Cyber Security Operations 3 - Hunt Services

GDIT
Springfield, VA, USA
$80.2K-$134K a year
Full-time

Job Description :

TCS is hiring a new member to our Cyber Security Operations 3 - Hunt Services team. This role will proactively search for indicators of compromise on NCE systems through planned Hunt missions.

  • Assign the Cybersecurity Operations Manager to direct and oversee all Contractor support for this sub service and serve as the primary Contractor representative to the government CSOC Director for coordination, collaboration, planning, communication, status updates, and necessary approvals of all actions in support of this sub-service
  • Operate as an end user, the relevant Technical Services assets contained within the Government Furnished Information - Software Tools list in accordance with vendor instructions, industry best practice, and government directives, policies, procedures, etc.
  • Provide subject matter experts capable of conducting a deep analysis of raw data from assets supporting Network Security Services, Endpoint Security Services, and Cybersecurity Data Analysis Services
  • Proactively search and identify indicators of compromise and anomalous behavior which is indicative of malicious behavior that has not yet met the event / incident threshold, or has not been detected by automated security tools

More About the Role :

  • Proactively search and identify indicators of compromise and anomalous behavior which is indicative of malicious behavior that has not yet met the event / incident threshold, or has not been detected by automated security tools.
  • Assess date from multiple sources and navigates the cyber terrain to identified suspicious behavior.
  • Obtain data for validating predictive models generated by advanced analytics.
  • Augment identification and tracking of incidents.
  • Create, update, and document tickets in the authorized ticketing system to initiate the incident response process any incidents discovered during the continuous hunt;

tickets shall contain to contain sufficient information to meet the equivalent ticket created via Tier 1 and Tier 2 and shall include a level of detail

sufficient to enable the Government and other contract services to systematically reconstruct the analysis and methodology and any conclusions reached.

  • Provide input to the daily CSOC Significant Activity Report, the daily CSOC Operations Update, and the Weekly CSOC Status Report.
  • Proactively investigate anomalous behavior which is indicative of malicious behavior but has not yet met the event / incident threshold and / or has not been detected by automated security tools
  • Assessing and validating predictive models as provided by other services to locate potential adversary intrusions and unauthorized activity.
  • Other duties as assigned

You'll Bring These Qualifications :

  • Current TS / SCI and must obtain a CI Poly within 6 months of Start
  • Bachelor's Degree in a Technical Field
  • 5+ years' experience working in related Cyber area.
  • Current Security+ CERT to start work on program; however, will need to obtain IAT Level III and CSSP Analyst Certification within six (6) months of your start date.

The cost of the certification(s) will be covered by CACI. In the event that you do not obtain the required certification(s) within the 6-month timeframe, you will be asked to depart the program.

These Qualifications Would be Nice to Have :

Master's Degree

The likely salary range for this position is $80,226 - $133,973. This is not, however, a guarantee of compensation or salary.

Rather, salary will be set based on experience, geographic location and possibly contractual requirements and could fall outside of this range.

Scheduled Weekly Hours :

Travel Required : None

None

T elecommuting Options :

Onsite

Work Location : USA VA Springfield

USA VA Springfield

30+ days ago
Related jobs
Promoted
Accenture Federal Services
Reston, Virginia

Accenture Federal Services is seeking a Cloud Services Operations Admin that will work in support 24x7 Operations. At Accenture Federal Services, nothing matters more than helping the US federal government make the nation stronger and safer and life better for people. Our 13,000+ people are united i...

Promoted
CACI
Springfield, Virginia

CACI's Transport & Cybersecurity Services (TCS) program is actively hiring TS/SCI cleared Cyber Security Operations Specialists to join our CSOC Tiered Services team! We are seeking mission-focused individuals to provide various levels of CSOC services (Tier 1, Tier 2, and Tier 3). Our team of talen...

Promoted
Valiant Integrated Services
Herndon, Virginia

Experience in Intelligence Operations / Analysis / Support to Field Operations. Valiant is seeking Operations Advisors to support our customer’s challenging operational requirements at multiple locations in the Washington Metropolitan Area. Valiant Integrated Services is an equal opportunity/affirma...

Promoted
MITRE
McLean, Virginia

The CE will be a core leader in enabling the mission strategy of the eight Cyber Operations and Effects Capability Areas: Defensive Cyber Operations (DCO), Cyber Threat Intelligence (CTI), Cyber Analytics and Malware, Cyber Adversary Emulation, Cyber Deception and Adversary Engagement, Cyber Forensi...

Promoted
Accenture Federal Services
Fairfax, Virginia

Collaborate with cross-functional teams, including IT, cybersecurity, and field operations, to enhance intelligence capabilities. Accenture Federal Services is seeking a Operations Research & Systems Analysis. Experience in cybersecurity or information assurance within military contexts. At Accentur...

Promoted
Acclaim Technical Services
Reston, Virginia

The Cyber Security Engineer must display an excellent understanding of technology and utilization of Firewalls (Security Groups), VPNs, Data Loss Prevention (DPS), IDS/IPS, Web-Proxy, Security tools, and Security Audits. HBSS), cryptography systems (Vormetric), SIEM (Splunk), and MDM; Formulate syst...

GDIT
Springfield, Virginia

Utilize agency approved ticketing systems to document, track, assign, update, and coordinate all engineering, integration, configuration, and maintenance actions Use various monitoring, analysis, and visualization tools to track effectiveness, status, performance metrics, and other information as ne...

ALTA IT Services
Springfield, Virginia

High School diploma / GED + 10 years or Associate Degree + 8 years or Bachelor’s Degree + 6 plus years’ experience working in Cyber Security Operating Host Based Security Systems (HBSS), firewalls, Intrusion Prevention Systems, Intrusion Detection Systems, other point of presence security tools, Vir...

CACI International Inc
BRB SPRING VA

CACI's Transport & Cybersecurity Services (TCS) program is actively hiring TS/SCI cleared Cyber Security Operations Specialists to join our CSOC Tiered Services team! We are seeking mission-focused individuals to provide various levels of CSOC services (Tier 1, Tier 2, and Tier 3). Our team of talen...

Sabree Software Services
Herndon, Virginia

Basic knowledge is helpful, but not required for the following general topics: Cloud security control implementation, PKI implementation, STIG compliance and vulnerability management, and Security, Development and Operations (SecDevOps). Document the various security control implementations as well ...