What are the responsibilities and job description for the Critical Solutions is hiring: Content Developer (w/ active TS) in Ashburn position at Critical Solutions?
Job Description
Job Description
Content Developer (w / active TS)
Location : Ashburn, VA
Full-time, On-site
Clearance : Top Secret w / SCI eligibility
JOB DESCRIPTION
Critical Solutions has an immediate opening for a highly experienced SIEM Content Developer to support our federal customer in Ashburn, VA.
The SIEM Content Developer will provide support during core business hours and will also participate in an on-call rotational schedule.
Duties include proactively searching for threats. Inspect traffic for anomalies and new malware patterns. Investigate and analyze logs. Provide analysis and response to alerts when escalated from junior analysts, and document activity in SOC investigations and Security Event Notifications (SENs). Develop custom content within the SIEM using advanced SPL language and data models) or other network security tools to detect threats and attacks against the department. SIEM Content Developers participate in briefings to provide expert guidance on new threats and will act as an escalation point for M&A analysts. The analyst may also be required to author reports and / or interface with customers for ad-hoc requests. In addition, the SIEM Content Developer analyst may be asked to participate in discussions to make recommendations on improving SOC visibility or process.
PRIMARY ROLES AND RESPONSIBILITIES :
- Participate in an on-call rotational schedule
- Creating and implementing custom IOCs and IOAs in Crowdstrike
- Triaging and investigating hosts using Crowdstrike
- Update McAfee AV signatures
- Create and maintain custom Tanium packages for collecting artifacts for continuous monitoring
- Provide recommendations for tuning and / or triaging notable events
- Perform critical thinking and analysis to investigate cyber security alerts
- Analyze network traffic using enterprise tools (e.g. Full PCAP, Firewall, Proxy logs, IDS logs, etc)
- Collaborate with team members to analyze an alert or a threat
- Stay up to date with latest threats and familiar with APT and common TTPs
- Utilize OSINT to extrapolate data to pivot and identify malicious activity
- Have experience with dynamic malware analysis
- Perform analysis of network traffic and correlating diverse security logs to perform recommendations for response
- Utilize the Cyber Kill Chain and synthesize the entire attack life cycle
- Review and provide feedback to junior analysts' investigation
- participate in discussions to make recommendations on improving SOC visibility or process
- Contribute to SOP development and updating
- Provide expert guidance and mentorship to junior analysts
BASIC QUALIFICATIONS :
Monitoring and Detection Analyst : a minimum of five (5) years of professional experience in security, information risk management, or information systems risk assessment, and must be knowledgeable in many areas such as Vulnerability Assessments, Intrusion Prevention and Detection, Access Control and Authorization, Policy Enforcement, Application Security, Protocol Analysis, Firewall Management, Incident Response, Data Loss Prevention (DLP), Encryption, Two-Factor Authentication, Web-filtering, and Advanced Threat Protection.
Vulnerability Assessment
SANS GIAC : GCIA, GCIH, GCFA, GPEN, GWAPT, GCFE, GREM, GXPN, GMON, GISF, or GCIH
PREFERRED QUALIFICATIONS :
ADDITIONAL INFORMATION :
CLEARANCE REQUIREMENT : Must possess an active DoD Top Secret clearance . In addition, selected candidate must undergo background investigation (BI) and finger printing by the federal agency and successfully pass the preceding to qualify for the position. US CITIZENSHIP IS REQUIRED due to the nature of the government contracts we support.
CRITICAL SOLUTIONS PAY AND BENEFITS :
Salary range $106,000 - $136,000. The salary range for this position represent the typical salary range for this job level and this does not guarantee a specific salary. Compensation is based upon multiple factors such as responsibilities of the job, education, experience, knowledge, skills, certifications, and other requirements.
BENEFIT SNAPSHOT : 100% premium coverage for Medical, Dental, Vision, and Life Insurance, Supplemental Insurance, 401K matching, Flexible Time Off (PTO / Holidays), Higher Education / Training Reimbursement, and more
Job Posted by ApplicantPro
Salary : $106,000 - $136,000