Job description
Role Overview
Cyber Threat Analyst with Top Secret/SCI Clearance at V2X, supporting the Defensive Cyber Operations (DCO) division within USARCC-SWA. This position is based overseas and requires ability to obtain and maintain host nation visa and driver's license.
Company Overview
V2X is a $3.9 billion company with 16,000 employees that builds smart solutions integrating physical and digital infrastructure. The company brings 120 years of mission support experience across the globe, working to improve security, streamline logistics, and enhance readiness for clients worldwide.
Role Purpose
The Cyber Threat Analyst designs, implements, automates, maintains, and optimizes measures protecting systems, networks, and information. The role monitors threats across networks, investigates incidents, and develops countermeasures to enhance defensive cyber operations posture.
Key Responsibilities
Threat Detection & Analysis
- Monitor, detect, analyze, and correlate events for potential threat activity using Security Information Event Management (SIEM) systems, Big Data Analytics, and supporting platforms.
- Perform trend analysis on events and incidents to identify and characterize threats.
- Investigate and identify the cause, source, and methodology of compromises or incidents.
- Conduct open-source research to identify commercial exploits or vulnerabilities, including Zero-Day threats requiring response actions.
Incident Response & Handling
- Initiate computer incident handling procedures to isolate and investigate potential network information system compromises.
- Assist in incident response planning, coordination, execution, and reporting.
- Provide support to the Computer Defense Assistance Program (CDAP).
Detection & Prevention Configuration
- Configure and optimize software and hardware detection and prevention capabilities.
- Perform host and network-based signature development and standardization for implementation on end-point products or sensor grid.
Strategy & Optimization
- Develop, document, and refine Tactics, Techniques, and Procedures (TTP).
- Collaborate on the continuous improvement and optimization of DCO strategies and countermeasures.
- Collaborate with cross-functional teams to enhance overall DCO posture.
Reporting & Communication
- Prepare formal comprehensive reports and presentations for both technical and executive audiences.
Compliance & Awareness
- Stay informed about the latest cybersecurity threats, technologies, and best practices.
- Maintain up-to-date knowledge of relevant compliance requirements and ensure adherence.
External Partnerships
- Collaborate with external organizations and agencies to share threat intelligence and enhance DCO capabilities.
General Duties
- Perform other duties and assignments as required.
Qualifications & Experience
Security Clearance
- Active Top Secret Clearance with Sensitive Compartmented Information (SCI) required.
Education
- Bachelor's Degree or equivalent experience in Computer Science, Management Information Systems, Information Security, Engineering, or related field.
- One year of related experience may be substituted for one year of education.
Experience
- Minimum five (5) years of practical experience working with various data technologies (network and system).
- Minimum two (2) of those five years focused on information systems security, cyber threats, and SIEM event analysis.
- One year of related academic study above the high school level may be substituted for one year of experience, up to a maximum of three years of general experience toward a four-year bachelor's degree in Business Information Systems.
- Experience with a customer service-oriented company.
Certifications
- Must adhere to DoD 8570.01M requirements.
- Must maintain at least one (1) baseline certification and one (1) Computing Environment (CE) certification.
- Baseline Environment (BE) certifications cannot also be used as Computing Environment (CE) certifications.
#### Authorized Baseline Certifications
- Cisco: CCNA: Certified Network Associate β Security
- Cisco: CyberOps Professional
- Cisco: SCYBER: Cybersecurity Specialist
- CompTIA: Cloud+
- CompTIA: CySA+: Cybersecurity Analyst
- CompTIA: PenTest+
- CyberSec: CFR: First Responder
- EC-Council: CEH: Certified Ethical Hacker
- GIAC: GCIA: Certified Intrusion Analyst
- GIAC: GCIH: Certified Incident Handler
- GIAC: GICSP: Industrial Cyber Security Professional
#### Authorized Computing Environment (CE) Certifications
- Cisco: CCNP: Certified Network Professional (Any)
- EC-Council: ECIH: Certified Incident Handler
- EC-Council: CHFI: Certified Hacking Forensic Investigator
- GIAC: GCDA: Certified Detection Analyst (Preferred)
- GIAC: GCFA: Certified Forensic Analyst
- GIAC: GCIA: Certified Intrusion Analyst
- GIAC: GCIH: Certified Incident Handler
- GIAC: GCWN: Certified Windows Security Administrator
- GIAC: GDAT: Defending Advanced Threats
- GIAC: GREM: Reverse Engineering Malware
- GIAC: GSEC: Security Essentials
- Offensive Security: Certified Expert
- Offensive Security: Certified Professional
Skills & Competencies
Technical Skills
- Troubleshoot servers and infrastructure equipment.
- Assess networking requirements and provide solutions.
- Threat Intelligence and visualization technologies.
- Security enclave engineering.
Professional Competencies
- Make accurate and independent decisions under pressure.
- Perform comfortably in a fast-paced, deadline-oriented work environment.
- Successfully execute many complex tasks simultaneously.
- Visualize quantitative (numerical) or qualitative information.
- Excellent interpersonal, organizational, written and verbal communication skills.
- Excellent briefing skills.
- Excellent analytical and problem-solving skills.
Additional Information
Benefits
- Company-paid housing.
- Company-paid transportation.
- Completion bonus.
- Tuition reimbursement program.
Work Requirements
- Candidate must satisfy all host country requirements to legally work in the host country.
- Candidate must be able to obtain and maintain a host nation visa.
- Candidate must be able to obtain and maintain a host nation driver's license.