Malware Defense Analyst

3 days ago


Washington, United States Bank of America Full time

Malware Defense Analyst

Washington, District of Columbia; Chicago, Illinois

Job Description:

At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities, and shareholders every day.

Being a Great Place to Work is core to how we drive Responsible Growth. This includes our commitment to being a diverse and inclusive workplace, attracting and developing exceptional talent, supporting our teammates’ physical, emotional, and financial wellness, recognizing and rewarding performance, and how we make an impact in the communities we serve.

This job is responsible for supporting evaluations of cyber security threats and updating defensive capabilities to reduce the bank's risk of exposure. Key responsibilities include conducting analyses of the threat environment and threats to the bank, including post-incident analysis, applying a multi-faceted situational awareness of cyber security processes to protect against threats, and implementing proactive defensive actions for the security, continuity, and confidentiality of information.

What you'll do:

  1. Respond, triage, and adapt to real-time threats targeting the organization through the lens of malware delivery and execution.
  2. Perform static, dynamic, and behavioral analysis of malicious software and potential indicators of compromise.
  3. Maintain detailed documentation regarding analysis findings and producing comprehensive reports encompassing observations, actions taken, and recommendations.
  4. Identify cyber risks and help develop improvements to controls and detection mechanisms.
  5. Collaborate with response teams to defend against emerging threats and contribute to Incident Response efforts.

Who you are:

  1. We are looking for mid-level candidates with malware analysis and incident response experience.
  2. Specific experience with triaging detections, prioritizing threats, performing static and dynamic analysis, identifying security gaps, and implementing preventative measures.
  3. Candidates should have a very strong investigative mindset with an ability to drive process changes and implement control enhancements.
  4. Candidates typically should have 3-5 years of relevant experience in one or more threat prevention disciplines focusing on Email, Web, or Endpoint.

Required Skills:

  1. Understanding of browser exploitation techniques.
  2. Familiarity with web-based technologies such as Javascript or HTML and how they are commonly abused by various threat actors or techniques.
  3. Experience with reviewing and analyzing Email Headers.
  4. Experience with detecting phishing and other common email threats.
  5. SIEM experience with event correlation and searching.
  6. Experience with dynamic analysis tools such as Process Monitor, FakeDNS, Regshot, or Wireshark.
  7. Familiarity with use and interpretation of malware analysis results from sandbox technologies.
  8. Technical experience and ability to operate and maintain a virtualized sandbox environment.
  9. Familiarity with URL categorization and analysis tools like Fiddler, commercial sandbox, or web proxy technologies.
  10. Ability to assess files or URLs and extract Indicators of Compromise (IoCs) such as malicious domains, IPs, and file hashes.
  11. Experience with documentation and ability to clearly articulate thoughts to a wide variety of intended audiences (teammates, technical, non-technical, leadership, etc.).
  12. Knowledge of Endpoint Detection and Response (EDR) tools.
  13. Knowledge of forensic artifacts such as Browser, Registry, or Event Log artifacts.

Desired Skills:

  1. 3+ years of experience conducting end-to-end Malware analysis specifically around either Email, Web, or Endpoint.
  2. 3+ years of conducting incident response using commercial products and tools.
  3. 3+ years of experience in digital forensics.
  4. Knowledge of at least one major cloud services provider (AWS, GCP, Azure) technologies.
  5. Ability to create scripts and other forms of automation.
  6. Experience conducting interviews with an interrogative mindset.

Shift: 1st shift (United States of America)

Hours Per Week: 40

#J-18808-Ljbffr

  • Washington, United States Defense Planning Corporation Full time

    Job DescriptionJob DescriptionOverviewMid-level Defense Industrial Base Munitions Analyst to provide on-site (Pentagon) subject matter expertise in support of munitions production oversight and analysis.Responsibilities· Assist the government in managing the Chairman of the Joint Chiefs of Staff Logistics Directorate’s participation in oversight of the...

  • SOC Analyst

    22 hours ago


    Washington, United States Serigor Inc. Full time

    Job DescriptionJob DescriptionJob Title: SOC Analyst - Tier 1 (Onsite)Location: Washington, DCDuration: 12 Months+Job Description:The client is the central technology organization of the client Government. It sets the standard for a number of information technology functions including the security policies and procedures for the District's IT footprint....


  • Washington, Washington, D.C., United States Interactive Process Technology LLC Full time

    About the RoleThis is an exciting opportunity to work as a Defense Budget Analyst at Interactive Process Technology LLC. The selected candidate will provide analysis in support of OUSD(A&S) and their designated subordinate offices.You will support all phases of Planning, Programming, Budgeting and Execution Government (PPBE) activities for assigned programs,...


  • Washington, United States BluePath Labs Full time

    Job DescriptionJob DescriptionBluePath Labs is a fast growing research and management consulting company focused on the challenging research problems for both government and private sector clients. BluePath is looking for one (1) Defense Research Analyst Intern to support open-source research in the defense and military aerospace sectors. Candidates must be...


  • Washington, United States BluePath Labs Full time

    Job DescriptionJob DescriptionBluePath Labs is a fast growing research and management consulting company focused on the challenging research problems for both government and private sector clients. BluePath is looking for one (1) Defense Research Analyst Intern to support open-source research in the defense and military aerospace sectors. Candidates must be...


  • Washington, Washington, D.C., United States LMI Full time

    Job DescriptionWe are seeking an experienced Defense Resilience Analyst to support a current Federal client. The successful candidate will provide program management and analyses support to assist in the development of strategy, policy, plans, and guidance related to operational energy programs and initiatives.Key ResponsibilitiesProvide program management...


  • Washington, United States BluePath Labs (8(a) & SDVOSB) Full time

    Join BluePath Labs, a pioneering research and management consulting company, as a Defense Research Analyst Intern. In this role, you will assist our team in conducting open-source research, analyzing data, and providing valuable insights to clients. As a member of our team, you will have the opportunity to develop your analytical skills, learn from...


  • Washington, United States BluePath Labs Full time

    Job DescriptionJob DescriptionBluePath Labs is a fast-growing research and management consulting company focused on the challenging research problems for both government and private sector clients. BluePath is looking for at least one (1) Defense Research Analyst to support open-source research in China's defense and military sectors. Candidates must be...


  • Washington, United States Foundation For The Defense Full time

    At the Foundation for Defense of Democracies, we seek a talented Communications Intern to join our team. This is an unpaid internship.The selected candidate will work closely with our communications team to develop and implement effective strategies to promote our research and policy initiatives. Key responsibilities include drafting press releases, social...


  • Washington, Washington, D.C., United States Fuse Integration Full time

    About the RoleFuse Integration is a leader in airborne, maritime, and terrestrial networking, with a strong focus on warfighter-focused design and development. We are seeking a skilled Capture Analyst to support our capture strategies, analyze federal procurement data, and contribute to business pursuits across our business areas. The ideal candidate will...


  • Washington, Washington, D.C., United States ShorePoint Full time

    About the RoleWe are seeking a Senior SOC Analyst (Shift Work) - Top Secret Clearance to join our team at ShorePoint, a fast-growing cybersecurity services firm in Washington D.C. This is a unique opportunity to shape the growth, development, and culture of an exciting and fast-growing company in the cybersecurity market.As a Senior SOC Analyst, you will be...


  • Washington, Washington, D.C., United States Joint Enterprise Technologies Full time

    Job OverviewJoin Joint Enterprise Technologies in a dynamic role as Cyber Security Analyst for Enterprise Network Defense. Our team works closely with government-contracted services to ensure the nation's security and the success of its military services.

  • Project Analyst

    7 days ago


    Washington, United States Allegient Defense Full time

    Allegient Defense (DBA BCS Allegient) provides technically oriented services from program management to advanced systems integration and engineering. We support Government and prime system integrators with engineering and management expertise. Allegient Defense helps clients with challenging Science & Technology, Engineering Acquisition, and Program...

  • Project Analyst

    7 days ago


    Washington, United States Allegient Defense Full time

    Allegient Defense (DBA BCS Allegient) provides technically oriented services from program management to advanced systems integration and engineering. We support Government and prime system integrators with engineering and management expertise. Allegient Defense helps clients with challenging Science & Technology, Engineering Acquisition, and Program...


  • Washington, United States Agile Resources, Inc. Full time

    Location/Remote: 100% remote; must be willing to work Eastern Time Zone hoursEmployment Type: Full-time / Direct Hire / PermanentCompensation: up to $103k salary (depending on experience)As a Threat Intelligence Analyst, you will play a crucial role in analyzing and disseminating security information to combat cyber threats, including ransomware and malware....

  • Defense Analyst

    3 weeks ago


    Washington, Washington, D.C., United States Sayres & Associates Full time

    **About the Company:**Sayres & Associates Defense Support ServicesWe are a leading provider of defense support services to the DOD, headquartered in Washington, DC. Our company has offices throughout the United States and abroad. Our experts empower customers' senior leadership with long-term planning and analytics, insightful decision-making, and day-to-day...


  • Washington, United States Foundation For The Defense Full time

    Internship OpportunitiesThe Foundation for Defense of Democracies is a non-partisan policy institute dedicated to promoting pluralism, defending democratic values, and combating ideologies that threaten democracy.We are seeking highly motivated individuals to join our team as Public Policy Analyst Interns. Estimated Salary: $45,000 - $60,000 per yearJob...


  • Washington, Washington, D.C., United States BluePath Labs Full time

    Job Summary:">We are seeking a highly skilled China Defense Research Analyst to join our team at BluePath Labs. This is a full-time salaried position with competitive benefits, offering a unique opportunity to work on challenging research projects for government and private sector clients.">About the Role:">Data collection and research on assigned projects...

  • Cyber Defense Analyst

    1 month ago


    Washington, United States Powder River Industries LLC Full time

    Mission: To create a state of digital resilience and safety that support our customer's ability to anticipate, absorb, adapt, and rapidly recover from a cybersecurity incident safeguarding assets, employees, and customers. Reduce cyber risk and the time it takes to detect and respond to cyber threats. Requirements • Executes decision-making authorities and...


  • Washington, United States Agile Resources, Inc. Full time

    Location/Remote: 100% remote; must be willing to work Eastern Time Zone hoursEmployment Type: Full-time / Direct Hire / PermanentCompensation: up to $103k salary (depending on experience)As a Threat Intelligence Analyst, you will play a crucial role in analyzing and disseminating security information to combat cyber threats, including ransomware and malware....