Job Details

ID #45959074
State Missouri
City Chantilly
Job type Permanent
Salary USD TBD TBD
Source World Wide Technology
Showed 2022-09-24
Date 2022-09-23
Deadline 2022-11-21
Category Et cetera
Create resume

Cyber Security Operations Specialist

Missouri, Chantilly 00000 Chantilly USA

Vacancy expired!

Why WWT? Fueled by creativity and ideation, World Wide Technology strives to accelerate our growth and nurture future innovation. From our world class culture, to our generous benefits, to developing cutting edge technology solutions, WWT constantly works towards its mission of creating a profitable growth company that is a great place to work. We encourage our employees to embrace collaboration, get creative and think outside the box when it comes to delivering some of the most advanced technology solutions for our customers. At a glance, WWT was founded in 1990 in St. Louis, Missouri. We employ over 8,000 individuals and closed nearly $14 Billion in revenue. We have an inclusive culture and believe our core values are the key to company and employee success. WWT is proud to announce that it has been named on the FORTUNE "100 Best Places to Work For®" list for the 11th consecutive year! Want to work with highly motivated individuals that come together to form high performance team? Come join WWT today! We are looking for a Cyber Security Operations Specialist to join our Government Services team within Public Sector to support our client fully on-site in St. Louis, MO or Springfield, VA. Why should you join the Government Services team? Our Government Services team provides cleared resources with a global reach to federal civilian, Department of Defense (DoD) and intelligence community markets. We excel at delivering innovative, operationally ready and cost-effective IT solutions that accelerate the interoperability and resiliency of mission critical systems. Want to learn more about Government Services? Check us out on our platform: https://www.wwt.com/public-sector https://www.wwt.com/government-services

Responsibilities:
  • Provide cyber threat intelligence services for the collection, fusion, analysis, creation, and distribution of threat intelligence from government entities, commercial feeds, open sources, and other partners to obtain situational awareness of the threat environment.
  • Provide cyber threat intelligence services on an expanded 12x5 service support level during core hours and on-call support with two-hour response time during non-core hours.
  • Cyber threat intelligence services shall develop and disseminate reports and tippers to internal and external stakeholders based on events, alerts, and incidents on customer systems and networks.
  • Implements and monitors security measures for communication systems, networks, and provide advice that systems and personnel adhere to established security standards and Governmental requirements for security on these systems.
  • Receive tickets from other Cybersecurity Operations Services sub-services and conduct detailed analysis to validate any event/alert/incident
  • Categorize, prioritize, investigate, and assess cybersecurity events/alerts/incidents to identify the extent and scope of the event/alert/incident and what impact there is on the operation or systems
  • Update and forward tickets to other Cybersecurity Operations Services to customer as needed
  • Collect, aggregate, and analyze artifacts and evidence from all available tools, knowledge sources, and data artifacts to determine and document the who, what, when, where, why and how of an intrusion, its extent, how to limit damage, and how to recover
  • Submit custom signatures and tuning requests as needed to Network Security Services, Endpoint Security Services, and Cybersecurity Data Analysis Services
  • Assists the C-IRT by assessing ongoing incident activity to predict adversary responses and locations of compromise
  • Documents tickets and analysis to a level of detail sufficient to reconstruct the analyst's analysis, to include but not limited to the steps taken, timelines, and data required to justify the analyst's assessment
  • Provide custom metrics reports including incident category types, tools used, number of indicators, time opened at each step, trending statistics, service availability, system utilization, etc.
  • Provide input to the daily CSOC Significant Activity, Operations, and the weekly CSOC Status Report
  • Advanced Cybersecurity Analytics, coordinate with Network Security Services, Endpoint Security Services, and Cybersecurity Data Analysis Services to develop or tune rules/signatures/scripts
Qualifications:
  • Bachelor's Degree in a Technical field (i.e. Information Technology, Information Systems, Computer Science)
  • 4+ years' experience working in Cyber Security Operating Host Based Security System (HBSS), firewalls, Intrusion Prevention Systems, Intrusion Detection Systems, other point of presence security tools, Virtual Private Networks, and related security operations.
  • Must have an active DoD 8570.01-M IAT Level II certification
  • CSSP Infrastructure Analyst certification, highly preferred
  • Utilize the SIEM to perform 24/7 monitoring, detection, and initial triage (identify, investigate, categorize, prioritize, ticketing, and forwarding) of events/alerts/incidents.
  • Experience with Cyber Incident Response Team (C-IRT) Services
  • Cyber Incident Quality Control Services - Conduct Quality Control reviews of a percentage closed Tier II tickets each week to ensure proper analysis, categorization, documentation, and notification
  • Cyber Threat Intelligence Services - Conduct emerging threat and intelligence fusion analysis
  • Cyber Threat Emulation Services; Develop, test, and when properly authorized, execute custom scripts, programs, and/or other capabilities to emulate cyber threats to include Cyber Data Presentation Services
  • Cyber Hunt Services/Planned Hunt Services; update, and document tickets in the authorized ticketing system to initiate the incident response.
  • Must have an active TS/SCI Security Clearance (US Citizenship required)

These Qualifications Would be Nice to Have:
  • IAT Level III
  • Master's Degree in a Technical field
(Public Sector) Diversity, Equity, and Inclusion is more than a commitment at WWT it is the foundation of what we do. Through diverse networks and pipelines, we have a clear vision: to create a Great Place to Work for All. We believe inclusion includes U. Be who U are at WWT! The well-being of WWT employees is essential. So, when it comes to our benefits package, WWT has one of the best. We offer the following benefits to all full-time employees:
  • Health and Wellbeing: Health, Dental, and Vision Care, Onsite Health Centers, Employee Assistance Program, Wellness program
  • Financial Benefits: Competitive pay, Profit Sharing, 401k Plan with Company Matching, Life and Disability Insurance, Tuition Reimbursement
  • Paid Time Off: PTO & Holidays, Parental Leave, Sick Leave, Military Leave, Bereavement
  • Additional Perks: Nursing Mothers Benefits, Voluntary Legal, Pet Insurance, Employee Discount Program
World Wide Technology, Inc. offers excellent benefits and competitive compensation. Visit our company web page at www.wwt.com for more information. Equal Opportunity Employer Minorities/Women/Veterans/Differently abled

Some WWT customers have a COVID-19 vaccine requirement. In order to work on projects for these customers, employees must be fully vaccinated or have an appropriate religious or medical accommodation.

Vacancy expired!

Subscribe Report job