Cyber Threat Hunting Analyst
Arlington, VA
Full Time Mid-level / Intermediate USD 84K - 160K
Accenture Federal Services
Accenture hilft mit innovativen Lösungen und umfassender Branchenexpertise die Herausforderungen der digitalen Ära zu meistern. Erfahren Sie mehr!You Are:
The Cyber Threat Hunting Specialist will be responsible for proactively identifying and investigating cyber threats within the company network. Primary responsibility for this role involves conducting threat hunting investigations using internal tools within the internal corporate network. The threat hunter will be required to collaborate with Cyber Threat Intelligence and Incident Response teams as well as other security teams as needed. The resource should be familiar attack techniques as well as measures taken to hide malicious presence within an environment. Additionally, the resource will assist with creation and maintenance of team documentation, templates and metrics.
Key Responsibilities:
- Query and analyze server, workstation, and network log data for evidence of threats
- Document findings and create detailed reports on threat activity
- Analyze vulnerability descriptions and understand related risks at a technical level
- Understand server, workstation, and network architecture
- Ability to perform packet analysis when needed
- Prioritize vulnerabilities based on risk
- Research threat actor behaviors using online tools
- Process and convey technical details clearly and in a range of situations, both in writing and verbally
- Communicate effectively and clearly to leadership with relevant level of detail
- Collaborate with teams within IT, Security, and the company SOC
Here's What You Need:
- US Citizenship required
- 4 years of experience in Cyber Threat Intel / Threat Hunting related role.
- Experience collecting, processing, identifying, and tracking risk associated with threat intel data
- Kusto Query Language (KQL) experience
- Experience analyzing threat intel information to understand technical exploit methods used and risk to a specific environment
- Understanding fundamentals of network and server infrastructure
- Experience Reporting on and tracking remediation/mitigation efforts
- Microsoft Sentinel and Splunk Experience
- System Threat Modeling experience
Bonus Points if you have:
- Experience with Microsoft security tools (e.g. O365 Defender).
- MITRE ATT&CK and D3FEND frameworks experience.
- SOC experience.
- Bachelor's Degree in Cyber Security, or Information Security related field.
- Strong organizational skills, including attention to detail.
- Excellent communication (written and oral) and interpersonal skills.
- Demonstrated experience in writing and presentation skills.
- Ability to manage and prioritize multiple objectives with overlapping time constraints.
- Proven ability to work independently and as a team member.
- Relevant security certifications, including CISSP.
- Ability to research and quickly grasp unfamiliar information technologies.
- Linux OS, tools, and command line.
#LI-CorpFunction
As required by local law, Accenture Federal Services provides reasonable ranges of compensation for hired roles based on labor costs in the states of California, Colorado, Hawaii, Illinois, Maryland, Minnesota, New York, Washington, and the District of Columbia. The base pay range for this position in these locations is shown below. Compensation for roles at Accenture Federal Services varies depending on a wide array of factors, including but not limited to office location, role, skill set and level of experience. Accenture Federal Services offers a wide variety of benefits. You can find more information on benefits here. We accept applications on an on-going basis and there is no fixed deadline to apply.
The pay range for the states of California, Colorado, Hawaii, Illinois, Maryland, Minnesota, New York, Washington, and the District of Columbia is:$84,900—$160,200 USD What We Believe We have an unwavering commitment to diversity with the aim that every one of our people has a full sense of belonging within our organization. As a business imperative, every person at Accenture Federal Services has the responsibility to create and sustain an inclusive environment. Inclusion and diversity are fundamental to our culture and core values. Our rich diversity makes us more innovative and more creative, which helps us better serve our clients and our communities. Read more here Equal Employment Opportunity Statement Accenture Federal Services is an Equal Opportunity Employer. We believe that no one should be discriminated against because of their differences, such as age, disability, ethnicity, gender, gender identity and expression, religion or sexual orientation. All employment decisions shall be made without regard to age, race, creed, color, religion, sex, national origin, ancestry, disability status, veteran status, sexual orientation, gender identity or expression, genetic information, marital status, citizenship status or any other basis as protected by federal, state, or local law. Accenture is committed to providing veteran employment opportunities to our service men and women. For details, view a copy of the Accenture Equal Opportunity and Affirmative Action Policy Statement. Requesting An Accommodation Accenture Federal Services is committed to providing equal employment opportunities for persons with disabilities or religious observances, including reasonable accommodation when needed. If you are hired by Accenture Federal Services and require accommodation to perform the essential functions of your role, you will be asked to participate in our reasonable accommodation process. Accommodations made to facilitate the recruiting process are not a guarantee of future or continued accommodations once hired. If you are being considered for employment opportunities with Accenture Federal Services and need an accommodation for a disability or religious observance during the interview process or for the job you are interviewing for, please speak with your recruiter. Other Employment Statements Applicants for employment in the US must have work authorization that does not now or in the future require sponsorship of a visa for employment authorization in the United States. Candidates who are currently employed by a client of Accenture Federal Services or an affiliated Accenture business may not be eligible for consideration. Job candidates will not be obligated to disclose sealed or expunged records of conviction or arrest as part of the hiring process. The Company will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. Additionally, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the Company's legal duty to furnish information. California requires additional notifications for applicants and employees. If you are a California resident, live in or plan to work from Los Angeles County upon being hired for this position, please click here for additional important information.
Tags: C CISSP Exploit Incident response Linux MITRE ATT&CK Sentinel SOC Splunk Threat intelligence Vulnerabilities
Perks/benefits: Health care Salary bonus
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.