Cyber Security Analyst
2 weeks ago
- Location: McLean, Virginia
- Type: Contract
- Job #3080
Title: Cyber Security Analyst
Location: McLean, VA
*Clearance: *Active TS/SCI w/ Polygraph needed to apply *
Company Overview:
Cornerstone Defense is the Employer of Choice within the Intelligence, Defense, and Space communities of the U.S. Government. Realizing early on that our most prized assets are our employees, we continually focus our attention on improving the overall work/life experience they have supporting the mission. Our Team is pushed every day to use their industry leading knowledge to provide end-to-end solutions to combat our nation's toughest and most secure problems. If you are looking for a place to not only be professionally challenged, but encouraged and supported by a company that cares, don't look any further than Cornerstone Defense.
Responsibilities include, but are not limited to:
Provide strategic and tactical direction to cyber hunters and leadership based on trends and actionable intelligence related to threat capabilities
Coordinate hunt activities between various internal and external hunt groups
Construct and exploit threat intelligence to detect, respond, and defeat advanced persistent threats (APTs)
Fully analyze network and host activity in successful and unsuccessful intrusions by advanced attackers
Build fly-away kits utilizing an agile approach to identify the appropriate tools and technologies necessary to conduct hunt missions
Conduct advanced threat hunt operations using known adversary tactics, techniques and procedures as well as indicators of attack in order to detect adversaries with persistent access to the enterprise
Create and add custom signatures, to mitigate highly dynamic threats to the enterprise using the latest threat information obtained from multiple sources. Perform malware analysis on samples obtained during an investigation or hunt operation to create custom signatures
Develop and produce reports on all activities and incidents to help maintain day to day status, develop and report on trends, and provide focus and situational awareness on all issues
Piece together intrusion campaigns, threat actors, and nation-state organizations
Manage, share, and receive intelligence on APT adversary groups
Generate intelligence from their own data sources and share it accordingly
Identify, extract, and leverage intelligence from APT intrusions
Expand upon existing intelligence to build profiles of adversary groups
Leverage intelligence to better defend against and respond to future intrusions
Correlate data from intrusion detection and prevention systems with data from other sources such as firewall, web server, and DNS logs
Notify the management team of significant changes in the security threat against the government networks in a timely manner and in writing via established reporting methods
Coordinate with appropriate organizations within the intelligence community regarding possible security incidents. Conduct intra-office research to evaluate events as necessary, maintain the current list of coordination points of contact.
Review assembled data with firewall administrators, engineering, system administrators and other appropriate groups to determine the risk of a given event
Maintain knowledge of the current security threat level by monitoring related Internet postings, Intelligence reports, and other related documents as necessary
Required Qualifications:
2+ years of experience in Computer Science, Cyber Security, Security Engineering or Network Engineering, including cyber security issues and operations, computer incident response, systems architecture, data management
Experience with working nation state intrusion sets
Experience with and expert level proficiency in one or more of the following disciplines:
Windows and/or Linux operating systems
Network forensics
Expertise at enterprise scale:
SysMon or EDR solutions for host-based Cyber Threat Hunting, or
Netflow/pcap or NDR solutions for network-oriented Cyber Threat Hunting
Malware analysis/reverse engineering
Exploit development
On-net pursuit/response
Incident response, forensics, or threat hunting in AWS or Azure
Knowledge of the following classes of enterprise cyber defense technologies:
Security Information and Event Management (SIEM) systems
Network Intrusion Detection System/Intrusion Prevention Systems (IDS/IPS)
Host Intrusion Detection System/Intrusion Prevention Systems (IDS/IPS)
Network and Host malware detection and prevention (NDR/EDR)
Network and Host forensic applications
Web/Email gateway security technologies
Security Orchestration, Automation, and Response (SOAR)
Ability to demonstrate effective interpersonal, organizational, writing, communications, and briefing skills
Ability to use advanced level analytical and problem-solving skills to solve complex issues
Ability to obtain a CISSP or CEH Certification within 6 months of start date
DoD 8570 IAT Level III or CSSP-SPM within 6 months of start date
Active/Current TS/SCI with polygraph clearance
Preferred Qualifications:
Bachelor's Degree in Electrical Engineering, Computer Engineering, Computer Science, or other closely related Information Technology field of study
-
Cyber Security Analyst
2 weeks ago
McLean, United States Torin Consulting, Inc. Full timeCLEARANCE: Active TS/SCI with Polygraph required to apply Torin is seeking experienced Cyber Security Analysts to join our team supporting a USG client. COMPANY OVERVIEW: Torin Consulting, LLC. prides itself in developing and delivering exceptional results in a high-speed, results driven environment since 2014 for the U.S. Government and Private...
-
Mclean, United States Capital One Full timeCenter 3 (19075), United States of America, McLean, VirginiaPrincipal Associate, Cyber Security Operations Center (CSOC) Countermeasures AnalystCapital One is looking for talented Cyber Security Analysts with experience performing endpoint, network, and cloud security monitoring to join our Cyber Security Operations Center (CSOC). The Principal Associate...
-
Cyber Threat Intelligence Analyst, Senior
3 months ago
McLean, United States Booz Allen Hamilton Full timeCyber Threat Intelligence Analyst, Senior Key Role: Analyze a variety of information and intelligence relevant to the threats facing the systems, assets, and resources critical to the nation, and develop research studies and recommendations. Serve as liaison to the firm’s intelligence sharing partnerships and interface with both government and...
-
Security Analyst II
1 month ago
McLean, United States Pondurance Full timeJob DescriptionJob DescriptionSecurity Analyst IIREMOTE (McLean, VA)Schedule: 7:00 am - 5:00 pm ET4x10 Shift (Wednesday - Saturday)** shift work and holiday work are required as part of a 24/7/365 SOC **About the Role:MUST have a minimum of 1-2 years of experience with one or more of the following:Microsoft Defender (minimum of 1 year)CrowdStrike (minimum of...
-
Cyber Security Project Engineer
3 months ago
McLean, United States McIntire Solutions Full timeJob DescriptionJob DescriptionRequired Skills• Ability to create queries and alerts that feed into a dashboard for monitoring and analysis of various logs• Experience with creating Splunk dashboards• Provide analysis and review of Splunk audit logs to include OS, database, and application logs• Experience in evaluating query results and reporting...
-
McLean, United States MITRE Full timeWhy choose between doing meaningful work and having a fulfilling life? At MITRE, you can have both. That's because MITRE people are committed to tackling our nation's toughest challenges—and we're committed to the long-term well-being of our employees. MITRE is different from most technology companies. We are a not-for-profit corporation chartered to work...
-
Director, Cyber Security Operations Center
2 weeks ago
Mclean, United States Capital One Full timeCenter 3 (19075), United States of America, McLean, VirginiaDirector, Cyber Security Operations CenterCapital One's Cyber Organization is a fast-paced, dynamic environment committed to enabling and securing the business. Our Operations & Intelligence division is searching for an experienced Director to be a leader in our Cyber Security Operations Center...
-
Sr. Cyber Security Program Manager
3 months ago
McLean, United States Maximus Full timeGeneral information Job Posting Title Sr. Cyber Security Program Manager Date Friday, June 28, 2024 City Mclean State VA Country United States Working time Full-time Description & Requirements Maximus is seeking a Sr. Cyber Security Program Manager to support our customer out of Colorado Springs, Colorado.*This position is contingent upon...
-
Principal Associate, Cyber Threat Hunter
4 weeks ago
Mclean, United States Capital One Full timeCenter 3 (19075), United States of America, McLean, VirginiaPrincipal Associate, Cyber Threat HunterThe Cyber Hunt Team at Capital One is responsible for performing proactive detection of advanced threat actors within our network. Our analysts spend each day hunting for evidence of threat actor activity and working with engineering and security teams to...
-
Cyber Security Project Manager
1 month ago
McLean, United States Janus Soft Inc Full timeREQUIRED SKILLS AND DEMONSTRATED EXPERIENCE • (U) Demonstrated experience supporting initiatives that span across organization, internal and external mission partners. • (U) Demonstrated experience working with cyber security research, analysis, and forensic techniques to exploit technical data. • (U) Demonstrated ability to gather data and analyze...
-
Mclean, United States Capital One Full timeCenter 3 (19075), United States of America, McLean, VirginiaPrincipal Associate, Cyber Procedure Governance AnalystAs a Cyber Procedure Governance expert in the Capital One Cyber Organization, you will apply your risk management and governance skills to the enterprise. You will partner across Technology, Enterprise Service Risk, and Cyber Teams to develop...
-
Mclean, United States Capital One Full timeCenter 3 (19075), United States of America, McLean, VirginiaSenior Associate, Cyber Procedure Governance AnalystAs a Cyber Procedure Governance expert in the Capital One Cyber Organization, you will apply your risk management and governance skills to the enterprise. You will partner across Technology, Enterprise Service Risk, and Cyber Teams to develop and...
-
Subject Matter Expert – Cyber Systems Engineer
3 weeks ago
McLean, United States Arcfield Full timeOverviewArcfield was purpose-built to protect the nation and its allies through innovations in digital transformation, space mission engineering and launch assurance, miniaturized sensors and satellites, advanced modeling and simulation, cybersecurity, and conventional and hypersonic missile support. Headquartered in Chantilly, VA with 16 global offices,...
-
Cyber Security Penetration Specialist
2 weeks ago
McLean, VA, United States General Dynamics Full timeRequisition Type: RegularRequired Clearance Level: Top Secret SCI + PolygraphCan Obtain: Top Secret SCI + PolygraphSuitability: Public Trust/Other Requirements: NoneField of Work: Cyber SecurityQualifications for the Role:- Proficient in NIST standards, Penetration Testing, and Risk Management Framework- Holds certifications such as: CEH, GPEN, OSCP, CompTIA...
-
Cyber Security Penetration Specialist
7 days ago
McLean, VA, United States General Dynamics Full timeRequisition Type: RegularRequired Clearance Level: Top Secret SCI + PolygraphCan Obtain: Top Secret SCI + PolygraphSuitability: Public Trust/Other Requirements: NoneField of Work: Cyber SecurityQualifications for the Role:- Proficient in NIST standards, Penetration Testing, and Risk Management Framework- Holds certifications such as: CEH, GPEN, OSCP, CompTIA...
-
Cyber Security Penetration Specialist
2 weeks ago
McLean, VA, United States General Dynamics Full timeRequisition Type: RegularRequired Clearance Level: Top Secret SCI + PolygraphCan Obtain: Top Secret SCI + PolygraphSuitability: Public Trust/Other Requirements: NoneField of Work: Cyber SecurityQualifications for the Role:- Proficient in NIST standards, Penetration Testing, and Risk Management Framework- Holds relevant certifications such as: CEH, GPEN,...
-
Principal Associate, Cyber Product Owner
1 month ago
Mclean, United States Capital One Full timeCenter 3 (19075), United States of America, McLean, VirginiaPrincipal Associate, Cyber Product Owner (SaaS Security)Capital One is seeking a product owner to help deliver game-changing cybersecurity solutions based on threat, data, and design thinking. At Capital One, we believe in the values of Excellence and Doing the Right Thing. We are a...
-
Subject Matter Expert
3 weeks ago
McLean, United States Arcfield Full timeOverviewArcfield was purpose-built to protect the nation and its allies through innovations in digital transformation, space mission engineering and launch assurance, miniaturized sensors and satellites, advanced modeling and simulation, cybersecurity, and conventional and hypersonic missile support. Headquartered in Chantilly, VA with 16 global offices,...
-
Cyber Threat Intelligence PMO Analyst
2 months ago
McLean, United States Guidehouse Full timeJob Family:Cyber ConsultingTravel Required:NoneClearance Required:Ability to Obtain Public TrustWhat You Will Do:We are seeking a driven, insightful, entrepreneurial professional. As a member of our team and working with important clients, you will be part of impactful opportunities that will make a difference and promote your long-term development and...
-
Security Operations Center Analyst
1 month ago
McLean, United States Booz Allen Hamilton Full timeJob Number: R0193686Security Operations Center Analyst Key Role: Serve as an Incident Responder and first line of the Firm's cyber defense, responsible for identifying and responding to security threats. Operate in an operations center environment responsible for incident confirmation, response, data collection, investigation, and analysis. Leverage...