Cybersecurity Signature Analyst with Security Clearance

3 weeks ago


St Louis MO United States Strategic ASI Full time
Our client is seeking a Cybersecurity Signature Analyst: Reporting to the Lead of Focused Operations, under the Branch Chief of Defensive Cyber Operations, you will be tasked with developing and maintaining defensive countermeasures for the enterprise
Working within a Fusion model, will collaborate with other teams within Focused Operations with the distinct task of proactively preventing a successful compromise and eradicating persistent adversaries already in the enterprise
This will be done through various means such as: reviewing future and past intelligence reports, reviewing incident reports, through regular Purple Teaming exercises, and continuously validating Defensive Countermeasures already deployed
What You'll Get to Do:
* Analyzes trends and patterns of data on NGA networks to identify and predict previously undiscovered events and incidents, and develop or tune rules/signatures/scripts as needed;
* Coordinates with other Cybersecurity Operations to develop or tune rules/signatures/scripts;
* Coordinates with other Cybersecurity Operations Services to investigate and obtain information about potential sources of compromise on NGA systems, and develop or tune rules/signatures/scripts as needed;
More About the Role:
* Correlates and analyzes precursors to incidents, and develop or tune rules/signatures/scripts as needed;
* Improve SIEM alert efficiency though evaluation of valid alerts and false positives, and develop or tune rules/signatures/scripts as needed;
* Assists the Cyber Incident Response Team by assessing ongoing incident activity to predict adversary responses and locations of compromise;
* Documents all work in the authorized ticketing system with a sufficient level of detail to ensure the Government and other contract services can systematically reconstruct the analysis;
* Provide input to the daily CSOC Significant Activity Report, the daily CSOC Operations Update, and the Weekly CSOC Status Report;
You'll Bring These Qualifications:
* Must be a US Citizen with an Active TS/SCI.
* 8+ years of related advanced cyber security analytics work experience.
* Must have a certification that is compliant with DoD 8140.01 and DoD 8570.01-M IAT Level III and CSSP Analyst.
* Experience with data mining or building queries in a SIEM.
* Strong understanding of signature development and tuning.
* Strong understanding of network protocols and analysis with protocol analyzers.
* Knowledge of static file signatures, i.e
"magic numbers" and how it applies to developing countermeasures for files in transit and that reside locally on a host.
* Good working knowledge of regular expressions.
* Preferred Skills:
* Comfortable in a hex editor.
* Ability to write python/bash/powershell scripts.
* Ability to analyze each use case, as it pertains to detection logic, and identify the corresponding capability.
* Good understanding of Purple Team Tactics.

  • St Louis, United States Strategic ASI Full time

    Our client is seeking multiple Cybersecurity Operations Analyst II who could potentially be located in either Springfield, VA or Saint Louis, MO. What You'll Get to Do: Coordinate and implement tasks, performing analysis, and building/documenting response activities required during cyber security incident response, including but not limited to actions...


  • St. Louis, United States CALIBRE Full time

    CALIBRE Systems Inc., an employee-owned Management Consulting and Digital Transformation Company is seeking aSoftware Developer (Senior) will develop, create, maintain, and write/code new (or modify existing)computer applications, software, or specialized utility programs.The Software Developer’s responsibilities include, but are not limited to, the...


  • St Paul, United States Blue Star Partners, LLC Full time

    Job Description Job Description Job Title: Senior Cybersecurity Analyst Location: St. Paul, MN – Onsite – Local candidates only Period: 05/13/2024 to 12/20/2024 – possibility of extension Hours/Week: 40 hours Rate: $40-$45/hour (Hours over 40 will be paid at Time and a Half) Contract Type: W-2 Scope of Services: The Senior Cybersecurity Analyst...


  • St Louis, United States Stifel Full time

    Summary Under general supervision, the IT Security Governance Analyst II is a front-line member of the IT Security Program team responsible for the overall management of the IT Security Program. The IT Security Governance Analyst is responsible for supporting internal, external, and client audits, managing security risks within a GRC solution, and assessing...


  • Boulder, CO, United States SciTec Full time

    SciTec has been awarded multiple government contracts and is growing our creative Team! SciTec, Inc. is a dynamic small business with the mission to deliver advanced sensor data processing technologies and scientific instrumentation capabilities in support of National Security and Defense. We support customers throughout the Department of Defense and U.S....


  • St Louis, United States Prestige Staffing Full time

    The position is responsible for overseeing the organization's physical and electronic information security capabilities. To be successful in this position, you must have at least seven (7) years' experience operating as a security resource in an enterprise environment or equivalent experience. This position requires in-office support. After an initial period...


  • St Louis, United States Prestige Staffing Full time

    The position is responsible for overseeing the organization's physical and electronic information security capabilities. To be successful in this position, you must have at least seven (7) years' experience operating as a security resource in an enterprise environment or equivalent experience. This position requires in-office support. After an initial period...


  • St Louis, United States Stifel Full time

    Summary The Application Security Engineer is responsible for the secure design and testing of internally developed software and deeply understands security principles, technologies, and methodologies. Application Security Engineers work with software development teams to ensure security is included in the complete software development life cycle. This role...


  • Boulder, CO, United States SciTec Full time

    SciTec has been awarded multiple government contracts and is growing our creative Team! SciTec, Inc. is a dynamic small business with the mission to deliver advanced sensor data processing technologies and scientific instrumentation capabilities in support of National Security and Defense. We support customers throughout the Department of Defense and U.S....


  • St Louis, United States ARCO a Family of Construction Companies Full time

    ABOUT YOU: Are you an out of the box thinker? Are you passionate about solving business problems with the latest technology? If the answer is, Yes! then we have an exciting, internship opportunity for you. Who are we? We are ARCO, a Family of Construction Companies. We are looking for a Cybersecurity Intern for our St. Louis office to work with our...


  • St Louis, United States Prestige Staffing Full time

    The position is responsible for overseeing the organization’s physical and electronic information security capabilities. To be successful in this position, you must have at least seven (7) years’ experience operating as a security resource in an enterprise environment or equivalent experience. This position requires in-office support. After an initial...


  • St. Louis, United States Prestige Staffing Full time

    The position is responsible for overseeing the organization’s physical and electronic information security capabilities. To be successful in this position, you must have at least seven (7) years’ experience operating as a security resource in an enterprise environment or equivalent experience. This position requires in-office support. After an initial...


  • St Louis, United States Stifel Full time

    Summary The Application Security Engineer is responsible for the secure design and testing of internally developed software and deeply understands security principles, technologies, and methodologies. Application Security Engineers work with software development teams to ensure security is included in the complete software development life cycle. This role...


  • St Paul, United States SPECTRAFORCE Full time

    Job Title: Senior Cybersecurity Engineer Location: St Paul, MN, - Hybrid Duration: 12 months (with temp to hire potential) Job Summary? As a Senior Cybersecurity Engineer you will be responsible for working with other Building Automation System (BAS) controls and software engineering team members to identify business, technology and product risks and...


  • St Paul, United States SPECTRAFORCE Full time

    Job Title: Senior Cybersecurity EngineerLocation: St Paul, MN, - HybridDuration: 12 months (with temp to hire potential)Job Summary:As a Senior Cybersecurity Engineer you will be responsible for working with other Building Automation System (BAS) controls and software engineering team members to identify business, technology and product risks and...

  • Software Developer

    1 week ago


    St Louis, United States Calibre Inc Full time

    CALIBRE Systems Inc., an employee-owned Management Consulting and Digital Transformation Company is seeking a Software Developer (Mid-level) will develop, create, maintain, and write/code new (or modify existing) computer applications, software, or specialized utility programs. The Software Developer’s responsibilities include, but are not limited to, the...


  • St Louis, United States Calibre Inc Full time

    CALIBRE Systems Inc., an employee-owned Management Consulting and Digital Transformation Company is seeking a Software Developer (Senior) will develop, create, maintain, and write/code new (or modify existing) computer applications, software, or specialized utility programs. The Software Developer’s responsibilities include, but are not limited to, the...


  • St Louis, United States Stifel Full time

    Summary The Sr. Application Security Engineer is responsible for the secure design and testing of internally developed software and deeply understands security principles, technologies, and methodologies. The Sr Application Security Engineer works with software development teams from design to code implementation, ensuring security is included in the...


  • St Louis, United States Stifel Full time

    Summary The Sr. Application Security Engineer is responsible for the secure design and testing of internally developed software and deeply understands security principles, technologies, and methodologies. The Sr Application Security Engineer works with software development teams from design to code implementation, ensuring security is included in the...


  • St Louis, United States CALIBRE Systems Full time

    Job Description CALIBRE Systems Inc., an employee-owned Management Consulting and Digital Transformation Company is seeking a Software Developer (Senior) will develop, create, maintain, and write/code new (or modify existing) computer applications, software, or specialized utility programs. The Software Developer's responsibilities include, but are not...