Cyber Threat Analyst

Pensacola, FL


At Criterion Systems, we developed a different kind of business—a company whose real value is a reputation for excellence built upon the collective skills, talents, perspectives, and backgrounds of its people. By accepting a position with Criterion Systems, you will join a group of professionals with a collaborative mindset where we share ideas and foster professional development to accomplish our goals. In addition to our great culture, we also offer competitive compensation and benefit packages, company-sponsored team building events, and advancement opportunities. To find out more about how Criterion can help you take your career to the next level please visit our website: www.criterion-sys.com.

We are looking for candidates to help deliver full lifecycle development and sustainment for the Department of Homeland Security's (DHS) National Cybersecurity Protection System (NCPS). The NCPS assists more than 100 federal civilian government agencies with the protection of their networks against advanced cyber threats. Under this contract, you will support the government in the design, development, operations and maintenance services for the NCPS. Together we will build the mission critical cybersecurity solutions that will enable the timely dissemination of threat warnings and improve information sharing across DHS's stakeholder community.

The Cyber Threat Analyst will be a part of a Cyber Threat Analysis Center (CTAC) Team supporting the customer in cyber-threat hunting and associated investigations of systems developed and implemented to support the customer’s mission. The candidate will be part of a team that will perform cyber-threat hunting with vendors to identify potential cyber-threat activity within their networks/systems. The successful candidate will perform hands-on investigations that require critical thinking and a broad understanding of multiple technologies. The candidate will support development of presentations and reports to document findings, and will require good communication and interpersonal skills to convey findings in the technical proficiency level of the audience.

Responsibilities include:

• Assist in the development and execution of cyber threat-hunting standard operating procedures (SOPs)
• Serve as a data analysis expert for output from a wide variety of cyber assessment tools and data analytics
• Assist in analysis tool development, configuration, implementation and use
• Analyze cyber-threat intelligence (e.g. actors, tools, exploits, malware, etc.) and determine TTPs used by threat-actors
• Analyze security events and data feeds for event detection, correlation from monitoring solutions, conduct triage and classify the output using automated systems for further investigation
• Assist in the discovery of cyber vulnerabilities and the investigation of global cyber security incidents, as required
• Develop cyber protection improvement recommendations that support the remediation and protection of systems
• Analyze and report on cyber-threats based on assessment and all-source intelligence
• Translate analytical findings into security “use cases” that can be implemented within available surveillance capabilities
• Provide detailed and accurate technical reporting of analysis results in the form of PowerPoint presentations and/or Word documents, as well as oral briefings on complex technical subjects attuned to senior management, technical, or non-technical audiences
 

Minimum Requirements

  • BA/BS in related field with 8 years of experience in a related field OR a Masters degree with 6 years of experience. Professional experience may be considered in lieu of a degree.
  • Current Top Secret clearance with SCI eligibility. Must be able to obtain DHS suitability prior to starting employment
  • Practical knowledge of high-level scripting/programming language (e.g. Python, Perl, PowerShell, etc.) to extract, de-obfuscate, or otherwise manipulate malware-related data
  • Proficient with forensic analysis tools and techniques to identify malware technical indicators of compromise and perform triage
  • Possess excellent oral and written communication skills and critical thinking abilities
  • Capable of working independently and within teams to solve complex problems
  • Able to work across multiple organizations, cultures and service providers to pull together actionable information and management information
  • Practical knowledge of Splunk policies, filters and rules to improve event analysis and data correlation
  • Experience with penetration testing, incident response, malware analysis, reverse engineering, or other similar work experience
  • Knowledge of Windows and Unix/Linux Operating Systems
  • Ability to perform analysis of network traffic and protocols

Preferred Skills

  • One or more current certifications equivalent to Offensive Security Certified Professional (OSCP), SANS GIAC Penetration Tester (GPEN), SANS GIAC Certified Incident Handler (GCIH), SANS GIAC Web Application Penetration Tester (GWAP), SANS GIAC Certified Intrusion Analyst (GCIA).
  • •Background or experience in digital forensics is a plus

Criterion Systems is committed to hiring and retaining a diverse workforce. We are proud to be an Equal Opportunity/Affirmative Action Employer, making decisions without regard to race, color, religion, creed, sex, sexual orientation, gender identity, marital status, national origin, age, veteran status, disability, or any other protected class. For our complete EEO/AA and Pay Transparency statement, please visit https://criterion-sys.com/careers.


Benefits

Health

Criterion offers comprehensive health benefits including medical, dental, vision, life and disability insurance. Most of our plans are available at no cost for employee only coverage.

Time Off

Employees begin accruing PTO at 15 days per year and acquire more based on seniority. In addition to PTO, Criterion provides 10 holidays and bereavement, military, jury duty, and family medical leave.

Financial

  • Roth and Traditional 401(k) Plans with company matching contributions
  • Health Care and Dependent Care Flexible Spending Accounts
  • Health Savings Accounts
  • Commuter Benefits

Educational

All employees are eligible to use up to $3,000 annually for approved professional development, including trainings, memberships, seminars, and degree programs.

Employee Testimonials

Pets of Criterion

We love our furry friends!

Equal Employment Opportunity and Affirmative Action Employer

Criterion Systems, Inc. is committed to equal employment opportunity and non-discrimination at all levels of our organization. We believe in treating all applicants and employees fairly and make decisions without regard to an individual’s protected status: race/ethnicity, color, national origin, ancestry, sex/gender, gender identity/expression, sexual orientation, marital/parental status, pregnancy/childbirth or related conditions, religion, creed, age, disability, genetic information, veteran status, or any other protected status.

Know Your Rights

Applicants have rights under Federal Employment Laws: Family and Medical Leave Act | Equal Employment Opportunity | Employee Polygraph Protection Act. Criterion participates in E-Verify. Review Right to Work information.

Need an Accommodation?

Criterion is committed to Equal Employment Opportunity and providing reasonable accommodations to applicants with physical and/or mental disabilities. If you are interested in applying for a position with Criterion and need special assistance or an accommodation to apply, please send an email with your request to recruiting@criterion-sys.com or call us at 703-942-5800. Determination on requests for reasonable accommodation are made on a case-by-case basis.