Detection Engineer with Security Clearance

4 weeks ago


Ashburn, United States Base One Technologies Full time
Our Ashburn VA based client is looking for a Detection Engineer. If you are qualified for this position. Please email me your updated resume in word format to Work location: Ashburn VA Detection Engineer
Primary Responsibilities
• Identify gaps in malicious activity detection capabilities
• Create new signatures / rules to improve detection of malicious activity
• Test and tune existing signatures / rules to ensure low rate of false positives
• Assist in playbook development for alert triage and Incident Response
• Define and implement alert and threat detection metrics, statistics, and analytics
• Recommend new tools/technologies to improve network visibility
• Support Incident Response and Forensic operations as required to include static/dynamic malware analysis and reverse engineering
• Author and maintain scripts for threat detection and automation Basic Qualifications
The Cyber Threat Detection Engineer SME shall have the following qualifications: • In-depth knowledge of Firewalls/Proxies/Intrusion Detection Systems/ Domain Name Servers/DHCP/VPN and other network technologies and tools
• Experience updating, maintaining, and creating IDS variables within a complex enterprise network
• Expert in creating, modifying, tuning IDS signatures/SIEM Correlation Searches/yara rules and/or other detection signatures
• Familiarity with disk based forensic methodologies, Windows, and Linux forensic artifacts
• Experience with Endpoint Detection and Response (EDR) tools such as Carbon Black, Tanium, Crowdstrike, etc
• Able to create, modify, update, and maintain Python and Powershell scripts that enhance endpoint detection capabilities
• In-depth knowledge of attacker tactics, techniques, and procedures
• Author, test, and maintain automation scripts within SOAR platform The candidate must currently possess a Secret Clearance. In addition to clearance requirement, all CBP personnel must have a current or be able to favorably pass a 5 year background investigation (BI). Required Education/Experience
BS degree in Science, Technology, Engineering, Math or related field and 8 years of prior relevant experience with a focus on cyber security or Masters with 6 years of prior relevant experience.
Should have 5 years of experience serving as a digital media analyst or as a computer forensic analyst.
Ability to work independently with minimal direction; self-starter/self-motivated Must Have One of the Following J3 Certifications
Tier 3 DMA:
GCIH – Incident Handler
GCFA – Forensic Analyst
GCFE – Forensic Examiner
GREM – Reverse Engineering Malware
GISF – Security Fundamentals
GXPN – Exploit Researcher and Advanced Penetration Tester
OSCP (Certified Professional)
OSCE (Certified Expert)
OSWP (Wireless Professional)
OSEE (Exploitation Expert)
CCFP – Certified Cyber Forensics Professional
CISSP – Certified Information Systems Security
CHFI – Computer Hacking Forensic Investigator
LPT – Licensed Penetration Tester
ECSA – EC-Council Certified Security Analyst
EnCE
Windows Forensic Examinations – FTK WFE-FTK
Computer Incident Responders Course - CIRC
Windows Forensic Examination – EnCase – Counter Intelligence (CI) - WFE-E-CI
Forensics and Intrusions in a Windows Environment -FIWE Preferred Qualifications
One of the following certifications:
SANS Global Information Assurance Certification (GIAC) Certified Intrusion Analyst (GCIA) SANS Global Information Assurance Certification (GIAC) Certified Forensic Analyst (GCFA)
SANS Global Information Assurance Certification (GIAC) Certified Network Forensic Analyst (GNFA)
Certified Information System Security Professional (CISSP)

  • Ashburn, United States Base One Technologies Full time

    Required Education/ExperienceBS degree in Science, Technology, Engineering, Math or related field and 8 years of prior relevant experience with a focus on cyber security or Masters with 6 years of prior relevant experience. Should have 5 years of experience serving as a digital media Primary Responsibilities• Identify gaps in malicious activity detection...


  • Ashburn, United States Base One Technologies Full time

    Primary Responsibilities• Identify gaps in malicious activity detection capabilities• Create new signatures / rules to improve detection of malicious activity• Test and tune existing signatures / rules to ensure low rate of false positives• Assist in playbook development for alert triage and Incident Response• Define and implement alert and threat...


  • Ashburn, United States Base One Technologies Full time

    Our Ashburn VA based client is looking for a Systems Engineer. If you are qualified for this position, please email your updated resume in word format to Primary ResponsibilitiesPerform research on current threats and vulnerabilities. Will be responsible for authoring security advisories. Manage enterprise vulnerability compliance and will conduct...


  • Ashburn, United States Federal Staffing Solutions Inc. Full time

    Job DescriptionJob DescriptionWe connect our employees with some of the best opportunities around.Time and time again, our employees tell us that the most important thing we offer is respect. Federal Staffing Solutions puts people to work in all types of jobs. When you work with us, you build a relationship with a team of employment professionals in your...


  • Ashburn, United States CareerBuilder Full time

    BS degree in Science, Technology, Engineering, Math or related field and 8 years of prior relevant experience with a focus on cyber security or Masters with 6 years of prior relevant experience. Should have 5 years of experience serving as a digital media Primary Responsibilities Identify gaps in malicious activity detection capabilities Create new...


  • Ashburn, United States Base One Technologies Full time

    Work location: Ashburn VA222 - Senior Security Engineer Must Have One of the Following J3 Certifications Sr. Security Engineer:CompTIA Advanced Security Practitioner (CASP)GCIH – Incident HandlerGCWN – Windows Security AdministratorGISF – Security FundamentalsGISP – Security ProfessionalGSSP – Secure Software ProgrammerGICSP –Cyber Security...


  • Ashburn, United States Base One Technologies Full time

    Primary ResponsibilitiesPerform research on current threats and vulnerabilities. Will be responsible for authoring security advisories. Manage enterprise vulnerability compliance and will conduct vulnerability assessments of IT systems. This position location is Ashburn, Virginia Basic QualificationsNEW REQUIREMENT as of 6/27/2022: In addition to uploading...


  • Ashburn, United States Base One Technologies Full time

    Our Ashburn VA based client is looking for a Splunk Engineer. If you are interested in this opening. Please forward a copy of your updated resume in word format to Work location: Ashburn VA222 - Senior Security Engineer (CBP) Must Have One of the Following J3 Certifications Sr. Security Engineer:CompTIA Advanced Security Practitioner (CASP)GCIH – Incident...


  • Ashburn, United States Base One Technologies Full time

    Primary ResponsibilitiesThe Cyber Security Engineer will support the full system engineering life-cycle, including requirements analysis, design, development, test, implementation, maintenance, integration, and documentation of SOC infrastructure and SOC tool suite. The Senior Security Engineer will be installing, configuring, monitoring, and troubleshooting...


  • Ashburn, United States Base One Technologies Full time

    Our Ashburn VA based client is looking for multiple Senior Incident Response Analyst. If you are qualified for this position, please email your updated resume in word format to Required Education/ExperienceA bachelor’s degree in Computer Science, Engineering, Information Technology, Cybersecurity, or related field PLUS 4 years of experience in incident...


  • Ashburn, United States Anonymous Employer Full time

    Primary Responsibilities • Perform internal and external pentest against systems to determine vulnerabilities and offer mitigation strategies. • Perform web app pentests • Perform vulnerability risk assessment • Perform physical pentests and social engineering • Perform cyber incident response as needed for programs Basic Qualifications Bachelors'...


  • Ashburn, United States Base One Technologies Full time

    Primary ResponsibilitiesNight Shift Back -Shift schedule: 7pm-7am, Thur-Sat, every other Wednesday.• Utilize state of the art technologies such as host forensics tools(FTK/Encase), Endpoint Detection & Response tools, log analysis (Splunk) and network forensics (full packet capture solution) to perform hunt and investigative activity to examine endpoint...


  • Ashburn, United States Base One Technologies Full time

    Primary ResponsibilitiesPerform internal and external pentest against systems to determine vulnerabilities and offer mitigation strategies.Perform web app pentestsPerform vulnerability risk assessmentPerform physical pentests and social engineeringPerform cyber incident response as needed for programs Basic QualificationsBachelors’ degree from an...


  • Ashburn, United States Anonymous Employer Full time

    Primary Responsibilities• Perform internal and external pentest against systems to determine vulnerabilities and offer mitigation strategies.• Perform web app pentests• Perform vulnerability risk assessment• Perform physical pentests and social engineering• Perform cyber incident response as needed for programs Basic QualificationsBachelors’...


  • Ashburn, United States Base One Technologies Full time

    Threat Hunt Analyst MidPrimary Responsibilities• Create Threat Models to better understand the Agency's IT Enterprise, identify defensive gaps, and prioritize mitigations• Author, update, and maintain SOPs, playbooks, work instructions• Utilize Threat Intelligence and Threat Models to create threat hypotheses• Plan and scope Threat Hunt Missions to...


  • Ashburn, United States Gridiron IT Solutions Full time

    Gridiron IT is seeking a Security Engineer local to Ashburn, VA with a active DHS CBP Tier 4 Public Trust or equivalent of DoD Secret and up. Gridiron IT is hiring a Security Engineer to support a federal customer located in Ashburn, VA. Two to three days will be working on site in the Ashburn facility and the other days will be...


  • Ashburn, United States Base One Technologies Full time

    Our Ashburn VA based client is looking for Splunk Engineers. All Applicants must be US CITIZENS with active Secret /Top Secret Clearance. If you are qualified for these openings, please forward a copy of your updated resume in word format to Work location: Ashburn VA Must Have One of the Following J3 CertificationsCompTIA Advanced Security Practitioner...


  • Ashburn, United States Base One Technologies Full time

    Our Ashburn VA based client is looking for a Senior Splunk Engineer. All applicants must be US CITIZENS with an active Secret or TS clearance. Must Have One of the Following J3 Certifications• CompTIA Advanced Security Practitioner (CASP)• GCIH – Incident Handler• GCWN – Windows Security Administrator• GISF – Security Fundamentals• GISP –...


  • Ashburn, United States Gray Tier LLC Full time

    Primary Responsibilities: The ideal Cyber Threat Hunter is someone who is process driven, curious, and enjoys identifying patterns and anomalies in data that are not immediately obvious. The Cyber Threat Hunter will:• Create Threat Models to better understand the CBP IT Enterprise, identify defensive gaps, and prioritize mitigations• Author, update, and...


  • Ashburn, United States Base One Technologies Full time

    Our Ashburn VA based client is looking for Splunk Engineers. If you are qualified for this position, please email your updated resume in word format to Primary ResponsibilitiesThe candidate should be proficient with recognizing and on-boarding new data sources into Splunk, analyzing the data for anomalies and trends, and building dashboards highlighting the...