POSITION: Cyber Threat Analysis Support
LOCATION: O'Fallon, Illinois, Scott Air Force Base
REQUIRED SECURITY CLEARANCE: Top Secret with SCI eligibility
POSITION TYPE/STANDARD WORK HOURS: Full-time 40 hours per week
The Cyber Threat Analysis Support position will execute cyber threat analysis processes and procedures IAW DoD policy and USTRANSCOM Government direction. The position will provide cyber threat analysis and escalation support to USTRANSCOM's CSSP and Defensive Cyber Operations (DCO) missions on-site support at Scott AFB from 0730 to 1630 local time, Monday through Friday, and afterhours and weekend support, as required to support incident response and exercise activities with a one (1) hour response time to begin work.
PRIMARY RESPONSIBILITIES:- Perform threat analysis to support Department of Defense Information Network (DoDIN) operations for protection and defense of USTRANSCOM information systems and networks.
- Collect, analyze, and report on security events that affect the operation of USTRANSCOM information systems that are hosted within USTRANSCOM's and CSSP subscriber enclaves, and for systems hosted elsewhere for which USTRANSCOM is the Authorizing Official (AO).
- Gather information on cybersecurity events within USTRANSCOM's mission environment.
- Perform analysis and correlation on cybersecurity events.
- Collaborate with other cyber defense organizations (including but not limited to TCCs; Combatant Commands; Services and Agencies; Federal, regional, and local law enforcement agencies; National Intelligence organizations; and organizations identified via local monitoring capabilities).
- Collaborate with USTRANSCOM's intelligence community and cyber operational forces.
- Collect, analyze, and report security events that affect the operation of USTRANSCOM's mission environment and identified KT-C.
- Gather information on cybersecurity events within USTRANSCOM's mission environment.
- Maintain an awareness of active cyber threat actors and associated threat sets.
- Predict trends in cyber threat activity relative to USTRANSCOM operations or interests.
- Highlight potential effects to system performance and mission capabilities
- Collect and provide the Government with monthly metrics on cyber threat analysis activity.
- Maintain current documentation on cyber threat analysis processes and procedures and provide to the Government.
MINIMUM QUALIFICATIONS:- 5+ years of experience with monitoring and identifying vulnerabilities, anomalies, and active threats; looking at the network from an investigative perspective, using security Information and Event Management (SEIM) tools to analyze traffic data
- 5+ years of experience with incident response, including containment, eradication, and system recovery
- Certified Network Defender (CND) certification
- CompTIA Security+ (ce) certification
SUPERVISORY RESPONSIBILITIES:This position does not supervise others.
WORK ENVIRONMENT:This job operates in a professional office environment. This role routinely uses standard office equipment.
PHYSICAL DEMANDS:Must be able to operate a computer and other standard office equipment. Must be able to remain in a stationary position, 80%.
TRAVEL:Minimal travel, 5 - 10%.
OTHER DUTIES: Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and/or activities may change at any time with or without notice.
COMPENSATION:BTAS adheres to federal, state, and local regulations. This is a Full-Time, Salary, Exempt position. Salary is subject to a variety of factors, including but not limited to years of experience, education, certification(s), training, specialized skills, responsibilities, etc. The salary range for this position is $85,000 - $105,000 annually.
BTAS BENEFITS:A comprehensive benefits program, including paid time off, federal holidays, health coverage, 401K plan with generous company match is offered to all full-time employees. Part-time employees may have access to limited benefits.