NAC-ISSA Job Board

NAC-ISSA Job Board/Volunteer Board

Explore the job postings available through NAC-ISSA!
Cybersecurity Analyst - Posted By Cary Pool

Job Title: Cybersecurity Analyst

Job Description: PeopleTec Inc. is looking for a mid to senior level Cybersecurity Analyst. The qualified candidate will be part of a team driving security improvement through assessments of Department of Defense systems and will perform multiple cyber vulnerability assessment functions including penetration testing, vulnerability scanning, security controls validation, and will support detecting, identifying, and mitigating organizational cyber threats. This position requires direct customer interaction and expertise in red teaming and/or penetration testing, and in developing defensive architectures and deployment of numerous cybersecurity technologies that aid in cyber threat risk reduction. Qualifications: - Experience working as a red team operator and/or penetration tester - TS/SCI clearance required - Experience with Information Assurance concepts and processes within the DOD - Excellent problem-solving capabilities - Demonstrated ability to write clearly, succinctly, and in a manner that appeals to both technical and non-technical audiences - B.S. or M.S. in Information Systems Security, Cybersecurity, Computer Science, or related discipline - 6+ years of similar work experience - CEH or GPEN or OSCP certification Preferred: - Experience with defensive cyber operations tools - CISSP certification PeopleTec Inc. is looking for a mid to senior level Cybersecurity Analyst. The qualified candidate will be part of a team driving security improvement through assessments of Department of Defense systems and will perform multiple cyber vulnerability assessment functions including penetration testing, vulnerability scanning, security controls validation, and will support detecting, identifying, and mitigating organizational cyber threats. This position requires direct customer interaction and expertise in red teaming and/or penetration testing, and in developing defensive architectures and deployment of numerous cybersecurity technologies that aid in cyber threat risk reduction. Qualifications: - Experience working as a red team operator and/or penetration tester - TS/SCI clearance required - Experience with Information Assurance concepts and processes within the DOD - Excellent problem-solving capabilities - Demonstrated ability to write clearly, succinctly, and in a manner that appeals to both technical and non-technical audiences - B.S. or M.S. in Information Systems Security, Cybersecurity, Computer Science, or related discipline - 6+ years of similar work experience - CEH or GPEN or OSCP certification Preferred: - Experience with defensive cyber operations tools - CISSP certification PeopleTec, Inc.

Salary Range: -

Certificates Required: CEH or GPEN or OSCP certification

Experience Required: 6+

Company: PeopleTec

Job Title: Cybersecurity Analyst

Posted By: Cary Pool

Posted Date: Wednesday, May 2, 2018

Apply Now
Cyber Hunt Analyst-Huntsville - Posted By Jeremy Conway

Job Title: Cyber Hunt Analyst-Huntsville

Job Description: The successful candidate will support the customer in cyber-threat hunting and associated investigations of systems developed and implemented to support the customer's mission and the supply chain used to develop their products. The candidate will be part of a team that will perform cyber-threat hunting with Defense Industrial Base suppliers to identify potential cyber-threat activity within their networks/systems. The successful candidate will perform hands-on investigations that require critical thinking and a broad understanding of multiple technologies. The incumbent will support development of presentations and reports to document findings, and will require good communication and interpersonal skills to convey findings in a tactful manner at the technical proficiency level of the audience. Responsibilities include: o Assist in the development and execution of cyber threat-hunting tactics, techniques, and procedures (TTPs) o Serve as a data analysis expert for output from a wide variety of cyber assessment tools and Big Data Analytics o Assist in analysis tool development, configuration, implementation and use o Analyze cyber-threat intelligence (e.g. actors, tools, exploits, malware, etc.) and determine TTPs used by threat-actors o Analyze security events and data feeds for event detection, correlation from monitoring solutions, conduct triage and classify the output using automated systems for further investigation o Assist in the discovery of cyber vulnerabilities and the investigation of global cyber security incidents, as required o Develop cyber protection improvement recommendations that support the remediation and protection of systems o Analyze and report on cyber-threats based on assessment and all-source intelligence o Translate analytical findings into security "use cases" that can be implemented within available surveillance capabilities o Provide detailed and accurate technical reporting of analysis results in the form of PowerPoint presentations and/or Word documents, as well as oral briefings on complex technical subjects attuned to senior management, technical, or non-technical audiences Position Requirements: o Practical knowledge of high-level scripting/programming language (e.g. Python, Pearl, PowerShell, etc.) to extract, de-obfuscate, or otherwise manipulate malware-related data o Proficient with forensic analysis tools and techniques to identify malware technical indicators of compromise and perform triage o Possess excellent oral and written communication skills and critical thinking abilities o Capable of working independently and within teams to solve complex problems o Able to work across multiple organizations, cultures and service providers to pull together actionable information and management information o Practical knowledge of Splunk policies, filters and rules to improve event analysis and data correlation o Have 5+ years of penetration testing, incident response, malware analysis, reverse engineering, or other similar work experience o Knowledge of Windows and Unix/Linux Operating Systems o Ability to perform analysis of network traffic and protocols o Background or experience in digital forensics is a plus Security Clearance: Require a current Secret clearance with an SSBI / Current Top Secret clearance with SCI eligibility preferred Education and Experience: MA/MS in related field or 10 years of experience in a cyber-related field Professional Certifications: Required to hold one or more current certifications equivalent to Offensive Security Certified Professional (OSCP), SANS GIAC Penetration Tester (GPEN), SANS GIAC Certified Incident Handler (GCIH), SANS GIAC Web Application Penetration Tester (GWAP), SANS GIAC Certified Intrusion Analyst (GCIA) Annual Travel Requirements: 20% - 30% Position Type Full-Time Day Shift

Salary Range: $100,000 - $120,000

Certificates Required: At least one of the following: Offensive Security Certified Professional (OSCP), SANS GIAC Penetration Tester (GPEN), SANS GIAC Certified Incident Handler (GCIH), SANS GIAC Web Application Penetration Tester (GWAP), SANS GIAC Certified Intrusion Analyst (GCIA)

Experience Required: 5+

Company: Sudo Secure/MAD Security

Job Title: Cyber Hunt Analyst-Huntsville

Posted By: Jeremy Conway

Posted Date: Tuesday, April 24, 2018

Apply Now
Job Board

Explore the job postings and volunteer positions that are available through NAC-ISSA! Volunteer positions earn CEUs for completed volunteer task! ISSA members can post inside the members portal!