Threat Hunter with Security Clearance

4 weeks ago


Washington DC United States Base One Technologies Full time
Required Education/Experience
The candidate must possess an active TS/SCI Clearance
In addition to clearance requirement, all DHS personnel must obtain an EOD
BS degree in Science, Technology, Engineering, Math or related field and 8+ years of prior relevant experience with a focus Primary Responsibilities
• Create Threat Models to better understand the DHS IT Enterprise, identify defensive gaps, and prioritize mitigations
• Author, update, and maintain SOPs, playbooks, work instructions
• Utilize Threat Intelligence and Threat Models to create threat hypotheses
• Plan and scope Threat Hunt Missions to verify threat hypotheses
• Proactively and iteratively search through systems and networks to detect advanced threats
• Analyze host, network, and application logs in addition to malware and code
• Prepare and report risk analysis and threat findings to appropriate stakeholders
• Create, recommend, and assist with development of new security content as the result of hunt missions to include signatures, alerts, workflows, and automation.
• Coordinate with different teams to improve threat detection, response, and improve overall security posture of the Enterprise Basic Qualifications
• The candidate must possess an active TS/SCI Clearance
In addition to clearance requirement, all DHS personnel must obtain an EOD.
• BS degree in Science, Technology, Engineering, Math or related field and 8+ years of prior relevant experience with a focus on Cyber Security
• Should have at least 4 years of experience serving as a SOC Analyst or Incident Responder
• Ability to work independently with minimal direction; self-starter/self-motivated Must Have One of the Following J3 Certifications
SANS GCIH (GIAC Certified Incident Handler)
SANS GCFA (GIAC Certified Forensic Analyst)
SANS GCIA (GIAC Certified Intrustion Analyst)
SANS GNFA (GIAC Network Forensic Analyst)
SANS GWAPT (GIAC Web Application Pentester)
SANS GPEN (GIAC Penetration Tester)
Offensive Security Certified Professional (OSCP) Preferred Qualifications
• Proficient with scripting languages such as Python or PowerShell
• Familiarity with Splunk Search Processing Language (SPL) and/or Elastic Domain Specific Language (DSL)
• Demonstrated experience triaging and responding to APT activities.
• Experience working with various technologies and platform such as AWS, Azure, O365, containers, etc.
• Understanding of current cyber threat landscape, the different tactics commonly used by adversaries and how you would investigate, contain and recover against their attacks.
  • Threat Hunt Analyst

    3 weeks ago


    Washington, United States CareerBuilder Full time

    Primary Responsibilities The ideal Cyber Threat Hunter is someone who is process driven, curious, and enjoys identifying patterns and anomalies in data that are not immediately obvious. The Cyber Threat Hunter will: Create Threat Models to better understand the CBP IT Enterprise, identify defensive gaps, and prioritize mitigations Author, update, and...


  • Washington, United States ASRC Federal Full time

    ASRC Federal Professional Services is seeking a dynamic self-starter with experience in Insider Threat Security (IntSEC) discipline to support the Pentagon's Joint Service Security Office (JSSO). As part of its IntSEC mission, the Joint Staff Security Office is responsible for the establishing an Insider Threat Program (InTP) to identify and mitigate...


  • Washington, DC, United States Comtech Full time

    Company DescriptionComtech is a woman-owned small business founded in 1998 and headquartered in Reston, VA. We offer IT solutions across the disciplines of program/project management, applications development, infrastructure, Cyber security, and enterprise content/data management services. We have developed our methodologies and processes based on the IT...

  • Security Engineer

    3 weeks ago


    Washington, United States PKH Enterprises Full time

    Job DescriptionJob Description Insider Threat Security EngineerPKH Enterprises is seeking qualified individuals to support both government and private-sector clients in the development and implementation of insider threat and asset protection programs.  Qualified candidates should have knowledge of insider threat program elements, governance models and...


  • Washington, United States SpaceX Full time

    SpaceX was founded under the belief that a future where humanity is out exploring the stars is fundamentally more exciting than one where we are not. Today SpaceX is actively developing the technologies to make this possible, with the ultimate goal of enabling human life on Mars. **INSIDER THREAT ANALYST** SpaceX is seeking a dynamic and driven individual...


  • Washington, United States Scout Solutions Inc Defunct Full time

    Cyber Threat Intel Analyst Location: Washington D.C. / Hybrid Clearance: must be eligible for SBA Public Trust Full Time Company Description Our client is in search of a Cyber Threat Intelligence analyst possessing robust writing, research, and analysis skills to bolster their Cyber Threat Intelligence team. This role is dedicated to supporting a prominent...


  • Washington, United States Iron Vine Security Full time

    Job Requirements: · Strong written and verbal communication skills. · Experience designing, implementing, and maintaining IT security systems to protect digital assets from malicious cyber-attacks. · Experience developing and implementing an annual Incident Response Training and Testing Program · Experience implementing, configuring, and...

  • Security Engineer

    3 weeks ago


    Washington, United States PKH Enterprises Full time

    Job DescriptionJob DescriptionInsider Threat Security EngineerPKH Enterprises is seeking qualified individuals to support both government and private-sector clients in the development and implementation of insider threat and asset protection programs. Qualified candidates should have knowledge of insider threat program elements, governance models and overall...


  • Washington, United States Abacus Technology Corporation Full time

    OverviewAbacus Technology is seeking a Sr. Cyber Security Analyst to plan and implement security measures for IT systems in the DoE Office of Environment, Health, Safety, and Security (EHHS). This is a full-time position.ResponsibilitiesAssist in developing the DoE EHSS security posture.Protect network and IT infrastructure and telecommunications systems and...


  • Washington, United States Fathom Management LLC Full time

    **Insider Threat Policy Analysis** Seeking a **Insider Threat Policy Analysis** with a minimum of 10 years' experience supporting the DoD Security and InT policy team and oversight processes on a continuous basis, including policy creation, development, editing, comment adjudication, and formal coordination. Evaluate, study, and streamline business...

  • Digital Forensics

    1 week ago


    Washington, United States XOR Security Full time

    Job Title: Digital Forensics & E-Discovery Specialist - SME Location: 1 Massachusetts Ave NW Washington, District of Columbia 20001 Clearance Level: Active Secret Required Certification(s): One of the following: GCIA, GCED, GCFA, GCFE, GCTI, GNFA, GCIH, ECSA, CHFI, CISSP, Security+, Network+, CEH, CND. CCE, CFC, EnCE, CFCE, GREM SUMMARYXOR Security, an...


  • Washington, United States Jacobs Full time

    Your Impact:Jacobs is looking for an Entry Level Intelligence Analyst to join our team in DC!Team Jacobs provides significant value to the customer by proactively identifying national security threats via conducting in-depth analyses using government and public source datasets to identify and track terrorist and national security threats and provides...

  • Security Officer

    1 month ago


    Washington, United States DMAC Security Full time

    **Attention: Armed and Unarmed Officers: SO, SPO and DCJS** DMAC Security is actively seeking a skilled individual to monitor and detect criminal activities, swiftly alerting the appropriate authorities. Your keen observation and prompt reactions play a critical role in upholding property security and fostering a sense of safety for all. As a Security...


  • Washington, United States Advanced Decision Vectors, LLC Full time

    Advanced Decision Vectors, LLC (ADV), established in 2009, provides superior program management, program support, strategic planning, and systems engineering to the Federal and Commercial sectors. Located in Alexandria, Virginia, ADV is a Small Disadvantaged Business (SDB) contractor that has roots established in the Department of Defense and support...


  • Washington, United States NMR Consulting Full time

    Position: Security Operations Officer Location: Washington DC Clearance: Secret NMR Consulting is looking for staff members to support our government client located in Washington DC. This will utilize a 24/7-365 model with 4 employees during the day, 4 employees in the afternoon, and 3 employees overnight with shifts of 8 hours. Operators will handle...


  • Washington, United States MindPoint Group Full time

    MindPoint Group is seeking a Tier 2 Incident Response Analyst to support threat monitoring, detection, event analysis, and incident reporting. The Security Operations Center is a 24/7 environment. You will be responsible for monitoring enterprise networks and systems, detecting events, and reporting on any and all threats that are directed against those...


  • Washington, Washington, D.C., United States Bank of America Full time

    Job Description:At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. Responsible Growth is how we run our company and how we deliver for our clients, teammates, communities and shareholders every day.One of the keys to driving Responsible Growth is being a great place to work for our...

  • Security Officer

    16 hours ago


    Washington, United States NMR Consulting Full time

    Position: Security Operations Officer Location: Washington DC Clearance: Secret NMR Consulting is looking for staff members to support our government client located in Washington DC. This will utilize a 24/7-365 model with 4 employees during the day, 4 employees in the afternoon, and 3 employees overnight with shifts of 8 hours. Operators will handle...


  • Washington, United States Leidos Full time

    **Description** Leidos has a current job opportunity for a Cyber Security Watch Officer (CSWO) at the Pentagon. **This position will work Day Shift (0600-1400).** **Position Summary**: The incumbent will serve as a Cyber Security Watch Officer (CSWO) on the DISA GSM-O program supporting the Joint Service Provider (JSP) Joint Network Operation and Support...


  • Washington, United States ECS Full time

    ECS is seeking an Information Security Writer and Editor to work in our Washington, DC office.Job Description:We are seeking a talented and experienced Information Security Writer and Editor to join our team. The ideal candidate will possess a strong background in information security and cybersecurity, coupled with exceptional writing and editing skills....