drjobs Industrial Control System Cyber Threat Intelligence Analyst

Industrial Control System Cyber Threat Intelligence Analyst

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Arlington, TX - USA

Monthly Salary drjobs

$ 112000 - 179000

Vacancy

1 Vacancy

Job Description

Responsibilities

Peraton is currently hiring an Industrial Control System Cyber Threat Intelligence Analystfor its Federal Strategic Cyber programs.

Location: Arlington VA. Flexible for occasional telework must be local to work location.

In this role you will:

  • Fuse multiple intelligence sources to develop products recommendations and inform priorities for the organization.
  • Perform research and investigates current threats in operational technology specific critical infrastructure sectors and mission areas to inform senior leaders and drive priorities for operational teams including the forward deployed incident response and threat hunting functions.
  • Analyze collected data to derive facts and projections concerning capabilities intentions attack approaches research resource allocations motivations tendencies personalities; and contribute to profiling adversarial behavior with respect to identified system attacks in the context of the critical infrastructure mission.
  • Research and review cyber warfare tactics techniques and procedures focused on the threat to information networks.
  • Prepare assessments and cyber threat profiles of current and planned products based on recent and current trends within ICS/SCADA.
  • Escalate new or high threats to the Cyber Physical Forensics Team as required.
  • Research OT defensive tactics techniques and procedures (TTPs) for detecting and responding to cyber threats.
  • Map ICS activity and threats using MITRE ATT&CK Framework.
  • Seamlessly work alongside a team of host network and cloud forensic analysts to meet the mission requirements for both incident response and threat hunting engagements.
  • Serve as subject matter expert (SME) for ICS Security activities.
  • Identify potential opensource vulnerabilities existing within ICS/SCADA.
  • Identify and assess current and emerging threats and vulnerabilities as they relate to homeland security.
  • Identify classified threat intelligence reporting related to ICS/SCADA and analyze for adversary intent and capability.
  • Develop and maintain analytical procedures to meet changing requirements.
  • Produces highquality papers presentations recommendations and findings for senior US government intelligence and operations officials.
  • Serve as a customer facing SME supporting them achieve success with the technology for their overall ICS security efforts.

#CISA

Qualifications

Required qualifications:

  • Bachelors degree and 8 years of experience or an Associates degree and 10 years or HS and 12 years of experience in lieu of a degree.
  • Experience performing processing triage threat analysis and response to cyber incident reports.
  • Experience with industrial Control Systems (ICS) Operational technology (OT) Supervisory Control and Data Acquisition (SCADA) systems and the underlying principles necessary to ensure security and safe function of ICS systems.
  • Experience connecting opensource information with network and/or hostbased anomalies (e.g. identifying cyber threat intelligence about suspicious processes finding new insights through tools such as VirusTotal understanding of how to find threat intelligence about malformed HTTP traffic etc..
  • Handson experience with opensource cyber threat/related tools (e.g. VirusTotal Maltego Shodan exploitdb etc..
  • Experience researching and analyzing cyber threats across either a) multiple industries or b) multiple timeframes. Including but not limited to the critical infrastructure sectors.
  • Practical experience using common threat intelligence analysis models such as MITRE ATT&CK the Diamond Model and the Cyber Chain to incorporate into client reports.
  • Experience producing and completing allsource (unclassified and classified) finished intelligence assessments that adhere to the ICD203 analytic tradecraft standards.
  • Proven ability to collaborate and establish key threat intelligence partnerships to bolster information sharing and defenses.
  • U.S. citizenship required.
  • An Active Top Secret Security Clearance with SCI eligibility.
    • Additionaly have the ability to obtain/maintain DHS EOD agency clearance prior to starting.

Preferred qualifications:

  • SANS Global Industrial Cyber Security Professional (GICSP).
  • SANS GIAC Response and Industrial Defense (GRID).
  • SANS GIAC Cyber Threat Intelligence (GCTI).

Peraton Overview

Peraton is a nextgeneration national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the worlds leading mission capability integrator and transformative enterprise IT provider we deliver trusted highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land sea space air and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day our employees do the cant be done by solving the most daunting challenges facing our customers. Visit peraton to learn how were keeping people around the world safe and secure.

Target Salary Range

EEO


Required Experience:

IC

Employment Type

Full-Time

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.