Unfortunately, this job posting is expired.
Don't worry, we can still help! Below, please find related information to help you with your job search.
Some similar recruitments
Researcher - Threat Intelligence
Recruited by Control Risks 7 months ago Address Washington, DC, United States
Insider Threat Analyst Jobs
Recruited by USAJOBS 8 months ago Address Washington, DC, United States
Lab Technician (12Hr) 3724 - Local 57 (Hunter Plant) - Req# 110688
Recruited by PacifiCorp 8 months ago Address Castle Dale, UT, United States
Cyber Security Analyst Jobs
Recruited by Innovative Management Concepts, Inc. 9 months ago Address Honolulu, HI, United States
Cyber Threat Analyst Jobs
Recruited by USAJOBS 9 months ago Address Washington, DC, United States
Cyber Security Analyst Jobs
Recruited by Hire IT People, Inc 10 months ago Address Washington, DC, United States
Security Engineer (Threat Detection)
Recruited by SpaceX 11 months ago Address , Redmond, 98052, Wa $120,000 - $145,000 a year
Cyber & Intelligence - Technical Program Management (Summer 2023 Intern)
Recruited by Mastercard 1 year ago Address , Salt Lake City, Ut

Cyber Threat Hunter Jobs

Company

Cyberjin

Address Washington, DC, United States
Employment type FULL_TIME
Salary
Category Internet Publishing
Expires 2023-08-30
Posted at 9 months ago
Job Description
Remote role


Responsibilities:


  • Analyze security and event logs looking for anomalies and indications of malicious behavior
  • Craft and test scenarios for RTX’s security validation platform
  • Document hunt team findings for easy recall and to reduce duplication of effort
  • Perform daily research to identify new tools, tactics, and procedures for threat actors and malware families
  • Participate in technical discussions, projects, and debriefs with peers and senior leadership
  • Create detection content to support the automated identification of threats across the environment
  • Train and mentor junior analysts
  • Triage alerts generated from curated hunt team detection content and escalate as needed to other organizations within cybersecurity defense operations
  • Support Security Operation Center and Incident Response activities during both times of crisis and when needed to support incident ticket triage
  • Perform threat hunts based on current cyber threat intelligence or recent cyber events
  • Draft debriefings and collaborate with other teams within RTX cybersecurity
  • Perform micro or ad-hoc threat hunts for to answer RFIs from peers and leadership or to investigate anomalies picked up by security controls


Experience/Qualifications: The perfect candidate would have a working knowledge understanding of…


  • Security incident and event monitoring platforms
  • Malicious actors and the tools, techniques, and procedures they employ
  • Security controls (firewalls, antivirus, Endpoint Detection and Response platforms, Intrusion Detection Systems, packet capture tooling, etc.) and how they can be leveraged to spot anomalies
  • TCP/IP and how traffic navigates a network
  • Cyber threat hunt methodology and how malicious activity can be identified in a network
  • Scripting, particularly in Python, to support task automation
  • Windows and Unix based endpoints and servers
  • Different threat groups and the TTPs that make them unique
  • Cloud service providers and how those technologies fit within the business information system ecosystem
  • Log analysis and how events of interest can be linked together or corroborated
  • Why malicious actors would target an organization like RTX


Preferred Qualifications:


  • Prior experience within security operations, cyber threat hunting, or content detection development is required
  • Candidates with previous experience supporting cybersecurity operations within a cyber fusion center are desired
  • Must be comfortable meeting and working via teleconference and/or videoconference
  • Typically requires a University Degree or equivalent experience and a minimum 8 years of experience, or an Advanced Degree and a minimum 5 years experience.
  • Must be able to work well with others on a close-knit team
  • Must be fully vaccinated against Covid-19 Education:
  • Experience using Endpoint Detection and Response platforms and other cyber threat hunt tooling is also desired but not required
  • Must have excellent communication skills and be able to convey technical details to audiences of differing technical aptitude
  • Must be a self-starter, capable of identifying tasks and working projects with little oversight


Location: Remote


Work Authorization: US Citizen Required


Powered by JazzHR


PfiPsOTT74