Hunt Analyst
Full-Time, Washington, DC., On-Site
Top Secret
Semper Valens Solutions is seeking a motivated Hunt Analyst to join our team in Washington, D.C..
Hunt Analyst supporting the HEITS Contract as part of the Department of Homeland Security (DHS) Insider Threat Program (ITP). This is an exciting opportunity to use your experience to support, sustain, design and evolve the database backbone of the ITP. The ITP mission is to identify insider threats to the department by utilizing advanced analytics, monitoring, and data correlation which in turn help address and eliminate potential threat actors from compromising the DHS mission in safeguarding the homeland.
Responsibilities :
- Normal business hours will be defined as a schedule combination to include weekdays 2pm-10pm shift and weekends 6am-6pm shift. The candidate will have 2- 3 days off based on the schedule determined & the work week should not exceed 40 hours.
- This position is expected to eventually move to shift work to meet the requirement of 24x7 operations at an undetermined later date. Examine, analyze, and search insider threat data to identify trends, patterns, and insights of potential insider threat indicators.
- Provide analytical, program support services related to the operation of UAM / UEBA tool.
- Monitor UAM platform to identify emerging requirements related to insider threat events and coordinate across the enterprise to ensure timely response.
- Conduct further research on the UAM platform to identify patterns of concerning behavior related to a potential insider threat risk to the DHS enterprise.
- Provide proactive insider threat-based hunting across the DHS enterprise network, leveraging methodologies and behavioral analytics to detect, investigate, and mitigate anomalous activity and policy violations indicative of malicious insider behavior.
- Conduct continuous hunt operations across data and log sources, DHS platforms, EDR tools, and network traffic to identify patterns of insider threat behavior.
- Identify mitigation strategies to assist the investigative team in effectively reducing insider threat risk.
- Utilize UEBA (User and Entity Behavior Analytics) platforms and techniques to baseline user activity and detect deviations.
- Provide timely response to critical / high UAM alerts (within 4 hours during normal business hours).
Qualifications :
Bachelors degree and (12)+ years of prior relevant insider threat experience or Masters with (10)+ years of prior relevant experience. Additional years of experience with requisite certifications will be considered in leu of degreeMinimum of 4 years demonstrated knowledge of the intelligence cycle, analytic techniques, systems, processes, and organizationsMinimum of 4 years demonstrated knowledge of Threat Assessment & Mitigation StrategiesHave excellent written and verbal skills with ability to deliver briefings to a diverse group of audiencesPossess knowledge of current domestic and international threats to U.S. national security interestsBe adept at establishing networks with relevant security, personnel, and prevention stakeholders to foster program utilizationBe a self-starter capable of working independently to promote program goalsWorking knowledge of User Activity Monitoring Software (UAM) and solutionsWorking knowledge of Cybersecurity toolsets designed to support ITP mission activitiesWorking Knowledge of Open-Source toolsetsWorking Knowledge of Insider Threat Frameworks; Pathway to Violence & Critical PathwayCurrent TS / SCI and Must be a US CitizenAbility to obtain DHS EOD SCI and willingness to undergo CI PolygraphPreferred Qualifications :
Master's degree from an accredited college or university in Criminal Justice, Homeland security, Cyber Security, or related fieldProven experience (10+ years) in Intelligence AnalysisExperience with User Activity Monitoring products and platformsProven experience (4+ years) in Threat Assessment & MitigationCertified Counter-Insider Threat Professional - Fundamentals (CCITP-F)Certified Counter-Insider Threat Professional - Analysis (CCITP-A)Completion of Center for Development of Security Excellence (CDSE) Insider Threat Detection Analysis Course (ITDAC)Completion of Workplace Assessment of Violence Risk (WAVR-21) WorkshopCompletion of Center for Development of Security Excellence (CDSE) Curriculums; INT311.CU / INT312.CU / CI201.CUSemper Valens Solutions is an Equal Opportunity Employer
Semper Valens Solutions proactively fulfills its role as an equal opportunity employer. We do not discriminate against any employee or applicant for employment because of race, color, sex, religion, age, sexual orientation, gender identity and expression, national origin, marital / parental status, pregnancy / childbirth, or related conditions, physical or mental disability, genetic information, status as a Disabled Veteran, Recently Separated Veteran, Active-Duty Wartime or Campaign Badge Veteran, Armed Forces Services Medal, or any other characteristic protected by law.
If you require a reasonable accommodation to apply for a position with Semper Valens Solutions through its online applicant system, please contact Semper Valens Solutions Human Resources Department at (830) 899-6870.
Semper Valens Solutions is an affirmative action / equal opportunity employer - minorities, females, disabled, and protected veterans are urged to apply. Applicants have rights under Federal Employment Laws.
All Jobs at Semper Valens Solutions :