Senior Threat Detection & Response Engineer supporting federal cyber security programs. Overseeing design and development of countermeasures against cyber threats and advising on tools and training.
Responsibilities
Oversee the design of the operational effects as described by the Government
Evaluate alternatives and provide well-informed recommendations on technical options for design and development
Translate mission requirements into a variety of software products, evolutionary prototypes, and advanced countermeasure capabilities
Identify optimal methods for aggregating, storing, correlating, and visually depicting various types of data
Advise on data preparation, implementation of techniques, visualizations, and employment of analytics developed by ICF and customer partners
Assess current use of cyber tools by analysts and assess whether efficiencies can be made via alternate use of current or adoption of alternate tools
Problem-solve by identifying potential tools/processes to support needs by capturing areas of improvement that can be translated into functional requirements for future planning
Identify areas of technical training gaps and proposed approaches to methods (hands on, online modules, etc.) to improve the use of tools and data in support of the cybersecurity mission.
Participate in post-engagement review
Effectively communicate with leadership to ensure awareness of progress and/or challenges
Requirements
Active US government issued security clearance required
US Citizenship required as part of client contract requirements
Bachelor’s degree with 12+ or Master’s degree with 10+ years of experience in IT, Cyber, Engineering, or a related field
Working knowledge of open-source distributed massively parallel processing databases such as GreenPlum and open-source big data technologies such as Apache Hadoop, Apache Kafka, etc.
5 or more years of implementing custom and high-impact security platforms in critical program areas.
Position requires at least 5 years of advanced cyber threats, tools, techniques, and processes (e.g., Threat Hunt, Incident Response, Investigations, Technical Reporting, etc.)
Must have at least 5 years of experience using network security analysis/IDS tools
A minimum of 5 years of experience analyzing packet capture and NetFlow data with an understanding of current cyber threats and trend derived from multiple sources (e.g., open-source, intelligence products, etc.)
5 or more years of experience with different types of Malware including detection methods, attack vectors, and vulnerabilities used
Experience with query languages (e.g., SQL, KQL, etc.)
Hands on experience developing advanced dashboards (e.g., Kibana, Splunk, etc.) is required
Experience with different cybersecurity frameworks and knowledge bases to identify tactics, techniques, and procedures of known actors
Must have a solid understanding of mathematics behind machine learning algorithms
Benefits
Reasonable Accommodations are available, including, but not limited to, for disabled veterans, individuals with disabilities, and individuals with sincerely held religious beliefs, in all phases of the application and employment process.
Information Security Senior Associate managing HSAM's cybersecurity toolset and vulnerability remediation. Collaborating on security policies, incident response, and program development in a regulated environment.
Senior Security Architect defining and assessing Severn Trent's security strategy and architecture. Leading a team of security architects to ensure effective cyber security and resilience.
Associate Director overseeing security for the F135 Security Team at Pratt & Whitney. Responsible for compliance and coordination with U.S. Government and foreign partners in security operations.
Advisor in IT Security preventing suspicious transactions and assisting with compliance at Desjardins Group. Utilizing extensive knowledge of security and analytical skills to guide clients and develop solutions.
Security Engineer at PAMP Technologies responsible for global security management and incident response. Collaborating with teams in Bangalore and worldwide to bolster security infrastructure.
Cyber Security Incident Commander leading end - to - end response to cybersecurity incidents at Knauf IT, a global building materials manufacturer with a commitment to digital transformation.
Information Security Governance Manager at Knauf leading global information security governance. Focused on shaping policies, frameworks, and optimising ISMS while ensuring stakeholder engagement.
(Senior) Information Security Advisor leading global cybersecurity strategy for Knauf, a building materials manufacturer. Responsibilities include guiding IT and business on security regulations and risk management.
AI Security Principal at HITRUST addressing AI security risks and responsible practices. Collaborating across teams to influence AI security assurance and governance.
Cloud Governance & Security Engineer at Zinkworks responsible for cloud operations, governance, and compliance - related projects. Focused on improving security controls and implementing IT initiatives.