Product Champion - 27034

HII's Mission Technologies divisionWashington, DC
1dOnsite

About The Position

Enlighten is looking for a Product Champion to apply strong cyber security, data science, Defensive Cyber Operations (DCO), and networking domain knowledge to support cyber analytics product development, threat analysis, statistical analysis, model development, and direct customer mission support. Regular cyber hunt activities consist of hunting for threats, reporting on findings, and converting tools, techniques, and processes into automated capabilities for the current cyber platform. Regular data science activities consist of operational research, statistical analysis, hypothesis testing, model building/testing, and communicating results using visualizations. Will also be responsible for collecting customer Cyber Operations requirements, generating use cases, and system training to end users. Provide support on customer site daily.

Requirements

  • Security Clearance: A current TS/SCI level U.S. Government security clearance is required; U.S. citizenship required.
  • 9+ years in cyber security operations related fields with a B.S. in Information Technology, Cyber Security, or related; 7 years relevant experience with Masters in related field; or High School Diploma or equivalent and 13 years relevant experience.
  • Experience with the DoW customers, ideally supporting US Cyber Command, DISA or DCDC, DHS, or Service Cyber Components.
  • Presenting analysis to stakeholders of varying data knowledge levels.
  • Proficient in various query languages (SQL, KQL (Kusto)).
  • Python experience, and bonus for experience using Jupyter notebooks.
  • Experience with dashboarding/visualizations (Power-Bi, Superset).
  • Familiarity with cloud providers and environments (Azure, AWS, Google Cloud Platform).
  • Cyber Hunt methodologies and techniques.
  • SIEMs - (e.g., Splunk, Q-Radar, ELK).
  • SOARs (e.g., Sentinel, CORTEX, X-SOAR).
  • Developing and deploying threat detection signatures.
  • Collecting data from a variety of cyber defense resources. (e.g., CVE, OSINT).
  • Recognizing and categorizing types of vulnerabilities and associated attacks.
  • Reading and interpreting signatures (e.g., SNORT, SIGMA, Yara, YAML).
  • Network traffic analysis methods (e.g.,TCP-DUMP, Wireshark, Zeek).
  • Familiar with cyber attack stages (MITRE ATT&CK), and incident response and handling methodologies.
  • Intrusion Detection System (IDS)/Intrusion Prevention System (IPS) tools and applications.
  • Strong interpersonal skills and the ability to interact effectively with others. Ability to speak in a public forum.
  • Excellent organizational skills and attention to detail.
  • Ability to work independently and as part of a team.
  • Support training events either in-person or virtually.
  • Ability to travel CONUS when needed.
  • Ability to work on customer site in Washington, DC 5 days a week.

Nice To Haves

  • DoW SOC experience is a huge plus.
  • Data+, Security+, CySA+, GCIH, GNFA, GCFA or other industry recognized Cybersecurity Certification.

Responsibilities

  • Conduct threat hunt operations on assigned Big Data Platform(s) – BDP (JCRS-D).
  • Present threat hunt findings through live - interactive sessions either in person or remote.
  • Assist customer(s) with their threat hunting operations.
  • Collaborate with customers to define requirements and operational gaps to maximize satisfaction.
  • Serve as an advisor to the customer on data enrichment and functions to enhance customer experience.
  • Perform quality assurance checks on data that is resident on the platform.
  • Evaluate and analyze new or potential data feeds to determine relevance and usability of data for customer(s).
  • Support analytic requests (data query search, visualizations, dashboards, etc.).
  • Leverage advanced statistical modeling to uncover hidden patterns and translate them into intuitive, customer-facing visualizations.
  • Synthesize diverse data streams into coherent data products that help customers visualize their progress and identify new opportunities.
  • Provide real time customer support during normal working hours.
  • Maintain situational awareness of emerging cyber threats for possible action and notification to an impacted customer(s).
  • Provide documentation on data feeds and deliverables.
  • Support demonstration requests to showcase various capabilities of the platform.
  • Other duties as assigned.

Benefits

  • 100% paid employee premium for healthcare, vision and dental plans.
  • 10% 401k benefit.
  • Generous PTO + 10 paid holidays.
  • Education/training allowances.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service