Malware Analyst II - 24x7 Shift Cycle (Back-Half Night Shift)

Black Eagle Defense

$171K — $228K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 5 years of relevant experience in malware analysis
  • 3 years of direct experience with malware analysis techniques
  • 2 years of experience using tools like GHIDRA or FireEye AX
  • 1 year of programming experience in Python, Lua, C/C++, or Ruby
  • Certification in DoD 8570 compliance as CSSP Analyst
  • IAT Level I or II certification and computing environment certification
  • Specialized analysis certification (e.g., GCFA or GREM)

Responsibilities

  • Support clients by providing recommendations based on malicious code analysis
  • Analyze and evaluate malware to create technical reports for indicators of compromise
  • Continually improve malware analysis techniques and identification practices
  • Conduct research on emerging malicious code threats
  • Generate documentation of vulnerabilities and malicious exploitations
  • Support 24/7 monitoring of malware threats across networks and hosts
  • Collaborate with organizations to evaluate and address emerging threats

Benefits

  • Permanent fixed shift schedule with no rotation
  • Opportunity to work on complex, emerging cybersecurity challenges
  • Engagement with cutting-edge malware analysis tools and technologies
  • Collaboration with diverse internal and external teams
  • Growth opportunities in threat detection and response domains
Full Job Description
Job Description

SHIFT DETAILS This role operates on a fixed 12-hour shift schedule. The shift schedule is permanent upon hire and does not rotate between day and night shifts or different days of the week.

  • Back-Half Night: Wednesday - Saturday | 18:00 - 06:00 (6:00 PM - 6:00 AM)


SALARY RANGE $171,000 - $228,000/year.

DUTIES As a successful candidate for the Malware Analyst II, you will support clients in solving difficult problems by providing recommendations based on the results of malicious code analysis. Analyze and evaluate malicious code to create technical reports for indicators of compromise and to recommend mitigation and detection actions. Work to continually improve current malware analysis techniques and identify new ways to improve malware identification best practices. Conduct research and training on comprehending emerging malicious code threats.

Required Skills

SKILLS

  • Conduct both dynamic and static analysis of suspicious code in order to establish malicious capability and determine potential impact
  • Experience with host and network monitoring for analysis of malware execution & propagation methodologies
  • Perform analysis on captured data, such as audit, log, network traffic, et cetera, to identify any intrusion-related artifacts
  • Understanding of operating system-specific exploitation vectors
  • Analyze malicious code by employing tools, scripting languages, and leveraging virtual machines/environments
  • Support 24/7 monitoring of malware threats to networks, hosts, mission platforms, and boundaries
  • Generate documentation of vulnerabilities and exploits used by malware in written reports
  • Communicate written and verbal information in a timely, clear, and concise manner
  • Apply cybersecurity and privacy principles to organizational requirements (relevant to confidentiality, integrity, availability, authentication, non-repudiation)
  • Generate a technical summary of findings in accordance with established reporting procedures
  • Develop and recommend mitigation strategies
  • Develop signatures, techniques, and rules to identify malware vectors
  • Collaborate with internal and external organizations to evaluate emerging threats
  • Correlate data from multiple sources to identify probable threat actors


QUALIFICATIONS Candidate must possess five (5) years of relevant, demonstrated experience. Three (3) years of demonstrated experience with malware analysis. Two (2) years of demonstrated experience with tools such as GHIDRA, SYSInternals, FireEye AX, or similar technologies. One (1) year of demonstrated experience with the development of code in languages such as Python, Lua, C/C++, Ruby, or similar.

CERTIFICATIONS & TECHNICAL PROFICIENCIES

  • DoD 8570 Compliance: CSSP Analyst baseline certification.
  • IAT Certification: Must hold one certification from either Level I or Level II:
      • IAT Level I: A+ CE, CCNA-Security, CND, Network+ CE, or SSCP
        • IAT Level II: CCNA Security, CySA+, GICSP, GSEC, Security+ CE, CND, or SSCP
  • Computing Environment (CE) Certification: Microsoft OS, CentOS, or Red Hat OS certification.
  • Specialized Analysis Certification: Must hold at least one of the following:
    • GIAC Certified Forensic Analyst (GCFA)
    • GIAC Reverse Engineering Malware (GREM)
  • Required Training: Successful completion of the Splunk "Fundamentals 1" course.

Similar Jobs

More Jobs at Black Eagle Defense

More Information Technology Jobs

Find similar Malware Analyst II - 24x7 Shift Cycle (Back-Half Night Shift) jobs: