Data Scientist/Analyst - 29733
Enlighten, honored as a Top Workplace from USA Today, is a leader in big data solution development and deployment, with expertise in cloud-based services, software and systems engineering, cyber capabilities, and data science. Enlighten provides continued innovation and proactivity in meeting our customers’ greatest challenges.
Benefits
- 100% paid employee premium for healthcare, vision and dental plans
- 10% 401k benefit
- Generous PTO + 10 paid holidays
- Education/training allowances
Pay
Anticipated Salary Range: $144,501.00 - $190,000.00. The salary range for this role is intended as a good faith estimate based on the role's location, expectations, and responsibilities. When extending an offer, Enlighten takes a variety of factors into consideration which include, but are not limited to, the role's function, internal equity and a candidate's education or training, work experience, certifications and key skills. Occasionally positions/roles may include additional non-recurrent compensation and will be addressed by the recruiter during the interview process.
Responsibilities
- Champion Threat Awareness Sharing Capability (TASC) suite of applications
- Conduct threat hunt operations on assigned Big Data Platform(s) – BDP (JCRS-D)
- Present threat hunt findings through live-interactive sessions either in person or remote
- Assist customer(s) with their threat hunting operations
- Collaborate with customers to define requirements and operational gaps to maximize satisfaction
- Serve as an advisor to the customer on data enrichment and functions to enhance customer experience
- Perform quality assurance checks on data that is resident on the platform
- Evaluate and analyze new or potential data feeds to determine relevance and usability of data for customer(s)
- Support analytic requests (data query search, visualizations, dashboards, etc.)
- Leverage advanced statistical modeling to uncover hidden patterns and translate them into intuitive, customer-facing visualizations
- Synthesize diverse data streams into coherent data products that help customers visualize their progress and identify new opportunities
- Provide real time customer support during normal working hours
- Maintain situational awareness of emerging cyber threats for possible action and notification to an impacted customer(s)
- Provide documentation on data feeds and deliverables
- Support demonstration requests to showcase various capabilities of the platform
- Additional duties as assigned
Requirements
- Must currently have and maintain an active TS/SCI level U.S. Government Security Clearance; U.S. Citizenship required
- Minimum of 9+ years experience in cyber security operations related fields with Bachelors in Information Technology, Cyber Security or related field; 7 years relevant experience with Masters in related field; or High School Diploma or equivalent and 13 years relevant experience
- Experience with the DoW customers, ideally supporting US Cyber Command, DISA or DCDC, or Service Cyber Components
- Presenting analysis to stakeholders of varying data knowledge levels
- Proficient in various query languages (SQL, KQL (Kusto))
- Python experience, and bonus for experience using Jupyter notebooks
- Experience with dashboarding/visualizations (Power-Bi, Superset)
- Familiarity with cloud providers and environments (Azure, AWS, Google Cloud Platform)
- Cyber Hunt methodologies and techniques
- SIEMs - (e.g., Splunk, Q-Radar, ELK)
- SOARs (e.g., Sentinel, CORTEX, X-SOAR)
- Developing and deploying threat detection signatures
- Collecting data from a variety of cyber defense resources (e.g., CVE, OSINT)
- Recognizing and categorizing types of vulnerabilities and associated attacks
- Reading and interpreting signatures (e.g., SNORT, SIGMA, Yara, YAML)
- Network traffic analysis methods (e.g., TCP-DUMP, Wireshark, Zeek)
- Familiar with cyber attack stages (MITRE ATT&CK), and incident response and handling methodologies
- Intrusion Detection System (IDS)/Intrusion Prevention System (IPS) tools and applications
- Strong interpersonal skills and the ability to interact effectively with others
- Ability to speak in a public forum
- Excellent organizational skills and attention to detail
- Ability to work independently and as part of a team
- Support training events either in-person or virtually
- Strong writing skills
- Must be able to travel up to 40% of the time CONUS and OCONUS
- Must be able to work on customer site in Fort Meade, MD 5 days/40 hours a week. Flexibility to adapt to changes is needed in this customer facing role
Skills
- Data+, Security+, CySA+, GCIH, GNFA, GCFA or other industry recognized Cybersecurity Certification (preferred)
- DoW SOC experience is a huge plus
- Prior experience or familiarity with Big Data Platforms or Data Lake architectures is a plus