TITLE - Cyber Capability Developer
HUNTSVILLE, AL (Onsite)
Permanent Role
We have a senior cyber capability developer role in Huntsville AL. You must have a TS or TS/SCI to apply and be able to obtain a CI poly AFTER you start. This role is 100% onsite.
Responsibilities
Possesses professional experience related to cyber intrusions and the analysis of technical data within cyber threat environments. Has applied knowledge related to forensic, network and malware analysis. Experience working in team environments for software development. Analyzes cyber threat data to include malicious software reverse engineering, network traffic analysis, memory forensics, disk forensics, etc. Perform static and dynamic analysis of known malicious and unknown binary files, reverse engineering of compiled software, functional analysis of source code/scripts, and/or hardware/firmware analysis. Has experience managing and developing for multiple environments.
Required Skills:
- Clearance: Top Secret with the ability to sit for the CI Poly
- Requires BS or BA degree
- 8 year overall experience in the areas of Cyber Capability Developer
- Splunk Experience (R)
- Sentinel Experience Experience (R)
Preferred Skills:
Having the following tools experience and/or certifications:
- GIAC Continuous Monitoring Certification (GMON)
- GIAC Certified Incident Handler (GCIH)
- GIAC Certified Forensic Analyst (GCFA)
- GIAC Certified Intrusion Analyst (GCIA)
- GIAC Network Forensic Analyst (GNFA)
-Significant experience with Cybersecurity threat detection engineering, alert/analytics development, display, and deployments.
-Experience utilizing cyber threat intelligence for engineering optimization.
-Proficient in Splunk Search Processing Language (SPL).
-Splunk backend engineering experience, including log/data onboarding, ingestion, visualization, testing, and validation.
-Knowledge of data sourcing, integration, and analyses to establish baselines and detect anomalous activities.
-Experience with implementing, operating, maintaining, and optimizing Security Orchestration, Automation, and Response systems and tools.
-Experience designing, implementing, and optimizing cybersecurity data pipelines.
-Cloud engineering experience and relevant certifications, including AWS and Azure GovCloud.
-Experience engineering, maintaining, optimizing, and developing within Linux environments.
-A minimum of five years of experience scripting, including bash scripting, PowerShell, python, SQL, and Java.
|  | | | Sandip Kumar Sr. Tech Recruiter | | Email: | | | | Address: 505 Knolle Court Saint Augustine, FL 32092 | | Telephone: +1 | |