Cyber Engineer Sr

  • SAIC, Inc
  • Chantilly, VA, USA
  • Jun 25, 2021

Job Description

Description

JOB DESCRIPTION

SAIC is seeking a Senior Cyber Security Analyst, to serve as a Blue Team Vulnerability Assessment subject matter expert. Conducts Blue Team risk and vulnerability assessment at the network, system and application levels. Conducts cyber threat modeling exercises with commercial tools such as Red Seal, Sky Box or like tools. Ensure applicable Blue Team Vulnerability Assessment discipline is applied. Leverage customer/contractual Vulnerability Assessment Process Framework to include documentation creation and review as it relates the assessment, document risk/issues. Designs, tests, and implements secure operating systems, networks, security monitoring, tuning and management of IT security systems and applications, incident response, digital forensics, loss prevention, and eDiscovery actions.

Must have thorough understanding in a wide range of security issues including vulnerability assessment architectures, firewalls, electronic data traffic, and network access. Experience with utilizing commercial tools such as NESSUS, KIBANA, RedSeal, Lancope, WireShark, etc.  Researches, evaluates and recommends new security tools, techniques, and technologies and introduces them to the enterprise in alignment with IT security strategy. Utilizes COTS/GOTS and custom tools and processes/procedures in order to scan, identify, contain, mitigate and mitigate vulnerabilities, and intrusions. Assists in the implementation of the required government security policy ICD/503 in support of Cyber lab environment.

Performs analyses to validate established security requirements and to recommend additional security requirements and safeguards. Support cyber metrics development, maintenance and reporting. Supports the formal Security Test and Evaluation (ST&E) required by each government accrediting authority through pre-test preparations, participation in the tests, analysis of the results, and preparation of required reports. Periodically conducts review of each system's audits and monitors corrective actions until all actions are closed. Experience with providing briefings to senior staff. Applies advanced technical principles, theories, and concepts. Contributes to development of new principles and concepts. Participates with senior managers to establish strategic plans and objectives: Serves as organization spokesperson on advanced projects and/or programs. Acts as advisor to management and customers on advanced technical research studies and applications.

Qualifications

Qualifications

TYPICAL EDUCATION AND EXPERIENCE: Bachelors and five (5) years or more experience; Masters and three (3) years or more experience; PhD or JD and zero (0) years or more experience in a Technology, IT, or Cybersecurity field.

DoD Directive 8570 / 8140 IAT/IAM III or IASE Level II Certification


Desired Qualifications:

Certified Information Systems Security Professional (CISSP)

  • ISACA Certified Information Systems Auditor (CISA)
  • EC-Council Certified Ethical Hacker (CEH)
  • SANs GIAC certification (e.g., GPEN or GW APT)
  • Offensive-Security Certified Professional (OSCP)
  • Experience with Cyber threat methodologies

 

Desired Specific Blue Team Skills:

  • Identification and Validation of Security Flaws
  • Network Mapping / Network Analysis
  • Vulnerability Analysis
  • Pen-testing network filters and security countermeasures
  • Threat Hunting
  • Incident Response
  • Forensic Analysis