Cyber Fusion Analyst (TS/SCI)

Zachary Piper
Fort Meade, MD, United States
3 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
8 years minimum
Compensation
$130,000.0 - $155,000.0
Working hours
Regular working hours

Tech stack

Proxy Servers Cyber Security Computer Networks Domain Name System (DNS) Intelligence Analysis Intrusion Detection Systems Network Security Pcap NetFlow Network Monitoring Open Source Technology Open Source Intelligence
+14 more
Open Systems Interconnection (OSI) ArcSight SIEM Tool TCP/IP Transmission Control Protocol (TCP) Wireshark Network Routers Diagnostic Tools Malware Cyber Threat Analysis Firewalls (Computer Science) Cybercrime Cyber Warfare Splunk Vulnerability Analysis

Job description

  • Utilize network monitoring and detection tools, including NetFlow, IDS, protocol logs, and PCAP data, to identify malicious cyber activity.
  • Support the development of Cyber Fusion SOPs, frameworks, and methodologies aligned with industry and Department of War standards.
  • Identify enterprise threats and recommend mitigation strategies to strengthen security and reduce risk.
  • Analyze threat intelligence, OSINT, and vulnerability data to prioritize response and remediation efforts.
  • Assess and document adversary tactics, techniques, and procedures (TTPs) and their impact on the operational environment.
  • Detect and investigate adversary activity, anomalies, and suspicious events across logs, SIEMs, and security monitoring platforms.
  • Conduct compromise assessments and produce analytical reports and attack lifecycle visualizations.
  • Provide risk assessments and security recommendations based on threat, intelligence, and vulnerability analysis.
  • Recommend enhancements to cyber defense measures protecting the Department of War Information Network (DOWIN).
  • Track and analyze cybersecurity metrics and trends to deliver actionable situational awareness., Keywords: Cyber Threat Intelligence, All-Source Intelligence Analysis, Cyber Intelligence Analysis, DODIN, Defensive Cyberspace Operations (DCO), Joint Intelligence Preparation of the Operational Environment (JIPOE), Indications and Warning (I&W), Threat Assessment, Cyber Threat Attribution, Intelligence Estimates, Intelligence Reporting, Intelligence Briefings, Network Defense, Cyber Operations, Threat Hunting, Incident Analysis, all source, ts/sci, top secret/sci, polygraph, DoD, Federal, W2, opentowork, hiring, networking, TCP, IP, Risk Assessment, Adversary Analysis, Nation-State Threats, Non-State Actors, Malware Analysis, Indicators of Compromise (IOCs), Open-Source Intelligence (OSINT), Classified Research, Intelligence Collection, Intelligence Cycle, Operational Intelligence, Cybersecurity Analysis, Network Security, TCP/IP, Intrusion Detection Systems (IDS), Intrusion Prevention Systems (IPS), Firewalls, Proxy Servers, Router and Switch Technologies, System Administration, Vulnerability Assessment, Threat Identification, Situational Awareness, Intelligence Fusion, Strategic Analysis, Operational Planning, Annex B Development, Joint Planning Groups (JPGs), Operational Planning Teams (OPTs), Intelligence Support to Operations, Security Incident Response, Cyber Threat Reporting, Intelligence Community (IC), Department of Defense (DoD), Interagency Coordination, Intelligence Dissemination, Intelligence Production, Executive Briefings, Analytical Writing, Critical Thinking, Research and Analysis, Threat Intelligence Sharing, Network Exploitation Analysis, Cyber Defense Operations, Mission Support, Intelligence Collaboration, Intelligence-driven Decision Making.

Requirements

  • Bachelors degree in related discipline and 8+ years of experience with cyber threat intelligence analysis
  • Provide intelligence analysis and assessments to support joint military cyber planning efforts, including operational plans, Annex B development, and planning groups.
  • Knowledge of network and application protocols, cyber vulnerabilities and exploitation techniques and cyber threat/adversary methodologies.
  • Experience with datasets, tools and protocols that support analysis (e.g. passive DNS, Virus Total, Recorded Future, TCP/IP, OSI, WHOIS, enumeration, threat indicators, malware analysis results, Wireshark, Splunk, Arcsight etc.).
  • Experience with various open-source and commercial vendor portals, services and platforms that provide insight into how to identify and/or combat threats or vulnerabilities to the enterprise.
  • Proficiency working with various types of network data (e.g. netflow, PCAP, custom application logs)

Benefits & conditions

  • Total compensation based on experience level - $130,000-$155,000+ based on experience level
  • Full Benefits: PTO/Holidays, Cigna Medical, Dental, and Vision, 401k with ADP
  • Certification reimbursement
  • Contract stability funded through 2030

LI-MK1 #LI-Onsite

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.clearancejobs.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:23 min

Understanding the complexity of cybersecurity domains

Jennifer Reif · LIVE

5:02 min

Mapping distributed compute paradigms to modern vehicles

Joachim Werner · LIVE

2:38 min

Establishing comprehensive monitoring and log management

Michael Eder +1 · LIVE

4:19 min

Introduction to network security and endpoint monitoring architectures

Christoph Ruggenthaler · LIVE

3:50 min

Queues in TCP stacks and continuous network connections

Clemens Vasters Clemens Vasters · WWC 2022

3:10 min

Correlating dispersed logs using structured request tracing

Michael Eder +1 · LIVE

Videos

See all

Related articles

See all