Description:
The Cyber Incident and Threat Analyst will provide cyber threat intelligence (CTI) and cybersecurity triage and analysis to support incident response and vulnerability management operations. This role demands high-quality cybersecurity incident triage and assessments.
What you will do as a Cyber Incident and Threat Analyst:
- Perform cyber defense incident triage and recommend incident remediation strategies.
- Determine the scope, urgency, and impact of cyber defense incidents.
- Correlate threat assessment and incident data.
- Identify and characterize intrusion activities against victims or targets, and profile targets and their activities.
- Develop cybersecurity indicators to maintain awareness of the dynamic operating environment.
- Identify near-term changes in adversary tactics, techniques, procedures, and technology.
- Report changes in patterns and trends within cybersecurity incidents in correlation with changing environmental factors.
- Provide descriptive and predictive analysis by fusing information from multiple reports.
- Demonstrate experience with Mitre ATT&CK and other analytic frameworks.
- Develop and document repeatable and effective processes for SOPs and WIs.
- Correlate incident data to identify patterns and trends within cybersecurity incidents.
- Generate requests for information and identify information essential to fill information gaps.
Qualifications:
- US Citizen (the nature of our contract requires employees be US citizens).
- Top Secret clearance required.
- 10 years of experience.
- This position requires shift work. Shifts are 6 AM - 2 PM, 2PM - 10 PM and 10 PM - 6 AM.
- This position reports to St. Elizabeth's Campus in WDC.
- Analysts will work 4 days on site and one day remote.
- Bachelor's degree preferred.
- Experience with Mitre ATT&CK strongly recommended.
- Demonstrated expertise in identifying and mitigating cybersecurity threats and vulnerabilities
- Ability to identify and mitigate cybersecurity threats and vulnerabilities effectively.
- Strong analytical and problem-solving skills with the ability to conduct in-depth triage and support research and analysis
- Relevant certifications such as Security+ or CISSP.