Defensive Cyber Operations (DCO) Counter-Measures Engineer

Science Applications International Corporation
Whitehall, NY, United States
2 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Compensation
$107,900.0 - $195,050.0
Working hours
Regular working hours

Tech stack

Java (Programming Language) Microsoft Windows Application Programming Interfaces (APIs) Agile Methodology Bash Shell Unix C++ (Programming Language) Cloud Computing CompTIA Security+ Cyber Security Information Systems Computer Programming
+30 more
Linux Global System for Mobile Communications Integrated Development Environments Internet Security OSI Models Information Systems Security Architecture Professional Python (Programming Language) Network Security Microsoft Security Essentials Network Administration Network Protocols Open Source Technology Open Systems Interconnection (OSI) Windows PowerShell Comptia Pentest+ CE Ruby TCP/IP Transmission Control Protocol (TCP) Virtualization Technology Web Analytics Snort (Software) Scripting Computer Network Operations Malware Git Tactics, Techniques and Procedures (TTPs) Malware Detection Api Design Cyber Warfare Vulnerability Analysis

Job description

Leidos’ Digital Modernization sector has a current job opportunity for a Defensive Cyber Operations (DCO) Counter-Measures Engineer.

This position will support the GSM-O II program, which provides network operations and cyber defense support to the Defense Information Systems Agency (DISA) in support of the DoD and COCOMs. The selected candidate will provide support for defensive cyber operations activities and will be expected to actively engage with a variety of customers and mission partners.

This position can be based out of any of our three core sites - Scott AFB, IL; Hill AFB, UT; or Columbus, OH. Partial/hybrid telework may be allowed, but a consistent on-site presence is required., * Author and deploy novel countermeasures to eliminate threats and illuminate their activities.

  • Assess the effectiveness of countermeasures on an ongoing basis and revector actions as needed.
  • Design and develop solutions to deliver automated cybersecurity services, conduct agile development & maintenance of automation script/tools to scale cybersecurity work across the enterprise.
  • Develop custom integrations, data correlation, and processing strategies to reduce cybersecurity risk and act as a Subject Matter Expert for the automation team.
  • Maintain situational awareness of cyber activity by reviewing DoD, Intelligence Community and open-source reporting for new vulnerabilities, malware or other threats that have the potential to impact the DoDIN.

Requirements

  • Must have an active DoD Secret clearance and be eligible to obtain TS/SCI
  • Bachelor’s degree in a related discipline with 8+ years of applicable experience; additional related years of experience is accepted in lieu of a degree.
  • Requires 8140 Cyber Defense Infrastructure Support Specialist 521 (CS) Intermediate-level compliance, to include one of the following certifications: Security+, PenTest+, CySA+, GSEC, or GMON.
  • Proficiency in programming in at least one modern language (Java, Python, Ruby, C++).
  • Custom malware detection development experience.
  • Advance understanding of TCP/IP, networking ports and protocols, traffic flow, system administration, OSI model, defense-in-depth and common security elements.
  • Understand the life cycle of network threats, attacks, attack vectors and methods of exploitation with an understanding of intrusion set tactics, techniques and procedures (TTPs).
  • UNIX Administrative skills.

PREFERRED SKILLS:

  • Experience with DISA and DoD Networks.
  • Experience countering APTs or emergent threats to DOD networks.
  • Skilled in developing extended cyber security analytics.
  • Experience in developing and supporting a development environment.
  • Experience automating tasks via Bash, Python, PowerShell, or other scripting tools.
  • Experience in Linux and Windows-based systems administration in a cloud or virtualized environment.
  • Experience with API development and integration.
  • Experience with Git, Sigma, Yara, Snort, and Suricata.
  • Experience with Detection-as-a-Code Principles.
  • Experience with malware analysis concepts and methods.
  • Advanced Certifications such as GREM, OSCP, CISSP or CASP., Administrative Skills, Agile Programming Methodologies, Application Programming Interface (API), Automation, Bash Scripting, C++ Programming Language, CISSP - Certified Information Systems Security Professional, Cloud Computing, CompTIA Security+, Computer Security, Defense Information Systems Agency (DISA), Defense in Depth, DoD Secret Clearance, GSEC - GIAC Security Essentials Certification, GSM (Global System for Mobile Communications), Git, Intelligence Community, Internet Security, Java, Legal, Linux Operating System, Malware, Malware Analysis, Microsoft Windows System Administration, Network Administration/Management, Network Protocols, Network Security, Open Source, Open Systems Interconnection (OSI), Python Programming/Scripting Language, Risk Management, Ruby, Scripting (Scripting Languages), Security Analysis, Sensitive Compartmented Information (SCI), Service Delivery, Snort, Systems Administration/Management, TCP/IP (Transmission Control Protocol/Internet Protocol), Top Secret Clearance, United States Department of Defense (DoD), Unix Operating Systems, Virtualization, Web Analytics, Web Infrastructure, Windows PowerShell, Writing Skills

About the company

If you’re looking for comfort, keep scrolling. At Leidos, we outthink, outbuild, and outpace the status quo - because the mission demands it. We’re not hiring followers. We’re recruiting the ones who disrupt, provoke, and refuse to fail. Step 10 is ancient history. We’re already at step 30 - and moving faster than anyone else dares., SAIC is a premier Fortune 500® technology integrator driving our nation’s digital transformation. Our robust portfolio of offerings across the defense, space, civilian, and intelligence markets includes secure high-end solutions in engineering, IT modernization, and mission solutions. Using our expertise and understanding of existing and emerging technologies, we integrate the best components from our own portfolio and our partner ecosystem to deliver innovative, effective, and efficient solutions that are critical to achieving our customers’ missions. We are a team of 26,000 strong driven by mission, united purpose, and inspired by opportunity. Headquartered in Reston, Virginia, SAIC has annual revenues of approximately $7.1 billion. For more information, visit saic.com.

Company Size: 10,000 employees or more

Industry: Computer/IT Services

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerbuilder.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

6:21 min

Investigating push inefficiencies with upstream Git experts

Jonathan Creamer · Coffee With Developers

50 sec

Why developer happiness matters in web frameworks

Eileen Uchitelle Eileen Uchitelle +1 · Coffee With Developers

2:03 min

Microsoft integrating native Unix coreutils into Windows environments

Chris Heilmann +2 · LIVE

4:01 min

Finding personal fulfillment in the cybersecurity industry

LIVE

56 sec

Favorite git commands and the importance of patch commits

Eileen Uchitelle Eileen Uchitelle +1 · Coffee With Developers

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · WWC 2022

Videos

See all

Related articles

See all