Cyber Security Detections Engineer, Senior Job at ManTech, Springfield, VA

Rks2Qk90MnYrdDRBelVNYldmaUFBS1RxMnc9PQ==
  • ManTech
  • Springfield, VA

Job Description

ManTech is seeking a motivated, career and customer-oriented Cyber Security Detections Engineer, Senior to join our team in  Springfield, VA.

Responsibilities include, but are not limited to:

  • Support Cyber Operations Squadron (COS) activities to publish up-to-date cybersecurity tool signatures (e.g. anti-virus and host-based security systems)
  • Provide focused analysis, including reverse malware engineering, against intrusion, anomalies, malware, viruses to identify critical information about source, intended target, affected systems or hosts, recommended mitigation measures and risk to mission
  • Formulate custom Security Information and Event Management (SIEM) tool content and IDS/IPS signatures to address threats
  • Perform security event and incident correlation using information gathered from a variety of sources within the enterprise
  • Analyze and assesses damage to the data / infrastructure as a result of cyber incidents
  • Perform cyber incident trend analysis and reporting.
  • Perform analysis of network traffic and system data to identify anomalous activity and potential threats to resources.
  • Provide  detection , identification, and reporting of possible  cyber-attacks/intrusions, anomalous activities, and misuse activities
  • Create and deploy threat-based signatures for operational intrusion  detection capabilities.
  • Create and implement  detection rules from intelligence reporting

Basic Qualifications:

  • Bachelor’s degree or 4+ years of additional experience
  • 5+ years of Cyber Security experience
  • Experience with modern Windows, UNIX, Linux, network operating systems, databases, and/or virtual computing
  • Experience with Splunk
  • Experience performing analysis of network traffic and correlating diverse security logs to perform recommendations for signature development
  • Experience with enterprise security tools, including Security information and event management (SIEM), Threat intelligence platforms (TIPs), or Network monitoring tools
  • Experience in creating, modifying, tuning, IDS signatures/SIEM correlation searches and other  detection signatures.
  • Knowledge of implementation of countermeasures or mitigating controls
  • Ability to support incident response and forensic operations as required to include static/dynamic malware analysis and reverse engineering
  • DoD 8570 certification meeting IAT Level II (GSEC, Security+, SSCP, or CCNA-Security) or the ability to obtain within six months of hire

Preferred Qualifications:

  • Knowledge of current COTS Cybersecurity technologies.
  • Knowledge of MITRE ATT&CK Framework
  • CNDSP-A (GCIA, GCIH, or CEH) or CNDSP-IR (GCIH, CSIH, or CEH) certification

Security Clearance Requirements:

  • Must possess an active TS/SCI w/polygraph.

Physical Requirements:

  • Must be able to remain in a stationary position 75% of the time
  • Constantly operates a computer and other office productivity machinery, such as a calculator, copy machine and computer printer
  • Must be able to view and detect information on a computer screen

Job Tags

Remote job,

Similar Jobs

Confidential Jobs

Site Safety Officer Job at Confidential Jobs

 ...Scope of Work: The Site Safety Officer will oversee the sites safety and health program. Responsibilities: Shall on-site at all times when work is being performed to implement and administer the Contractor's safety program and government-accepted Accident Prevention... 

Atlantic MEDsearch

Plastic Surgery Job in Miami, FL Job at Atlantic MEDsearch

Enjoy working at a high-volume practice while you lead your patients through their body transformation journey. Plastic Surgeon needed to meet the tremendous needs. Embrace the Center of Excellence (COE) model of efficacious & deliver outstanding clinical results with professionalism... 

The Laurels of Walden Park

Senior Respiratory Care Specialist (Hiring Immediately) Job at The Laurels of Walden Park

 ...Shift: Full-time day shift (6am-6pm). Are you a Respiratory Therapist (RT) with a passion for improving the lives of seniors? As a Respiratory...  ...on our Ventilation Unit. Attention to detail, individualized care, and participation in a team approach are part of every... 

Army National Guard Units

FAMILY PROGRAM SPECIALIST Job at Army National Guard Units

 ...SERVICE POSITION. This National Guard position is for a FAMILY PROGRAM SPECIALIST, Position Description Number D1743000 and is part of...  ...organization, management, and administration; Experience using computer and automation systems. SPECIALIZED EXPERIENCE: Must have at least... 

Prince George's Community College

Television, Video, Film Production Adjunct Faculty | Prince George's Community College Job at Prince George's Community College

 ...Master's Degree (MA or MFA ) or equivalent with a minimum of 12 graduate credits in Mass Communication, Television, Video or Film Production or related discipline. Teaching experience at the college or high school level or training experience in the area of Mass...