Company

Raytheon TechnologiesSee more

addressAddressArlington, VA
type Form of workFull-Time

Job description

Date Posted:
2023-04-19
Country:
United States of America
Location:
VA149: 1110 N Glebe Road Arlington 1110 North Glebe Road Suite 630, Arlington, VA, 22201 USA
Position Role Type:
Hybrid
Raytheon is seeking Cyber Forensics Analysts to support the DHS Hunt and Incident Response Team (HIRT). This team secures the Nation's cyber and communications infrastructure while providing front line response for cyber incidents and hunting for malicious cyber activity. Raytheon, as a prime contractor to DHS, performs HIRT investigations to develop a diagnosis of the severity of breaches. Contract personnel provide front line response for digital forensics/incident response and proactively hunting for malicious cyber activity for this critical customer mission. Raytheon is seeking a senior Cyber Threat Hunter to support this mission.
Responsibilities:
- Perform event correlation using information gathered from a variety of sources within the enterprise to gain situational awareness and determine the effectiveness of an observed attack
- Assesses network topology and device configurations identifying critical security concerns and providing security best practice recommendations
- Collects network intrusion artifacts (e.g., PCAP, domains, URI's, certificates, etc.) and uses discovered data to enable mitigation of potential incidents
- Collects network device integrity data and analyze for signs of tampering or compromise
- Analyzes identified malicious network and system log activity to determine weaknesses exploited, exploitation methods, effects on system and information
- Tracking and documenting on-site incident response activities and providing updates to leadership through executive summaries and in-depth technical reports
- Planning, coordinating and directing the inventory, examination and comprehensive technical analysis of computer related evidence
- Serving as technical forensics liaison to stakeholders and explaining investigation details
Required Skills:
- U.S. Citizenship
- Must have an active Secret clearance (TS/SCI eligible) and be able to obtain DHS Suitability
- 8+ years of directly relevant experience in cyber forensic and network investigations using leading edge technologies and industry standard forensic tools
- Experience leading cross functional teams conducting Cyber Threat hunting activities
- Experience with reconstructing a malicious attack or activity
- Ability to characterize and analyze network traffic, identify anomalous activity / potential threats, analyze anomalies in network traffic using metadata
- Ability to create forensically sound duplicates of evidence (forensic images)
- Able to write cyber investigative reports documenting forensics findings
- In depth knowledge and experience of:
  • utilizing COTS and custom developed tools to detect APT activity
  • reviewing threat reports and searching the network for applicable IOC (Indicators of Compromise)
  • identifying different classes and characterization of attacks and attack stages
  • CND policies, procedures and regulations
  • security threats and vulnerabilities of network topologies, Wi-Fi Networking, and TCP/IP protocols
  • Splunk (or other SIEMs)
  • Vulnerability scanning, assessment and monitoring tools such as Security Center, Nessus, and Endgame
  • MITRE Adversary Tactics, Techniques and Common Knowledge (ATT&CK)

- Must be able to work collaboratively across physical locations.
Desired Skills:
- Experience and proficiency with the following tools and techniques:
  • EnCase, FTK, SIFT, X-Ways, Volatility, WireShark, Sleuth Kit/Autopsy, and Snort
  • EDR Tools: Crowdstrike, Carbon Black, Etc
  • Carving and extracting information from PCAP data
  • Non-traditional network traffic: Command and Control
  • Preserving evidence integrity according to national standards
  • Designing cyber security systems and environments in a Linux environment
  • Virtualized environments
  • Conducting all-source research

Required Education:
8+ years of experience and BS Computer Science, Cybersecurity, Computer Engineering or related degree; or HS Diploma and 10+ years of host or digital forensics or network forensic experience
Desired Certifications:
- GCFA, GCFE, EnCE, CCE, CFCE, CEH, CCNA, CCSP, CCIE, OSCP, GNFA
HIRTRIS
Employee Referral Award Eligibility:
This requisition is eligible for an employee referral award. ALL eligibility requirements must be met to receive the referral award.
This position is eligible for a Sign On Bonus dependent on the candidates skill.
This position is eligible for Relocation.
Arlington, VA
#RISCyber
#RISCPS
#RISHIRT
RTX is An Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or veteran status, age or any other federally protected class.
Privacy Policy and Terms:
Click on this link to read the Policy and Terms
Refer code: 7444292. Raytheon Technologies - The previous day - 2023-12-27 19:21

Raytheon Technologies

Arlington, VA
Popular Cyber Threat Hunter jobs in top cities
Jobs feed

LPN Home Care Coordinator

Piedmont Health Services, Inc.

Burlington, NC

$47.5K - $60.1K a year

Nurse, Medical Office, LPN

Wakemed

Durham, NC

$45.7K - $57.9K a year

Staff Nurse RN / LPN

Peak Resources Alamance

Graham, NC

$53.3K - $67.4K a year

LPN/RN (Contract)

Prolific Nursing

Durham, NC

$40 an hour

LPN-Durham Pediatrics

Duke Health

Durham, NC

HOSPICE LICENSED PRACTICAL NURSE

Liberty Health

Durham, NC

$52.5K - $66.4K a year

Licensed Practical Nurse (LPN) Staff Nurse PRN -

Freedom Staffing Services

Burlington, NC

$67.1K - $85K a year

Registered Nurse (RN) or Licensed Practical Nurse (LPN)

Pettigrew Rehabilitation Center

Durham, NC

$31.50 - $40.50 an hour

LICENSED PRACTICAL NURSE - PARKVIEW HEALTH AND REHABILITATION CENTER

Liberty Health

Chapel Hill, NC

$50.7K - $64.2K a year

LPN -Ortho Spine Clinic 1B/1C

Duke Health

Durham, NC

Share jobs with friends

Cyber Threat & Vulnerability Hunter

Saic Motor

CHANTILLY, VA

a month ago - seen

Cyber Threat Hunter

General Dynamics Information Technology

$104K - $132K a year

Falls Church, VA

4 months ago - seen

Cyber Threat Hunter - Hybrid

XOR Security

Ashburn, VA

6 months ago - seen