Information System Security Officer
Dark Wolf · Ogden, UT · 4 wk ago
Information TechnologyFull-time
Vulnerability Management
- Provide recommendations.
- Implement mitigations.
Intrusion Analysis and Correlation
- Conduct intrusion analysis and correlation of unauthorized activities.
- Provide and implement recommendations to improve customer mitigation processes.
Cyber Incident Response
- Analyze cyber incidents, correlate incident details, and formulate and implement response actions with guidance from leadership.
- Participate in Root Cause Analysis process and documentation capturing efforts.
- Participate in the development of DCO tactics, techniques, and procedures.
- Participate in the development of DCO concept of operations, processes, and procedures.
- Identify security discrepancies and report and respond to security incidents.
- Provide research and analysis in support of expanding programs and areas of responsibility.
- Draft documentation for briefings, reports, and informational analyses.
- Assist in the development of local Tactics, Techniques, and Procedures (TTPs).
Training and Certifications
- Complete all initial and annual training requirements and disclosures as outlined by BSTG.
Qualifications
- 4+ years of relevant experience.
- 2+ years of experience with a SIEM Tool (LogRhythm, Splunk).
- 2+ years of experience with employment of DoD cybersecurity requirements, policies, and procedures to include assessment and authorization activities.
- Experience within a vSOC, SOC, or CSSP responding to cyber incidents.
- Department of Defense Directive (DoDD) 8140 (formerly DoDD 8570) IAT CSSP Certification must be obtained prior to hire (CEH, CCNA Security, GCIH, CySA+ or Equivalent).
- Bachelor’s degree in Computer Science, Information Technology, or a related field.
- US Citizenship and an active Top Secret/SCI security clearance required.
Desired Qualifications
- Experience performing cybersecurity activities in support of software and system requirements, design, development, testing, and sustainment.
- Experience with HBSS, ACAS, SCAP Compliance Checker (SCC), DISA STIGs.
- Experience with RHEL.
- Experience in performing post-incident computer forensics without destruction of critical data.
- Ability to provide guidance on DoD Cyber regulations and requirements to engineering and software development staff.
Pay
TBD
Schedule
N/A