ASRC Federal Holding Company logo

Cloud Threat Analyst

ASRC Federal Holding Company
  • Hanover, MD
  • $115,000–$134,745 Per Year
2 days ago

Job Description

ASRC Federal is hiring a Cloud Threat Analyst in support of our Defense Counterintelligence Security Agency (DCSA) program based out of Hanover MD.Team members may be required to report to Fort Meade daily if required, however Remote flexibility available! Telework offered with a requirement to be onsite up to one (1) day a week in Hanover MD. (5 days in the office has not been required to date)Position Description:As the Cloud Threat Analyst, your primary duty is to safeguard our national security systems through proactive threat hunting and advanced threat detection activities. You will continuously monitor and analyze threat intelligence sources to stay informed about emerging threats, searching for signs of malicious activity across our network infrastructure, endpoints, and systems that evade traditional security solutions. A key part of your role involves developing and implementing new and innovative threat detection techniques and strategies, analyzing large datasets to identify patterns and anomalies indicative of malicious activities, and mapping adversary tactics to the MITRE ATT&CK framework. You will collaborate with other CSOC team members and stakeholders to respond to and investigate security incidents, perform in-depth forensic analysis to understand the nature and impact of threats, and provide detailed reports and briefings on threat hunting activities and findings to senior management.Minimum Requirements:

2+ years of system-level cybersecurity experience in one of the following areas:Cyber Security Analyst, Incident Response and Threat Hunting as part of a mid to large enterprise red team or threat hunt team.Enterprise vulnerability management, endpoint security, or web security within a mid to large enterprise.Active Top-Secret Clearance, eligible for TS/SCI.Bachelor's degree in Information Security or related field, or equivalent combination of experience.Must meet DoD 8140/8570.01-M IAM II or IAT Level II requirements (e.g., CCNA Security, CySA+, GICSP, Security+ CE, CND, SSCP, CAP, CASP+ CE, CISM, CISSP (or Associate), GSLC, CCISO, HCISPP, CEH, Pentest+, OSCP, CSSP-IR). At least one certification is required.

Required Skills:

Able to read, decipher and understand system, network, or cloud logsKnowledge of basic Enterprise and Network operations.Knowledge of NIST Cybersecurity Framework and/or ISO 27001 (specifically focused on incident response procedures, including containment, eradication, and recovery.)Basic understanding of Mitter Attack frameworkCommunication & Collaboration: Excellent written and verbal communication skills to effectively articulate technical findings and collaborate with diverse teams.

Recommended skills:Threat Hunting & Detection

Conduct proactive threat hunting activities to detect advanced threats that evade traditional security solutionsContinuously monitor and analyze threat intelligence sources to stay informed about emerging threats, vulnerabilities, and attack vectorsSearch for signs of malicious activity across network infrastructure, endpoints, cloud environments, and systemsDevelop and implement new and innovative threat detection techniques and strategiesAnalyze large datasets using SIEM platforms and security analytics tools to identify patterns and anomalies indicative of malicious activitiesTune detection logic and alerting to reduce false positives and improve threat detection fidelity

Threat Intelligence & Analysis

Leverage threat intelligence sources to identify emerging threats targeting federal environments and national security systemsMap adversary activity to MITRE ATT&CK framework and develop threat modelsAnalyze advanced persistent threats (APTs) and understand adversary tactics, techniques, and procedures (TTPs)Recommend defensive improvements based on observed threat actor behaviors and attack patternsCorrelate threat intelligence with internal security events to identify potential compromises

Incident Response & Investigation

Collaborate with other CSOC team members and stakeholders to respond to and investigate security incidentsPerform in-depth forensic analysis to understand the nature, scope, and impact of threatsConduct root cause analysis and impact assessments for security incidentsSupport containment, eradication, and recovery efforts during security incidentsCoordinate response actions with SOC analysts, engineering teams, system owners, and government stakeholdersDocument incidents, response actions, and remediation recommendations in accordance with government reporting requirements

Reporting & Documentation:

Provide detailed reports and briefings on threat hunting activities and findings to senior managementDevelop and maintain threat hunting playbooks, processes, and proceduresDocument lessons learned and contributed to the continuous improvement of security operationsCreate and maintain technical documentation for detection rules, hunting queries, and analytical methodologiesClearly document findings, response actions, and technical recommendations

Continuous Improvement & Compliance

Participate in the development and refinement of security monitoring and incident response tools and processesAssist with security documentation, evidence collection, and audit responseValidate security configurations against established baselines and policiesStay current with the latest cybersecurity trends, threat actor TTPs, and defensive technologies

We invest in the lives of our employees, both in and out of the workplace, by providing competitive pay and benefit packages. This position is offering a pay range of $115,000.00 - $134,745.00 depending on experience, seniority, geographic locations, and factors permitted by law. Benefits offered may include health care, dental, vision, life insurance; 401k; education assistance; paid time off including Paid Time Off, holidays and any other paid leave required by law.

Numbers & Facts

LocationHanover, MD
IndustryAerospace and Defense
Salary$115,000–$134,745 Per Year
Company Size5,000 to 9,999 employees
Year Founded2003
Websitehttp://www.asrcfederal.com

Benefits

Military Leave, On Site Cafeteria, Parking, Prescription Drug Coverage, Professional Development, 401K, Employee Referral Program, Flexible Spending Accounts, Employee Events, Tuition Reimbursement, Work From Home, Life Insurance, Merchandise Discounts

About Company

ASRC Federal comprises a family of companies that provide mission-critical services to federal government agencies dedicated to defense, civil and intelligence support. Our customer-focused service delivery model and emphasis on operational excellence are foundational elements infused in all our companies. The reliability and quality of day-in, day-out service delivery from our family of companies ensure our customers that we keep our sights on their mission-critical priorities.

Skills

  • Analysis Skillsunmatched
  • CCNA - Cisco Certified Network Associateunmatched
  • CISM - Certified Information Security Managerunmatched
  • CISSP - Certified Information Systems Security Professionalunmatched
  • Cloud Computingunmatched
  • Communication Skillsunmatched
  • CompTIA Security+unmatched
  • Computer Hackingunmatched
  • Computer Network Defense (CND)unmatched
  • Computer Securityunmatched
  • Continuous Improvementunmatched
  • Data Setsunmatched
  • DoD Directive 8140unmatched
  • DoD Directive 8570unmatched
  • Documentationunmatched
  • Endpoint Securityunmatched
  • Forensic Scienceunmatched
  • GSLC - GIAC Security Leadership Certificateunmatched
  • Governmentunmatched
  • Government Reportingunmatched
  • Government Requirementsunmatched
  • Huntingunmatched
  • IAM - Information Assurance Managementunmatched
  • IR (Infrared)unmatched
  • ISO (International Organization for Standardization)unmatched
  • Incident Responseunmatched
  • Information/Data Security (InfoSec)unmatched
  • Intelligence Analysisunmatched
  • Internet Securityunmatched
  • Network Administration/Managementunmatched
  • Presentation/Verbal Skillsunmatched
  • Query Analysisunmatched
  • Reporting Skillsunmatched
  • Root Cause Analysisunmatched
  • SSCP - Systems Security Certified Practitionerunmatched
  • Security Analysisunmatched
  • Security Attacksunmatched
  • Security Auditingunmatched
  • Security Information and Event Management (SIEM)unmatched
  • Security Monitoringunmatched
  • Sensitive Compartmented Information (SCI)unmatched
  • Strategic Analysisunmatched
  • Technical Writingunmatched
  • Top Secret Clearanceunmatched
  • U.S. National Institute of Standards and Technology (NIST)unmatched
  • Writing Skillsunmatched

Be found by employers

5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

Level up your application

Professional resume templates

Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

Free resume templates

Free resume builder

Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

Free resume builder