This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Altamira Technologies has a long and successful history providing innovative solutions throughout the U.S. National Security community. Headquartered in McLean, Virginia, Altamira serves the defense, intelligence and homeland security communities worldwide by focusing on creating innovative solutions leveraging common standards in architecture, data and security. Altamira believes that our people and the culture of our company differentiate us from other companies. Threat Operations and Intelligence Analyst (TOPI like) to join our team. In this role you will serve as a subject matter expert with deep domain knowledge in specific threat areas of interest across the globe. You will be responsible for analyzing, correlating, and operationalizing threat intelligence to support proactive defensive cyber activities. This role requires strong analytical skills with an IC mission background, technical expertise, and the ability to communicate complex findings to diverse audiences. You will work in close collaboration with a team of cyber analysts to pinpoint the highest levels of cyber threats with the goal to prevent and eradicate threats to critical U.S. systems.
Job Responsibility
Analyzing, correlating, and operationalizing threat intelligence to support proactive defensive cyber activities
Working in close collaboration with a team of cyber analysts to pinpoint the highest levels of cyber threats with the goal to prevent and eradicate threats to critical U.S. systems
Requirements
Ten (10) years of experience with security operations, network forensics, insider threat
Bachelor’s degree in computer science, information systems, international relations, or other related field
Experience with XKS creating general queries, fingerprinting, and identifying atypical events
Experience with Elastic/Splunk/ or other Security Information and Event Management (SIEM) experience creating visualizations and dashboards
Understanding of TCP/IP communication protocols and packet flows based on IP traffic
analysis of Packet Capture (PCAP) traffic in Wireshark
Familiarity writing signatures in Zeek and/or Snort
Must have a bachelor’s degree in computer science, information systems, network forensics or other data analysis roles
Ten (10+) years’ experience working in the areas of intelligence, information security, network forensics, insider threat or security operations
Specific understanding of key global areas of interest that pose threats to U.S. critical systems as well as an understanding of Advanced Persistent Threats (APTs), cyber actor motives and actions in depth
Experience with reporting and IC analyst knowledge resources
Experience with Elastic/Splunk or other Security Information and Event Management (SIEM) as well as experience creating visualizations and dashboards
Exceptional ability to analyze, correlate, and synthesize threat data from diverse sources
Ability to work with development teams and articulate requirements/enhancements to capabilities and tools
Ability to perform log file analysis including creating threat intelligence reports that indicate findings, mitigations, and confidence
Vast experience fanning advanced analytics, network diagrams, and other forms of associated knowledge to further understand systems, networks, environments, and adversaries
Document findings and create detailed reports to ensure tradecraft is continually updated. Present results to technical and non-technical stakeholders
Superior written and verbal communication skills, including executive-level reporting and presentations
Experience working with IC mission cybersecurity analysts on understanding the adversary and developing mission specific TTPs