Cyber Incident Responder
vor 4 Wochen
Today
- Top Secret/SCI
- Unspecified
- Unspecified
- IT - Security
Wiesbaden Erbenheim Hesse** (ON-SITE/OFFICE)**
**About Peraton**
**Responsibilities**
**Location: Wiesbaden, Germany**
**In this role, you will**:
- Work as an expert to perform analysis of cyber relate events to detect and deter malicious actors using SIEM technologies focused on the threat to networked weapons platforms and U.S. DoD information networks.
- Need to be able to support this position having the potential to work multiple shifts in a rotational schedule.
- Analyze host and network events to determine the impact on current operations, conduct research to determine advisory capability, and develop analytics based on indicators of compromise to leverage the SIEM.
- Produce high-quality papers, presentations, recommendations, and findings for senior US government intelligence and network operations officials.
You will have the opportunity to:
- Perform documentation and vetting of identified vulnerabilities for operational use.
- Monitor and action SIEM platforms for alerts, events, and rules providing insight into malicious activities and/or security posture violations.
- Review intrusion detection system alerts for anomalies that may pose a threat to the customer's network.
- Identify and investigate vulnerabilities, asses exploit potential, and suggest analytics for automation in the SIEM engines.
- Report events through the incident handling process of creating incident tickets for deeper analysis and triage activities.
- Issue triage steps to local touch labor organizations and Army units to mitigate or collect on-site data.
- Develop unique queries and rules in the SIEM platforms to further detection for first line cyber defenders.
- Provide daily updates to Cyber Security Service Provider Division higher staff on intrusion detection operation and trends of events causing incidents.
- Draft reports of remotely exploitable vulnerabilities to increase customer situational awareness and improve the customer's cyber security posture.
- Assist all sections of the Cyber Security Service Provider Division as required in performing Analysis and other duties as assigned.
**Qualifications**
**Required**:
- BA/BS in Engineering, Computer Science, Science, Business Administration or Mathematics and 2 years of specialized experience, or an Associate's degree and 5 years of specialized experience. An additional 4 years ofexperience may be considered in lieu of education/degree.
- Experience in packet captures and analyzing a network packet.
- Experience with intrusion detection systems such as Snort, Suricata, and Zeek.
- Experience with the Elastic SIEM.
- Ability to work independently as well as part of a team.
- Ability to work on shift rotation to assist the team.
- Must have a full, complete, and in-depth understanding of all aspects of Defensive Cyber Operations.
- Must be fluent in all aspects of government and corporate communications media to include all MS Officeproducts and common task ticketing systems.
- Must have a good breadth of knowledge of common ports and protocols of system and network services.
- Must have the demonstrated ability to communicate with a variety of stakeholders in a variety of formats.
- DoD 8140 DCWF 531 & 511 certified in ONE of the following, OR, have the ability to obtain within 30-days ofhire:
- DCWF 531 - B.S.+ or GCFA, GCIA, CCSP, CEH, CFR, Cloud+, CYSA+, GCED, GICSP, PenTest+
- DCWF 511 - B.S.+ or GCFA, GCIA, CFR, Cloud+, CYSA+, GCED, PenTest
- One of the following within 30-days of hire:
- Cisco CyberOps Professional, GCED, GCFA, GCFE, GCIH, GNFA, DCITA CIRC, Blue Team level 1,FIWE or Offensive Security OSDA.
- U.S. citizenship required.
- An active Top Secret with SCI security clearance.
**Preferred**:
- Experience with writing Snort or Suricata IDS rules.
- Experience in developing complex dashboards, report, and automated searches in Elastic/Kibana.
- Experience with analyzing packets using Arkime.
- Experience with Microsoft Windows event IDs.
- Experience with Linux audit log analysis.
- Familiarity with Git and VScode.
- Experience with one or more scripting languages such as PowerShell, Bash, Python.
**Target Salary Range**
$66,000 - $106,000. This represents the typical salary range for this position based on experience and other factors.
**SCA / Union / Intern Rate or Range**
**EEO**
An Equal Opportunity Employer including Disability/Veteran.
**Our Values**
**Benefits**
At Peraton, our benefits are designed to help keep you at your best beyond the work you do with us daily. We're fully committed to the growth of our employees. From fully comprehensive medical plans to tuition reimbursement, tuition assistance, and fertility treatment, we are there to support you all the way.
- Paid Time-Off and Holidays
- Retirement
- Life & Disability Insurance
- Career Development
- Tuition Assistance and Student Loan Financing
- Paid Parental Leave
- Additional Benefits
- Medic
-
Information Technology Specialist
vor 6 Monaten
Wiesbaden, Deutschland U.S. Army Cyber Command Vollzeit**Duties**: - Incumbent serves as a Collaboration Support Specialist in the Network Management Branch, Regional Cyber Center - Europe. - Selectee proactively coordinates and carries out the activities and processes required to implement, operate, and maintain premier collaboration services as a Network Operations Specialist. - Builds, tests, and delivers...
-
Information Technology Specialist
vor 5 Monaten
Wiesbaden, Deutschland U.S. Army Cyber Command Vollzeit**Duties**: - Maintain continuous oversight of all Theater communications and data network in support of the United States Army Europe. - Technically evaluates the adequacy and effectiveness of systems troubleshooting, fault isolation and service restoration to ensure appropriate measures and resources are allocated to effectively and efficiently restore...
-
Supervisory Information Technology Specialist
vor 5 Monaten
Wiesbaden, Deutschland U.S. Army Cyber Command Vollzeit**Duties**: - Develop and execute concepts, programs and plans; establishes priorities and requirements; and provides guidance and direction. - Responsible for preparation of IT and business policy and procedural governance, and project development IAW regulatory guidance. Develops and reports estimates of budget requirements to higher management. - Manage...
-
Supervisory Personnel Support Specialist
vor 6 Monaten
Wiesbaden, Deutschland U.S. Army Cyber Command Vollzeit**Duties**: - Serves as the primary personnel specialist at 102nd Signal Battalion. - Provides staff advisory services to management and employees on the full range of command personnel programs. - Responds to difficult issues involving complex projects/problems that require expert attention and provides guidance and assistance to subordinate...
-
Information Specialist
vor 6 Monaten
Wiesbaden, Deutschland U.S. Army Cyber Command Vollzeit**Duties**: - Serves as a Senior IT Specialist within the Enterprise Service Desk. - Leverages people, processes and technology to provide premier IT service for customers. - Responsible for incident management for the lifecycle of incidents for Tier 1 remote computer desktop support. - Maintains all new or updated software releases in the production...
-
Information Technology Specialist
vor 4 Wochen
Wiesbaden, Deutschland U.S. Army Cyber Command Vollzeit**Duties**: - Incumbent serves as a Collaboration Support Specialist in the Network Management Branch, Regional Cyber Center - Europe. - Selectee proactively coordinates and carries out the activities and processes required to implement, operate, and maintain premier collaboration services as a Network Operations Specialist. - Builds, tests, and delivers...
-
Information Technology Specialist
vor 6 Monaten
Wiesbaden, Deutschland U.S. Army Cyber Command Vollzeit**Duties**: - Diagnosing and resolving problems in response to customer reported incidents. - Researching, evaluating, and providing feedback on problematic trends and patterns in customer support requirements. - Installing, configuring, troubleshooting, and maintaining customer hardware and software. - Developing and maintaining problem tracking and...
-
Information Technology Specialist
vor 5 Monaten
Wiesbaden, Deutschland U.S. Army Cyber Command Vollzeit**Duties**: - Serves as IT Specialist/Database Administrator for the Regional Cyber Center-Europe, Enterprise Data Services Team. - Provides design, management and improvement of the SQL as a Service Enterprise architectures. - Serves as an Information Technology Specialist performing work, independently and as a member of a team, in the administration,...
-
Information Technology Specialist
vor 2 Monaten
Wiesbaden, Deutschland U.S. Army Cyber Command Vollzeit**Duties**: - Maintain continuous oversight of all Theater communications and data network in support of the United States Army Europe. - Technically evaluates the adequacy and effectiveness of systems troubleshooting, fault isolation and service restoration to ensure appropriate measures and resources are allocated to effectively and efficiently restore...
-
Spezialist / Spezialistin Entwicklung & Projekte
vor 2 Monaten
Wiesbaden, Deutschland P&I Personal & Informatik AG VollzeitAls erstes HR-Cloud-Datacenter seiner Art bietet P&I mit seiner Security-of-the-Cloud-Strategie einen einfachen Zugang zu umfassender, hochmoderner Datensicherheit in der Cloud. Specialist IT-Sicherheit (m/w/d) AUFGABEN Betreuung, Konsolidierung und Weiterentwicklung verteilter Netzwerkinfrastrukturen sowie der Firewall-Systeme Mitarbeit in der Entwicklung,...
-
Linux System Administrator
vor 5 Monaten
Wiesbaden, Deutschland SOSi Vollzeit**Overview**: **Responsibilities**: - Evaluates, tests, recommends, coordinates, monitors and maintains information systems (IS) and cyber security policies, procedures and systems, including access management for hardware, firmware and software - Ensures that IS and cyber security plans, controls, processes, standards, policies and procedures are aligned...
-
Linux System Administrator
vor 6 Monaten
Wiesbaden, Deutschland SOSi Vollzeit**Overview**: - SOS International LLC (SOSi) is seeking a highly qualified**Responsibilities**: - Evaluates, tests, recommends, coordinates, monitors and maintains information systems (IS) and cyber security policies, procedures and systems, including access management for hardware, firmware and software - Ensures that IS and cyber security plans,...
-
Spezialist / Spezialistin Entwicklung & Projekte
vor 3 Wochen
Wiesbaden, Deutschland P&I Personal & Informatik AG VollzeitAls erstes HR-Cloud-Datacenter seiner Art bietet P&I mit seiner Security-of-the-Cloud-Strategie einen einfachen Zugang zu umfassender, hochmoderner Datensicherheit in der Cloud. Betreuung, Konsolidierung und Weiterentwicklung verteilter Netzwerkinfrastrukturen sowie der Firewall-Systeme Cyberthreat Hunting und Incident Response Konzeptionierung und...
-
Sicherheitsexperte für IT-Infrastrukturen
vor 4 Wochen
Wiesbaden, Hessen, Deutschland P&I Personal & Informatik AG VollzeitBeschreibung der Rolle:Wir suchen einen erfahrenen Sicherheitsexperten für unsere IT-Infrastrukturen. Der Kandidat wird sich mit der Betreuung, Konsolidierung und Weiterentwicklung verteilter Netzwerkinfrastrukturen sowie der Firewall-Systeme beschäftigen. Darüber hinaus wird er Cyberthreat Hunting und Incident Response durchführen, Security-Projekte...
-
Spezialist / Spezialistin Entwicklung & Projekte
vor 2 Monaten
Wiesbaden, Deutschland P&I Personal & Informatik AG VollzeitAls erstes HR-Cloud-Datacenter seiner Art bietet P&I mit seiner Security-of-the-Cloud-Strategie einen einfachen Zugang zu umfassender, hochmoderner Datensicherheit in der Cloud. Specialist IT-Sicherheit (m/w/d) AUFGABEN Betreuung, Konsolidierung und Weiterentwicklung verteilter Netzwerkinfrastrukturen sowie der Firewall-Systeme Cyberthreat Hunting und...
-
Linux System Administrator
vor 3 Monaten
Wiesbaden, Deutschland SOSi Vollzeit**Overview** **Essential Job Duties** - Evaluates, tests, recommends, coordinates, monitors and maintains information systems (IS) and cyber security policies, procedures and systems, including access management for hardware, firmware and software - Ensures that IS and cyber security plans, controls, processes, standards, policies and procedures are aligned...
-
Sicherheits-Experte IT
vor 1 Monat
Wiesbaden, Hessen, Deutschland P&I Personal & Informatik AG VollzeitP&I Personal & Informatik AG ist ein Pionier in der HR-Branche und prägt mit ihrer HR-Plattform P&I LogaHR die Personalarbeit. Als Marktführer in Deutschland bietet P&I eine umfassende Datensicherheit in der Cloud an. Als Sicherheits-Experte IT bei P&I sind Sie Teil eines Teams, das die Sicherheit von Netzwerkinfrastrukturen und Firewall-Systemen betreut...
-
Specialist IT-Sicherheit
vor 1 Monat
Wiesbaden, Deutschland P&I Personal & Informatik AG VollzeitMit der HR-Plattform P&I LogaHR für integrierte und automatisierte Personalarbeit prägt die P&I AG die HR-Branche und gilt mit ihrem Leitsatz „Rethink HR“ als Marktpionier in Deutschland. Als erstes HR-Cloud-Datacenter seiner Art bietet P&I mit seiner Security-of-the-Cloud-Strategie einen einfachen Zugang zu umfassender, hochmoderner Datensicherheit in...
-
Specialist IT-Sicherheit
vor 2 Monaten
Wiesbaden, 65205, Deutschland P&I Personal & Informatik AG VollzeitMit der HR-Plattform P&I LogaHR für integrierte und automatisierte Personalarbeit prägt die P&I AG die HR-Branche und gilt mit ihrem Leitsatz »Rethink HR« als Marktpionier in Deutschland. Als erstes HR-Cloud-Datacenter seiner Art bietet P&I mit seiner Security-of-the-Cloud-Strategie einen einfachen Zugang zu umfassender, hochmoderner Datensicherheit in...
-
Sicherheits-Experte IT
vor 1 Monat
Wiesbaden, Hessen, Deutschland P&I Personal & Informatik AG VollzeitÜberblickWir suchen einen erfahrenen Sicherheits-Experten IT, der unsere IT-Infrastruktur sicher macht. Als Teil unseres Teams werden Sie die Sicherheit unserer Netzwerke und Systeme überwachen und verbessern.AufgabenBetreuung und Konsolidierung verteilter NetzwerkinfrastrukturenMitarbeit in der Entwicklung, Installation und Inbetriebnahme von IT-Lösungen...