What are the responsibilities and job description for the Cyber Threat Fusion Analyst position at Beyond SOF?
Position Summary
The client is looking for a Cyber Threat Fusion Analyst. This position will support the Joint Service Provider (JSP) Defensive Cyber Operations (DCO) organization with Cyber Threat Intelligence products and network security monitoring and will perform as the analyst in the area of cyber threat intelligence. This role will be based onsite at the Mark Center in Alexandria, VA. Some remote work will be allowed. An active TS / SCI security clearance is required prior to start.
Essential Job Functions
- Implement the core Threat Intelligence concepts (ex. Cyber Kill Chain, MITRE ATT&CK, DoDCAR).
- Produce reporting for new or emerging threats and threat vectors.
- Utilize SIEM technologies to correlate security events and logs and identify threats.
- Incorporate threat intelligence into countermeasures to detect and prevent intrusions and malware infections.
- Identify threat actor tactics, techniques, and procedures and based on indicators develop custom signatures and blocks.
- Understand concepts of log and packet analysis.
- Navigate the command line using specific expressions to manipulate data.
- Handle and organize disparate data about detections, attacks, and attackers.
- Employ discovery techniques and vetting of new intelligence.
- Create Situational Awareness Reports and Threat Briefs.
Minimum Required Qualifications
J-18808-Ljbffr