Enterprise - Senior Data Scientist - Splunk, Sentinel, Yara

Erias VenturesColumbia, MD
1d$150,000 - $275,000Hybrid

About The Position

We are seeking a talented and experienced Cyber Hunt Analyst with Data Science experience to apply strong cyber security, Defensive Cyber Operations (DCO), and networking domain knowledge to support cyber analytics product development, threat analysis, statistical analysis, model development, and direct customer mission support. Regular cyber hunt activities consist of hunting for threats, reporting on findings, and converting tools, techniques, and processes into automated capabilities for the current cyber platform. Regular data science activities consist of operational research, statistical analysis, hypothesis testing, model building/testing, and communicating results using visualizations. Will also be responsible for collecting customer Cyber Operations requirements, generating use cases, providing Cyber SME support, and system training to end users. Conduct threat hunt operations on assigned Big Data Platform(s) – BDP Present threat hunt findings through live - interactive remote conference sessions Perform data analytics across disparate data sets Assist customer(s) with their threat hunting operations Perform quality assurance checks on data that is resident on the BDP Evaluate and analyze new data feeds to determine relevance and usability of data Support BDP analytic requests (data search, visualizations, dashboards etc.) Provide real time customer support during normal working hours (BDP support chat room) Maintain situational awareness of emerging cyber threats for possible action and notification to an impacted customer(s) Support BDP demonstration requests to showcase various capabilities of the platform Support BDP training events either in person or virtually Provide advice on data enrichment and functions to enhance customer experience This position allows for partial telework.

Requirements

  • Five (5) years of experience in cyber security operations related fields and a Bachelors in related field or three (3) years experience with Masters; or High School Diploma and nine (9) years experience.
  • Experience with supporting DoD customers, ideally supporting US Cyber Command, DISA, or DCDC
  • Cyber Hunt methodologies and techniques
  • SIEMs - (e.g., Splunk, Q-Radar, ELK)
  • SOARs (e.g., Sentinel, CORTEX, X-SOAR)
  • Developing and deploying threat detection signatures and detecting host and network-based intrusions
  • Collecting data from a variety of cyber defense resources. (e.g., CVE, OSINT)
  • Recognizing and categorizing types of vulnerabilities and associated attacks
  • Reading and interpreting signatures (e.g., SNORT, SIGMA, Yara, YAML)
  • Cyber defense and vulnerability assessment tools and their capabilities
  • Network traffic analysis methods (e.g.,TCP-DUMP, Wireshark, Bro/Zeek)
  • Familiar with cyber attack stages (e.g., reconnaissance, scanning, enumeration, gaining access, escalation of privileges, maintaining access, network exploitation, covering tracks), and incident response and handling methodologies. (e.g., MITRE ATT&CK, LM Killchain)
  • Intrusion Detection System (IDS)/Intrusion Prevention System (IPS) tools and applications
  • Excellent customer service, public speaking, and presentation skills
  • Ability to complete technical tasks without supervision
  • Ability to foster and support a collaborative working environment
  • Must have Data+, Security+, CySA+, GCIH, GNFA, GCFA or other industry recognized Cybersecurity Certification
  • DoD 8570 IAT Level II certification (e.g. Security+)
  • Travel as needed to support all duties listed above
  • Must be able to work on customer site on average 4 days a week in either Columbia or Ft. Meade, MD.
  • Flexibility is essential to adapt to schedule changes as needed
  • A current Secret level security clearance is required with the ability to obtain a TS/SCI level clearance. Candidates cannot be sponsored or nominated for a government security clearance under this position.

Nice To Haves

  • TS/SCI level clearance is preferred
  • DoD SOC experience is a plus

Responsibilities

  • Conduct threat hunt operations on assigned Big Data Platform(s) – BDP
  • Present threat hunt findings through live - interactive remote conference sessions
  • Perform data analytics across disparate data sets
  • Assist customer(s) with their threat hunting operations
  • Perform quality assurance checks on data that is resident on the BDP
  • Evaluate and analyze new data feeds to determine relevance and usability of data
  • Support BDP analytic requests (data search, visualizations, dashboards etc.)
  • Provide real time customer support during normal working hours (BDP support chat room)
  • Maintain situational awareness of emerging cyber threats for possible action and notification to an impacted customer(s)
  • Support BDP demonstration requests to showcase various capabilities of the platform
  • Support BDP training events either in person or virtually
  • Provide advice on data enrichment and functions to enhance customer experience

Benefits

  • Above Market Hourly Pay
  • 11% Roth or Traditional 401k with Immediate Vesting and Deposit
  • Spot Bonuses for Assisting with Business Development and Company Growth
  • Professional Development Bonuses for Certificates and Degrees
  • Company subsidized Medical Coverage
  • 100% Company Paid Vision and Dental Coverage
  • 100% Company Paid Long Term Disability , Short Term Disability , and Group Life Insurance
  • Monthly Wellness Reimbursement
  • Paid Time Off with Flexible Work Schedules and Birthday Off
  • Amazon Prime Membership and Monthly Internet Reimbursement
  • Technology and Productivity Allowance for Equipment and Supplies
  • Morale Building and Company Events to Celebrate our Successes and Build our Community
  • Onboarding and Annual Swag
  • Company Paid Professional Development and Training
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service