Cyber Incident Responder - Fusion L4 DC Washington, DC
IT Veterans is seeking a talented Cyber Incident Responder L4. The successful applicant should be expected to identify potential cyber threats, determine levels of risk, and produce analytical reports for a variety of audiences. You will occasionally be required to present your findings in front of senior executives, so the ability to translate technical indicators into layperson’s terms is vital. You must have an active TS/SCI clearance with the ability to gain and maintain a CI Poly.
Outstanding problem-solving skills are essential. When serious threats are identified, you will work closely with other areas of the security team to identify appropriate solutions. You must be passionate about technology, and able to learn the ropes of new security solutions rapidly.
Indicators of Compromise (IOC)s will be obtained through: forensic analysis of digital information, Open Source Intel (OSINT) review/monitoring, available tools both customer provided and free, and pivoting/researching on previously reported IOCs.
Must have common knowledge of standard network infrastructure.
Other items that would be good to know include: domain masquerading, certificates, and file hashing.
Familiar with monitoring emerging threats through Tools, Techniques, and Procedures (TTPs) and how they relate to the MITRE ATT&CK framework
Participate in collaborative sessions with other CNDSPs and IC agencies on malicious intrusions, attacks or suspicious activities, as well as share emerging Cyber Threat Intel data.
Assist in the development of IOCs for active defensive countermeasures and passive detection signatures.
Good written communications skills are necessary in order to properly document and report the identification and sharing of newly identified IOCs.
Attention to detail and ability to work with team-members and independently.
TS/SCI clearance with the ability to gain and maintain a CI Poly.
Bachelor’s degree and 8 years’ experience
Must have and maintain a DoD 8570 IAT II certification as well as a DoD 8570 CSSP Infrastructure certification. Viable certifications that meet this requirement are CEH, CySA+, GICSP, SSCP, CHFI or CFR.These certifications must be obtained within 30 days of acceptance if not already certified.
At IT Veterans LLC, we are committed to providing an environment of mutual respect where equal employment opportunities are available to all applicants and teammates without regard to race, color, religion, sex, pregnancy, national origin, age, physical and mental disability, marital status, sexual orientation, gender identity, gender expression, genetic information, military and veteran status, and any other characteristic protected by applicable law. We believe that diversity and inclusion among our teammates is critical to our success.