This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Zachary Piper Solutions seeks a Cyber Fusion Analyst to support a long standing DoD program. In this role, you will provide support with incident handling, triage of events, network analysis, threat detection, trend analysis, metric development, and vulnerability information dissemination.
Job Responsibility:
Leverage an array of network monitoring and detection capabilities (including netflow, custom application protocol logging, signature-based IDS, and full packet capture (PCAP) data) to identify cyber adversary activity
Support the development of Cyber Fusion standard operating procedures (SOPs), and Cyber Fusion Framework and Methodology based on industry best practice and Department of War instruction, guidance, and policy
Identify threats to the enterprise and provide mitigation strategies to improve security and reduce the attack surface
Perform analysis by leveraging serialized threat reporting, intelligence product sharing, OSINT, and open-source vulnerability information to ensure prioritized plans are developed
Analyze and document malicious cyber actors TTPs, providing recommendations and alignment to vulnerabilities and applicability to the enterprise operational environment
Discover adversary campaigns, anomalies and inconsistencies in sensor and system logs, SIEMs, and other data
Identify, investigate and rule out system compromises, with the capacity to provide written analytic summaries and attack life cycle visualizations
Provide risk assessments and recommendations based on analysis of technologies, threats, intelligence, and vulnerabilities
Offer recommendations to adjust enterprise or tactical countermeasures to for threats impacting the DOWIN
Collect analysis metrics and trending data, identify key trends, and provide situational awareness on these trends
Requirements:
Bachelors Degree in related discipline
4+ years of experience
Active DoD 8570.01-M Certification (Security+ CE, CCNA-Security, GSEC, SSCP, CySA+, GICSP, or CND)
Active TS/SCI Clearance with eligibility for Polygraph
In-depth knowledge of network and application protocols, cyber vulnerabilities and exploitation techniques and cyber threat/adversary methodologies
Proficiency with datasets, tools and protocols that support analysis (e.g. passive DNS, Virus Total, Recorded Future, TCP/IP, OSI, WHOIS, enumeration, threat indicators, malware analysis results, Wireshark, Splunk, Arcsight etc.)
Experience with various open-source and commercial vendor portals, services and platforms that provide insight into how to identify and/or combat threats or vulnerabilities to the enterprise
Proficiency working with various types of network data (e.g. netflow, PCAP, custom application logs)
What we offer:
Health, Dental, Vision
401K, PTO, Paid Holidays, Sick Leave if Required by Law