CASP)• GCIH – Incident Handler• GCWN – Windows Security Administrator• GISF – Security Fundamentals• GISP –...
-
Threat Hunt Analyst with Security Clearance
4 weeks ago
Ashburn, United States Gray Tier LLC Full timePrimary Responsibilities: The ideal Cyber Threat Hunter is someone who is process driven, curious, and enjoys identifying patterns and anomalies in data that are not immediately obvious. The Cyber Threat Hunter will:• Create Threat Models to better understand the CBP IT Enterprise, identify defensive gaps, and prioritize mitigations• Author, update, and...
-
Splunk Engineer with Security Clearance
4 weeks ago
Ashburn, United States Base One Technologies Full timeOur Ashburn VA based client is looking for Splunk Engineers. If you are qualified for this position, please email your updated resume in word format to Primary ResponsibilitiesThe candidate should be proficient with recognizing and on-boarding new data sources into Splunk, analyzing the data for anomalies and trends, and building dashboards highlighting the...