This job board retrieves part of its jobs from: Toronto Jobs | Emplois Montréal | IT Jobs Canada

Find jobs in Maryland today!

To post a job, login or create an account |  Post a Job

  Jobs in Maryland  

Bringing the best, highest paying job offers near you

previous arrow
next arrow
Slider

Cyber Fusion SME

Leidos

This is a Full-time position in Not Specified, MD posted July 19, 2021.

Description

Job Description:
The Leidos Defense Group has an opening for a Cyber Security Fusion Analyst SME on the DISA GSM-O II program supporting Joint Force Headquarters DODIN at Fort Meade.

Position Summary:

GSM-O II provides network operations and cyber defense support to the Defense Information Systems Agency (DISA) in support of the DoD and COCOMs .

In this role, you will serves as the Subject Matter Expert for incident handling, triage of events, network analysis and threat detection, trend analysis, metric development, vulnerability information dissemination, and the DoD CNDSP methodology

Primary Responsibilities:
Leverage intelligence and operational data, information and processes to identify threats, improve security, and reduce the enterprise’s exposure of vulnerabilities.

Leverage an array of network monitoring and detection capabilities (including netflow, custom application protocol logging, signature-based IDS, and full packet capture (PCAP) data) to identify cyber adversary activity.

Support various collaborative and cross functional (Intelligence, Current Operations, Future Operations, Logistics, Planning, Resourcing and Requirements) forums to achieve centrally coordinated, threat informed and prioritized vulnerability scoring and mitigation methodology.

Support the development of Cyber Fusion Standard, Cyber Fusion Framework and Methodology based on industry best practice and department of defense instruction, guidance, and policy.

Perform threat informed analysis by leveraging serialized reporting, intelligence product sharing, OSINT, and open source vulnerability information to ensure prioritized plans are developed.

Analyze and document malicious cyber actors TTPs, providing recommendations and alignment to vulnerabilities and applicability to the enterprise operational environment.

Discover adversary campaigns, anomalies and inconsistencies in sensor and system logs, SIEMs, and other data; investigate to identify or rule out system compromises, provide written analytic summaries and attack life cycle visualizations.

Provide risk assessments and recommendations based on analysis of technologies, threats, intelligence, and vulnerabilities.

Recommend adjustment of countermeasures, enterprise or tactical, to account for threats impacting the DODIN.

Recommend adjustment of prioritized enterprise focused analysis based on immediate threat identified based on intelligence and other analysis performed.

Collect analysis metrics and trending data, identify key trends, and provide situational awareness on these trends.

Required Qualifications:
Active DoD TS/SCI Clearance and eligible for polygraph Bachelor’s Degree in related discipline and 12 years of related experience.

Additional combin experience may be accepted in lieu of degree Security+ Certification (or other equivalent DoD 8570 Level II certification) Direct experience with network traffic monitoring/capture/analysis capabilities, and various IDS, IPS, SIM/SIEM/SOAR technologies, to include IDS signature development.

Familiarity with all related aspects of cybersecurity operations/analysis (e.g.

incident response & management, forensic media analysis, malware analysis/reverse-engineering, cyber threat intelligence analysis, etc.) and security architecture & engineering.

In-depth knowledge of network and application protocols, cyber vulnerabilities and exploitation techniques and cyber threat/adversary methodologies (TTPs).

Proficiency with datasets that support analysis (e.g.

passive DNS, WHOIS/registration data, system/service enumeration data, threat indicators/observables, malware analysis results, etc) and various open-source and commercial vendor portals/services/platforms that provide that data.

Proficiency working with various types of network data (e.g.

netflow, PCAP, custom application logs)
Preferred Qualifications:
Experience with DISA and DoD Networks.

Skilled in building extended cyber security analytics.

Demonstrated experience briefing Senior Executive Service (SES) and General Officer/Flag Officer (GO/FO) leadership.

Experience in intelligence driven defense and/or cyber Kill Chain methodology.

IAT Level III and IAM Level II+III Certifications
GSMO

Ft.

Meade

External Referral Bonus: Eligible External Referral Bonus $: $5000 Potential for Telework: No

Clearance Level Required: Top Secret/SCI

Travel: No

Scheduled Weekly Hours: 40

Shift: Day

Requisition Category: Professional

Job Family: Cyber Operations Pay Range:

AL Jobs AR Jobs CA Jobs GA Jobs KS Jobs KY Jobs LA Jobs MD Jobs MI Jobs MN Jobs MS Jobs MO Jobs NY Jobs OR Jobs TN Jobs TX Jobs UT Jobs VA Jobs WV Jobs ID Jobs