Cyber Threat Investigator
7 days ago
cFocus Software Incorporated is seeking a highly skilled Cyber Threat Hunter (Senior) to support the United States Courts, Information Technology Security Office in Washington, DC. This senior-level position requires US Citizenship and the ability to obtain a Public Trust clearance. The selected candidate will work 4 days onsite with 1 day remote.
- Required Qualifications:
- Bachelor's Degree or equivalent experience in a computer, engineering, or science field.
- Ability to obtain a Public Trust clearance.
- US Citizenship
- Certifications: GCIA or GCIH or GSEC or GMON, or Splunk Core Power User.
- 7+ years of relevant experience.
- Lead Threat Hunt team provides oversight and be responsible for event investigation and tracking activities.
- Identify, deter, monitor, and investigate computer and network intrusions.
- Provide computer forensic support to high technology investigations in the form of evidence seizure, computer forensic analysis, and data recovery.
- Monitor and assess complex security devices for patterns and anomalies from raw events (DNS, DHCP, AD, SE Logs), tag events for Tier 1 & 2 monitoring.
- Conduct Malware analysis in out-of-band environment (static and dynamic), including complex malware.
- Accept and respond to government technical requests through the AOUSC ITSM ticket (e.g., HEAT or Service Now), for threat hunt support.
- Threat hunt targets include cloud-based and non-cloud-based applications such as: Microsoft Azure, Microsoft O365, Microsoft Active Directory, and Cloud Access Security Brokers (i.e., Zscaler).
- Review and analyze risk-based Security information and event management (SIEM) alerts when developing hunt hypotheses.
- Review open-source intelligence about threat actors when developing hunt hypotheses.
- Plan, conduct, and document iterative, hypothesis based, tactics, techniques, and procedures (TTP) hunts utilizing the agile scrum project management methodology.
- At the conclusion of each hunt, propose, discuss, and document custom searches for automated detection of threat actor activity based on the hunt hypothesis.
- Configure, deploy, and troubleshoot Endpoint Detection and Response agents (e.g., Crowdstrike and Sysmon).
- Collect and analyze data from compromised systems using EDR agents and custom scripts provided by the AOUSC.
- Track and document cyber defense incidents from initial detection through final resolution.
- Interface with IT contacts at court or vendor to install or diagnose problems with EDR agents.
- Participate in government led after action reviews of incidents.
- Triage malware events to identify the root cause of specific activity.
- Attend daily Agile Scrum standups and report progress on assigned Jira stories.
Powered by JazzHR
-
Cyber Security Threat Investigator
6 days ago
Washington, Washington, D.C., United States cFocus Software Incorporated Full timeJob OverviewcFocus Software Incorporated is seeking a highly skilled Cyber Security Threat Investigator to join our team in Washington, DC.
-
Cyber Threat Intelligence Strategist
6 days ago
Washington, Washington, D.C., United States cFocus Software Incorporated Full timeCareer Opportunities at cFocus Software IncorporatedWe are seeking an experienced Cyber Threat Intelligence Strategist to join our team in Washington, DC. This position requires US Citizenship and the ability to obtain a Public Trust clearance.About the RoleThe successful candidate will be responsible for conducting analysis and research on advanced cyber...
-
Cyber Security Threat Analyst
4 days ago
Washington, Washington, D.C., United States General Dynamics Information Technology Full timeAbout Cyber Security Threat AnalysisCyber security is a critical component of modern defense, and as a Cyber Security Threat Analyst with General Dynamics Information Technology (GDIT), you will play a vital role in protecting our nation's most sensitive systems.Salary Range: $134,597 - $172,500 per yearAbout the JobWe are seeking a highly skilled and...
-
Cyber Threat Program Director
7 days ago
Washington, Washington, D.C., United States cFocus Software Incorporated Full timeCyber Threat Intelligence Program RequirementscFocus Software Incorporated is seeking a Cybersecurity expert to support our program for the United States Courts, Information Technology Security Office in Washington, DC. This position requires US Citizenship and a Public Trust clearance.Key Responsibilities:Cyber Threat AnalysisConduct in-depth analysis of...
-
Senior Cyber Threat Intelligence Specialist
3 days ago
Washington, Washington, D.C., United States cFocus Software Incorporated Full timecFocus Software Incorporated is seeking a Senior Cyber Threat Intelligence Specialist to join their team in Washington, DC. This position requires US Citizenship and the ability to obtain a Public Trust clearance.Job DescriptionThis role involves leading a threat hunt team, providing oversight and responsibility for event investigation and tracking...
-
Cyber Security Threat Specialist
1 week ago
Washington, Washington, D.C., United States Bank of America Full timeAbout the RoleBank of America is seeking a highly skilled Cyber Security Threat Specialist to join our team. The ideal candidate will have a deep understanding of threats and threat tactics, techniques, and procedures (TTPs).Key ResponsibilitiesAs a Cyber Security Threat Specialist, you will lead and participate in advanced technical assessments that...
-
Cyber Threat Intelligence Leadership Role
5 days ago
Washington, Washington, D.C., United States Leidos Full timeJob OverviewLeidos, a leading provider of innovative solutions, seeks an experienced Cyber Threat Intelligence professional to join our dynamic team. This role requires a seasoned expert with a strong background in cyber threat intelligence and analysis.About the CompanyAt Leidos, we empower our teams to deliver exceptional results while contributing to our...
-
Cybersecurity Threat Investigator
6 days ago
Washington, Washington, D.C., United States Synergy ECP Full timeCybersecurity Threat InvestigatorAt Synergy ECP, we are seeking a highly skilled Cybersecurity Threat Investigator to join our team. As a Cybersecurity Threat Investigator, you will be responsible for analyzing digital network data to discover, analyze, and document malicious or unauthorized activity using information collected from a variety of SIGINT and...
-
Chief Cyber Threat Response Specialist
2 days ago
Washington, Washington, D.C., United States cFocus Software Incorporated Full timeJob OverviewcFocus Software Incorporated is seeking a skilled Chief Cyber Threat Response Specialist to join our team in Washington, DC. This position requires US Citizenship and the ability to obtain a Public Trust clearance.
-
Cyber Security Threat Hunter Professional
6 days ago
Washington, Washington, D.C., United States Joint Enterprise Technologies Full timeAbout the OpportunityJoint Enterprise Technologies is seeking an experienced Cyber Incident Detection Analyst to support our client's enterprise network cyber defense capabilities. This role offers a unique opportunity to build strong lines of cyber defense using cutting-edge technologies, impacting mission success and ensuring anticipation of future...
-
Threat Intelligence Specialist
7 days ago
Washington, Washington, D.C., United States Trustwave Holdings, Inc. Full timeJob Summary:Trustwave is a leading cybersecurity and managed security services provider focused on threat detection and response. We uncover threats that others can't and respond quicker than others can to protect against the devastating impacts of cyberattacks.We're a world-class team of cyber consultants, threat hunters, and researchers serving clients in...
-
Cyber Security Expert
5 days ago
Washington, Washington, D.C., United States ALTA IT Services Full timeAbout ALTA IT ServicesWe are a leading provider of IT solutions, dedicated to delivering high-quality services to our clients.Job SummaryWe are seeking an experienced Cyber Security Operations Specialist to join our team in Springfield, VA. The successful candidate will have a proven track record in threat detection and response, with a strong understanding...
-
Cyber Operations Security Analyst
7 days ago
Washington, Washington, D.C., United States Leidos Full timeCyber Operations Security Analyst Position OverviewThe Leidos Digital Modernization sector is currently seeking a skilled Cyber Operations Security Analyst to join our team in Washington, DC. This is a hybrid position working a static schedule with the potential for remote work.Responsibilities:Perform computer network incident detection and response...
-
Senior Threat Security Analyst
2 days ago
Washington, Washington, D.C., United States Peraton Full timeJob SummaryWe are seeking a highly skilled Cybersecurity Threat Analyst to join our team at Peraton. This is a unique opportunity to work on critical national security missions, driving innovation and excellence in the field of cybersecurity.Key Responsibilities:• Identify and investigate vulnerabilities, assess exploit potential, and document findings and...
-
Cyber Intelligence Professional
6 days ago
Washington, Washington, D.C., United States Watershed Security Full timeJob OverviewA challenging role is available for a highly skilled Cyber Intelligence Professional at Watershed Security. As a leader in providing quality Cyber Security Services to the Federal Government, we offer a respectful work environment and opportunities for growth.Job DescriptionWe are seeking an experienced professional to support the LECOR process...
-
Cybersecurity Threat Detection Specialist
7 days ago
Washington, Washington, D.C., United States RAMPS International Inc. Full timeJob SummaryWe are seeking a highly skilled Cybersecurity Threat Detection Specialist to join our team at RAMPS International Inc. in Washington, D.C.Key Responsibilities:Analyzing and interpreting complex data from various sources to identify potential security threatsDeveloping and implementing effective threat detection strategies to mitigate...
-
Washington, Washington, D.C., United States Axxum Technologies Full timeAxxum Technologies is seeking a seasoned cybersecurity expert to join our team as a Senior Threat Hunter. This critical role requires an individual with a strong background in IT Security, Incident Response, and Network Security, with a proven track record of success in identifying and mitigating advanced threats.About the JobWe are offering a competitive...
-
Washington, Washington, D.C., United States Serigor Inc. Full timeJob OverviewSerigor Inc. is seeking a highly skilled Cybersecurity Engineer to join our team in Washington, DC. As an expert in threat identification and mitigation, you will play a critical role in protecting our clients' assets from evolving security threats.Salary: $120,000 - $150,000 per year, depending on experience. This salary estimate is based on...
-
Washington, Washington, D.C., United States AHU Technologies Inc Full timeAs a Cybersecurity Specialist at AHU Technologies Inc, you will play a vital role in ensuring the security and integrity of our clients' information systems. This position is ideal for an experienced Information Assurance and Security Specialist looking to take their career to the next level.Job SummaryWe are seeking a highly skilled Cybersecurity Specialist...
-
Cyber Intelligence Planning Specialist
6 days ago
Washington, Washington, D.C., United States Global Dimensions Full timeGlobal Dimensions, a dynamic and expanding HUBZone, service disabled, veteran-owned small business based in Fredericksburg, VA, is currently seeking an experienced Cyber Intelligence Planning Specialist for a position in Columbia, MD.This role involves employing intelligence expertise to assist in the integration of Defense and National intelligence support...