Search jobs > Atlanta, GA > Cyber threat analyst

Cyber Threat/Incident Analyst (Associate/Sr./Engineer/Sr. Engineer)

Federal Reserve Bank of Atlanta
Atlanta, Georgia, US
Full-time

Company : Federal Reserve Bank of Atlanta

Please double check you have the right level of experience and qualifications by reading the full overview of this opportunity below.

As an employee of the Atlanta Fed, you will help support our mission of promoting the stability and efficiency of the U.S.

economy and financial system. Your work will affect the economy of the Southeast, the United States, and the world. The work we do here is important, and how we do it is just as important as what we do.

We live our values of integrity, excellence, and respect every day. A career at the Federal Reserve Bank of Atlanta gives you the chance to do work that touches lives and helps communities prosper.

We are a dynamic hybrid workplace environment that requires at least 2 days a week in the office.

Position Summary :

The Threat and Vulnerability Management team provides vulnerability management and incident response services for the 6th Federal Reserve District.

Under direct supervision from management and other team members, the TVM Analyst uses existing processes and procedures to solve routine or standard problems required to protect the organization’s information assets.

Works with critical and sensitive information daily and is relied upon to maintain intended security safeguards.

Key Responsibilities :

Participates in one functional area defined below as primary responsibility and assists in other areas as requested.

  • Foundational Skills :
  • Limited prior knowledge and experience with :
  • The MITRE ATT&CK framework.
  • Digital Forensics and Incident Response (DFIR).
  • Common cyber-attacks, malware, and the risk they pose.
  • Security Information Event Manager (SIEM) technology : searches, log analysis, and creation of alerts / alarms.
  • Typical enterprise networking architecture, protocols, and packet analysis.
  • Current trends in malware, cyber-attacks, and OS / application vulnerabilities.
  • Web application vulnerabilities, such as injection, configuration, information leakage, and typical threats, attacks, and countermeasures.
  • Dynamic web application vulnerability assessment scanners : configuration, scanning, and interpreting / triaging test results.
  • Enterprise network vulnerability scanning applications, including use and administration.
  • Communicating with stakeholders regarding cyber topics, can drive results to reduce risk in the environment.
  • Threat hunting methodologies and frameworks.
  • Cloud service provider technologies and security.
  • Function Areas :
  • Flaw Remediation
  • Applies patches, configurations, group policy objects, or other remediation activities to workstations and other endpoints using a variety of toolsets.
  • Reviews reports and conducts additional research on how to remediate vulnerabilities.
  • Coordinates remediation activities.
  • Host Vulnerability Assessment
  • Manages and maintains network scanning configuration (but not infrastructure).
  • Measures, reports, analyzes, and communicates vulnerabilities in terms of both risk and compliance.
  • Notifies stakeholders of vulnerabilities, collaborates on remediation recommendations, tracks and escalates remediation performance.
  • Incident Response
  • Manages all aspects of information security incidents. Prepares through exercises and continuous learning, performs evidence collections and analysis, contains and eradicates threats, documents activities, manages stakeholder communication and involvement, and conducts Lessons Learned reviews.
  • Communicates threats, impacts, and trend information to leadership and stakeholders.
  • Lead remediation projects where security gaps have been identified.
  • Incident Detection
  • Augments national SOC detection capabilities by implementing local detection interests. Collaborates with stakeholders on detection capabilities and use case design.
  • Monitors and analyzes logs and data, produces reports and real-time alerts.
  • Leverages industry frameworks to understand attacker tactics, techniques, and procedures to prioritize detection use cases.
  • Hunts for threats based on attack methods discovered from incidents, industry reports and intel.
  • Web Application Vulnerability Assessment
  • Identifies, validates, reports, and escalates vulnerabilities in web applications using dynamic and integrated application security testing (DAST & IAST).
  • Collaborates with stakeholders to understand vulnerability risks and remediation techniques.
  • Configures and maintains dynamic and / or integrated scanning applications.
  • Other Position Priorities :
  • Participates on workgroups and awareness activities, as requested by supervisor.
  • Represents the Information Security Department in client interactions, as requested by supervisor.
  • Stays current on new and emerging technologies.

Education :

Bachelor’s degree or equivalent work experience. Advanced Degree Preferred.

Experience :

  • Associate : 0-2 years of professional experience
  • Senior : 2+ years of professional experience
  • Engineer : 5+ years of experience
  • Senior Engineer : 7+ years of experience

Qualifications :

  • Cybersecurity Frameworks
  • Cybersecurity Principles
  • Vulnerability Management Tools
  • Patching Software Experience Big Fix, SCCM, or Ansible preferred
  • SIEM
  • Scripting Languages SQL and PowerShell preferred
  • Reporting Microsoft Excel, PowerBI, or Tableau preferred
  • Written / Verbal Communication
  • Certifications / Licenses (preferred) : ISC2, CompTIA, Cisco

Benefits :

  • Comprehensive healthcare options (Medical, Dental, and Vision)
  • 401K match, and a fully funded pension plan
  • Paid vacation and holidays; flexible work environment
  • Generously subsidized public transportation
  • Education Assistance Program
  • Professional development programs, training and conferences
  • And more

This is not necessarily an exhaustive list of all responsibilities, duties, performance standards or requirements, efforts, skills or working conditions associated with the job.

While this is intended to be an accurate reflection of the current job, management reserves the right to revise the job or to require that other or different tasks be performed when circumstances change (e.

g. emergencies, rush jobs, change in workload or technological developments).

The Federal Reserve Bank of Atlanta is an equal opportunity employer.

Job Type : Full Time

Job Category : Regular

Job Exempt : No

Work Shift : First (United States of America)

The Federal Reserve Banks believe that diversity and inclusion among our employees is critical to our success as an organization, and we seek to recruit, develop and retain the most talented people from a diverse candidate pool.

The Federal Reserve Banks are committed to equal employment opportunity for employees and job applicants in compliance with applicable law and to an environment where employees are valued for their differences.

Always verify and apply to jobs on Federal Reserve System Careers (https : / / rb.wd5.myworkdayjobs.com / FRS) or through verified Federal Reserve Bank social media channels.

J-18808-Ljbffr

3 days ago
Related jobs
Promoted
VirtualVocations
Decatur, Georgia

A company is looking for an Associate Cloud Engineer to support their Cloud Services team. ...

Chick-fil-A, Inc.
Atlanta, Georgia

Computer Science, Software Engineering, Computer Engineering, or related technical field. Chick-fil-A is looking for a Sr. Lead Front-End Software Engineer - Web Architect to provide technical direction to a number of web products in our consumer portfolio, including our core web ordering experience...

Salesforce
Atlanta, Georgia

As a Full Stack Engineer, you’ll use your extensive knowledge of JavaScript, HTML, CSS as well as Hack on the backend to improve the Slack web client, a complex in-browser application relied upon by millions of users every day. You will work with real-time data streams, engineer for performance acro...

City of Atlanta
GA, United States

Bachelor's degree in Civil Engineering or Environmental Engineering or related field. Master's degree in Civil Engineering or Environmental Engineering or related field. Engineer-in-Training (EIT) or Fundamentals of Engineering (FE) or ability to obtain within 12 months of hire. Our engineers help k...

Jeevan Technologies Inc
Atlanta, Georgia

Sr Software Engineer Location: Atlanta, GA OnsiteEmployment Type: W2 Overview:We are seeking a highly skilled and motivated Software Development Engineer with 8-11 years ofexperience to join our dynamic Payment Gateway team. ...

DHL
Atlanta, Georgia

Please make sure you read the following details carefully before making any applications.Our People! We know each employee’s individual contributions make us the #1 Delivery and Logistics Company in the world.World’s Best Workplace by Great Place to Work and Fortune Magazine.DHL is committed to main...

Canada Workday ULC
Atlanta, Georgia

As a Senior Machine Learning Engineer, you will research, develop and build impactful and scalable personalized recommendation systems and generative AI applications within the Human Capital Management space. You will work closely with other ML engineers, software developers and product teams to del...

WarnerMedia Services, LLC
Atlanta, Georgia

As a VDI Infrastructure Engineer, you will be an expert in architecting, designing, installing, configuring, and maintaining our company’s virtual desktop platforms. The VDI Infrastructure engineer will bring a high-level of expertise in the administration of VMWare Horizon, Windows and Linux deskto...

HD Supply
Atlanta, Georgia

We are committed to creating a culture that promotes equity, respect, and advocacy for every HD Supply associate. ...

Welsh & Associates
Smyrna, Georgia

Bachelor’s degree in civil, environmental engineering, chemical engineering, or mechanical engineering. Registered as a Professional Engineer (PE) or ability to become registered within six months of start of employment. ...