Company

Quantum Research International, Inc.See more

addressAddressFort Belvoir, VA
type Form of workFull-Time
CategoryInformation Technology

Job description

Overview: Quantum Research International, Inc. (Quantum) is a certified DoD Contractor providing services and products to US/Allied governments and industry in the following main areas: (1) Cybersecurity, High Performance Computing Systems, Cloud Services and Systems; (2) Space and Ground Support Systems; (3) Aviation Systems; (4) Missile Systems; (5) Artificial Intelligence/ Machine Learning Systems and Experimentation/Training; and (6) Audio Visual Systems and Services. Quantum's Corporate Office is in Huntsville, AL, but Quantum actively hires for positions nationwide and internationally.

We pride ourselves on providing high quality support to the U.S. Government and our Nation's Warfighters. In addition to our corporate office, we have physical locations in Aberdeen; MD; Colorado Springs, CO; Orlando, FL; Crestview, FL; and Tupelo, MS.

Mission: As a member of the NGA DEFENDER Computer Network Exploitation team, the contractor executes computer network operations via penetration testing and emulating Advanced Adversaries, Insider Threats, and Purple Team against NGA systems for the purpose of strengthening information system security. Cyber Vulnerability Assessment Analysts will help develop and execute plans leveraging multiple cyber threat Tactics, Techniques and Procedures (TTP's) to breach and/or exfiltrate data in such a way as to minimize the risk of detection by a Security Operations Center (SOC). The positions also require the ability to protect data successfully exfiltrated from a targeted network and to provide mitigations to its exploits or observations that are resource-realistic, systemic, and actionable to buy down risk.

This position is available immediately and supports the National Geospatial-Intelligence Agency (NGA) onsite at NGA headquarters in Springfield, VA. Responsibilities: The ideal candidate will assist the customer in providing technical and engineering support to sensitive and highly regulated Computer Network Exploitation (CNE) operations designed to identify vulnerabilities subject to Advanced Persistent Threats (APT) or other emerging, time sensitive cyber threats on the customers networks. This includes: Performing assessments of systems and networks within the network environment or enclave and identifying where those systems/networks deviate from acceptable configurations, enclave policy, or local policy.

Developing measures of effectiveness for defense-in-depth architectures against known vulnerabilities. Identifying systemic security issues based on the analysis of vulnerability and configuration data. Applying programming language structures (e.g., source code review) and logic.

Sharing meaningful insights about the context of an organization's threat environment that improve its risk management posture. Applying cybersecurity and privacy principles to organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation). Requirements: Bachelor's (Intermediate) or Master's (Advanced) degree in Computer Science or Information Systems or other technically relevant degree; 6-10 years of direct CYBER VULNERABILITY ASSESSMENT experience may be accepted in lieu of Bachelors or Masters Knowledge of Government standards for data security such as markings, handling of classified and unclassified information, and how to handle the distribution of this information Knowledge of computer networking concepts and protocols, and network security methodologies, risk management processes (e.g., methods for assessing and mitigating risk), and laws, regulations, policies, and ethics as they relate to cybersecurity and privacy.

Knowledge of cyber threats and vulnerabilities, and operational impacts of cybersecurity lapses. Knowledge of cryptography and cryptographic key management concepts and host/network access control mechanisms (e.g., access control list, capabilities list). Knowledge of how traffic flows across the network (e.g., Transmission Control Protocol [TCP] and Internet Protocol [IP], Open System Interconnection Model [OSI], Information Technology Infrastructure Library, current version [ITIL]).

Knowledge of system and application security threats and vulnerabilities (e.g., buffer overflow, mobile code, cross-site scripting, Procedural Language/Structured Query Language [PL/SQL] and injections, race conditions, covert channel, replay, return-oriented attacks, malicious code). Knowledge of what constitutes a network attack and a network attack's relationship to both threats and vulnerabilities. Knowledge of cyber-attack stages (e.g., reconnaissance, scanning, enumeration, gaining access, escalation of privileges, maintaining access, network exploitation, covering tracks).

TS/SCI eligible, subject to CI Polygraph IAT Level 2 and Two Penetration Testing Certifications w/ At Least One Being an Advanced Certification (e.g., OSCP, OSCE, OSEE, GSE, GXPN, CPT) Desired/Preferred Skills Conducting vulnerability scans and recognizing vulnerabilities in security systems. Assessing the robustness of security systems and designs. Detecting host and network-based intrusions via intrusion detection technologies (e.g., Snort).

Mimicking threat behaviors and the use of penetration testing tools and techniques. Using network analysis tools to identify vulnerabilities. (e.g., fuzzing, Nmap, etc.).

Reviewing logs to identify evidence of past intrusions and conducting application VULNERABILITY ASSESSMENTs. Conducting ethical hacking and penetration testing following established principles and techniques. Equal Opportunity Employer/Affirmative Action Employer M/F/D/V: All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, age, disability, veteran status, genetic information, sexual orientation, gender identity, or any other characteristic protected by law.

*Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

Refer code: 7752465. Quantum Research International, Inc. - The previous day - 2024-01-07 08:47

Quantum Research International, Inc.

Fort Belvoir, VA
Jobs feed

Gastroenterologist

Adelphi Medical Staffing, Llc

Texas, United States

OBGYN (Goodyear, AZ)

Mdstaffers

Arizona, United States

Bartender - Brier Creek Chili's

Chili's

Raleigh, NC

Radiation Oncologist

Adelphi Medical Staffing, Llc

Ohio, United States

Anesthesiology in California

Vista Staffing Solutions

California, United States

To Go - Fingerlakes Crossing Chili's

Chili's

Auburn, NY

Coastal Virginia, Inpatient C/A Psychiatry opening, Norfolk

Universal Health Services

Norfolk, VA

Orthopedic Surgeon

Adelphi Medical Staffing, Llc

Pueblo, CO

Family Practice w/ OB - $450,000+

The Medicus Firm

Iowa, United States

Share jobs with friends

Related jobs

Cyber Vulnerability Assessment Analyst (Nga)

MOC Standardization and Assessment Analyst

Booz Allen Hamilton, Inc.

Norfolk, VA

2 months ago - seen

Cyber Cloud Vulnerability Assessment Analyst

Saic Motor

CHANTILLY, VA

3 months ago - seen

Mid-level Web Application Security Assessment Analyst

Saic

Ashburn, VA

4 months ago - seen

Mid-level Vulnerability Assessment Analyst

XOR Security

Alexandria, VA

5 months ago - seen

Vulnerability Assessment Analyst and Penetration Tester

G4i Staffing

Winchester, VA

5 months ago - seen

STRATEGIC ANALYST/NET ASSESSMENT

SimIS Inc.

Norfolk, VA

5 months ago - seen

Strategic Analyst / Strategic Foresight (Net Assessment)

Systems Planning and Analysis, Inc.

Norfolk, VA

5 months ago - seen

Strategic Analyst - Net Assessment

Prevailance, Inc.

Norfolk, VA

5 months ago - seen

Jr. Aerospace Engineer - Risk Assessment Analyst

Peraton

Herndon, VA

5 months ago - seen

ATFP Assessment Analyst SME

Prevailance, Inc.

Virginia Beach, VA

5 months ago - seen

Data Analyst / Engineer (Net Assessment)

Systems Planning and Analysis, Inc.

Norfolk, VA

5 months ago - seen