Cyber Threat Detection & Response Analyst

Alexandria, VA, US

NTG

Explore NTG, a premier IT consulting & cybersecurity solutions provider, and step into a world where innovation meets security.

View all jobs at NTG

Apply now Apply later

Description

  

Position Summary

Our Cyber Threat Detection & Response Analyst will support the Joint Service Provider (JSP) Defensive Cyber Operations (DCO) organization with Cyber Threat Intelligence products and network security monitoring and will perform as the analyst in area of cyber threat intelligence.


Duties and Responsibilities

The essential functions include, but are not limited to the following:

  • Implement the core Threat Intelligence concepts (ex. Cyber Kill Chain, MITRE ATT&CK, DoDCAR)
  • Produce reporting for new or emerging threats and threat vectors
  • Utilize SIEM technologies to correlate security events and logs and identify threats.
  • Incorporate threat intelligence into countermeasures to detect and prevent intrusions and malware infections. 
  • Identify threat actor tactics, techniques and procedures and based on indicators develops custom signatures and blocks.
  • Understand and employ the MITRE ATT&CK Matrix.
  • Recognize what you’ll need to know to prevent or identify APT intrusions
  • Identify network architectures and select network components 
  • Understand concepts of log and packet analysis
  • Navigate the command line using specific expressions to manipulate data
  • Handle and organize disparate data about detections, attacks, and attackers
  • Discovery techniques and vetting of new intelligence
  • Create of Situational Awareness Reports and Threat Briefs
  • Participate in incident response activities including investigation, containment, eradication, and recovery
  • Document and escalate incidents according to standard operating procedures and coordinate with internal and external stakeholders as needed

Requirements

  Minimum Requirements

  • Bachelor’s degree in an IT related field or equivalent years of IT related experience 
  • Active and current Top Secret federal security clearance
  • 10+ years of cyber-related experience with demonstrated experience in threat detection.
  • Must meet DoD 8570/ 8140 IAT Level III certification requirements (e.g., CASP+, CISSP, or CySA)
Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  27  1  0

Tags: APT CASP+ CISSP Clearance Cyber Kill Chain DCO DoD DoDD 8140 DoDD 8570 Incident response Malware MITRE ATT&CK Monitoring Network security Security Clearance SIEM Threat detection Threat intelligence Top Secret

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.