Sterling, VA, US
38 days ago
Cleared Cyber Threat Hunter - (TS\/SCI) Sterling, VA

Vibrint is a trusted provider of mission-critical systems and analysis that transform our customers' capacity and capability in harvesting and harnessing data. Working alongside many of the most talented professionals in public service, we work tirelessly to create and sustain new solutions and services that meet the stringent demands across a variety of customer missions.\n

We are seeking a proactive Cyber Threat Hunter to join our Cybersecurity team. As a Cyber Threat Hunter, you will play a critical role in protecting our clients' infrastructure and data by proactively hunting for and identifying potential threats and vulnerabilities. You will work closely with incident responders, security analysts, and other stakeholders to develop and implement threat hunting strategies and techniques.\n

Responsibilities:\n\nExperience in a Tier 3 SOC environment, with expertise in advanced threat detection, incident response, and proactive threat hunting.\nProactively hunt for and identify potential threats and vulnerabilities within our clients' environments\nPerform in-depth analysis of security logs, network traffic, and other data sources to identify indicators of compromise and suspicious activities\nCreate and maintain custom signatures, rules, and alerts to enhance detection and response capabilities\nDevelop and implement threat hunting methodologies and techniques to effectively detect and mitigate advanced cyber threats\nCollaborate with incident responders, security analysts, and other stakeholders to investigate and respond to security incidents\nStay up to date with the latest threat intelligence and security trends to continuously enhance threat hunting capabilities\nProvide guidance and mentorship to junior members of the team\n\n

Qualifications:\n\nExperience with Vulnerability Assessments: Nessus, Qualys, Rapid7 InsightVM, and OpenVAS, etc.\nExperience with Endpoint Security (EDR): CrowdStrike Falcon, SentinelOne, Microsoft Defender for Endpoint, Carbon Black, etc.\nExperience with SIEM: Splunk, XSIAM, Elastic Stack, IBM QRadar, LogRhythm, etc.\nExperience with threat hunting tools and techniques\nExperience conducting incident response and investigations\nKnowledge of common cyber threats and attack vectors\nBachelor's degree in Computer Science or a related technical field\nRelevant certifications such as CISSP, CISM, or GIAC certifications are preferred\nActive Top Secret Clearance - (SCI Eligible) Preferred\n\n

Confirmar seu email: Enviar Email