Cyber Threat Intelligence Analyst

Responsibilities The successful candidate must be well-versed in security operations, cybersecurity tools, intrusion detection, and secured networks. The candidate will provide operational support on expert level analysis in regards to Advanced Persistent Threats (APTs), Indicators of Compromise (IOC), Intelligence Gathering and sharing this information with other formalized partners. Duties and responsibilities may include, but are not limited to: Provide proactive event monitoring/event management/configuration of the following security tools for targeted threats and malicious activity including but not limited to:Splunk, Palo Alto Networks, McAfee EPO, Cisco Ironport, Netscout, Sourcefire Defense Center and Bigfix Determine if an event meets the criteria for additional cyber hunt investigation and/or constitutes a security incident subject to investigation and notify team lead or designate within 15 minutes  Review audit logs and identify any unusual or suspect behavior Provide targeted attack detection and analysis, including the development of custom signatures and log queries and analytics for the identification of targeted attacks Develop and execute custom scripts to identify host-based indicators of compromise Provide advanced technical capabilities to senior leadership, including Big Data Analytics, and Predictive Intelligence Provide proactive APT hunting, incident response support, and advanced analytic capabilities Profile and track APT actors that pose a threat to the organization in coordination with threat intelligence support teams Support the incident response process by providing advanced analysis services when requested to include recommending containment and remediation processes, independent analysis of securityevents, and reporting of identified incidents to Incident Handling (IH) Qualifications Bachelor's degree or higher in Information Technology or other engineering or technical discipline and at least 6 years IT experience plus minimum four years advanced Cyber Threat Information experience. Four (4) years of relevant experience may be substituted with professional certification (e.g., CISSP, GREM or GCIH) Must have Certified Cyber Intelligence Investigator (CCII) certification  Certification (or ability to obtain certification) in at least one of the following areas: Certified Counterintelligence Threat Analyst (CCTA) Certified Cyber Intelligence Professional (CCIP) Certifed Cyber Investigations Expert (CCIE) Experience with advanced cybersecurity tools, network topologies, intrusion detection, PKI, and secured networks In-depth understanding of NIST SP 800-61, US CERT and Office of Management and Budget (OMB) standards Experience interpreting and implementing cybersecurity regulations Excellent verbal communication skills Outstanding written skills for preparing reports and briefings Excellent analytical and problem solving skills Ability to obtain a DoD Secret security clearance U.S. Citizenship is required as is successfully passing a thorough Government background screening process requiring the completion of detailed forms and fingerprinting 2018-1635
Salary Range: NA
Minimum Qualification
5 - 7 years

Don't Be Fooled

The fraudster will send a check to the victim who has accepted a job. The check can be for multiple reasons such as signing bonus, supplies, etc. The victim will be instructed to deposit the check and use the money for any of these reasons and then instructed to send the remaining funds to the fraudster. The check will bounce and the victim is left responsible.