Overview Defend the DoD's enterprise cloud. You will drive incident response coordination, penetration testing and red team engagement analysis, and threat intelligence support for a federal enterprise cloud program - engaging directly with USCYBERCOM and DoD cyber defense organizations.
How You'll Make an Impact - Prepare incident reports and post-mortem analyses; coordinate incident reporting and tracking across internal and external resources.
- Coordinate penetration testing, red team engagements, and tabletop exercise planning and execution.
- Analyze threat intelligence to support Government prioritization and controlled dissemination.
- Review trusted system relations design and implementation across external systems and architectures.
- Analyze CSP deliverables against DoD cybersecurity requirements and standards.
What You'll Need to Join the Team - Bachelor's degree + 8 years of experience, OR 12 years total in cybersecurity operations (incident response, threat analysis, vulnerability management).
- Active TS/SCI clearance
- Meets DoD 8140 requirements for Work Role 531, Cyber Defense Incident Responder (Intermediate); alternate Work Role 541, Vulnerability Analyst.
What Sets You Apart - Experience with DoD cyber tools such as ESS, ACAS, Splunk, and eMASS.
- Prior CSSP, SOC, or DoD incident response team experience.
- Familiarity with cloud-native security services and IL4+ commercial cloud environments.
Certifications (examples of approved options) DoD 8140 WRC 531 (Intermediate) examples: GIAC GCIH, EC-Council CEH, CompTIA CySA+, EC-Council ECIH.