Company

LeidosSee more

addressAddressOhio, United States
type Form of workFull-Time
CategoryInformation Technology

Job description

Leidos has a current job opportunity for a Cyber Security Analyst/AWS Detection Engineer specializing in cloud security and SIEM/SOAR Development. Areas of focus would be Amazon Web Services monitoring using Splunk and Elastic for the DISA GSM-O II program in Columbus, OH.
A successful candidate will have experience in cyber analysis/incident response and SIEM/SOAR development. Candidates with experience using Elastic and Splunk within AWS environments will be able to apply that knowledge while analyzing and responding to cyber threats and warnings.
POSITION SUMMARY:
The Cyber Security Analyst/AWS Detection Engineer develops SIEM/SOAR capabilities to support the team's Cyber Security Service Provider (CSSP) services. This will include developing, implementing, testing, and executing detection capabilities for AWS security monitoring using Elastic and Splunk.
PRIMARY RESPONSIBILITIES:

  • Work with site threat emulation/analytic development team to maximize detection opportunities referenced to the MITRE ATT&CK framework.
  • Develop, implement, and test analytics using Elastic and Splunk to detect malicious actor activity within AWS IaaS environments.
  • Review operation and threat reports to determine detection improvement opportunities.
  • Provide analyst training opportunities using test environments and emulations of malicious activity.
  • Assist/advise other teams within COLS-NA on their cloud security missions as needed.

BASIC QUALIFICATIONS:
  • Active DoD Secret security clearance and ability to obtain TS/SCI
  • DoD 8570 IAT level II or higher certification such as CompTIA Security+ CE, CySA+, ISC2 SSCP, SANS GSEC prior to starting.
  • DoD 8570 CSSP-A level Certification such as CEH, CySA+, GCIA or other certification is required within 180 days of hire.
  • Demonstrated commitment to training, self-study and maintaining proficiency in the technical Cyber Security domain and an ability to think and work independently.
  • Bachelor's degree and 4+ years of prior relevant experience; additional work experience or Cyber courses/certifications may be substituted in lieu of degree.
  • Knowledge of architecture, engineering, and operations of Elastic and/or Splunk.
  • Understanding of AWS Cyber Security monitoring tools such as CloudWatch, GuardDuty, VPC Flow logs, and Security Hub.
  • Strong written and oral communications skills and strong analytical and troubleshooting skills.
  • An ability to think critically and work independently.

PREFERRED QUALIFICATIONS:
  • CND experience (Protect, Detect, Respond and Sustain) within a Computer Incident Response organization
  • Experience with Azure and Google Cloud Platform (GCP) is desirable.
  • Demonstrated understanding of the life cycle of network threats, attacks, attack vectors and methods of exploitation with an understanding of intrusion set tactics, techniques and procedures (TTPs).
  • Advanced understanding of TCP/IP, common networking ports and protocols, traffic flow, system administration, OSI model, defense-in-depth and common security elements.
  • Unix/Linux command line experience.
  • Experience with automation templates such as CloudFormation, ARM template, or terraform.
  • Scripting and programming experience such as PowerShell, bash, or python.
  • Motivated self-starter with strong written and verbal communication skills, and the ability to create complex technical reports on analytic findings.
  • Familiarity or experience in Intelligence Driven Defense and/or Cyber Kill Chain methodology.
  • Existing 8570 CSSP Analyst Certifications (CEH), CySA+, etc.
  • Vendor specific certifications

Original Posting Date:
2024-02-19
While subject to change based on business needs, Leidos reasonably anticipates that this job requisition will remain open for at least 3 days with an anticipated close date of no earlier than 3 days after the original posting date as listed above.
Pay Range:
Pay Range $81,250.00 - $146,875.00
The Leidos pay range for this job level is a general guideline only and not a guarantee of compensation or salary. Additional factors considered in extending an offer include (but are not limited to) responsibilities of the job, education, experience, knowledge, skills, and abilities, as well as internal equity, alignment with market data, applicable bargaining agreement (if any), or other law.
Refer code: 9238670. Leidos - The previous day - 2024-05-12 02:31

Leidos

Ohio, United States
Jobs feed

Client Service Representative - bilingual Spanish required

Bank Of America

Las Vegas, NV

Non CDL Delivery Driver - Day Shift

Shamrock Foods

California, United States

Receiving Runner (Days)

Shamrock Foods

Aurora, CO

Cybersecurity and Readiness Training Manager

Ivy Tech

Suffolk, VA

General Labor 2nd Shift

Land O'lakes

Hillsboro, WI

Senior Manager FP&A - SG&A

Vail Resorts

Remote - United States

Medical Lab Technician

University Of North Dakota

Grand Forks, ND

Maintenance Trainee Associate

Land O'lakes

Little Chute, WI

IT BUSINESS ANALYST IV

Te Connectivity

Pennsylvania, United States

Share jobs with friends

Related jobs

Cyber Security Analyst / Aws Detection Engineer

Cyber Security Analyst

Mantech

Herndon, VA

just now - seen

Cyber Security Analyst III 03451 NWSOL

North Wind Group

RICHLAND, WA

3 days ago - seen

Cyber Security Analyst | SOC Analyst 1

Iteom

Chicago, IL

4 days ago - seen

Cyber Security Analyst - Data Protection

The Aes Corporation

Virginia, United States

5 days ago - seen

Cyber Security Analyst /Nightshift (6PM - 6AM)

Caci International Inc

Virginia, United States

7 days ago - seen

Cyber Security Analyst /Dayshift (6AM - 6PM)

Caci International Inc

Virginia, United States

7 days ago - seen

Cyber Security Analyst III

Love's Travel Stops

Oklahoma City, OK

2 weeks ago - seen

Regional Cyber Security Analyst

Peraton

Arlington, VA

2 weeks ago - seen

Cyber Security Analyst

Dane Street

Lorida, FL

2 weeks ago - seen

Cyber Security Analyst / SharePoint - Power Platform SME

Leidos

Ohio, United States

2 weeks ago - seen

Cyber Security Analyst (MMC)

Teksystems

Colorado Springs, CO

2 weeks ago - seen

Cyber Security Analyst (MMC)

Skiltrek

Colorado Springs, CO

2 weeks ago - seen

Cyber-Security Analyst

Hawaii Pacific University

Honolulu, HI

2 weeks ago - seen

Senior Cyber Security Analyst

Santa Clara Valley Water District

San Jose, CA

2 weeks ago - seen

Information Security (Cyber) Analyst

Indus Technology, Inc.

Kekaha, HI

2 weeks ago - seen

Cyber Security Analyst

City Of Costa Mesa, Ca

Costa Mesa, CA

2 weeks ago - seen

Lead Cyber Security Operations Center (SOC) Analyst

State Street

Quincy, MA

2 weeks ago - seen