Sr. Threat Analyst Architect

PeopleTecHuntsville, AL
13h

About The Position

PeopleTec is currently seeking a Sr. Threat Analyst Architect to support our Huntsville, AL location. In this role this person will integrate threat analytic tools using infrastructure as code in a customized virtual training environment to train Defensive Cyber Operations at various experience levels, in support of our U.S. Government customer

Requirements

  • Deep hands-on expertise in cyber operations and threat hunting, including detection engineering, adversary TTP analysis (MITRE ATT&CK), and proactive threat discovery across endpoint, network, and cloud environments.
  • Experience identifying Assessment Objectives for the development of Critical Assessment Conditions and Key Test Points based on operational Red Force/Blue Force to support DCO training scenarios.
  • Proven experience performing Cyber Threat Hunting and Analysis, as well as Incident Response and Forensic Analysis.
  • Proven experience designing, deploying, and operating enterprise-scale security architectures, integrating SIEM, EDR, IDS/IPS, and full-packet capture across on-prem, hybrid, and GovCloud environments.
  • Advanced proficiency in network protocols, operating systems, Ansible, Terraform, Splunk, ELK, Python, and PowerShell.
  • Proficiency using Terraform to design, deploy, and manage infrastructure as code, including modular, reusable configurations for cloud and virtualized environments.
  • Proficiency using Ansible for configuration management and orchestration, including building idempotent playbooks for system hardening, agent deployment, sensor configuration, and lifecycle management.
  • Ability to integrate Terraform and Ansible workflows, using Terraform for infrastructure provisioning and Ansible for post-provisioning configuration, validation, and enforcement.
  • Comfort automating security operations at scale, reducing manual effort while increasing consistency, reliability, and auditability.
  • Ability to replicate and generate log traffic for a training environment base on various platform data forms.
  • SME level experience with both Windows and Linux environments.
  • Travel: 25 %
  • Must be a U.S. Citizen
  • An active DoD Top Secret clearance with SCI eligibility is required to perform this work.
  • Candidates are required to have an active Top Secret clearance upon hire, and the ability to maintain this level of clearance during their employment.
  • BS in Computer Science; Computer Engineering, Information Systems; or equivalent (4 years of additional experience in lieu of degree)

Nice To Haves

  • Masters in Computer Science; Computer Engineering, Information Systems; or equivalent is preferred
  • GCIH
  • GPEN
  • GCFA
  • GCFE
  • GXPN
  • GREM
  • GCFE
  • Cisco CCNA
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service