Cyber Threat Detection & Response Analyst Job at NTG, Alexandria, VA

WVZobHdmb0c4VS9XMFJ4M2d0aythekFMUUE9PQ==
  • NTG
  • Alexandria, VA

Job Description

Description

Position Summary

Our Cyber Threat Detection & Response Analyst will support the Joint Service Provider (JSP) Defensive Cyber Operations (DCO) organization with Cyber Threat Intelligence products and network security monitoring and will perform as the analyst in area of cyber threat intelligence.

Duties And Responsibilities

The essential functions include, but are not limited to the following:

  • Implement the core Threat Intelligence concepts (ex. Cyber Kill Chain, MITRE ATT&CK, DoDCAR)
  • Produce reporting for new or emerging threats and threat vectors
  • Utilize SIEM technologies to correlate security events and logs and identify threats.
  • Incorporate threat intelligence into countermeasures to detect and prevent intrusions and malware infections.
  • Identify threat actor tactics, techniques and procedures and based on indicators develops custom signatures and blocks.
  • Understand and employ the MITRE ATT&CK Matrix.
  • Recognize what you’ll need to know to prevent or identify APT intrusions
  • Identify network architectures and select network components
  • Understand concepts of log and packet analysis
  • Navigate the command line using specific expressions to manipulate data
  • Handle and organize disparate data about detections, attacks, and attackers
  • Discovery techniques and vetting of new intelligence
  • Create of Situational Awareness Reports and Threat Briefs
  • Participate in incident response activities including investigation, containment, eradication, and recovery
  • Document and escalate incidents according to standard operating procedures and coordinate with internal and external stakeholders as needed

Requirements

Minimum Requirements

  • Bachelor’s degree in an IT related field or equivalent years of IT related experience
  • Active and current Top Secret federal security clearance
  • 10+ years of cyber-related experience with demonstrated experience in threat detection.
  • Must meet DoD 8570/ 8140 IAT Level III certification requirements (e.g., CASP+, CISSP, or CySA)

Job Tags

Similar Jobs

Carlson Software

Electronic Repair Technician Job at Carlson Software

 ...per week Monday Thursday: 8:00 a.m. 4:30 p.m. Friday: 8:00 a.m. 1:00 p.m. How to Apply: Interested candidates should send a rsum and cover letter outlining their relevant experience to Tony Carter, Lead Engineer , at ****@*****.*** .... 

NSC

Delivery Support Associate Job at NSC

 ...Position Purpose: The Delivery Support Associate plays a key part in the daily and weekly administrative functions for the One NSC...  ...verify. The Delivery Support Associate must demonstrate a high degree of service orientation, focused on actively working to onboard... 

Fluor Corporation

Record Keeping Administrator Job at Fluor Corporation

Fluor, a Fortune 500 company, is one of the largest professional services firms, providing engineering, procurement, construction, project management and related services, on a global basis. Fluor is currently seeking a record-keeping administrator in our Law Department...

On Line Design, Inc.

Director of Food Safety and Quality Job at On Line Design, Inc.

 ...On Line Design is currently looking for a full-time Senior Director of Quality and Food Safety in Cincinnati, OH. In this role, you will be responsible for leading all aspects of product quality and food safety within the plant and the company. This role directs all Food... 

Artech L.L.C.

Presentation Specialist Job at Artech L.L.C.

Job Title: Presentation Graphic Designer Location: San Francisco, CA (5 days onsite) Duration: 12+ months (Extension/Full time possible) Client: Banking Max Rate: $37/hr. on W2 Knowledge/Experience: 3-5 years or above of admin/operational support in a corporate...