drjobs Cyber Threat Specialist Senior (225338)

Cyber Threat Specialist Senior (225338)

Employer Active

1 Vacancy
drjobs

Job Alert

You will be updated with latest job alerts via email
Valid email field required
Send jobs
Send me jobs like this
drjobs

Job Alert

You will be updated with latest job alerts via email

Valid email field required
Send jobs
Job Location drjobs

Savannah, GA - USA

Monthly Salary drjobs

Not Disclosed

drjobs

Salary Not Disclosed

Vacancy

1 Vacancy

Job Description

Cyber Threat Specialist Seniorin GAC Savannah


Unique Skills:

Preferred:
Experience with incident response security operations malware analysis digital forensics or threat hunting
Experience with UEBA EDR XDR DLP SIEM and SOAR concepts/technologies
Experience in Intelligence Driven Defense Cyber Kill Chain methodology and/or MITRE ATT&CK framework.
Experience with Threat Modeling
Experience with Penetration Testing and/or Vulnerability Management
Experience in the area of Cloud Security CCSP or CCSK a plus
Experience securing MS AD/Entra ID environments
Experience in Networking and/or Firewalls a plus
Basic knowledge in one or more programming/scripting languages (Python Perl Ruby and/or PowerShell)
Deep understanding of the life cycle of cybersecurity threats attacks attack vectors and methods of exploitation
with an understanding of intrusion set tactics techniques and procedures (TTPs)
Strong analytical and troubleshooting skills


Education and Experience Requirements

Bachelors Degree or equivalent combination of education and experience to successfully perform the essential functions of the job. Degree in information security Computer Sciences or Technology related field preferred. 10 years of related experience.

Position Purpose:

The Cyber Threat Spec Sr. provides management with a clear picture of threats associated with Business Technology assets in a way that enables them to make wellinformed decisions regarding threat management. This is achieved through the effective communication of information collected through various tools analysis of event and incident reports utilizing both automated and manual methods. The Cyber Threat Spec Sr. must also be capable of supervising and guiding the forensics team to include conducting computer forensic investigations data recovery electronic discovery and leading an incident response team.

Job Description

Principle Duties and Responsibilities:

Essential Functions:
  1. Conducting forensic collections of electronic evidence including information system and network devices for legal human resources ethics and information security.
  2. Applying forensic software/hardware applications to analyze digital media images; determining solutions for recovery of potentially relevant information.
  3. Examining and analyzing network traffic related applications and operating systems to identify potential threats anomalous or malicious activities to network resources; validating Intrusion Detection System (IDS) alerts.
  4. Analyze security data to effectively detect intrusions & attempted intrusions and to initiate and engage the proper resources to mitigate the risk.
  5. Providing reports and documents regarding network security incidents details and outcome; leads efforts in troubleshooting problems and recommending vulnerability corrections.
  6. Monitoring and improving documentation and reporting processes for cyber incident status and results.
  7. Design and implementation of the organizational information security solutions and continuously enhancing information security approaches and methodologies.
  8. Lead incident response team in addressing and managing the aftermath of a security breach or attack. Must be trained and have experience in incident response procedures and practices .
  9. Defining process issues and resolutions; facilitating and overseeing computer forensics processes.
  10. Conducting security assessments penetration testing and ethical hacking.
  11. Identifying analyzing and reporting threats or hidden events within the enterprise network by using defensive measures and information collected from a variety of sources to protect data information systems and networks.
  12. Perform analysis and investigations using data from firewalls IPS VPN web filtering SIEM IDS email filtering and forensic tools.
  13. Contributes to the development and maintenance of the information security strategy.

Additional Functions:
  1. Able to be on call for incidents and problems; also able to work different shifts. .
  2. Able to travel as needed. .
  3. Proficient in the use of incident response and forensics tools such as FTK Encase and Cellebrite. .

Perform other duties as assigned.

Other Requirements:
  1. Must have an understanding of cyber forensics networking and information security technologies and be able to demonstrate outsidethebox thinking and continuous learning.
  2. Experience with the following operating systems: Windows OSX IOS Linux or UNIX.
  3. Security Certification such as CISSP CEH ACE EnCE CCE Security etc. required.

A credit history check from a national credit bureau will be conducted for all candidates for this position including new hires and current employees seeking promotion or transfer.

Additional Information

Requisition Number: 225338

Category: Information Systems

Percentage of Travel: Up to 25%

Shift: First

Employment Type: Fulltime

Posting End Date: 05/02/2025

Equal Opportunity Employer / Individuals with Disabilities / Protected Veterans

Gulfstream does not provide work visa sponsorship for this position unless the applicant is a currently sponsored Gulfstream employee.

Legal Information Site Utilities Contacts Sitemap
Copyright 2025 Gulfstream Aerospace Corporation. All Rights Reserved. A General Dynamics Company.

Gulfstream Aerospace Corporation a whollyowned subsidiary of General Dynamics (NYSE: GD) designs develops manufactures markets services and supports the worlds most technologicallyadvanced business jet aircraft


Required Experience:

Senior IC

Employment Type

Full Time

About Company

Report This Job
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.